WP Bootstrap Menu Security & Risk Analysis

wordpress.org/plugins/wp-bootstrap-navmenu

Convert Wordpress nav menu to Twitter Bootstrap style.

200 active installs v1.1.1 PHP + WP 3.0.1+ Updated May 16, 2013
bootstrapwordpress-navmenu
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is WP Bootstrap Menu Safe to Use in 2026?

Generally Safe

Score 85/100

WP Bootstrap Menu has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 12yr ago
Risk Assessment

The wp-bootstrap-navmenu v1.1.1 plugin exhibits an exceptionally strong security posture based on the provided static analysis data. The complete absence of any identified attack surface entry points like AJAX handlers, REST API routes, shortcodes, or cron events is a significant strength. Furthermore, the code shows excellent adherence to secure coding practices, with no dangerous functions, all SQL queries utilizing prepared statements, and all output being properly escaped. The lack of file operations, external HTTP requests, and the absence of critical security checks like nonce and capability checks could be interpreted in two ways: either the plugin is so simple it doesn't require them, or these checks are missing where they might be implicitly needed if the plugin were to evolve. The vulnerability history is entirely clean, with no recorded CVEs, which indicates a stable and well-maintained past. Overall, the plugin appears very secure due to its limited scope and clean code, but the complete absence of certain security mechanisms warrants a slight caution for potential future extensibility. The current state is commendable, with the main area for attention being the potential for future expansion without introducing vulnerabilities.

Key Concerns

  • No nonce checks detected
  • No capability checks detected
Vulnerabilities
None known

WP Bootstrap Menu Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

WP Bootstrap Menu Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

WP Bootstrap Menu Attack Surface

Entry Points0
Unprotected0
Maintenance & Trust

WP Bootstrap Menu Maintenance & Trust

Maintenance Signals

WordPress version tested3.4.2
Last updatedMay 16, 2013
PHP min version
Downloads13K

Community Trust

Rating84/100
Number of ratings5
Active installs200
Developer Profile

WP Bootstrap Menu Developer Profile

sajjadrad

1 plugin · 200 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect WP Bootstrap Menu

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

CSS Classes
dropdowndropdown-menudropdown-togglecaretdropdown-submenusub-menu
Data Attributes
data-toggle="dropdown"
FAQ

Frequently Asked Questions about WP Bootstrap Menu