
Elegance Menu Security & Risk Analysis
wordpress.org/plugins/elegance-menuElegant Menu plugin designed to display for a variety of businesses, including restaurants, cafes, fast food outlets, coffee houses, salons, and more.
Is Elegance Menu Safe to Use in 2026?
Generally Safe
Score 97/100Elegance Menu has a strong security track record. Known vulnerabilities have been patched promptly.
The elegance-menu plugin v1.9.1 demonstrates a generally strong security posture based on static analysis. A notable strength is the complete absence of dangerous functions and external HTTP requests, coupled with a very high percentage of properly escaped output. The plugin also correctly implements nonce and capability checks for the identified entry points, indicating good adherence to WordPress security best practices.
However, the presence of one past high-severity vulnerability, specifically 'PHP Remote File Inclusion', even though currently patched, is a significant concern. This type of vulnerability, especially when it historically existed, suggests potential weaknesses in how the plugin handles file operations or user input that could lead to code execution if not rigorously secured. While the current analysis shows no exploitable taint flows or unescaped outputs that would directly lead to this, the past history warrants caution.
In conclusion, the plugin is well-implemented from a current code perspective with minimal obvious static risks. The primary area of concern stems from its historical vulnerability, highlighting the importance of ongoing vigilance and ensuring that future updates do not reintroduce similar flaws. The low attack surface and good implementation of core security checks are positive, but the past 'PHP Remote File Inclusion' vulnerability necessitates a degree of caution.
Key Concerns
- Past high severity vulnerability (PHP RFI)
Elegance Menu Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Elegance Menu <= 1.9 - Authenticated (Contributor+) Local File Inclusion
Elegance Menu Code Analysis
Output Escaping
Elegance Menu Attack Surface
Shortcodes 1
WordPress Hooks 24
Maintenance & Trust
Elegance Menu Maintenance & Trust
Maintenance Signals
Community Trust
Elegance Menu Alternatives
Restaurant Menu and Food Ordering
mp-restaurant-menu
Create and maintain modern online menus for almost any kind of restaurant. Sell food and beverages online. All in one plugin.
MenuMaster – Interactive Mobile-First Restaurant Menu Plugin for WooCommerce
menumaster-restaurant-menu
Create mobile-friendly restaurant menus that are easy for customers to access by scanning a QR code. Custom tags and filters make navigation simple, h …
Menukaart – Restaurant Menu & Online Ordering with WooCommerce
menukaart
An easy WordPress restaurant plugin for online food ordering with WooCommerce.
Restaurant Menu – Food Ordering System – Table Reservation
menu-ordering-reservations
Create a restaurant menu and start taking food orders online, with no commissions or costs. Table reservations are also available for free.
Orderable – WordPress Restaurant Online Ordering System and Food Ordering Plugin
orderable
Take your restaurant/food business online with the online ordering system plugin for WordPress, Orderable.
Elegance Menu Developer Profile
1 plugin · 70 total installs
How We Detect Elegance Menu
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/elegance-menu/css/elegance-menu-admin.css/wp-content/plugins/elegance-menu/js/elegance-menu-admin.js/wp-content/plugins/elegance-menu/js/elegance-menu-admin.jselegance-menu-admin.css?ver=elegance-menu-admin.js?ver=HTML / DOM Fingerprints
postboxem-shortcode-generatorem-shortcode-generator-titleem-shortcode-generator-formem-select-field-wrapperem-color-field-wrapperem-color-picker-wrapperem-color-picker+2 moredata-shortcode-iddata-post-iddata-option-namedata-option-valuedata-shortcode-optiondata-colorelegance_menu_admin_object[elegance-menu id= layout= category= name=