Table Builder Security & Risk Analysis

wordpress.org/plugins/table-builder

Wordpress Table plugin enables you to create beautiful list of your posts with search and column sorting. Drag and drop Column selection and Table bui …

20 active installs v1.0.0 PHP 5.4+ WP 3.3+ Updated Jul 14, 2022
datatabletabletable-pluginwordpress-tablewordpress-table-plugin
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Table Builder Safe to Use in 2026?

Generally Safe

Score 85/100

Table Builder has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The table-builder plugin v1.0.0 exhibits a generally good security posture with no recorded vulnerabilities and a small, well-defined attack surface. The static analysis reveals no critical code signals like dangerous functions or taint flows, and importantly, no external HTTP requests. However, there are areas for improvement. The plugin utilizes a single shortcode as an entry point, which is unprotected by any authentication or capability checks. This is a notable concern as it means any user, regardless of their role, can potentially interact with this shortcode, opening up possibilities for unintended behavior or abuse if the shortcode's functionality is not inherently benign.

Furthermore, the plugin performs a SQL query without using prepared statements, which is a significant risk for SQL injection vulnerabilities. Coupled with the fact that 50% of its output is not properly escaped, this indicates potential cross-site scripting (XSS) risks. The presence of an outdated bundled library (DataTables v1.10.20) also introduces a potential for known or unknown vulnerabilities, although no specific CVEs are listed for this version. While the lack of vulnerability history is a positive sign, the identified code issues warrant attention to ensure a more robust security profile.

Key Concerns

  • Shortcode unprotected by auth/capability checks
  • SQL query not using prepared statements
  • 50% of output not properly escaped
  • Bundled outdated library (DataTables v1.10.20)
Vulnerabilities
None known

Table Builder Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Table Builder Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
0 prepared
Unescaped Output
4
4 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

DataTables1.10.20

SQL Query Safety

0% prepared1 total queries

Output Escaping

50% escaped8 total outputs
Attack Surface

Table Builder Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[crawlspider_table] ic-datatable-builder.php:597
WordPress Hooks 10
actioninitic-datatable-builder.php:44
actionwp_enqueue_scriptsic-datatable-builder.php:56
actionadmin_menuic-datatable-builder.php:61
actionadmin_initic-datatable-builder.php:66
actionadmin_enqueue_scriptsic-datatable-builder.php:113
actionplugins_loadedincludes\class-ic-datatable-builder.php:139
actionadmin_enqueue_scriptsincludes\class-ic-datatable-builder.php:154
actionadmin_enqueue_scriptsincludes\class-ic-datatable-builder.php:155
actionwp_enqueue_scriptsincludes\class-ic-datatable-builder.php:170
actionwp_enqueue_scriptsincludes\class-ic-datatable-builder.php:171
Maintenance & Trust

Table Builder Maintenance & Trust

Maintenance Signals

WordPress version tested6.0.11
Last updatedJul 14, 2022
PHP min version5.4
Downloads2K

Community Trust

Rating100/100
Number of ratings1
Active installs20
Developer Profile

Table Builder Developer Profile

Table Builder

1 plugin · 20 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Table Builder

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/table-builder/admin/css/jquery-ui.min.css/wp-content/plugins/table-builder/admin/css/ic-datatable-builder-admin.css/wp-content/plugins/table-builder/admin/js/datatables/datatables.min.css/wp-content/plugins/table-builder/admin/js/datatables/datatables.min.js/wp-content/plugins/table-builder/admin/js/ic-datatable-builder-admin.js
Script Paths
/wp-content/plugins/table-builder/admin/js/datatables/datatables.min.js/wp-content/plugins/table-builder/admin/js/ic-datatable-builder-admin.js
Version Parameters
table-builder/admin/css/ic-datatable-builder-admin.css?v=table-builder/admin/js/datatables/datatables.min.css?v=table-builder/admin/js/datatables/datatables.min.js?v=table-builder/admin/js/ic-datatable-builder-admin.js?v=

HTML / DOM Fingerprints

CSS Classes
icdb-mainicdb-tabs
HTML Comments
AUM Ganapataye NamahCrawlSpider Table Builder – DataTables Plugin for WordPress
Data Attributes
id="icdb-main"id="icdb-tabs"
JS Globals
icdb_global={};
FAQ

Frequently Asked Questions about Table Builder