Wage Conversion Calculator Security & Risk Analysis

wordpress.org/plugins/wage-conversion-calculator

This calculator will assist you to rapidly change your net pay set in a single periodic time period (hourly, every day, weekly, and many others.

10 active installs v1.0 PHP + WP 2.5+ Updated Jan 28, 2020
calculatorconversionconvertersalarywage
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Wage Conversion Calculator Safe to Use in 2026?

Generally Safe

Score 85/100

Wage Conversion Calculator has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6yr ago
Risk Assessment

The "wage-conversion-calculator" plugin version 1.0 exhibits a generally positive security posture based on the provided static analysis. The absence of identifiable entry points like AJAX handlers, REST API routes, shortcodes, or cron events, and the lack of any detected dangerous functions or file operations, suggest a minimal attack surface. Furthermore, the fact that all SQL queries use prepared statements is a strong indicator of good database security practices, preventing common SQL injection vulnerabilities. The absence of known CVEs and historical vulnerabilities further bolsters this positive outlook.

However, a significant concern arises from the "Output escaping" signal, which indicates that 100% of the 3 detected outputs are not properly escaped. This presents a clear risk of Cross-Site Scripting (XSS) vulnerabilities, where malicious scripts could be injected and executed in the user's browser. The lack of any capability checks or nonce checks, while not directly problematic given the absence of entry points, means that if new entry points were introduced in future versions without proper security controls, those would immediately become unprotected. Therefore, while the plugin currently appears secure due to its limited functionality and attack surface, the unescaped output is a critical weakness that needs immediate attention to prevent potential XSS attacks.

Key Concerns

  • Output escaping is not implemented
Vulnerabilities
None known

Wage Conversion Calculator Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Wage Conversion Calculator Release Timeline

No version history available.
Code Analysis
Analyzed Apr 16, 2026

Wage Conversion Calculator Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
3
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped3 total outputs
Attack Surface

Wage Conversion Calculator Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 1
actionwidgets_initgoodcalculators_wage_calculator.php:298
Maintenance & Trust

Wage Conversion Calculator Maintenance & Trust

Maintenance Signals

WordPress version tested5.3.21
Last updatedJan 28, 2020
PHP min version
Downloads1K

Community Trust

Rating100/100
Number of ratings1
Active installs10
Developer Profile

Wage Conversion Calculator Developer Profile

andrewstacy

1 plugin · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Wage Conversion Calculator

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/wage-conversion-calculator/goodcalculators_wage_calculator.php

HTML / DOM Fingerprints

CSS Classes
tblrightdetailborder_btodd
HTML Comments
<!-- Edit to change the look & feel of this calculator -->
Data Attributes
id="tbl"id="tex"id="tbl #tex"id="tbl td"id="tbl .right"id="tbl .detail"+17 more
JS Globals
cFuncToAddCommcwage_salary_calccEmptyAllValCURRCYWageAnnWageVal+12 more
Shortcode Output
[goodcalculators_wage_calculator]
FAQ

Frequently Asked Questions about Wage Conversion Calculator