T&P Navigation Menu Security & Risk Analysis

wordpress.org/plugins/tp-navigation-menu

T&P Navigation Menu for WordPress simple sticky navigation menu when scroll down the page.

10 active installs v0.1 PHP + WP 3.0.0+ Updated Aug 23, 2013
jquerymenunavigationscrollbarsticky
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is T&P Navigation Menu Safe to Use in 2026?

Generally Safe

Score 85/100

T&P Navigation Menu has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 12yr ago
Risk Assessment

The static analysis of the tp-navigation-menu plugin v0.1 reveals a remarkably clean codebase with no immediately apparent vulnerabilities. The plugin demonstrates excellent security practices by having zero AJAX handlers, REST API routes, shortcodes, cron events, or file operations, significantly limiting its attack surface. Furthermore, the absence of dangerous function calls, raw SQL queries, unescaped output, and external HTTP requests suggests a well-secured implementation. The lack of any recorded vulnerabilities in its history further bolsters this positive assessment, indicating a consistent commitment to security or a lack of prior security issues.

Despite the seemingly robust security posture, the plugin's analysis is severely hampered by the fact that zero flows were analyzed in the taint analysis section. This means that while no *detected* issues exist, it's impossible to definitively state that no vulnerabilities are present. The absence of nonce checks and capability checks, while not necessarily problematic given the limited attack surface, could become a concern if the plugin were to evolve and introduce new entry points without these crucial security measures. The current version, however, presents a very low risk due to its minimal exposure and clean code.

Vulnerabilities
None known

T&P Navigation Menu Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

T&P Navigation Menu Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

T&P Navigation Menu Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 3
actioninitindex.php:44
actionyour_action_hereindex.php:74
filteryour_filter_hereindex.php:75
Maintenance & Trust

T&P Navigation Menu Maintenance & Trust

Maintenance Signals

WordPress version tested3.6.1
Last updatedAug 23, 2013
PHP min version
Downloads5K

Community Trust

Rating80/100
Number of ratings4
Active installs10
Developer Profile

T&P Navigation Menu Developer Profile

pey22

2 plugins · 60 total installs

75
trust score
Avg Security Score
73/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect T&P Navigation Menu

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/tp-navigation-menu/js/tp_navigation.js/wp-content/plugins/tp-navigation-menu/css/tp_navigation.css
Script Paths
/wp-content/plugins/tp-navigation-menu/js/tp_navigation.js

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about T&P Navigation Menu