
Shortcode for My Mitsu Estimation Form Security & Risk Analysis
wordpress.org/plugins/shortcode-for-my-mitsu-estimation-formThis plugin allows users to put a My Mitsu estimation form in your website.
Is Shortcode for My Mitsu Estimation Form Safe to Use in 2026?
Generally Safe
Score 85/100Shortcode for My Mitsu Estimation Form has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "shortcode-for-my-mitsu-estimation-form" plugin version 1.3 exhibits a strong security posture based on the provided static analysis. The absence of dangerous functions, proper use of prepared statements for all SQL queries, and complete output escaping are excellent indicators of secure coding practices. The limited attack surface, consisting of a single shortcode with a capability check, further reduces the potential for exploits. The plugin also has no recorded vulnerabilities, which suggests a history of secure development or diligent maintenance.
However, the lack of nonce checks is a notable concern. While the static analysis reports no unsanitized taint flows and all outputs are escaped, the absence of nonces on the shortcode means that an attacker could potentially trigger the shortcode's functionality repeatedly or in unintended ways without proper validation. This could lead to denial-of-service or other issues depending on the shortcode's specific implementation, though the analysis doesn't indicate any directly exploitable vulnerabilities in this regard. The plugin also has no AJAX handlers or REST API routes, which, while contributing to a small attack surface, also means these potential entry points are not being secured or tested.
Overall, the plugin demonstrates a good foundation in security by avoiding common pitfalls like raw SQL and unescaped output. The primary area for improvement lies in implementing nonce checks to prevent potential abuse of the shortcode functionality. The clean vulnerability history is a positive sign, but it's important to maintain vigilance and continue following secure coding practices.
Key Concerns
- Shortcodes lack nonce checks
Shortcode for My Mitsu Estimation Form Security Vulnerabilities
Shortcode for My Mitsu Estimation Form Code Analysis
Output Escaping
Shortcode for My Mitsu Estimation Form Attack Surface
Shortcodes 1
WordPress Hooks 2
Maintenance & Trust
Shortcode for My Mitsu Estimation Form Maintenance & Trust
Maintenance Signals
Community Trust
Shortcode for My Mitsu Estimation Form Alternatives
Cost Calculator Builder
cost-calculator-builder
WP Cost Calculator is a simple and powerful tool that lets you create price estimation forms. Easily give your clients information about your services …
ConvertCalculator: Build Cost, Price, Quotation, ROI Interactive Calculators
convertcalculator
Easily build calculators for your landing pages and web applications with Convert_'s intuitive calculator builder.
Zigaform – Price Calculator & Cost Estimation Form Builder Lite
zigaform-calculator-cost-estimation-form-builder-lite
Create estimation forms using this powerful drag-and-drop estimation form builder, enabling you to build forms in just a few minutes.
Cost Calculator & Cost Estimation
cost-calculator-cost-estimation
Cost Calculator & Cost Estimation helps you to build any type of estimation forms on a few easy steps.
CalcForm Calculator
calcform-calculator
A scientific calculator (Casio-style) that you can embed anywhere via a shortcode.
Shortcode for My Mitsu Estimation Form Developer Profile
11 plugins · 8K total installs
How We Detect Shortcode for My Mitsu Estimation Form
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
<iframe src="https://my-mitsu.jp/estimation/274" id="mymitsu" width="640" height="480"></iframe><iframe src="https://my-mitsu.jp/estimation/<iframe src="https://my-mitsu.jp/estimation/id="mymitsu"