
WP Admin Buttons Security & Risk Analysis
wordpress.org/plugins/wp-admin-buttonsDisplays WordPress admin style buttons in the front end.
Is WP Admin Buttons Safe to Use in 2026?
Generally Safe
Score 85/100WP Admin Buttons has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The wp-admin-buttons plugin, version 1.0.2, exhibits a generally strong security posture based on the provided static analysis. The complete absence of identified AJAX handlers, REST API routes, shortcodes, and cron events significantly limits its attack surface. Furthermore, the code signals indicate a responsible approach to database interactions with 100% of SQL queries using prepared statements. The lack of dangerous functions, file operations, and external HTTP requests also contributes to a favorable security profile.
However, there are notable areas for improvement. The output escaping is only properly implemented for 57% of the outputs, indicating a potential risk of cross-site scripting (XSS) vulnerabilities if unsanitized data is rendered directly in the browser. The absence of nonce checks and capability checks, while not directly exploitable due to the limited attack surface, represents a missed opportunity for robust security practices. The vulnerability history is clean, with no known CVEs, which is a positive indicator but doesn't negate the risks identified in the code analysis. Overall, the plugin appears to be relatively safe due to its minimal attack surface, but the unescaped output is a specific concern that should be addressed.
Key Concerns
- Low output escaping coverage
- Missing nonce checks
- Missing capability checks
WP Admin Buttons Security Vulnerabilities
WP Admin Buttons Code Analysis
Output Escaping
WP Admin Buttons Attack Surface
WordPress Hooks 3
Maintenance & Trust
WP Admin Buttons Maintenance & Trust
Maintenance Signals
Community Trust
WP Admin Buttons Alternatives
WP GitHub Buttons
wp-github-buttons
Displays GitHub buttons.
Social Icons Widget & Block – Social Media Icons & Share Buttons
social-icons-widget-by-wpzoom
Social media icons plugin for WordPress - Add 400+ social icons and share buttons. Gutenberg block, widget & Elementor support. GDPR compliant.
Contact Form by BestWebSoft – Advanced WP Contact Form Builder for WordPress
contact-form-plugin
The most powerful and user-friendly WordPress contact form plugin. Create beautiful contact forms, widgets and pages using shortcodes.
WP Shortcode by MyThemeShop
wp-shortcode
WP Shortcode is a premium WP plugin for free, that provides easy to use over 24 shortcodes. You can easily add buttons, alerts, videos and more.
Bootstrap Shortcodes
bootstrap-shortcodes
Wordpress plugin to add shortcodes for Twitter Bootstrap 3.3
WP Admin Buttons Developer Profile
15 plugins · 2K total installs
How We Detect WP Admin Buttons
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-admin-buttons/asset/css/common.css/wp-content/plugins/wp-admin-buttons/asset/css/wp-admin-buttons.css/wp-content/plugins/wp-admin-buttons/asset/js/common.js/wp-content/plugins/wp-admin-buttons/asset/js/wp-admin-buttons.js/wp-content/plugins/wp-admin-buttons/asset/js/common.js/wp-content/plugins/wp-admin-buttons/asset/js/wp-admin-buttons.jswp-admin-buttons/asset/css/common.css?ver=wp-admin-buttons/asset/css/wp-admin-buttons.css?ver=wp-admin-buttons/asset/js/common.js?ver=wp-admin-buttons/asset/js/wp-admin-buttons.js?ver=HTML / DOM Fingerprints
wp-admin-buttons-containerwpab-custom-field-type-revealerdata-wpab-field-type-revealerWPAdminButtonsWPAdminButtons_Registry[wp_admin_button