
ST Breadcrumb Security & Risk Analysis
wordpress.org/plugins/st-breadcrumbsThis is a plugin which lets you create Breadcrumbs for Pages!
Is ST Breadcrumb Safe to Use in 2026?
Generally Safe
Score 85/100ST Breadcrumb has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "st-breadcrumbs" plugin v1.0.1 exhibits a mixed security posture. On the positive side, it boasts a very small attack surface with no AJAX handlers or REST API routes exposed without authentication. Furthermore, all SQL queries are correctly using prepared statements, and there are no recorded vulnerabilities or CVEs, suggesting a generally secure history. However, several concerning code signals warrant attention. The presence of the `create_function` dangerous function is a significant red flag, as it can be exploited for arbitrary code execution if user input is passed to it. The very low percentage of properly escaped output (18%) is another major concern, indicating a high risk of Cross-Site Scripting (XSS) vulnerabilities. The absence of nonce checks, especially for the shortcode entry point, coupled with file operations that might be influenced by user input, also presents potential risks. While the plugin appears stable historically, the identified code-level weaknesses create a notable risk profile.
Key Concerns
- Dangerous function 'create_function' found
- Only 18% of output properly escaped
- No nonce checks found
- File operations present
- Taint analysis indicates unsanitized paths
ST Breadcrumb Security Vulnerabilities
ST Breadcrumb Release Timeline
ST Breadcrumb Code Analysis
Dangerous Functions Found
Output Escaping
Data Flow Analysis
ST Breadcrumb Attack Surface
Shortcodes 1
WordPress Hooks 6
Maintenance & Trust
ST Breadcrumb Maintenance & Trust
Maintenance Signals
Community Trust
ST Breadcrumb Alternatives
Breadcrumb NavXT
breadcrumb-navxt
Adds breadcrumb navigation showing the visitor's path to their current location.
Breadcrumb – Breadcrumb for WooCommerce and Custom Post Types
breadcrumb
Super light weight & easy breadcrumb navigation for wordpress site.
Flexy Breadcrumb
flexy-breadcrumb
Flexy Breadcrumb is a super light weight plugin that is easy to navigate through current page hierarchy.
Breadcrumb Trail
breadcrumb-trail
A powerful script for adding breadcrumbs to your site that supports Schema.org HTML5-valid microdata.
Breadcrumbs Divi Module
breadcrumbs-divi-module
A simple lightweight plugin that adds a breadcrumbs module in the Divi theme.
ST Breadcrumb Developer Profile
2 plugins · 20 total installs
How We Detect ST Breadcrumb
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/st-breadcrumbs/css/style.css/wp-content/plugins/st-breadcrumbs/js/script.js/wp-content/plugins/st-breadcrumbs/js/script.jsst-breadcrumbs/css/style.css?ver=st-breadcrumbs/js/script.js?ver=HTML / DOM Fingerprints
st-breadcrumbst-breadcrumb-wpAdmin Menu Itemdata-st-breadcrumb-settingsst_breadcrumb_wp_options[ST-breadcrumb]