Admin WordPress Plugins with Most Issues
132 indexed plugins
Plugins
132
Active Installs
4m+
Average Score
58
Audited
132
Most Issues
| Rank | Plugin | Score | Errors | Warnings | Installs | Updated | Top Issue |
|---|---|---|---|---|---|---|---|
| #51 | User Spam Remover | 31 | 115 | 14 | 1k+ | Output is not escaped | |
| #52 | Conditional Menus | 35 | 92 | 28 | 60k+ | Text Domain Mismatch | |
| #53 | CiviCRM Admin Utilities | 35 | 19 | 87 | 1k+ | Non-prefixed hook name | |
| #54 | Roles & Capabilities | 44 | 24 | 79 | 1k+ | Nonce verification recommended | |
| #55 | WPC Admin Columns | 42 | 31 | 69 | 1k+ | wp function not compatible with requires wp | |
| #56 | Sticky Posts – Switch | 41 | 84 | 5 | 6k+ | Output is not escaped | |
| #57 | Revision Control | 41 | 60 | 28 | 40k+ | Output is not escaped | |
| #58 | Admin Menu Tree Page View | 43 | 17 | 69 | 10k+ | Nonce verification recommended | |
| #59 | Admin Search | 40 | 31 | 47 | 1k+ | Output is not escaped | |
| #60 | Custom CSS Manager | 37 | 55 | 20 | 1k+ | Output is not escaped | |
| #61 | Simple Client Dashboard | 47 | 38 | 36 | 2k+ | Missing direct file access protection | |
| #62 | Add From Server | 37 | 52 | 20 | 60k+ | Output is not escaped | |
| #63 | Radio Buttons for Taxonomies | 39 | 40 | 24 | 20k+ | Output is not escaped | |
| #64 | Remove admin menus by role | 57 | 5 | 54 | 8k+ | Input is not validated | |
| #65 | Custom Meta Widget | 58 | 55 | 2 | 7k+ | Output is not escaped | |
| #66 | Fast User Switching | 40 | 28 | 28 | 2k+ | Output is not escaped | |
| #67 | Theme Test Drive | 43 | 39 | 16 | 7k+ | Output is not escaped | |
| #68 | AJAX Thumbnail Rebuild | 40 | 38 | 14 | 30k+ | Unsafe printing function | |
| #69 | Hide Admin Bar | 51 | 35 | 17 | 20k+ | Unsafe printing function | |
| #70 | Automatic Domain Changer | 69 | 37 | 14 | 10k+ | Text Domain Mismatch | |
| #71 | Falcon – WordPress Optimizations & Tweaks | 69 | 29 | 21 | 2k+ | Short PHP open tag found | |
| #72 | ShayanWeb Admin FontChanger | افزونهی تغییر فونت پیشخوان وردپرس شایان وب | 45 | 42 | 8 | 1k+ | Output is not escaped | |
| #73 | Adjust Admin Categories | 51 | 30 | 12 | 10k+ | Output is not escaped | |
| #74 | Customize Login Image | 43 | 32 | 9 | 3k+ | Unsafe printing function | |
| #75 | Organize Media Folder | 97 | 3 | 35 | 2k+ | Direct Query | |
| #76 | Widget Disable | 46 | 19 | 19 | 10k+ | Output is not escaped | |
| #77 | Term Management Tools | 43 | 9 | 26 | 10k+ | Non-prefixed hook name | |
| #78 | WP Approve User | 95 | 20 | 11 | 3k+ | Text Domain Mismatch | |
| #79 | Filter Orders by Product for WooCommerce | 57 | 9 | 21 | 4k+ | Nonce verification recommended | |
| #80 | Edit Custom Fields | 96 | 10 | 19 | 2k+ | Direct Query | |
| #81 | Disable REST API | 65 | 12 | 15 | 90k+ | Output is not escaped | |
| #82 | WP Updates Notifier | 35 | 23 | 4 | 30k+ | Missing Translators Comment | |
| #83 | Require Featured Image | 56 | 20 | 6 | 3k+ | Output is not escaped | |
| #84 | Featured Galleries | 65 | 15 | 10 | 3k+ | Output is not escaped | |
| #85 | HiFi (Head Injection, Foot Injection) | 66 | 13 | 11 | 2k+ | Output is not escaped | |
| #86 | Sortable Word Count Reloaded | 68 | 18 | 6 | 2k+ | Output is not escaped | |
| #87 | Admin Locale | 75 | 12 | 10 | 7k+ | Missing Arg Domain | |
| #88 | Disable Visual Editor WYSIWYG | 62 | 10 | 12 | 1k+ | Nonce verification recommended | |
| #89 | Uber Login Logo | 62 | 16 | 5 | 10k+ | Unsafe printing function | |
| #90 | Root Relative URLs | 72 | 9 | 10 | 6k+ | Input is not sanitized | |
| #91 | Slim Maintenance Mode | 68 | 9 | 10 | 10k+ | Output is not escaped | |
| #92 | WEN Featured Image | 76 | 1 | 18 | 3k+ | Input is not validated | |
| #93 | WPS Notice Center | 71 | 12 | 7 | 3k+ | Unsafe printing function | |
| #94 | Marquee Running Text | 85 | 11 | 7 | 5k+ | Missing direct file access protection | |
| #95 | Add Logo to Admin | 67 | 14 | 3 | 7k+ | Unsafe printing function | |
| #96 | Featured Image Admin Thumb | 90 | 7 | 10 | 20k+ | Non-prefixed hook name | |
| #97 | Simple Taxonomy Ordering | 75 | 7 | 10 | 20k+ | Direct Query | |
| #98 | Admin Collapse Subpages | 82 | 4 | 12 | 4k+ | Nonce verification recommended | |
| #99 | Catch IDs | 88 | 16 | 20k+ | Non-prefixed global variable | ||
| #100 | WP Hide Dashboard | 75 | 6 | 10 | 2k+ | trademarked term |