Cost Calculator by AZEXO Security & Risk Analysis

wordpress.org/plugins/cost-calculator-by-azexo

Frontend drag & drop form builder for layouts any complexity.

20 active installs v1.27.20 PHP + WP 4.4+ Updated May 20, 2019
calculatorcostcost-calculatorestimatorprice
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Cost Calculator by AZEXO Safe to Use in 2026?

Generally Safe

Score 85/100

Cost Calculator by AZEXO has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6yr ago
Risk Assessment

The plugin "cost-calculator-by-azexo" v1.27.20 exhibits a strong security posture based on the provided static analysis and vulnerability history. The absence of AJAX handlers, REST API routes, shortcodes, and cron events significantly limits the attack surface. Furthermore, the code signals indicate good development practices, with no dangerous functions identified, all SQL queries utilizing prepared statements, and a high percentage of output properly escaped. The lack of file operations and external HTTP requests further reduces potential exposure. The vulnerability history is also clean, with no recorded CVEs, suggesting a commitment to security by the developers or a lack of previously discovered vulnerabilities.

While the static analysis reveals an excellent baseline, the absence of nonce checks and capability checks is a notable concern. Although the attack surface is currently zero, any future introduction of entry points without these fundamental security measures could lead to vulnerabilities. The taint analysis showing zero flows with unsanitized paths is positive, but this is in conjunction with zero flows analyzed overall, meaning it's not a confirmation of no issues, but rather no issues found within the scope of the analysis.

In conclusion, the plugin appears to be well-secured with current data. The developers have implemented good practices regarding SQL and output escaping. However, the omission of nonce and capability checks on potential future entry points, alongside the limited scope of the taint analysis, represents areas for vigilance. The perfect vulnerability history is a strong indicator of a secure plugin to date.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
  • Taint analysis scope limited
Vulnerabilities
None known

Cost Calculator by AZEXO Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Cost Calculator by AZEXO Release Timeline

No version history available.
Code Analysis
Analyzed Mar 16, 2026

Cost Calculator by AZEXO Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
6 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

86% escaped7 total outputs
Attack Surface

Cost Calculator by AZEXO Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 11
actionplugins_loadedazh_forms.php:34
actionadmin_noticesazh_forms.php:40
filterazh_directoryazh_forms.php:49
actionadmin_enqueue_scriptsazh_forms.php:56
actionwp_enqueue_scriptsazh_forms.php:66
filterazh_get_objectazh_forms.php:79
filterazh_get_frontend_objectazh_forms.php:96
actioninitazh_forms.php:109
filterdefault_hidden_meta_boxesazh_forms.php:140
filterazh_process_formazh_forms.php:151
actionadmin_initsettings.php:3
Maintenance & Trust

Cost Calculator by AZEXO Maintenance & Trust

Maintenance Signals

WordPress version tested4.9.29
Last updatedMay 20, 2019
PHP min version
Downloads3K

Community Trust

Rating0/100
Number of ratings0
Active installs20
Developer Profile

Cost Calculator by AZEXO Developer Profile

azexo

12 plugins · 150 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Cost Calculator by AZEXO

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/cost-calculator-by-azexo/css/admin-frontend.css/wp-content/plugins/cost-calculator-by-azexo/js/admin-frontend.js/wp-content/plugins/cost-calculator-by-azexo/frontend-customization-options.js/wp-content/plugins/cost-calculator-by-azexo/js/numeral.js/wp-content/plugins/cost-calculator-by-azexo/js/frontend.js/wp-content/plugins/cost-calculator-by-azexo/css/frontend.css
Script Paths
/wp-content/plugins/cost-calculator-by-azexo/js/admin-frontend.js/wp-content/plugins/cost-calculator-by-azexo/frontend-customization-options.js/wp-content/plugins/cost-calculator-by-azexo/js/numeral.js/wp-content/plugins/cost-calculator-by-azexo/js/frontend.js
Version Parameters
cost-calculator-by-azexo/css/admin-frontend.css?ver=cost-calculator-by-azexo/js/admin-frontend.js?ver=cost-calculator-by-azexo/frontend-customization-options.js?ver=cost-calculator-by-azexo/js/numeral.js?ver=cost-calculator-by-azexo/js/frontend.js?ver=cost-calculator-by-azexo/css/frontend.css?ver=

HTML / DOM Fingerprints

CSS Classes
azh-form-wrapperazh-form-titleazh-form-fieldsazh-form-rowazh-form-fieldazh-form-labelazh-form-inputazh-form-button+1 more
Data Attributes
data-azf-field-typedata-azf-form-iddata-azf-input-name
JS Globals
azf_frontend_objectazh_frontend_object
Shortcode Output
[azh_form[azf_form
FAQ

Frequently Asked Questions about Cost Calculator by AZEXO