
Easy Coin Table Security & Risk Analysis
wordpress.org/plugins/easy-coin-tableVirtual currency rankings wordpress plugin
Is Easy Coin Table Safe to Use in 2026?
Generally Safe
Score 85/100Easy Coin Table has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'easy-coin-table' v1.2 plugin presents a mixed security posture. On the positive side, it demonstrates good practices by exclusively using prepared statements for SQL queries and not making external HTTP requests. There are no known historical vulnerabilities (CVEs) associated with this plugin, which is a strong indicator of its past security. Furthermore, the static analysis shows a very small attack surface with no unprotected entry points in terms of AJAX handlers, REST API routes, or cron events.
However, significant concerns arise from the static analysis of the code. The presence of the `create_function` is a critical security risk, as it is highly susceptible to arbitrary code execution if user-supplied data is passed into it. Additionally, the analysis indicates that 100% of the 32 detected outputs are not properly escaped, meaning that reflected Cross-Site Scripting (XSS) vulnerabilities are highly probable. The lack of nonce and capability checks on the single shortcode entry point also leaves it vulnerable to CSRF attacks and unauthorized access to its functionality by unauthenticated or low-privileged users.
Given the absence of historical vulnerabilities, it's possible the plugin authors have been diligent in the past. However, the current code exhibits fundamental security flaws that could be exploited. The reliance on `create_function` and the complete lack of output escaping are particularly alarming and would require immediate attention to secure the plugin.
Key Concerns
- Use of dangerous function: create_function
- 0% properly escaped output across 32 outputs
- Missing nonce checks
- Missing capability checks
Easy Coin Table Security Vulnerabilities
Easy Coin Table Code Analysis
Dangerous Functions Found
Output Escaping
Easy Coin Table Attack Surface
Shortcodes 1
WordPress Hooks 3
Maintenance & Trust
Easy Coin Table Maintenance & Trust
Maintenance Signals
Community Trust
Easy Coin Table Alternatives
Bitcart for WooCommerce
bitcartcc-for-woocommerce
Bitcart is a free and open-source cryptocurrency payment processor which allows you to receive cryptocurrency payments directly, with no fees, transac …
Bitcoin Payments for WP WooCommerce
bitcoin-payments-for-wp-woocommerce
Bitcoin Payments for WooCommerce is a Wordpress plugin that allows to accept bitcoins at WooCommerce-powered online stores.
Top Coin
top-coin
Virtual currency rankings wordpress plugin
Easy Coin Table Developer Profile
1 plugin · 10 total installs
How We Detect Easy Coin Table
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/easy-coin-table/css/ht_style.css/wp-content/plugins/easy-coin-table/js/ht_script.jseasy-coin-table/css/ht_style.css?ver=easy-coin-table/js/ht_script.js?ver=HTML / DOM Fingerprints
ht-inner-tableht-table-coincol-containercol-leftcol-right[cointable num="5"][cointable num="10"]