
Drug Half-Life Calculator Security & Risk Analysis
wordpress.org/plugins/drugsdb-half-life-calculatorA simple calculator to get the known half-life for medications you're taking.
Is Drug Half-Life Calculator Safe to Use in 2026?
Generally Safe
Score 85/100Drug Half-Life Calculator has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The drugsdb-half-life-calculator plugin, version 1.1, exhibits a mixed security posture. On the positive side, it demonstrates good practices regarding database interactions, with 100% of SQL queries utilizing prepared statements and no file operations or external HTTP requests detected. Furthermore, there is no known vulnerability history, suggesting a generally stable and well-maintained codebase. However, significant concerns arise from the static analysis. The presence of the dangerous `create_function` function three times indicates potential for code injection if user-supplied data can influence its execution. Additionally, only 25% of output is properly escaped, leaving room for cross-site scripting (XSS) vulnerabilities. The lack of nonce checks and capability checks on the single shortcode entry point is a critical oversight, potentially allowing unauthorized execution of plugin functionality. While the attack surface is small (only one shortcode), its lack of robust security checks is concerning. Overall, while the absence of known CVEs and the use of prepared statements are strengths, the identified code signals related to `create_function` and inadequate output escaping, coupled with a lack of input validation on the shortcode, present tangible security risks that require attention.
Key Concerns
- Use of dangerous function create_function
- Insufficient output escaping (75% unescaped)
- Missing nonce checks on entry point
- Missing capability checks on entry point
Drug Half-Life Calculator Security Vulnerabilities
Drug Half-Life Calculator Release Timeline
Drug Half-Life Calculator Code Analysis
Dangerous Functions Found
Output Escaping
Drug Half-Life Calculator Attack Surface
Shortcodes 1
WordPress Hooks 3
Maintenance & Trust
Drug Half-Life Calculator Maintenance & Trust
Maintenance Signals
Community Trust
Drug Half-Life Calculator Alternatives
CC BMI Calculator
cc-bmi-calculator
Add a free simple customizable BMI Calculator to your web site.
Calculator
calculator
Adds a widget that display a simple calculator.
CC Canadian Mortgage Calculator
cc-canadian-mortgage-calculator
Add a free simple customizable Canadian mortgage calculator to your web site.
Elemental Calculator
elemental-calculator
Insert a simple calculator in your WordPress website with a widget or the shortcode [elemental_calculator].
EMI Calculator
os-emi-calculator
Use EMI calculator as shortcode in post content or widget area without editing your theme files
Drug Half-Life Calculator Developer Profile
12 plugins · 12K total installs
How We Detect Drug Half-Life Calculator
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/drugsdb-half-life-calc/drugsdb-half-life-calc-sidebar.js/wp-content/plugins/drugsdb-half-life-calc/drugsdb-half-life-calc-shortcode.jsHTML / DOM Fingerprints
drugsdb-unitsdbdrugs-attributiondrugsdb-result<!-- Title --><!-- attrib --><!--<span id="dbdrugs-attribution" class="dbdrugs-attribution" style="font-size:0.9em;">Find the known half-life for your medication at <a href="http://www.drugsdb.com">Drugsdb.com</a></span>-->drugsdbHide()drugsdbHideSidebar()drugsdbHideShortcode()drugsdbSubmitCustomSidebar()drugsdbSubmitCustomShortcode()<div style="max-width: 300px; border: 1px solid #000; padding: 5px; margin:5 px;">