ExcelTable for Elementor Security & Risk Analysis

wordpress.org/plugins/excel-to-elementor

An Elementor widget to display an Excel spreadsheet file.

50 active installs v1.0.7 PHP 8.1+ WP 6.4+ Updated Nov 11, 2025
elementorexcelspreadsheettable
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is ExcelTable for Elementor Safe to Use in 2026?

Generally Safe

Score 100/100

ExcelTable for Elementor has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4mo ago
Risk Assessment

The "excel-to-elementor" plugin, version 1.0.7, exhibits a strong security posture based on the provided static analysis. The absence of identified attack surface points like AJAX handlers, REST API routes, shortcodes, and cron events is a significant strength, indicating that the plugin has been designed with minimal exposure to external manipulation. Furthermore, the code analysis shows no dangerous functions, file operations, or external HTTP requests, and SQL queries are exclusively handled using prepared statements. This points to a generally secure coding practice.

However, there are areas for concern. While the total number of output points is moderate, a significant portion (37%) remain unescaped. This could lead to Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is directly included in these outputs without proper sanitization. The lack of any recorded vulnerability history is a positive sign, suggesting the plugin has been stable in terms of security. The absence of taint analysis results is also noteworthy; while it could mean no vulnerabilities were found, it might also indicate that the analysis was incomplete or that certain dynamic code paths were not thoroughly examined. Overall, the plugin is commendably secure in its core design and reliance on prepared statements, but the unescaped output represents a clear and actionable risk that needs immediate attention.

Key Concerns

  • Unescaped output found
Vulnerabilities
None known

ExcelTable for Elementor Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

ExcelTable for Elementor Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
10
17 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

63% escaped27 total outputs
Attack Surface

ExcelTable for Elementor Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 3
actionelementor/widgets/registerexcel-to-elementor.php:51
filterquery_varsexcel-to-elementor.php:64
actionadmin_enqueue_scriptsexcel-to-elementor.php:74
Maintenance & Trust

ExcelTable for Elementor Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedNov 11, 2025
PHP min version8.1
Downloads531

Community Trust

Rating0/100
Number of ratings0
Active installs50
Developer Profile

ExcelTable for Elementor Developer Profile

sightfactory

8 plugins · 190 total installs

93
trust score
Avg Security Score
98/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect ExcelTable for Elementor

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/excel-to-elementor/widget.css
Version Parameters
excel-to-elementor/widget.css?ver=

HTML / DOM Fingerprints

CSS Classes
vwpte-widget-icon
Data Attributes
data-elementor-device-mode
FAQ

Frequently Asked Questions about ExcelTable for Elementor