
WP Spry Menu Security & Risk Analysis
wordpress.org/plugins/wp-spry-menuCreate Spry Drop Down Menu for WordPress category.
Is WP Spry Menu Safe to Use in 2026?
Generally Safe
Score 85/100WP Spry Menu has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'wp-spry-menu' v1.5.2 plugin exhibits a generally good security posture based on the provided static analysis. There are no known vulnerabilities (CVEs), no dangerous functions, no file operations, and no external HTTP requests. All SQL queries are properly prepared. However, a significant concern arises from the taint analysis, which identified two flows with unsanitized paths. While no critical or high severity issues were flagged in taint analysis, this indicates a potential for path traversal vulnerabilities if user-supplied input is involved in file operations or data handling within these flows, even if not immediately apparent in the static analysis. Additionally, the output escaping is poor, with only 22% of outputs properly escaped. This is a considerable risk, as it opens the door to cross-site scripting (XSS) vulnerabilities where user input could be rendered directly into the page without sanitization. The plugin also lacks nonce and capability checks on all entry points, which is a fundamental security practice that is missing. While the attack surface appears small and has no unprotected entry points directly identified, the poor output escaping and unsanitized paths are critical weaknesses that need immediate attention.
Key Concerns
- Poor output escaping (22% proper)
- Flows with unsanitized paths identified
- Missing nonce checks on entry points
- Missing capability checks on entry points
WP Spry Menu Security Vulnerabilities
WP Spry Menu Code Analysis
Output Escaping
Data Flow Analysis
WP Spry Menu Attack Surface
Shortcodes 1
WordPress Hooks 6
Maintenance & Trust
WP Spry Menu Maintenance & Trust
Maintenance Signals
Community Trust
WP Spry Menu Alternatives
Advanced Sidebar Menu
advanced-sidebar-menu
Fully automatic sidebar menus.
Automatically Hierarchic Categories in Menu
automatically-hierarchic-categories-in-menu
Allows you to automatically add hierarchic categories in WordPress Navigation Menus.
Ollie Menu Designer
ollie-menu-designer
Create custom dropdown & mobile menus using WordPress blocks. Design rich, responsive navigation with any block content in the block editor.
Dropdown multisite selector
dropdown-multisite-selector
Gives you the resources to make select field with redirecting options to a given URLs.
Multilevel Navigation Menu
multilevel-navigation-menu
Multilevel Navigation Menu plugin ability to add a full-screen navigation menu to our website.
WP Spry Menu Developer Profile
6 plugins · 1K total installs
How We Detect WP Spry Menu
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-spry-menu/css/wp-spry-menu.css/wp-content/plugins/wp-spry-menu/js/SpryDOMUtils.js/wp-content/plugins/wp-spry-menu/js/SpryEffects.js/wp-content/plugins/wp-spry-menu/js/SpryWidget.js/wp-content/plugins/wp-spry-menu/js/SpryCollapsibleList.js/wp-content/plugins/wp-spry-menu/js/SpryAccordion.js/wp-content/plugins/wp-spry-menu/js/SpryMenu.js/wp-content/plugins/wp-spry-menu/js/SpryDOMUtils.js/wp-content/plugins/wp-spry-menu/js/SpryEffects.js/wp-content/plugins/wp-spry-menu/js/SpryWidget.js/wp-content/plugins/wp-spry-menu/js/SpryCollapsibleList.js/wp-content/plugins/wp-spry-menu/js/SpryAccordion.js/wp-content/plugins/wp-spry-menu/js/SpryMenu.jswp-spry-menu/style.css?ver=wp-spry-menu/js/SpryDOMUtils.js?ver=wp-spry-menu/js/SpryEffects.js?ver=wp-spry-menu/js/SpryWidget.js?ver=wp-spry-menu/js/SpryCollapsibleList.js?ver=wp-spry-menu/js/SpryAccordion.js?ver=wp-spry-menu/js/SpryMenu.js?ver=HTML / DOM Fingerprints
spry-menu-containerSprySpryDOMUtilsSpryEffectsSpryWidgetSpryCollapsibleListSpryAccordion+1 more