
Nutritional Value Facts Table Security & Risk Analysis
wordpress.org/plugins/nutritional-value-facts-tableWith This Plugin We Can Add The Nutritional Information Of Foods. We Can Add Calories, Carbs, Fats, Protein, Vitamins, Minerals and Omega 3 Omega 6 Ratio. We can write about the benefits of that particular food. This is the most complete nutritional facts label on the plugin market for Wordpress.
Is Nutritional Value Facts Table Safe to Use in 2026?
Generally Safe
Score 85/100Nutritional Value Facts Table has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "nutritional-value-facts-table" v1.0.1 demonstrates a generally good security posture based on the provided static analysis. The absence of any identified attack surface points, including AJAX handlers, REST API routes, shortcodes, or cron events, significantly limits potential entry vectors for attackers. Furthermore, the code analysis indicates no dangerous functions used, all SQL queries are properly prepared, and there are no external HTTP requests or taint analysis findings, all of which are strong indicators of secure coding practices.
However, there are a couple of areas that warrant attention. The 50% rate of unescaped output is a notable concern. While not a critical vulnerability in isolation, unescaped output can lead to Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is not properly sanitized before being displayed to other users. Additionally, the presence of a file operation without further context, combined with a complete lack of nonce checks and capability checks, suggests a potential weakness if that file operation interacts with user input or sensitive data without proper authorization or integrity checks.
The plugin's vulnerability history is remarkably clean, with zero recorded CVEs. This indicates a stable and likely well-maintained codebase, which is a positive sign. However, the lack of recorded vulnerabilities does not automatically equate to absolute security, especially given the identified output escaping issue. The overall conclusion is that the plugin has a strong foundation due to its limited attack surface and secure handling of database queries, but the unescaped output and potential for insecure file operations require review to mitigate the risk of XSS and other injection-related vulnerabilities.
Key Concerns
- 50% of output not properly escaped
- File operations present without nonce/capability checks
Nutritional Value Facts Table Security Vulnerabilities
Nutritional Value Facts Table Code Analysis
Output Escaping
Nutritional Value Facts Table Attack Surface
WordPress Hooks 9
Maintenance & Trust
Nutritional Value Facts Table Maintenance & Trust
Maintenance Signals
Community Trust
Nutritional Value Facts Table Alternatives
Cooked – Recipe Management
cooked
Cooked is the absolute best way to create & display recipes with WordPress. SEO optimized, galleries, timers, and much more.
NutritionWP
nutritionwp
Super easy recipe plugin with nutritional facts. Made by a foodie!
LWN Recipe
lwn-recipe
Add & Display your own recipes easily!
WP Recipe Maker
wp-recipe-maker
The easy and user-friendly recipe plugin for everyone. Automatic JSON-LD metadata for food AND how-to recipes will improve your SEO!
Restaurant Menu – Food Ordering System – Table Reservation
menu-ordering-reservations
Create a restaurant menu and start taking food orders online, with no commissions or costs. Table reservations are also available for free.
Nutritional Value Facts Table Developer Profile
2 plugins · 20 total installs
How We Detect Nutritional Value Facts Table
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/nutritional-value-facts-table/styles/style.css/wp-content/plugins/nutritional-value-facts-table/assets/js/main.js/wp-content/plugins/nutritional-value-facts-table/assets/css/bootstrap.css/wp-content/plugins/nutritional-value-facts-table/assets/js/main.jsnutritional-value-facts-table/styles/style.css?ver=nutritional-value-facts-table/assets/js/main.js?ver=nutritional-value-facts-table/assets/css/bootstrap.css?ver=HTML / DOM Fingerprints
form-groupname='nvft_inputFoodname'name='nvft_inputCategory'name='nvft_inputAmount'name='nvft_inputCalories'name='nvft_inputCarbohydrates'name='nvft_inputSugars'+7 more