
Pregnancy Calculator Security & Risk Analysis
wordpress.org/plugins/pregnancy-calculatorThe Pregnancy Calculator can estimate a pregnancy schedule based on the provided due date. An estimated due date provided usually based on a sonogram.
Is Pregnancy Calculator Safe to Use in 2026?
Generally Safe
Score 85/100Pregnancy Calculator has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "pregnancy-calculator" plugin version 3.0.7 exhibits a mixed security posture. On the positive side, it demonstrates good practices regarding database interactions by exclusively using prepared statements for SQL queries and shows no recorded history of vulnerabilities or CVEs, which is a strong indicator of historical security awareness. Furthermore, the absence of external HTTP requests, file operations, and external HTTP requests in the static analysis reduces common attack vectors.
However, significant concerns arise from the lack of output escaping, with 0% of the 20 total outputs being properly escaped. This creates a substantial risk of Cross-Site Scripting (XSS) vulnerabilities, allowing attackers to inject malicious scripts into the website. The absence of nonce checks and capability checks, particularly in conjunction with any potential, albeit currently undiscovered, entry points, is also a weakness that could be exploited if any vulnerabilities are introduced in the future. The plugin also has one shortcode, which represents an entry point, but without capability checks, its execution context is not secured.
In conclusion, while the plugin benefits from a clean vulnerability history and secure database practices, the critical flaw of unescaped output presents a high risk of XSS. The lack of nonces and capability checks further weakens its security, making it susceptible to exploitation if new vulnerabilities are introduced. Addressing the output escaping issue is paramount to improving its security.
Key Concerns
- 0% of outputs properly escaped
- No nonce checks
- No capability checks
Pregnancy Calculator Security Vulnerabilities
Pregnancy Calculator Code Analysis
Output Escaping
Pregnancy Calculator Attack Surface
Shortcodes 1
WordPress Hooks 4
Maintenance & Trust
Pregnancy Calculator Maintenance & Trust
Maintenance Signals
Community Trust
Pregnancy Calculator Alternatives
LMP Pregnancy Calculator
lmp-pregnancy-calculator
The Pregnancy Calculator can estimate a pregnancy schedule based on the provided due date. An estimated due date provided usually based on averages.
Smart Pregnancy Calculator
smart-pregnancy-calculator
Estimate due date and conception date of the baby.
lamoud-Pregnancy-Calculator
lamoud-pregnancy-calculator
lamoud-Pregnancy-Calculator
WP Pregnancy & Ovulation Calculator
ultimate-pregnancy-ovulation-calculator
For health, parenting & family planning websites: the most complete pregnancy and ovulation calculator plugin for WordPress!
Pregnancy Calculator Developer Profile
3 plugins · 400 total installs
How We Detect Pregnancy Calculator
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.