Calorie Calculator Security & Risk Analysis

wordpress.org/plugins/calorie-calculator

The Calorie Calculator can be used to estimate the calories you need to consume each day. It also provides simple guidelines to gain or lose weight.

100 active installs v3.3.1 PHP + WP 3.5+ Updated Jan 10, 2025
caloriecalorie-calculatordiet-controlweight-loss
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Calorie Calculator Safe to Use in 2026?

Generally Safe

Score 92/100

Calorie Calculator has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The "calorie-calculator" plugin version 3.3.1 exhibits a generally positive security posture based on the provided static analysis. The absence of AJAX handlers, REST API routes, shortcodes, and cron events significantly limits the plugin's attack surface. Furthermore, the code shows good practices with 100% of SQL queries utilizing prepared statements and no dangerous functions identified. The plugin also appears to be free of known vulnerabilities, with zero recorded CVEs, which suggests a history of security attention or a lack of past exploitable issues. However, a significant concern arises from the low percentage of properly escaped output (16%). This indicates a high probability of cross-site scripting (XSS) vulnerabilities, as user-supplied data might be rendered directly in the browser without proper sanitization. While taint analysis didn't reveal specific unsanitized flows, the widespread lack of output escaping is a critical weakness. The limited number of nonce checks (3) and zero capability checks also suggest potential areas where unauthorized actions could be performed if an attack vector exists. In conclusion, while the plugin avoids common pitfalls like raw SQL and dangerous functions, the severe lack of output escaping presents a notable risk that should be addressed.

Key Concerns

  • Low output escaping percentage
  • Limited nonce checks
  • No capability checks
Vulnerabilities
None known

Calorie Calculator Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Calorie Calculator Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
76
14 escaped
Nonce Checks
3
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

16% escaped90 total outputs
Attack Surface

Calorie Calculator Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 12
actioninitcalorie-calculator.php:78
filterplugin_row_metacalorie-calculator.php:81
actionadmin_menucalorie-calculator.php:93
actioninitcalorie-calculator.php:96
filtermanage_calculator_log_posts_columnscalorie-calculator.php:99
actionmanage_calculator_log_posts_custom_columncalorie-calculator.php:100
filterposts_wherecalorie-calculator.php:102
filterposts_joincalorie-calculator.php:103
actionadmin_enqueue_scriptscalorie-calculator.php:185
actionwp_enqueue_scriptscalorie-calculator.php:190
filterwidget_textclasses\Calorie_Calculator_Widget_Free.php:36
actionwidgets_initclasses\Calorie_Calculator_Widget_Free.php:366
Maintenance & Trust

Calorie Calculator Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedJan 10, 2025
PHP min version
Downloads18K

Community Trust

Rating68/100
Number of ratings10
Active installs100
Developer Profile

Calorie Calculator Developer Profile

Md. Zubaer Ahammed

1 plugin · 100 total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Calorie Calculator

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/calorie-calculator/js/calorie_calculator.js/wp-content/plugins/calorie-calculator/css/frontend.css/wp-content/plugins/calorie-calculator/css/frontend.css.map
Script Paths
/wp-content/plugins/calorie-calculator/js/calorie_calculator.js
Version Parameters
calorie-calculator/js/calorie_calculator.js?ver=calorie-calculator/css/frontend.css?ver=

HTML / DOM Fingerprints

CSS Classes
calcalpro-main-wrappercalcalpro-bmr-calculator-formcalcalpro-weight-loss-gain-calculator-formcalcalpro-gendercalcalpro-agecalcalpro-heightcalcalpro-weightcalcalpro-activity-level+8 more
HTML Comments
<!-- Start Calorie Calculator Free Widget --><!-- End Calorie Calculator Free Widget -->
Data Attributes
data-calcalpro-id
JS Globals
ajax_send_or_download_detailstranslation_arraycalcalpro_objectCalorieCalculatorFreeZubaer_Calorie_Calculator_Free
FAQ

Frequently Asked Questions about Calorie Calculator