
Estatik Mortgage Calculator Security & Risk Analysis
wordpress.org/plugins/estatik-mortgage-calculatorEstatik Mortgage Calculator will allow your website visitors to estimate their mortgage payments. It is great-looking and informative!
Is Estatik Mortgage Calculator Safe to Use in 2026?
Critical Risk — Avoid
Score 29/100Estatik Mortgage Calculator is critically unsafe with 5 known CVEs, 4 still unpatched. Avoid in production.
The 'estatik-mortgage-calculator' plugin v2.0.12 exhibits a mixed security posture. While the static analysis reveals a good adherence to secure coding practices, such as the absence of dangerous functions, file operations, and external HTTP requests, and a high percentage of properly escaped output and prepared SQL statements, significant concerns arise from its vulnerability history. The plugin has a history of 5 known CVEs, with a concerning 4 of them remaining unpatched, including 3 high-severity vulnerabilities. The common vulnerability types, 'PHP Remote File Inclusion' and 'Cross-site Scripting', are particularly serious and can lead to significant compromise. The lack of capability checks on entry points and only one nonce check, despite having two shortcodes as entry points, is a potential weakness. The static analysis, while clean in terms of taint flows and direct vulnerabilities, does not mitigate the risks posed by past unpatched vulnerabilities, suggesting potential for undiscovered issues or a lack of effective patching by the developer.
Key Concerns
- Unpatched High Severity CVEs (3)
- Unpatched Medium Severity CVEs (1)
- Vulnerability History (5 total CVEs)
- Lack of Capability Checks
- Insufficient Nonce Checks (1 total)
Estatik Mortgage Calculator Security Vulnerabilities
CVEs by Year
Severity Breakdown
5 total CVEs
Mortgage Calculator Estatik <= 2.0.12 - Authenticated (Contributor+) Local File Inclusion
Estatik Mortgage Calculator <= 2.0.12 - Authenticated (Contributor+) Local File Inclusion
Estatik Mortgage Calculator <= 2.0.11 - Reflected Cross-Site Scripting
Mortgage Calculator Estatik <= 2.0.11 - Reflected Cross-Site Scripting
WordPress Mortgage Calculator Estatik <= 2.0.11 - Reflected Cross-Site Scripting
Estatik Mortgage Calculator Code Analysis
Output Escaping
Estatik Mortgage Calculator Attack Surface
Shortcodes 2
WordPress Hooks 11
Maintenance & Trust
Estatik Mortgage Calculator Maintenance & Trust
Maintenance Signals
Community Trust
Estatik Mortgage Calculator Alternatives
Responsive Mortgage Calculator
responsive-mortgage-calculator
A simple responsive mortgage calculator widget and shortcode.
Mortgage Calculator
mortgage-calculator
It provides an easy to use mortgage calculator widget.
Mortgage Calculators WP
mortgage-calculators-wp
Mortgage Calculators WP provides users with a simple, elegant and responsive solution for users to calculate mortgage values.
Simple Mortgage Calculator
ct-mortgage-calculator
A straightforward and simple responsive mortgage calculator with a clean flat design.
Property Hive Mortgage Calculator
property-hive-mortgage-calculator
Quickly and easily add a mortgage calculator to your website
Estatik Mortgage Calculator Developer Profile
2 plugins · 11K total installs
How We Detect Estatik Mortgage Calculator
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/estatik-mortgage-calculator/js/calculator.js/wp-content/plugins/estatik-mortgage-calculator/css/calculator.css/wp-content/plugins/estatik-mortgage-calculator/js/calculator.jsestatik-mortgage-calculator/js/calculator.js?ver=estatik-mortgage-calculator/css/calculator.css?ver=HTML / DOM Fingerprints
emc-calculator-widget-formemc-calculator-formemc-calculator-resultdata-currency-symboldata-digits-colordata-coloremc_calculator[es_mortgage_calculator][mortgage_calculator]