CC Mortgage Calculator Security & Risk Analysis

wordpress.org/plugins/cc-mortgage-calculator

Add a free simple customizable mortgage calculator to your web site.

100 active installs v1.1.0 PHP + WP 3.0+ Updated Nov 14, 2025
financialinterestmortgage-calculatorsidebarwidget
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is CC Mortgage Calculator Safe to Use in 2026?

Generally Safe

Score 100/100

CC Mortgage Calculator has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4mo ago
Risk Assessment

The "cc-mortgage-calculator" plugin v1.1.0 exhibits a generally strong security posture with no known vulnerabilities and a clean vulnerability history. The static analysis reveals a limited attack surface, with only one shortcode entry point and no unprotected AJAX handlers, REST API routes, or cron events. The code demonstrates good practices in database interaction, using prepared statements exclusively for all SQL queries, and avoids dangerous functions and file operations. However, a significant concern arises from the output escaping, with only 29% of outputs being properly escaped. This indicates a potential risk of Cross-Site Scripting (XSS) vulnerabilities, especially if user-supplied data is displayed without proper sanitization. The lack of nonce checks and capability checks on the identified entry point is also a weakness, as it could allow unauthorized actions if the shortcode handles sensitive operations.

Key Concerns

  • Low percentage of properly escaped output
  • Missing nonce checks on entry points
  • Missing capability checks on entry points
Vulnerabilities
None known

CC Mortgage Calculator Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

CC Mortgage Calculator Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
53
22 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

29% escaped75 total outputs
Attack Surface

CC Mortgage Calculator Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[cc-mortgage] cc-mortgage.php:182
WordPress Hooks 3
actionwidgets_initcc-mortgage.php:150
actionwp_enqueue_scriptscc-mortgage.php:160
actionadmin_enqueue_scriptscc-mortgage.php:169
Maintenance & Trust

CC Mortgage Calculator Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedNov 14, 2025
PHP min version
Downloads7K

Community Trust

Rating60/100
Number of ratings2
Active installs100
Developer Profile

CC Mortgage Calculator Developer Profile

CC

7 plugins · 1K total installs

88
trust score
Avg Security Score
100/100
Avg Patch Time
33 days
View full developer profile
Detection Fingerprints

How We Detect CC Mortgage Calculator

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/cc-mortgage-calculator/cc-mortgage.css/wp-content/plugins/cc-mortgage-calculator/cc-mortgage.js/wp-content/plugins/cc-mortgage-calculator/cc-mortgage-admin.js
Script Paths
/wp-content/plugins/cc-mortgage-calculator/cc-mortgage.js
Version Parameters
cc-mortgage-calculator/cc-mortgage.css?ver=1.1.0cc-mortgage-calculator/cc-mortgage.js?ver=1.1.0

HTML / DOM Fingerprints

CSS Classes
cc-color-field
Data Attributes
data-iddata-titledata-currency_symboldata-dev_creditdata-bg_colordata-border_color+1 more
JS Globals
cc_mortgage_widget_options
Shortcode Output
[cc_mortgage_calculator]
FAQ

Frequently Asked Questions about CC Mortgage Calculator