wMenu Digital Menu and Restaurant Ordering Security & Risk Analysis

wordpress.org/plugins/wmenu-digital-menu-and-restaurant-ordering

wMenu is restaurant Menu and Ordering plugin. wMenu helps site builders to add restaurant Menu, Wine and Drink list into any WordPress theme.

10 active installs v1.13 - 14-11-2016 PHP + WP 4.6+ Updated Nov 22, 2016
digital-menurestaurants
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is wMenu Digital Menu and Restaurant Ordering Safe to Use in 2026?

Generally Safe

Score 85/100

wMenu Digital Menu and Restaurant Ordering has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 9yr ago
Risk Assessment

The static analysis of "wmenu-digital-menu-and-restaurant-ordering" v1.13 - 14-11-2016 reveals a generally positive security posture, with no critical vulnerabilities detected in code signals or taint analysis. The plugin demonstrates good practices by utilizing prepared statements for all SQL queries and has no recorded vulnerability history, suggesting a commitment to security or a lack of prior exploitable issues. However, a significant concern arises from the complete lack of output escaping. This means that any dynamic data displayed to users is not properly sanitized, potentially opening the door for Cross-Site Scripting (XSS) attacks if user-supplied input is ever rendered directly. Additionally, the absence of nonce checks and capability checks for its single shortcode entry point is a notable weakness, as it could allow unauthorized users to trigger its functionality.

Key Concerns

  • 0% output escaping
  • 0 nonce checks
  • 0 capability checks
Vulnerabilities
None known

wMenu Digital Menu and Restaurant Ordering Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

wMenu Digital Menu and Restaurant Ordering Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
4
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped4 total outputs
Attack Surface

wMenu Digital Menu and Restaurant Ordering Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[wmenu] wMenu.php:433
WordPress Hooks 1
actionwidgets_initwMenu.php:510
Maintenance & Trust

wMenu Digital Menu and Restaurant Ordering Maintenance & Trust

Maintenance Signals

WordPress version tested4.7.32
Last updatedNov 22, 2016
PHP min version
Downloads2K

Community Trust

Rating100/100
Number of ratings1
Active installs10
Developer Profile

wMenu Digital Menu and Restaurant Ordering Developer Profile

swmenu

2 plugins · 20 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect wMenu Digital Menu and Restaurant Ordering

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/wmenu-digital-menu-and-restaurant-ordering/img/Transp.png/wp-content/plugins/wmenu-digital-menu-and-restaurant-ordering/img/ExitTransp.png/wp-content/plugins/wmenu-digital-menu-and-restaurant-ordering/img/iphoneWhite1.png/wp-content/plugins/wmenu-digital-menu-and-restaurant-ordering/img/iphone6Png.png

HTML / DOM Fingerprints

CSS Classes
w3-animate-zoomwcontainercsswiframecss
Data Attributes
id="wMenuDiv"class="w3-animate-zoom"class="wcontainercss"class="wiframecss"
JS Globals
var Params=var ScrWidthfunction GetScrSize()function _AttachEvent()var devType='Mobile'var stylePc='vertical-align:top;+9 more
Shortcode Output
<div id='wMenuDiv' style="position:relative;display:inline-block; width:0px; height:0px;"></div><style type'text/css'><script><img style="width:65%;" src="
FAQ

Frequently Asked Questions about wMenu Digital Menu and Restaurant Ordering