FoodSager Save Plugin Security & Risk Analysis

wordpress.org/plugins/foodsager-save

FoodSager's plugin saves a link to your post in FoodSager's social network.

0 active installs v1.3 PHP 5.2.4+ WP 4.6+ Updated Apr 21, 2018
foodies-blogfoodsagerrecipes
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is FoodSager Save Plugin Safe to Use in 2026?

Generally Safe

Score 85/100

FoodSager Save Plugin has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8yr ago
Risk Assessment

The "foodsager-save" v1.3 plugin exhibits a mixed security posture. On the positive side, there are no identified vulnerabilities in its history, suggesting a history of stable and potentially secure development. The plugin also avoids dangerous functions, raw SQL queries, file operations, and external HTTP requests, all of which are good practices. However, significant concerns arise from the static analysis. The complete lack of output escaping is a major security risk, as it indicates that any data processed by the plugin could be rendered directly in the browser, opening the door to Cross-Site Scripting (XSS) vulnerabilities. Furthermore, the absence of nonce and capability checks on its entry points, despite having a small attack surface (two shortcodes), means that any authenticated user could potentially trigger these functions without proper authorization or validation, leading to unintended actions.

Key Concerns

  • 0% output escaping
  • 0 nonce checks
  • 0 capability checks
Vulnerabilities
None known

FoodSager Save Plugin Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

FoodSager Save Plugin Release Timeline

v1.3Current
v1.2
v1.1
v1.0
Code Analysis
Analyzed Apr 16, 2026

FoodSager Save Plugin Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
4
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped4 total outputs
Attack Surface

FoodSager Save Plugin Attack Surface

Entry Points2
Unprotected0

Shortcodes 2

[foodsager_import_button] foodsagersave.php:132
[foodsager_import_button] trunk/foodsagersave.php:132
WordPress Hooks 6
actionloop_startfoodsagersave.php:134
actionthe_postfoodsagersave.php:136
actionwp_footerfoodsagersave.php:138
actionloop_starttrunk/foodsagersave.php:134
actionthe_posttrunk/foodsagersave.php:136
actionwp_footertrunk/foodsagersave.php:138
Maintenance & Trust

FoodSager Save Plugin Maintenance & Trust

Maintenance Signals

WordPress version tested4.9.29
Last updatedApr 21, 2018
PHP min version5.2.4
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

FoodSager Save Plugin Developer Profile

sagiforbes

1 plugin · 0 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect FoodSager Save Plugin

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/foodsager-save/foodsager-save.css/wp-content/plugins/foodsager-save/foodsager-save.js
Script Paths
/wp-content/plugins/foodsager-save/foodsager-save.js
Version Parameters
foodsager-save/foodsager-save.css?ver=foodsager-save/foodsager-save.js?ver=

HTML / DOM Fingerprints

CSS Classes
foodsagersave-image
FAQ

Frequently Asked Questions about FoodSager Save Plugin