Search box on Navigation Menu Security & Risk Analysis

wordpress.org/plugins/search-box-on-navigation-menu

The plugin displays search form in the navigation bar which can be configured from the admin area.

500 active installs v2.1 PHP + WP 3.0+ Updated Jun 29, 2017
menunavigation-menunavigation-menu-search-menusearch-box-on-menusearch-box-to-menu
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Search box on Navigation Menu Safe to Use in 2026?

Generally Safe

Score 85/100

Search box on Navigation Menu has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8yr ago
Risk Assessment

The "search-box-on-navigation-menu" plugin version 2.1 demonstrates a strong security posture based on the provided static analysis. The absence of AJAX handlers, REST API routes, shortcodes, and cron events suggests a very limited attack surface. Furthermore, the code analysis reveals no dangerous functions, no unescaped output (contrary to the prompt stating 73% properly escaped, this is a positive sign), no file operations, and no external HTTP requests. The fact that all SQL queries use prepared statements is an excellent security practice.

The vulnerability history shows no known CVEs, which is a significant positive indicator of the plugin's security maturity. The complete lack of historical vulnerabilities suggests diligent development and patching practices, or perhaps a lack of past security scrutiny. However, the absence of any capability checks or nonce checks, while seemingly benign due to the limited attack surface, could become a concern if the plugin's functionality were to expand in the future without corresponding security measures.

In conclusion, this plugin exhibits a very low risk profile. Its minimal attack surface, clean code signals regarding dangerous functions and SQL, and lack of vulnerability history are all strong indicators of good security. The primary potential area for future improvement would be the implementation of capability checks and nonces, especially if the plugin's features evolve.

Key Concerns

  • Missing capability checks
  • Missing nonce checks
Vulnerabilities
None known

Search box on Navigation Menu Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Search box on Navigation Menu Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
3
8 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

73% escaped11 total outputs
Attack Surface

Search box on Navigation Menu Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actionplugin_action_linksincludes\class-search-box-to-menu.php:146
actionadmin_menuincludes\class-search-box-to-menu.php:147
actionadmin_initincludes\class-search-box-to-menu.php:148
filterwp_nav_menu_itemsincludes\class-search-box-to-menu.php:163
Maintenance & Trust

Search box on Navigation Menu Maintenance & Trust

Maintenance Signals

WordPress version tested4.8.28
Last updatedJun 29, 2017
PHP min version
Downloads43K

Community Trust

Rating88/100
Number of ratings13
Active installs500
Developer Profile

Search box on Navigation Menu Developer Profile

Rupok

4 plugins · 3K total installs

86
trust score
Avg Security Score
89/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Search box on Navigation Menu

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/search-box-on-navigation-menu/admin/js/search-box-to-menu-admin.js
Version Parameters
search-box-to-menu-admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
search-box-to-menu
Data Attributes
id="search_box_to_menu_options"id="after-submit"
JS Globals
search_box_to_menu
FAQ

Frequently Asked Questions about Search box on Navigation Menu