Plutus Recipe Pro Security & Risk Analysis

wordpress.org/plugins/plutus-recipe-pro

Plutus Recipe Pro plugin is a user friendly plugin for adding recipes to any of your posts and pages. Beautiful SEO friendly recipes, print versions, …

0 active installs v1.0 PHP 5.4+ WP 4.4+ Updated Jun 12, 2019
cookingfoodingredientsreciperecipes
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Plutus Recipe Pro Safe to Use in 2026?

Generally Safe

Score 85/100

Plutus Recipe Pro has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6yr ago
Risk Assessment

The "plutus-recipe-pro" v1.0 plugin exhibits a generally positive security posture based on the provided static analysis. The absence of dangerous functions, SQL queries without prepared statements, file operations, and external HTTP requests are strong indicators of secure coding practices. The taint analysis showing zero flows with unsanitized paths further reinforces this. However, there are areas for concern. The 77% output escaping rate, while not critically low, means that approximately 23% of outputs are not properly escaped, posing a potential risk of cross-site scripting (XSS) vulnerabilities if user-supplied data is involved in those unescaped outputs. Additionally, the plugin lacks nonce checks entirely, which is a critical security measure for protecting against cross-site request forgery (CSRF) attacks on its entry points, particularly the two shortcodes. The complete absence of recorded vulnerabilities is a positive historical signal, suggesting the developers have a good track record or the plugin has not been extensively targeted, but this should not be a substitute for robust security measures in the current version. In conclusion, while the plugin demonstrates a good foundation of secure coding, the unescaped outputs and missing nonce checks represent significant security weaknesses that require attention.

Key Concerns

  • Missing nonce checks on entry points
  • Unescaped output (approx. 23%)
Vulnerabilities
None known

Plutus Recipe Pro Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Plutus Recipe Pro Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
40
136 escaped
Nonce Checks
0
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

77% escaped176 total outputs
Attack Surface

Plutus Recipe Pro Attack Surface

Entry Points2
Unprotected0

Shortcodes 2

[plutus_recipe_index] inc\class-plutus-recipe-index-sc.php:199
[plutus_recipe] inc\class-plutus-recipe-pro-sc.php:109
WordPress Hooks 31
actioninitinc\class-plutus-recipe-pro.php:64
actionplugins_loadedinc\class-plutus-recipe-pro.php:65
actionadmin_noticesinc\class-plutus-recipe-pro.php:102
actionwp_enqueue_scriptsinc\class-plutus-recipe-pro.php:129
filtertiny_mce_versioninc\mce.php:12
actioninitinc\mce.php:14
filtermce_external_pluginsinc\mce.php:22
filtermce_buttonsinc\mce.php:23
filtermce_buttons_2inc\mce.php:50
actionload-post.phpinc\meta-box\class-plutus-add-metabox.php:29
actionload-post-new.phpinc\meta-box\class-plutus-add-metabox.php:30
actionadd_meta_boxesinc\meta-box\class-plutus-add-metabox.php:38
actionsave_postinc\meta-box\class-plutus-add-metabox.php:39
actioninitinc\meta-box\class-plutus-metabox.php:21
actionadmin_enqueue_scriptsinc\meta-box\class-plutus-metabox.php:23
filterplutus_meta_boxesinc\meta-box\register-recipe-data.php:9
actionwp_headinc\plutus-customizer-css.php:7
actioncustomize_registerinc\plutus-customizer.php:327
actionplutus_recipe_shortcode/before_summaryinc\plutus-template-hooks.php:11
actionplutus_recipe_shortcode/entry_summaryinc\plutus-template-hooks.php:22
actionplutus_recipe_shortcode/entry_summaryinc\plutus-template-hooks.php:23
actionplutus_recipe_shortcode/entry_summaryinc\plutus-template-hooks.php:24
actionplutus_recipe_shortcode/entry_summaryinc\plutus-template-hooks.php:25
actionplutus_recipe_shortcode/entry_contentinc\plutus-template-hooks.php:36
actionplutus_recipe_shortcode/entry_contentinc\plutus-template-hooks.php:37
actionplutus_recipe_shortcode/entry_contentinc\plutus-template-hooks.php:38
actionplutus_recipe_shortcode/entry_contentinc\plutus-template-hooks.php:39
actionelementor/widgets/widgets_registeredpage-builder\elementor.php:12
actionelementor/controls/controls_registeredpage-builder\elementor.php:13
actioninitpage-builder\gutenberg.php:6
actionvc_before_initpage-builder\js-composer.php:10
Maintenance & Trust

Plutus Recipe Pro Maintenance & Trust

Maintenance Signals

WordPress version tested5.2.24
Last updatedJun 12, 2019
PHP min version5.4
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Plutus Recipe Pro Developer Profile

PlutusDesign

1 plugin · 0 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Plutus Recipe Pro

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/plutus-recipe-pro/css/magnific-popup.css/wp-content/plugins/plutus-recipe-pro/css/owl.carousel.css/wp-content/plugins/plutus-recipe-pro/css/plutus-recipe-pro.css/wp-content/plugins/plutus-recipe-pro/css/twentysixteen.css/wp-content/plugins/plutus-recipe-pro/css/twentyseventeen.css/wp-content/plugins/plutus-recipe-pro/js/jquery.zoom.min.js/wp-content/plugins/plutus-recipe-pro/js/jquery.magnific-popup.min.js/wp-content/plugins/plutus-recipe-pro/js/owl.carousel.min.js+2 more
Script Paths
/wp-content/plugins/plutus-recipe-pro/js/script.js
Version Parameters
plutus-recipe-pro/css/plutus-recipe-pro.css?ver=plutus-recipe-pro/css/twentysixteen.css?ver=plutus-recipe-pro/css/twentyseventeen.css?ver=plutus-recipe-pro/js/script.js?ver=

HTML / DOM Fingerprints

CSS Classes
plutus-recipe-proplutus-recipe-twentysixteenplutus-recipe-twentyseventeen
Data Attributes
data-noncedata-ajaxUrl
JS Globals
PlutusObj
FAQ

Frequently Asked Questions about Plutus Recipe Pro