Admin WordPress Plugins with Most Issues
132 indexed plugins
Plugins
132
Active Installs
4m+
Average Score
58
Audited
132
Most Issues
| Rank | Plugin | Score | Errors | Warnings | Installs | Updated | Top Issue |
|---|---|---|---|---|---|---|---|
| #1 | SpiceBox | 24 | 828 | 1,816 | 20k+ | Non-prefixed global variable | |
| #2 | Advanced Custom Fields: Extended | 23 | 1,885 | 329 | 100k+ | Text Domain Mismatch | |
| #3 | Error Log Monitor | 23 | 694 | 1,414 | 20k+ | Non-prefixed global variable | |
| #4 | Protect Admin | 23 | 606 | 1,300 | 2k+ | Non-prefixed global variable | |
| #5 | My WP Customize Admin/Frontend | 24 | 1,249 | 292 | 8k+ | Unsafe printing function | |
| #6 | Loginizer | 25 | 814 | 504 | 1m+ | Output is not escaped | |
| #7 | Desert Companion | 68 | 410 | 830 | 20k+ | Non-prefixed global variable | |
| #8 | Nested Pages | 25 | 674 | 560 | 90k+ | Non-prefixed global variable | |
| #9 | Arile Extra | 29 | 538 | 566 | 10k+ | Non-prefixed global variable | |
| #10 | WP Admin UI Customize | 30 | 629 | 390 | 30k+ | Non-prefixed global variable | |
| #11 | WPS Bidouille | 28 | 472 | 215 | 10k+ | Output is not escaped | |
| #12 | Arile Super | 32 | 328 | 351 | 3k+ | Non-prefixed global variable | |
| #13 | White Label CMS | 33 | 411 | 207 | 200k+ | Unsafe printing function | |
| #14 | Admin CSS MU | 64 | 30 | 582 | 10k+ | Non-prefixed global variable | |
| #15 | Post Lists View Custom | 33 | 462 | 150 | 2k+ | Missing Arg Domain | |
| #16 | Daddy Plus | 90 | 35 | 552 | 9k+ | Non-prefixed global variable | |
| #17 | Desktop Mode | 36 | 1 | 579 | 2k+ | Direct Query | |
| #18 | MW Font Changer | 34 | 463 | 75 | 6k+ | Text Domain Mismatch | |
| #19 | Advanced Custom Fields: Typography Field | 33 | 445 | 57 | 4k+ | Text Domain Mismatch | |
| #20 | View Admin As | 58 | 307 | 135 | 9k+ | Non Singular String Literal Domain | |
| #21 | Admin Management Xtended | 38 | 280 | 161 | 5k+ | Output is not escaped | |
| #22 | Admin Menu Editor | 32 | 159 | 233 | 300k+ | Non-prefixed global variable | |
| #23 | Cryout Serious Theme Settings | 40 | 332 | 51 | 40k+ | Output is not escaped | |
| #24 | WP Custom Admin Interface | 34 | 263 | 118 | 30k+ | Unsafe printing function | |
| #25 | Peter’s Post Notes | 36 | 224 | 102 | 3k+ | Output is not escaped | |
| #26 | SEO Friendly Images | 39 | 292 | 20 | 20k+ | Output is not escaped | |
| #27 | Coming Soon, Under Construction & Maintenance Mode By Dazzler | 36 | 173 | 132 | 7k+ | Text Domain Mismatch | |
| #28 | All In One Favicon | 34 | 214 | 62 | 60k+ | Output is not escaped | |
| #29 | Site Offline Or Coming Soon Or Maintenance Mode | 37 | 127 | 138 | 30k+ | Unsafe printing function | |
| #30 | Announcement Bar | 38 | 192 | 61 | 3k+ | Non Singular String Literal Domain | |
| #31 | Scripts n Styles | 39 | 150 | 92 | 30k+ | Output is not escaped | |
| #32 | LWS Tools | 31 | 104 | 134 | 10k+ | Request data is not unslashed | |
| #33 | Redux Framework | 93 | 222 | 0 | 900k+ | Missing direct file access protection | |
| #34 | WP Super Edit | 36 | 35 | 185 | 2k+ | Nonce verification recommended | |
| #35 | Birds Custom Login | 39 | 196 | 23 | 4k+ | Non Singular String Literal Domain | |
| #36 | LH Archived Post Status | 37 | 150 | 64 | 3k+ | Text Domain Mismatch | |
| #37 | ACF qTranslate | 40 | 184 | 25 | 9k+ | Output is not escaped | |
| #38 | Admin Tools | 38 | 189 | 10 | 3k+ | Unsafe printing function | |
| #39 | Audit Trail | 34 | 90 | 107 | 10k+ | Unsafe printing function | |
| #40 | Hide admin notices – Admin Notification Center | 36 | 114 | 67 | 8k+ | Output is not escaped | |
| #41 | Registration Options for BuddyPress | 35 | 47 | 132 | 1k+ | Non-prefixed function | |
| #42 | Bogo | 39 | 30 | 139 | 10k+ | Request data is not unslashed | |
| #43 | Ozh' Admin Drop Down Menu | 36 | 125 | 43 | 3k+ | Output is not escaped | |
| #44 | Login as User | 36 | 101 | 64 | 30k+ | Output is not escaped | |
| #45 | Announce from the Dashboard | 38 | 138 | 24 | 7k+ | Non Singular String Literal Domain | |
| #46 | Media Deduper | 36 | 60 | 99 | 9k+ | Missing Arg Domain | |
| #47 | WPCore Plugin Manager | 35 | 118 | 38 | 10k+ | Text Domain Mismatch | |
| #48 | Custom Login | 42 | 36 | 116 | 10k+ | Non-prefixed global variable | |
| #49 | Erident Custom Login and Dashboard | 38 | 122 | 28 | 8k+ | Unsafe printing function | |
| #50 | Avantex Companion | 90 | 35 | 100 | 1k+ | Non-prefixed global variable |