Restaurant Menu Manager Security & Risk Analysis

wordpress.org/plugins/restaurant-menu-manager

Create restaurant menu in WordPress, group different menu items, display them in a list or jQuery accordion or tabs.

100 active installs v1.0.5 PHP + WP 3.0.1+ Updated May 10, 2016
cafe-menufoodrestaurantrestaurant-menu
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Restaurant Menu Manager Safe to Use in 2026?

Generally Safe

Score 85/100

Restaurant Menu Manager has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 9yr ago
Risk Assessment

Based on the static analysis and vulnerability history, the 'restaurant-menu-manager' v1.0.5 plugin exhibits a generally good security posture. The absence of known CVEs and critical vulnerabilities in its history is a significant strength, suggesting a mature and well-maintained codebase. The code analysis shows no dangerous functions, all SQL queries use prepared statements, and there are no file operations or external HTTP requests, which are all positive indicators. Furthermore, the presence of nonce and capability checks on its single entry point (shortcode) and no taint analysis findings are encouraging.

However, a notable concern arises from the output escaping. With 13 total outputs and only 31% properly escaped, there's a substantial risk of Cross-Site Scripting (XSS) vulnerabilities. This means that user-supplied data, if not handled carefully within the plugin's output mechanisms, could be injected and executed in a user's browser. While the attack surface is small and protected, this lack of robust output escaping is the primary weakness and presents a tangible risk to users of the plugin.

In conclusion, 'restaurant-menu-manager' v1.0.5 benefits from a clean history and secure handling of database operations and entry points. The primary area for improvement and a significant risk factor is the insufficient output escaping, which could lead to XSS vulnerabilities. Addressing this would significantly strengthen the plugin's overall security.

Key Concerns

  • Insufficient output escaping (31%)
Vulnerabilities
None known

Restaurant Menu Manager Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Restaurant Menu Manager Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
9
4 escaped
Nonce Checks
1
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

31% escaped13 total outputs
Attack Surface

Restaurant Menu Manager Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[rm-menu] restaurant-menu.php:549
WordPress Hooks 14
actionplugins_loadedrestaurant-menu.php:22
actioninitrestaurant-menu.php:75
actioninitrestaurant-menu.php:112
actioninitrestaurant-menu.php:150
actionload-post.phprestaurant-menu.php:159
actionload-post-new.phprestaurant-menu.php:160
actionadd_meta_boxesrestaurant-menu.php:163
actionsave_postrestaurant-menu.php:164
actionadmin_menurestaurant-menu.php:234
actionadmin_headrestaurant-menu.php:239
filterexcerpt_morerestaurant-menu.php:320
filterexcerpt_morerestaurant-menu.php:402
filterexcerpt_morerestaurant-menu.php:508
filterthe_contentrestaurant-menu.php:556
Maintenance & Trust

Restaurant Menu Manager Maintenance & Trust

Maintenance Signals

WordPress version tested4.5.33
Last updatedMay 10, 2016
PHP min version
Downloads17K

Community Trust

Rating96/100
Number of ratings4
Active installs100
Developer Profile

Restaurant Menu Manager Developer Profile

Noumaan Yaqoob

2 plugins · 110 total installs

89
trust score
Avg Security Score
93/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Restaurant Menu Manager

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/restaurant-menu-manager/css/style.css/wp-content/plugins/restaurant-menu-manager/js/script.js
Script Paths
/wp-content/plugins/restaurant-menu-manager/js/script.js
Version Parameters
restaurant-menu-manager/css/style.css?ver=restaurant-menu-manager/js/script.js?ver=

HTML / DOM Fingerprints

Data Attributes
id="rm-menu-entry-price"name="rm-menu-entry-price"
FAQ

Frequently Asked Questions about Restaurant Menu Manager