
Responsive Menu – Create Mobile-Friendly Menu Security & Risk Analysis
wordpress.org/plugins/responsive-menuHighly customisable Responsive Menu plugin with 150+ options. No coding knowledge needed to design it exactly as you want.
Is Responsive Menu – Create Mobile-Friendly Menu Safe to Use in 2026?
Generally Safe
Score 97/100Responsive Menu – Create Mobile-Friendly Menu has a strong security track record. Known vulnerabilities have been patched promptly.
The 'responsive-menu' plugin v4.7.1 presents a mixed security posture. On the positive side, it demonstrates good practices with a high percentage of prepared SQL statements and properly escaped output. The absence of dangerous functions and critical/high severity taint flows is also encouraging. However, significant concerns exist due to its vulnerability history. With 5 known CVEs, including 4 high severity ones, the plugin has a history of serious security flaws, with the most recent being in March 2022. This indicates a past pattern of vulnerabilities like Missing Authorization, CSRF, and Unrestricted Uploads, which require vigilant monitoring. The static analysis reveals one AJAX handler without authentication checks, creating a potential entry point for unauthorized actions if exploited in conjunction with other weaknesses. While the current version has no unpatched CVEs, the historical pattern and the presence of an unprotected AJAX handler warrant caution. Overall, while the code itself shows some solid security implementations, the plugin's past issues and the identified unprotected entry point suggest a need for continued vigilance and potential updates.
Key Concerns
- 1 AJAX handler without auth checks
- Total known CVEs: 5 (4 high, 1 medium)
Responsive Menu – Create Mobile-Friendly Menu Security Vulnerabilities
CVEs by Year
Severity Breakdown
5 total CVEs
Responsive Menu <= 4.1.7 - Missing Authorization Checks
Responsive Menu <= 4.0.3 - Cross-Site Request Forgery to Setting Modification
Responsive Menu <= 4.0.3 - Cross-Site Request Forgery to Arbitrary File Upload
Responsive Menu 4.0 - 4.0.3 - Authenticated Arbitrary File Upload
Responsive Menu <= 3.1.3 - Cross-Site Request Forgery
Responsive Menu – Create Mobile-Friendly Menu Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Responsive Menu – Create Mobile-Friendly Menu Attack Surface
AJAX Handlers 14
Shortcodes 2
WordPress Hooks 52
Maintenance & Trust
Responsive Menu – Create Mobile-Friendly Menu Maintenance & Trust
Maintenance Signals
Community Trust
Responsive Menu – Create Mobile-Friendly Menu Alternatives
Max Mega Menu
megamenu
An easy to use mega menu plugin. Written the WordPress way.
Better Navigation Block Styles
better-navigation-block-styles
Enhances the default WordPress mobile hamburger menu with improved spacing and readability using custom CSS.
QuadMenu – Mega Menu
quadmenu
Responsive mega menu plugin for WordPress with customizable layouts and an intuitive drag-and-drop builder.
ShiftNav – Responsive Mobile Menu
shiftnav-responsive-mobile-menu
Add a native-style, off-canvas, responsive mobile navigation menu to your site.
WP Mega Menu
wp-megamenu
WordPress Mega Menu is a responsive, highly customizable drag and drop menu builder plugin. Download free WordPress megamenu plugin.
Responsive Menu – Create Mobile-Friendly Menu Developer Profile
21 plugins · 122K total installs
How We Detect Responsive Menu – Create Mobile-Friendly Menu
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/responsive-menu/v4.0.0/assets/admin/js/selectize.js/wp-content/plugins/responsive-menu/v4.0.0/assets/admin/scss/selectize.css/wp-content/plugins/responsive-menu/v4.0.0/inc/helpers/autoloader.php/wp-content/plugins/responsive-menu/v4.0.0/inc/helpers/custom-functions.php/wp-content/plugins/responsive-menu/v4.0.0/inc/helpers/default-options.php/wp-content/plugins/responsive-menu/v4.0.0/libs/scssphp/vendor/autoload.php/wp-content/plugins/responsive-menu/v4.0.0/templates/rmp-roadmap.phpv4.0.0/assets/admin/js/selectize.jsresponsive-menu?ver=v4.0.0/assets/admin/js/selectize.js?ver=v4.0.0/assets/admin/scss/selectize.css?ver=rmp_admin_main_styles?ver=HTML / DOM Fingerprints
rmp_menuresponsive-menu-license-upgrade-linkdata-editor="rmp_menu"RMPRMP_PLUGIN_VERSIONRMP_PLUGIN_URL_V4