Top Admin WordPress Plugins
221 indexed plugins
Plugins
221
Active Installs
4m+
Average Score
61
Audited
221
Top Scores
| Rank | Plugin | Score | Errors | Warnings | Installs | Added | Updated | Top Issue |
|---|---|---|---|---|---|---|---|---|
| #151 | Widget Builder | 40 | 40 | 52 | 500 | Non-prefixed global variable | ||
| #152 | Admin Custom Font | 39 | 34 | 25 | 1k+ | Unsafe printing function | ||
| #153 | Anything Order by Terms | 39 | 48 | 93 | 1k+ | Direct Query | ||
| #154 | Better User Search | 39 | 24 | 44 | 700 | SQL query is not prepared | ||
| #155 | Birds Custom Login | 39 | 196 | 23 | 4k+ | Non Singular String Literal Domain | ||
| #156 | Bogo | 39 | 30 | 139 | 10k+ | Request data is not unslashed | ||
| #157 | Radio Buttons for Taxonomies | 39 | 40 | 24 | 20k+ | Output is not escaped | ||
| #158 | Scripts n Styles | 39 | 150 | 92 | 30k+ | Output is not escaped | ||
| #159 | SEO Friendly Images | 39 | 292 | 20 | 20k+ | Output is not escaped | ||
| #160 | SimpleModal Login | 39 | 50 | 12 | 800 | Unsafe printing function | ||
| #161 | Slash Admin | 39 | 116 | 38 | 500 | Output is not escaped | ||
| #162 | Tabify Edit Screen | 39 | 83 | 27 | 500 | Output is not escaped | ||
| #163 | Admin Management Xtended | 38 | 280 | 161 | 5k+ | Output is not escaped | ||
| #164 | Admin Tools | 38 | 189 | 10 | 3k+ | Unsafe printing function | ||
| #165 | Announce from the Dashboard | 38 | 138 | 24 | 7k+ | Non Singular String Literal Domain | ||
| #166 | Announcement Bar | 38 | 192 | 61 | 3k+ | Non Singular String Literal Domain | ||
| #167 | Erident Custom Login and Dashboard | 38 | 122 | 28 | 8k+ | Unsafe printing function | ||
| #168 | Log Deprecated Notices | 38 | 92 | 73 | 1k+ | Text Domain Mismatch | ||
| #169 | PostLinks | 38 | 107 | 10 | 700 | Output is not escaped | ||
| #170 | Visual Admin Customizer | 38 | 20 | 51 | 500 | Input is not sanitized | ||
| #171 | Add From Server | 37 | 52 | 20 | 60k+ | Output is not escaped | ||
| #172 | Custom CSS Manager | 37 | 55 | 20 | 1k+ | Output is not escaped | ||
| #173 | LH Archived Post Status | 37 | 150 | 64 | 3k+ | Text Domain Mismatch | ||
| #174 | Site Offline Or Coming Soon Or Maintenance Mode | 37 | 127 | 138 | 30k+ | Unsafe printing function | ||
| #175 | Admin Customizer | 36 | 143 | 64 | 1k+ | Output is not escaped | ||
| #176 | Coming Soon, Under Construction & Maintenance Mode By Dazzler | 36 | 173 | 132 | 7k+ | Text Domain Mismatch | ||
| #177 | CSH Login | 36 | 126 | 41 | 500 | Output is not escaped | ||
| #178 | Desktop Mode | 36 | 1 | 579 | 2k+ | Direct Query | ||
| #179 | Login as User | 36 | 101 | 64 | 30k+ | Output is not escaped | ||
| #180 | Media Deduper | 36 | 60 | 99 | 9k+ | Missing Arg Domain | ||
| #181 | Ozh' Admin Drop Down Menu | 36 | 125 | 43 | 3k+ | Output is not escaped | ||
| #182 | Peter’s Post Notes | 36 | 224 | 102 | 3k+ | Output is not escaped | ||
| #183 | Hide admin notices – Admin Notification Center | 36 | 114 | 67 | 8k+ | Output is not escaped | ||
| #184 | WP Super Edit | 36 | 35 | 185 | 2k+ | Nonce verification recommended | ||
| #185 | AMIMOTO Plugin Dashboard | 35 | 82 | 82 | 900 | Non Singular String Literal Domain | ||
| #186 | Better Plugin Compatibility Control | 35 | 7 | 4 | 4k+ | trademarked term | ||
| #187 | Registration Options for BuddyPress | 35 | 47 | 132 | 1k+ | Non-prefixed function | ||
| #188 | Bulk Page Stub Creator | 35 | 4 | 2 | 500 | Non-prefixed constant | ||
| #189 | CiviCRM Admin Utilities | 35 | 19 | 87 | 1k+ | Non-prefixed hook name | ||
| #190 | Conditional Menus | 35 | 92 | 28 | 60k+ | Text Domain Mismatch | ||
| #191 | Noted! | 35 | 5 | 22 | 900 | Non-prefixed global variable | ||
| #192 | Remove Admin Toolbar | 35 | 13 | 7 | 600 | Missing direct file access protection | ||
| #193 | Taxonomy Tags to Checkboxes | 35 | 2 | 0 | 1k+ | Hidden files included | ||
| #194 | Vendi Abandoned Plugin Check | 35 | 13 | 3 | 1k+ | trademarked term | ||
| #195 | WP Updates Notifier | 35 | 23 | 4 | 30k+ | Missing Translators Comment | ||
| #196 | WPCore Plugin Manager | 35 | 118 | 38 | 10k+ | Text Domain Mismatch | ||
| #197 | WPPerformanceTester | 35 | 94 | 44 | 1k+ | Output is not escaped | ||
| #198 | All In One Favicon | 34 | 214 | 62 | 60k+ | Output is not escaped | ||
| #199 | Audit Trail | 34 | 90 | 107 | 10k+ | Unsafe printing function | ||
| #200 | MW Font Changer | 34 | 463 | 75 | 7k+ | Text Domain Mismatch |