
fitness calculators Security & Risk Analysis
wordpress.org/plugins/fitness-calculatorsPlugin for calculating Water intake, BMI calculator, protein Intake for the fitness freaks.
Is fitness calculators Safe to Use in 2026?
Generally Safe
Score 99/100fitness calculators has a strong security track record. Known vulnerabilities have been patched promptly.
The "fitness-calculators" plugin v2.1.10 presents a mixed security posture. On the positive side, the plugin demonstrates good practices by not utilizing dangerous functions, performing all SQL queries using prepared statements, and implementing nonce checks on all its entry points. It also has no file operations or external HTTP requests, which are generally good security indicators.
However, a significant concern arises from the low percentage of properly escaped output (28%), indicating a potential for Cross-Site Scripting (XSS) vulnerabilities. While taint analysis shows no identified flows with unsanitized paths in this specific static analysis, the history of two medium-severity XSS vulnerabilities, with the last one being relatively recent (August 2023), strongly suggests that the identified output escaping issues could indeed be exploited. The absence of capability checks on its five shortcodes, while protected by nonces, could also be a concern depending on the functionality of these shortcodes.
Overall, the plugin has strengths in its handling of SQL and basic security checks. Nonetheless, the prevalent lack of output escaping combined with its vulnerability history points to a substantial risk of XSS. It is crucial to address the output escaping issues to mitigate this risk, especially given the plugin's past vulnerability patterns.
Key Concerns
- Significant unescaped output detected
- History of 2 medium XSS vulnerabilities
- No capability checks on shortcodes
fitness calculators Security Vulnerabilities
CVEs by Year
Severity Breakdown
2 total CVEs
Fitness calculators plugin <= 2.0.8 - Authenticated (Administrator+) Stored Cross-Site Scripting via admin settings
Fitness Calculators <= 1.9.5 - Cross-Site Request Forgery to Stored Cross-Site Scripting
fitness calculators Code Analysis
Output Escaping
fitness calculators Attack Surface
Shortcodes 5
WordPress Hooks 4
Maintenance & Trust
fitness calculators Maintenance & Trust
Maintenance Signals
Community Trust
fitness calculators Alternatives
fitnessbliss calculators plugin
fitnessbliss-calculators
Plugin for calculating Water intake, BMI calculator, protein Intake for the fitness freaks.
Human BMI Calculator
human-bmi-calculator
Human BMI (Body Mass Index) Calculator will help you to check your current BMI for your height and weight.
CC BMI Calculator
cc-bmi-calculator
Add a free simple customizable BMI Calculator to your web site.
Calculate BMR and BMI
calculate-bmr
Enhance your site with our plugin, easily integrating BMR/BMI calculators into your Pages/Posts
BMI Calculator by Calculator.iO
ci-bmi-calculator
The free Body Mass Index calculator, also known as BMI, computes and classifies BMI for children and adults using data obtained from WHO and CDC.
fitness calculators Developer Profile
1 plugin · 700 total installs
How We Detect fitness calculators
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/fitness-calculators/wp-color-picker-script.js/wp-content/plugins/fitness-calculators/css/admin-style.css/wp-content/plugins/fitness-calculators/css/water-intake-calculator.css/wp-content/plugins/fitness-calculators/css/bmi-calculator.css/wp-content/plugins/fitness-calculators/css/protien-intake-calculator.css/wp-content/plugins/fitness-calculators/css/body-fat-calculator.css/wp-content/plugins/fitness-calculators/css/carb-calculator.css/wp-content/plugins/fitness-calculators/js/water-intake-calculator.js+5 more/wp-content/plugins/fitness-calculators/wp-color-picker-script.js/wp-content/plugins/fitness-calculators/js/general.jsfitness-calculators/css/admin-style.css?ver=fitness-calculators/css/water-intake-calculator.css?ver=fitness-calculators/css/bmi-calculator.css?ver=fitness-calculators/css/protien-intake-calculator.css?ver=fitness-calculators/css/body-fat-calculator.css?ver=fitness-calculators/css/carb-calculator.css?ver=fitness-calculators/js/water-intake-calculator.js?ver=fitness-calculators/js/bmi-calculator.js?ver=fitness-calculators/js/protien-intake-calculator.js?ver=fitness-calculators/js/body-fat-calculator.js?ver=fitness-calculators/js/carb-calculator.js?ver=fitness-calculators/js/general.js?ver=fitness-calculators/wp-color-picker-script.js?ver=HTML / DOM Fingerprints
card-fcpfcp-admin-menufcp-water-intake-calculatorfcp-bmi-calculatorfcp-protein-calculatorfcp-body-fat-calculatorfcp-carb-calculatordata-fcp-typefcp_general_scripts[fcp-water-intake-calculator][fcp-bmi-calculator][fcp-protein-calculator][fcp-body-fat-calculator]