Table for Divi Security & Risk Analysis

wordpress.org/plugins/table-for-divi

A quick and easy way to create HTML Table inside the Divi Visual Builder!

2K active installs v1.4.0 PHP 5.6+ WP 4.0.0+ Updated May 22, 2025
divitable
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Table for Divi Safe to Use in 2026?

Generally Safe

Score 100/100

Table for Divi has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 10mo ago
Risk Assessment

The plugin 'table-for-divi' v1.4.0 demonstrates a generally strong security posture with several positive indicators. The code analysis reveals no dangerous functions, all SQL queries utilize prepared statements, and all output is properly escaped. This suggests a commitment to fundamental secure coding practices. Furthermore, the absence of any recorded vulnerabilities, including CVEs, indicates a history of stable and secure releases.

However, a significant concern arises from the static analysis revealing one unprotected AJAX handler. This represents a direct entry point into the plugin's functionality that lacks any authentication or authorization checks. While the taint analysis found no issues, this unprotected AJAX endpoint could potentially be exploited if it processes user-supplied data in a way that could lead to unintended actions or information disclosure. The absence of nonces on this AJAX handler further exacerbates the risk, making it susceptible to Cross-Site Request Forgery (CSRF) attacks.

In conclusion, the plugin benefits from a clean vulnerability history and sound practices in SQL and output handling. The primary weakness lies in the single, unprotected AJAX endpoint. Addressing this specific entry point by implementing appropriate authentication and authorization checks is crucial to elevating the plugin's overall security to a more robust level.

Key Concerns

  • Unprotected AJAX handler without auth checks
  • AJAX handler lacks nonce checks
Vulnerabilities
None known

Table for Divi Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Table for Divi Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
4 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped4 total outputs
Attack Surface
1 unprotected

Table for Divi Attack Surface

Entry Points1
Unprotected1

AJAX Handlers 1

authwp_ajax_tfdt_dismiss_review_notificationincludes\TFDT_Initialize.php:58
WordPress Hooks 2
actionadmin_noticesincludes\TFDT_Initialize.php:55
actiondivi_extensions_inittable-for-divi.php:32
Maintenance & Trust

Table for Divi Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedMay 22, 2025
PHP min version5.6
Downloads11K

Community Trust

Rating84/100
Number of ratings5
Active installs2K
Developer Profile

Table for Divi Developer Profile

Wasim

2 plugins · 2K total installs

100
trust score
Avg Security Score
100/100
Avg Patch Time
7 days
View full developer profile
Detection Fingerprints

How We Detect Table for Divi

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/table-for-divi/includes/tfdt_frontend.css/wp-content/plugins/table-for-divi/includes/tfdt_frontend.js
Script Paths
/wp-content/plugins/table-for-divi/includes/tfdt_frontend.js
Version Parameters
table-for-divi/includes/tfdt_frontend.css?ver=table-for-divi/includes/tfdt_frontend.js?ver=

HTML / DOM Fingerprints

CSS Classes
tfdt-table
FAQ

Frequently Asked Questions about Table for Divi