Nutritional Value Facts Table Security & Risk Analysis

wordpress.org/plugins/nutritional-value-facts-table

With This Plugin We Can Add The Nutritional Information Of Foods. We Can Add Calories, Carbs, Fats, Protein, Vitamins, Minerals and Omega 3 Omega 6 Ratio. We can write about the benefits of that particular food. This is the most complete nutritional facts label on the plugin market for Wordpress.

10 active installs v1.0.1 PHP + WP 3.0.1+ Updated Jun 16, 2017
foodhealthnutritionreciperestaurant
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Nutritional Value Facts Table Safe to Use in 2026?

Generally Safe

Score 85/100

Nutritional Value Facts Table has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8yr ago
Risk Assessment

The plugin "nutritional-value-facts-table" v1.0.1 demonstrates a generally good security posture based on the provided static analysis. The absence of any identified attack surface points, including AJAX handlers, REST API routes, shortcodes, or cron events, significantly limits potential entry vectors for attackers. Furthermore, the code analysis indicates no dangerous functions used, all SQL queries are properly prepared, and there are no external HTTP requests or taint analysis findings, all of which are strong indicators of secure coding practices.

However, there are a couple of areas that warrant attention. The 50% rate of unescaped output is a notable concern. While not a critical vulnerability in isolation, unescaped output can lead to Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is not properly sanitized before being displayed to other users. Additionally, the presence of a file operation without further context, combined with a complete lack of nonce checks and capability checks, suggests a potential weakness if that file operation interacts with user input or sensitive data without proper authorization or integrity checks.

The plugin's vulnerability history is remarkably clean, with zero recorded CVEs. This indicates a stable and likely well-maintained codebase, which is a positive sign. However, the lack of recorded vulnerabilities does not automatically equate to absolute security, especially given the identified output escaping issue. The overall conclusion is that the plugin has a strong foundation due to its limited attack surface and secure handling of database queries, but the unescaped output and potential for insecure file operations require review to mitigate the risk of XSS and other injection-related vulnerabilities.

Key Concerns

  • 50% of output not properly escaped
  • File operations present without nonce/capability checks
Vulnerabilities
None known

Nutritional Value Facts Table Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Nutritional Value Facts Table Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
30
30 escaped
Nonce Checks
0
Capability Checks
0
File Operations
1
External Requests
0
Bundled Libraries
0

Output Escaping

50% escaped60 total outputs
Attack Surface

Nutritional Value Facts Table Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 9
actionadd_meta_boxes_nutritional_valueincludes\admin\init.php:9
actionadmin_enqueue_scriptsincludes\admin\init.php:10
filtermanage_edit-nutritional_value_columnsincludes\admin\init.php:11
actionmanage_nutritional_value_posts_custom_columnincludes\admin\init.php:12
actioninitindex.php:35
actionadmin_initindex.php:36
actionsave_post_nutritional_valueindex.php:37
filterthe_contentindex.php:38
actionwp_enqueue_scriptsindex.php:39
Maintenance & Trust

Nutritional Value Facts Table Maintenance & Trust

Maintenance Signals

WordPress version tested4.8.0
Last updatedJun 16, 2017
PHP min version
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Nutritional Value Facts Table Developer Profile

djenciduquene

2 plugins · 20 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Nutritional Value Facts Table

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/nutritional-value-facts-table/styles/style.css/wp-content/plugins/nutritional-value-facts-table/assets/js/main.js/wp-content/plugins/nutritional-value-facts-table/assets/css/bootstrap.css
Script Paths
/wp-content/plugins/nutritional-value-facts-table/assets/js/main.js
Version Parameters
nutritional-value-facts-table/styles/style.css?ver=nutritional-value-facts-table/assets/js/main.js?ver=nutritional-value-facts-table/assets/css/bootstrap.css?ver=

HTML / DOM Fingerprints

CSS Classes
form-group
Data Attributes
name='nvft_inputFoodname'name='nvft_inputCategory'name='nvft_inputAmount'name='nvft_inputCalories'name='nvft_inputCarbohydrates'name='nvft_inputSugars'+7 more
FAQ

Frequently Asked Questions about Nutritional Value Facts Table