
Smart Menupad Security & Risk Analysis
wordpress.org/plugins/smart-menupadPlugin to keep your menu at one place and sync to your own wordpress website from smart menupad platform.
Is Smart Menupad Safe to Use in 2026?
Generally Safe
Score 85/100Smart Menupad has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The smart-menupad plugin v1.1.0 exhibits a mixed security posture. On one hand, it demonstrates good practices by properly escaping a high percentage of its output and avoiding the use of dangerous functions. Its vulnerability history is also clean, with no recorded CVEs, which suggests a history of security consciousness or limited exposure to significant vulnerabilities.
However, significant concerns arise from its attack surface and taint analysis. The presence of three AJAX handlers without any authentication checks creates a substantial risk of unauthorized actions. Furthermore, the taint analysis reveals two high-severity flows with unsanitized paths, indicating potential vulnerabilities where malicious input could lead to unintended and harmful consequences. The low percentage of SQL queries using prepared statements also raises concerns about potential SQL injection vulnerabilities.
Overall, while the plugin has strengths in output escaping and a clean vulnerability history, the unprotected AJAX endpoints and high-severity taint flows present critical security weaknesses that require immediate attention. These issues outweigh the positive aspects and indicate a moderate to high risk.
Key Concerns
- AJAX handlers without auth checks
- High severity taint flows with unsanitized paths
- Low percentage of SQL queries using prepared statements
- No nonce checks on AJAX endpoints
Smart Menupad Security Vulnerabilities
Smart Menupad Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Smart Menupad Attack Surface
AJAX Handlers 3
Shortcodes 1
WordPress Hooks 4
Maintenance & Trust
Smart Menupad Maintenance & Trust
Maintenance Signals
Community Trust
Smart Menupad Alternatives
AForms Eats
aforms-eats
An order form builder for restaurants. You can create comfortable order forms and sell your food online.
Restaurant Menu – Food Ordering System – Table Reservation
menu-ordering-reservations
Create a restaurant menu and start taking food orders online, with no commissions or costs. Table reservations are also available for free.
Orderable – WordPress Restaurant Online Ordering System and Food Ordering Plugin
orderable
Take your restaurant/food business online with the online ordering system plugin for WordPress, Orderable.
Food Menu – Restaurant Menu & Online Ordering for WooCommerce
tlp-food-menu
A Simple Food & Restaurant Menu Display Plugin for Restaurant, Cafes, Fast Food, Coffee House with WooCommerce Online Ordering.
Food Store – Online Food Delivery & Pickup
food-store
Food Store is complete online food ordering platform with all your favourite WooCommerce functionalities.
Smart Menupad Developer Profile
1 plugin · 0 total installs
How We Detect Smart Menupad
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/smart-menupad/assets/css/bootstrap.min.css/wp-content/plugins/smart-menupad/assets/css/smp.css/wp-content/plugins/smart-menupad/assets/js/bootstrap.min.js/wp-content/plugins/smart-menupad/assets/js/custom.js/wp-content/plugins/smart-menupad/assets/js/bootstrap.min.js/wp-content/plugins/smart-menupad/assets/js/custom.jssmart-menupad/assets/css/bootstrap.min.css?ver=5.0.2smart-menupad/assets/css/smp.css?ver=1.0smart-menupad/assets/js/bootstrap.min.js?ver=5.1.3smart-menupad/assets/js/custom.js?ver=1.0HTML / DOM Fingerprints
smp-bs-stylesmp-styledata-bs-toggledata-bs-target