Unit Converter & Sizing Calculator for Product Pages Security & Risk Analysis

wordpress.org/plugins/calcslive-article-embed

Prevent Product Returns with Unit Aware Specs & Buying Calculators that help customers buy the right size & quantity from the beginning.

0 active installs v1.1.5 PHP 7.4+ WP 5.8+ Updated Apr 15, 2026
product-returnsproduct-specificationquantity-calculatorsizing-calculatorunit-converter
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Unit Converter & Sizing Calculator for Product Pages Safe to Use in 2026?

Generally Safe

Score 100/100

Unit Converter & Sizing Calculator for Product Pages has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The calcslive-article-embed v1.1.5 plugin exhibits a strong security posture based on the provided static analysis. The absence of dangerous functions, SQL injection vulnerabilities, and file operations is commendable. All SQL queries are properly prepared, and output escaping is consistently applied, indicating good development practices against common web vulnerabilities. The lack of external HTTP requests further reduces its attack surface in that regard. The plugin also includes capability checks, which is a positive sign for access control.

However, the analysis reveals a significant concern: the complete absence of nonce checks across all entry points. With four shortcodes acting as potential entry points, this omission creates a significant risk for Cross-Site Request Forgery (CSRF) attacks. An attacker could trick a logged-in user into executing unintended actions through these shortcodes without their explicit consent. While the plugin has no recorded vulnerability history, this single missing security control in the code analysis is a critical oversight that could be exploited if a CSRF vulnerability were to exist or be introduced.

In conclusion, calcslive-article-embed v1.1.5 demonstrates a good foundation with its secure handling of SQL and output. The lack of historical vulnerabilities is a positive indicator. Nevertheless, the absence of nonce checks on its shortcodes is a critical weakness that must be addressed to ensure robust security.

Key Concerns

  • Missing nonce checks on entry points
Vulnerabilities
None known

Unit Converter & Sizing Calculator for Product Pages Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Unit Converter & Sizing Calculator for Product Pages Release Timeline

v1.1.5Current
v1.1.4
v1.1.3
v1.1.2
Code Analysis
Analyzed Apr 16, 2026

Unit Converter & Sizing Calculator for Product Pages Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
62 escaped
Nonce Checks
0
Capability Checks
3
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped62 total outputs
Attack Surface

Unit Converter & Sizing Calculator for Product Pages Attack Surface

Entry Points4
Unprotected0

Shortcodes 4

[calcslive_qty] includes/class-calcslive-pq-shortcode.php:25
[calcslive_qty_pair] includes/class-calcslive-pq-shortcode.php:26
[calcslive_qty_triplet] includes/class-calcslive-pq-shortcode.php:27
[calcslive] includes/class-calcslive-shortcode.php:19
WordPress Hooks 9
actionadmin_menucalcslive-article-embed.php:72
actionadmin_initcalcslive-article-embed.php:73
actioninitcalcslive-article-embed.php:76
actioninitcalcslive-article-embed.php:79
actioninitcalcslive-article-embed.php:82
actionwp_enqueue_scriptscalcslive-article-embed.php:85
actionadmin_enqueue_scriptscalcslive-article-embed.php:88
actionplugins_loadedcalcslive-article-embed.php:170
actionenqueue_block_editor_assetsincludes/class-calcslive-block.php:20
Maintenance & Trust

Unit Converter & Sizing Calculator for Product Pages Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedApr 15, 2026
PHP min version7.4
Downloads305

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Unit Converter & Sizing Calculator for Product Pages Developer Profile

dreamwell

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Unit Converter & Sizing Calculator for Product Pages

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/calcslive-article-embed/assets/frontend.css/wp-content/plugins/calcslive-article-embed/assets/admin.css
Script Paths
/wp-content/plugins/calcslive-article-embed/blocks/calcslive-embed/edit.js
Version Parameters
/assets/frontend.css?ver=1.1.5/assets/admin.css?ver=1.1.5/blocks/calcslive-embed/edit.js?ver=1.1.5

HTML / DOM Fingerprints

CSS Classes
calcslive-embed-wrapper
Data Attributes
data-calcslive-article-id
JS Globals
calcsliveBlockSettings
Shortcode Output
[calcslive_embed[calcslive_pq_calculator
FAQ

Frequently Asked Questions about Unit Converter & Sizing Calculator for Product Pages