Most Installed Users WordPress Plugins
50 indexed plugins
Plugins
50
Active Installs
636k+
Average Score
57
Audited
50
Most Installed
| Rank | Plugin | Score | Errors | Warnings | Installs | Added | Updated | Top Issue |
|---|---|---|---|---|---|---|---|---|
| #1 | User Switching | 63 | 2 | 47 | 200k+ | Nonce verification recommended | ||
| #2 | One User Avatar | User Profile Picture | 34 | 68 | 190 | 100k+ | Non-prefixed global variable | ||
| #3 | Simple Local Avatars | 72 | 14 | 16 | 100k+ | Non-prefixed constant | ||
| #4 | User Profile Picture | 57 | 42 | 54 | 40k+ | Non-prefixed hook name | ||
| #5 | Basic User Avatars | 58 | 17 | 7 | 20k+ | Output is not escaped | ||
| #6 | Co-Authors Plus | 59 | 2 | 76 | 20k+ | Input is not sanitized | ||
| #7 | New User Approve | 24 | 652 | 1,415 | 20k+ | Non-prefixed global variable | ||
| #8 | Import Users from CSV | 47 | 33 | 12 | 10k+ | Unsafe printing function | ||
| #9 | Posts 2 Posts | 41 | 42 | 73 | 10k+ | Non Singular String Literal Domain | ||
| #10 | Starbox – the Author Box for Humans | 52 | 144 | 19 | 10k+ | Non Singular String Literal Domain | ||
| #11 | Password Strength Settings for WooCommerce | 89 | 17 | 6 | 10k+ | Missing Arg Domain | ||
| #12 | View Admin As | 58 | 307 | 135 | 9k+ | Non Singular String Literal Domain | ||
| #13 | Simple Membership Custom Messages | 67 | 47 | 0 | 7k+ | Text Domain Mismatch | ||
| #14 | Export User Data | 38 | 187 | 62 | 6k+ | Text Domain Mismatch | ||
| #15 | Avatar Manager | 41 | 29 | 41 | 5k+ | Unsafe printing function | ||
| #16 | BP Profile Search | 36 | 321 | 85 | 5k+ | Output is not escaped | ||
| #17 | Disable User Login | 42 | 25 | 19 | 5k+ | Unsafe printing function | ||
| #18 | Simple Login Log | 100 | 0 | 5k+ | No open findings | |||
| #19 | Change Username | 35 | 7 | 10 | 4k+ | Direct Query | ||
| #20 | Simple Membership WP user Import | 39 | 22 | 46 | 4k+ | Request data is not unslashed | ||
| #21 | User Profile Picture | 66 | 9 | 8 | 4k+ | Missing nonce verification | ||
| #22 | Expire User Passwords | 35 | 3 | 15 | 3k+ | Nonce verification recommended | ||
| #23 | JSM Show User Metadata | 40 | 14 | 64 | 3k+ | Nonce verification recommended | ||
| #24 | Smart User Slug Hider | 41 | 85 | 12 | 3k+ | Output is not escaped | ||
| #25 | User Photo | 35 | 112 | 68 | 3k+ | Output is not escaped | ||
| #26 | Admin Bar User Switching | 55 | 16 | 31 | 2k+ | Input is not validated | ||
| #27 | Disable Users | 69 | 11 | 9 | 2k+ | Text Domain Mismatch | ||
| #28 | Fast User Switching | 40 | 28 | 28 | 2k+ | Output is not escaped | ||
| #29 | Post Notification by Email | 52 | 36 | 13 | 2k+ | Output is not escaped | ||
| #30 | Restrict Media Library Access | 98 | 3 | 1 | 2k+ | license mismatch | ||
| #31 | Simple Membership Form Shortcode | 91 | 7 | 1 | 2k+ | Missing direct file access protection | ||
| #32 | Export Users With Meta | 70 | 13 | 13 | 2k+ | Direct Query | ||
| #33 | Users Registration Date | 98 | 3 | 0 | 2k+ | Missing direct file access protection | ||
| #34 | Bulk Edit and Create User Profiles – WP Sheet Editor | 24 | 979 | 969 | 1k+ | Text Domain Mismatch | ||
| #35 | HM Multiple Roles | 27 | 537 | 1,287 | 1k+ | Non-prefixed global variable | ||
| #36 | Index WP Users For Speed | 77 | 10 | 35 | 1k+ | Non-prefixed global variable | ||
| #37 | Manage User Columns | 42 | 15 | 27 | 1k+ | Request data is not unslashed | ||
| #38 | Resend Welcome Email | 78 | 5 | 9 | 1k+ | Nonce verification recommended | ||
| #39 | User Access Shortcodes | 92 | 3 | 1 | 1k+ | Missing direct file access protection | ||
| #40 | User Spam Remover | 31 | 115 | 14 | 1k+ | Output is not escaped | ||
| #41 | Users by Date Registered | 49 | 13 | 20 | 1k+ | Nonce verification recommended | ||
| #42 | Prevent Concurrent Logins | 97 | 2 | 10 | 900 | Non-prefixed function | ||
| #43 | Simple User Listing | 50 | 27 | 56 | 900 | Non-prefixed global variable | ||
| #44 | Support Me | 70 | 12 | 6 | 900 | Unsafe printing function | ||
| #45 | Better User Search | 39 | 24 | 44 | 700 | SQL query is not prepared | ||
| #46 | Email as Username for WP-Members | 69 | 15 | 8 | 700 | Text Domain Mismatch | ||
| #47 | User Session Control | 43 | 31 | 21 | 700 | Output is not escaped | ||
| #48 | Force Password Change | 73 | 4 | 10 | 500 | Missing nonce verification | ||
| #49 | BuddyPress Default Data | 71 | 8 | 21 | 400 | Interpolated SQL is not prepared | ||
| #50 | Products Restricted Users for WooCommerce | 61 | 31 | 24 | 400 | wp function not compatible with requires wp |