
Simple Price Calculator Security & Risk Analysis
wordpress.org/plugins/simple-price-calculator-basicSimple Price Calculator is a WordPress plugin that can transform any html based form into a price calculation form. You can
Is Simple Price Calculator Safe to Use in 2026?
Use With Caution
Score 63/100Simple Price Calculator has 1 unpatched vulnerability. Evaluate alternatives or apply available mitigations.
The plugin exhibits a mixed security posture. On the positive side, the static analysis shows no dangerous functions, no raw SQL queries, no file operations, and no external HTTP requests. This indicates a good effort to avoid common web vulnerabilities. However, there are significant concerns regarding output escaping, with only 33% of outputs properly escaped, which could lead to Cross-Site Scripting (XSS) vulnerabilities. Furthermore, the complete absence of nonce checks and capability checks across all entry points, including the single shortcode, is a major weakness, leaving the plugin highly susceptible to Cross-Site Request Forgery (CSRF) attacks. The vulnerability history reveals a past medium-severity vulnerability of "Missing Authorization", which aligns with the current lack of capability checks. The presence of a currently unpatched medium-severity CVE from September 2025 is a critical concern, highlighting an ongoing risk. While some code practices are strong, the lack of authorization and nonce checks, coupled with unpatched vulnerabilities and poor output escaping, present a substantial security risk.
Key Concerns
- Currently unpatched CVE: Medium Severity
- Output escaping: 67% not properly escaped
- Nonce checks: 0 found
- Capability checks: 0 found
- Vulnerability history: Missing Authorization
Simple Price Calculator Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Simple Price Calculator <= 1.3 - Missing Authorization
Simple Price Calculator Release Timeline
Simple Price Calculator Code Analysis
Output Escaping
Simple Price Calculator Attack Surface
Shortcodes 1
WordPress Hooks 8
Maintenance & Trust
Simple Price Calculator Maintenance & Trust
Maintenance Signals
Community Trust
Simple Price Calculator Alternatives
Image Price Calculator
image-price-calculator
Image Price Calculator is a fork from the WordPress plugin Simple Price Calculator, that allows you to create a price calculation form, add images, an …
ConvertCalculator: Build Cost, Price, Quotation, ROI Interactive Calculators
convertcalculator
Easily build calculators for your landing pages and web applications with Convert_'s intuitive calculator builder.
Calculated Fields Form
calculated-fields-form
The CFF plugin allows you to create both simple and professional forms. Its form builder includes dynamic calculated fields and many other controls.
AForms — Form Builder for Price Calculator & Cost Estimation
aforms-form-builder-for-price-calculator-cost-estimation
Form builder for Cost estimation and Custom order.
Flexible Quantity – Measurement Price Calculator for WooCommerce
flexible-quantity-measurement-price-calculator-for-woocommerce
WooCommerce price calculator. Sell products by unit, dimension or volume. Calculate quantity increment and final price for a new unit of measure.
Simple Price Calculator Developer Profile
1 plugin · 40 total installs
How We Detect Simple Price Calculator
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/simple-price-calculator-basic/spcstyle.css/wp-content/plugins/simple-price-calculator-basic/simplepricecalc.min.js/wp-content/plugins/simple-price-calculator-basic/jquery.number.min.jsjquery.number.min.jssimplepricecalc.min.jssimple-price-calculator-basic/spcstyle.css?ver=simple-price-calculator-basic/simplepricecalc.min.js?ver=simple-price-calculator-basic/jquery.number.min.js?ver=HTML / DOM Fingerprints
spcrowspc-admin-panel HTML Code For Form tag generator Functions below available in premium version. Copy this code below and place in editor Admin Panel Functions+6 moredata-spc-idjQuery$[spc-form id=<form id="spcquoteform">