Top Admin WordPress Plugins
220 indexed plugins
Plugins
220
Active Installs
4m+
Average Score
60
Audited
194
Top Scores
| Rank | Plugin | Score | Errors | Warnings | Installs | Added | Updated | Top Issue |
|---|---|---|---|---|---|---|---|---|
| #101 | Dashboard quick links widget | 49 | 22 | 16 | 700 | Output is not escaped | ||
| #102 | Users by Date Registered | 49 | 13 | 20 | 1k+ | Nonce verification recommended | ||
| #103 | Advanced Custom Fields – Location Field add-on | 48 | 51 | 6 | 900 | Output is not escaped | ||
| #104 | Custom Background Extended | 48 | 13 | 23 | 800 | Input is not validated | ||
| #105 | Custom Header Extended | 48 | 19 | 11 | 1k+ | Unsafe printing function | ||
| #106 | Simple Client Dashboard | 47 | 38 | 36 | 2k+ | Missing direct file access protection | ||
| #107 | Widget Disable | 46 | 19 | 19 | 10k+ | Output is not escaped | ||
| #108 | ShayanWeb Admin FontChanger | افزونهی تغییر فونت پیشخوان وردپرس شایان وب | 45 | 42 | 8 | 1k+ | Output is not escaped | ||
| #109 | Roles & Capabilities | 44 | 24 | 79 | 1k+ | Nonce verification recommended | ||
| #110 | Wpazure Kit | 44 | 136 | 140 | 800 | Missing direct file access protection | ||
| #111 | Admin Menu Tree Page View | 43 | 17 | 69 | 10k+ | Nonce verification recommended | ||
| #112 | Customize Login Image | 43 | 32 | 9 | 3k+ | Unsafe printing function | ||
| #113 | Term Management Tools | 43 | 9 | 26 | 10k+ | Non-prefixed hook name | ||
| #114 | Theme Test Drive | 43 | 39 | 16 | 7k+ | Output is not escaped | ||
| #115 | Custom Login | 42 | 36 | 116 | 10k+ | Non-prefixed global variable | ||
| #116 | Mass Delete Unused Tags | 42 | 21 | 9 | 900 | Output is not escaped | ||
| #117 | ACF: Google Map Extended | 41 | 141 | 8 | 800 | Text Domain Mismatch | ||
| #118 | Extra User Details | 41 | 84 | 15 | 1k+ | Non Singular String Literal Domain | ||
| #119 | MS Custom Login | 41 | 117 | 6 | 900 | Unsafe printing function | ||
| #120 | Revision Control | 41 | 60 | 28 | 40k+ | Output is not escaped | ||
| #121 | Sticky Posts – Switch | 41 | 84 | 5 | 6k+ | Output is not escaped | ||
| #122 | Taxonomy Filter | 41 | 143 | 40 | 800 | Output is not escaped | ||
| #123 | ACF qTranslate | 40 | 184 | 25 | 9k+ | Output is not escaped | ||
| #124 | Admin Search | 40 | 31 | 47 | 1k+ | Output is not escaped | ||
| #125 | AJAX Thumbnail Rebuild | 40 | 38 | 14 | 30k+ | Unsafe printing function | ||
| #126 | Bulk Add Terms | 40 | 74 | 27 | 700 | Text Domain Mismatch | ||
| #127 | Cryout Serious Theme Settings | 40 | 332 | 51 | 40k+ | Output is not escaped | ||
| #128 | Fast User Switching | 40 | 28 | 28 | 2k+ | Output is not escaped | ||
| #129 | Fusion Page Builder | 40 | 34 | 100 | 3k+ | Input is not validated | ||
| #130 | Schedule Posts Calendar | 40 | 74 | 36 | 1k+ | Output is not escaped | ||
| #131 | Thin Out Revisions | 40 | 93 | 35 | 800 | Non Singular String Literal Domain | ||
| #132 | Admin Custom Font | 39 | 34 | 25 | 1k+ | Unsafe printing function | ||
| #133 | Anything Order by Terms | 39 | 48 | 93 | 1k+ | Direct Query | ||
| #134 | Better User Search | 39 | 24 | 44 | 700 | SQL query is not prepared | ||
| #135 | Birds Custom Login | 39 | 196 | 23 | 4k+ | Non Singular String Literal Domain | ||
| #136 | Bogo | 39 | 30 | 139 | 10k+ | Request data is not unslashed | ||
| #137 | Radio Buttons for Taxonomies | 39 | 40 | 24 | 20k+ | Output is not escaped | ||
| #138 | Scripts n Styles | 39 | 150 | 92 | 30k+ | Output is not escaped | ||
| #139 | SEO Friendly Images | 39 | 292 | 20 | 20k+ | Output is not escaped | ||
| #140 | SimpleModal Login | 39 | 50 | 12 | 800 | Unsafe printing function | ||
| #141 | Admin Management Xtended | 38 | 280 | 161 | 5k+ | Output is not escaped | ||
| #142 | Admin Tools | 38 | 189 | 10 | 3k+ | Unsafe printing function | ||
| #143 | Announce from the Dashboard | 38 | 138 | 24 | 7k+ | Non Singular String Literal Domain | ||
| #144 | Announcement Bar | 38 | 192 | 61 | 3k+ | Non Singular String Literal Domain | ||
| #145 | Erident Custom Login and Dashboard | 38 | 122 | 28 | 8k+ | Unsafe printing function | ||
| #146 | Log Deprecated Notices | 38 | 92 | 73 | 1k+ | Text Domain Mismatch | ||
| #147 | PostLinks | 38 | 107 | 10 | 700 | Output is not escaped | ||
| #148 | Add From Server | 37 | 52 | 20 | 60k+ | Output is not escaped | ||
| #149 | Custom CSS Manager | 37 | 55 | 20 | 1k+ | Output is not escaped | ||
| #150 | LH Archived Post Status | 37 | 150 | 64 | 3k+ | Text Domain Mismatch |