Admin WordPress Plugins That Need Review
188 indexed plugins
Plugins
188
Active Installs
4m+
Average Score
59
Audited
188
Needs Review
| Rank | Plugin | Score | Errors | Warnings | Installs | Added | Updated | Top Issue |
|---|---|---|---|---|---|---|---|---|
| #1 | Advanced Custom Fields: Extended | 23 | 1,885 | 329 | 100k+ | Text Domain Mismatch | ||
| #2 | Error Log Monitor | 23 | 694 | 1,414 | 20k+ | Non-prefixed global variable | ||
| #3 | Protect Admin | 23 | 606 | 1,300 | 2k+ | Non-prefixed global variable | ||
| #4 | My WP Customize Admin/Frontend | 24 | 1,249 | 292 | 8k+ | Unsafe printing function | ||
| #5 | SpiceBox | 24 | 828 | 1,816 | 20k+ | Non-prefixed global variable | ||
| #6 | Loginizer | 25 | 814 | 504 | 1m+ | Output is not escaped | ||
| #7 | Nested Pages | 25 | 674 | 560 | 90k+ | Non-prefixed global variable | ||
| #8 | WPS Bidouille | 28 | 472 | 215 | 10k+ | Output is not escaped | ||
| #9 | Arile Extra | 29 | 538 | 566 | 10k+ | Non-prefixed global variable | ||
| #10 | WP Admin UI Customize | 30 | 629 | 390 | 30k+ | Non-prefixed global variable | ||
| #11 | LWS Tools | 31 | 104 | 134 | 10k+ | Request data is not unslashed | ||
| #12 | User Spam Remover | 31 | 115 | 14 | 1k+ | Output is not escaped | ||
| #13 | Admin Menu Editor | 32 | 159 | 233 | 300k+ | Non-prefixed global variable | ||
| #14 | Arile Super | 32 | 328 | 351 | 3k+ | Non-prefixed global variable | ||
| #15 | Webdzier Companion | 32 | 539 | 89 | 800 | Text Domain Mismatch | ||
| #16 | Advanced Custom Fields: Typography Field | 33 | 445 | 57 | 4k+ | Text Domain Mismatch | ||
| #17 | More Types | 33 | 227 | 198 | 800 | Non-prefixed global variable | ||
| #18 | Post Lists View Custom | 33 | 462 | 150 | 2k+ | Missing Arg Domain | ||
| #19 | White Label CMS | 33 | 409 | 207 | 200k+ | Unsafe printing function | ||
| #20 | All In One Favicon | 34 | 214 | 62 | 60k+ | Output is not escaped | ||
| #21 | Audit Trail | 34 | 90 | 107 | 10k+ | Unsafe printing function | ||
| #22 | MW Font Changer | 34 | 463 | 75 | 7k+ | Text Domain Mismatch | ||
| #23 | WP Custom Admin Interface | 34 | 263 | 118 | 30k+ | Unsafe printing function | ||
| #24 | AMIMOTO Plugin Dashboard | 35 | 82 | 82 | 900 | Non Singular String Literal Domain | ||
| #25 | Better Plugin Compatibility Control | 35 | 7 | 4 | 4k+ | trademarked term | ||
| #26 | Registration Options for BuddyPress | 35 | 47 | 132 | 1k+ | Non-prefixed function | ||
| #27 | CiviCRM Admin Utilities | 35 | 19 | 87 | 1k+ | Non-prefixed hook name | ||
| #28 | Conditional Menus | 35 | 92 | 28 | 60k+ | Text Domain Mismatch | ||
| #29 | Noted! | 35 | 5 | 22 | 900 | Non-prefixed global variable | ||
| #30 | Taxonomy Tags to Checkboxes | 35 | 2 | 0 | 1k+ | Hidden files included | ||
| #31 | Vendi Abandoned Plugin Check | 35 | 13 | 3 | 1k+ | trademarked term | ||
| #32 | WP Updates Notifier | 35 | 23 | 4 | 30k+ | Missing Translators Comment | ||
| #33 | WPCore Plugin Manager | 35 | 118 | 38 | 10k+ | Text Domain Mismatch | ||
| #34 | WPPerformanceTester | 35 | 94 | 44 | 1k+ | Output is not escaped | ||
| #35 | Admin Customizer | 36 | 143 | 64 | 1k+ | Output is not escaped | ||
| #36 | Coming Soon, Under Construction & Maintenance Mode By Dazzler | 36 | 173 | 132 | 7k+ | Text Domain Mismatch | ||
| #37 | Desktop Mode | 36 | 1 | 579 | 2k+ | Direct Query | ||
| #38 | Login as User | 36 | 101 | 64 | 30k+ | Output is not escaped | ||
| #39 | Media Deduper | 36 | 60 | 99 | 9k+ | Missing Arg Domain | ||
| #40 | Ozh' Admin Drop Down Menu | 36 | 125 | 43 | 3k+ | Output is not escaped | ||
| #41 | Peter’s Post Notes | 36 | 224 | 102 | 3k+ | Output is not escaped | ||
| #42 | Hide admin notices – Admin Notification Center | 36 | 114 | 67 | 8k+ | Output is not escaped | ||
| #43 | WP Super Edit | 36 | 35 | 185 | 2k+ | Nonce verification recommended | ||
| #44 | Add From Server | 37 | 52 | 20 | 60k+ | Output is not escaped | ||
| #45 | Custom CSS Manager | 37 | 55 | 20 | 1k+ | Output is not escaped | ||
| #46 | LH Archived Post Status | 37 | 150 | 64 | 3k+ | Text Domain Mismatch | ||
| #47 | Site Offline Or Coming Soon Or Maintenance Mode | 37 | 127 | 138 | 30k+ | Unsafe printing function | ||
| #48 | Admin Management Xtended | 38 | 280 | 161 | 5k+ | Output is not escaped | ||
| #49 | Admin Tools | 38 | 189 | 10 | 3k+ | Unsafe printing function | ||
| #50 | Announce from the Dashboard | 38 | 138 | 24 | 7k+ | Non Singular String Literal Domain |