Charts and Graphs for Elementor Security & Risk Analysis

wordpress.org/plugins/charts-and-graphs-for-elementor

Create beautiful, interactive charts with Graphs & Charts

200 active installs v1.2.2 PHP 7.1+ WP 5.0+ Updated May 10, 2021
blockchartselementorelementor-widgetgraphs
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Charts and Graphs for Elementor Safe to Use in 2026?

Generally Safe

Score 85/100

Charts and Graphs for Elementor has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4yr ago
Risk Assessment

The 'charts-and-graphs-for-elementor' plugin version 1.2.2 demonstrates a generally strong security posture based on the provided static analysis. The complete absence of identified CVEs in its history, along with no reported vulnerabilities, is a significant positive indicator. The code analysis reveals a clean slate regarding dangerous functions, raw SQL queries, file operations, and external HTTP requests, all of which are excellent security practices. The fact that all SQL queries use prepared statements further strengthens this assessment.

However, a notable concern arises from the extremely low percentage of properly escaped output (5%). This indicates a high potential for Cross-Site Scripting (XSS) vulnerabilities, as user-supplied data could be directly rendered in the browser without proper sanitization. While the attack surface appears minimal with no direct entry points like AJAX handlers, REST API routes, or shortcodes, the lack of capability checks and nonce checks, even with a limited attack surface, presents a potential weakness if any undocumented entry points or indirect manipulation vectors exist. The absence of taint analysis results could mean the tool was not effective on this codebase, or that no concerning flows were detected.

In conclusion, the plugin excels in preventing common server-side vulnerabilities like SQL injection and malicious file operations. Its vulnerability history is pristine. The primary and most significant weakness is the severely under-escaped output, which poses a substantial XSS risk. The lack of explicit authentication and authorization checks, while seemingly mitigated by a small attack surface, is still a point of caution.

Key Concerns

  • Low percentage of properly escaped output
  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

Charts and Graphs for Elementor Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Charts and Graphs for Elementor Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
54
3 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

5% escaped57 total outputs
Attack Surface

Charts and Graphs for Elementor Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 9
actioninitindex.php:60
actionplugins_loadedindex.php:63
actionadmin_initindex.php:67
actionadmin_initindex.php:69
actionadmin_noticesindex.php:101
actionadmin_noticesindex.php:107
actionadmin_noticesindex.php:113
actionadmin_noticesindex.php:207
actionelementor/widgets/widgets_registeredplugin.php:79
Maintenance & Trust

Charts and Graphs for Elementor Maintenance & Trust

Maintenance Signals

WordPress version tested5.7.15
Last updatedMay 10, 2021
PHP min version7.1
Downloads14K

Community Trust

Rating84/100
Number of ratings9
Active installs200
Developer Profile

Charts and Graphs for Elementor Developer Profile

redlettuce

2 plugins · 210 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Charts and Graphs for Elementor

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/charts-and-graphs-for-elementor/assets/css/elementor-charts-graphs.css/wp-content/plugins/charts-and-graphs-for-elementor/assets/js/chart.min.js/wp-content/plugins/charts-and-graphs-for-elementor/assets/js/charts-graphs.js
Script Paths
elementor-chart-jscharts-graphs-widget
Version Parameters
charts-and-graphs-for-elementor/assets/css/elementor-charts-graphs.css?ver=charts-and-graphs-for-elementor/assets/js/chart.min.js?ver=charts-and-graphs-for-elementor/assets/js/charts-graphs.js?ver=

HTML / DOM Fingerprints

CSS Classes
elementor-charts-graphs-wrapper
Data Attributes
data-chart-typedata-chart-options
JS Globals
ChartelementorChartsGraphs
FAQ

Frequently Asked Questions about Charts and Graphs for Elementor