WPCafe Elementor Addon – Restaurant Menu, Ordering and Reservation Widgets Security & Risk Analysis

wordpress.org/plugins/wpcafe-elementor-addons

Elementor addon for WPCafe. Build restaurant menus, online food ordering & table reservation layouts easily with drag-and-drop widgets.

100 active installs v1.0.1 PHP 7.4+ WP 6.0+ Updated Dec 14, 2025
elementorfood-menufood-orderingreservationrestaurant
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is WPCafe Elementor Addon – Restaurant Menu, Ordering and Reservation Widgets Safe to Use in 2026?

Generally Safe

Score 100/100

WPCafe Elementor Addon – Restaurant Menu, Ordering and Reservation Widgets has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5mo ago
Risk Assessment

The static analysis of wpcafé-elementor-addons v1.0.1 reveals a seemingly strong security posture with no identified attack surface points, dangerous functions, or SQL injection vulnerabilities. The code demonstrates good practices regarding output escaping, with a high percentage of outputs properly handled. Furthermore, the absence of file operations, external HTTP requests, and bundled libraries further contributes to a reduced risk profile. The vulnerability history is also clear, with no recorded CVEs, indicating a potentially stable and secure development history.

However, a significant concern arises from the complete lack of nonce and capability checks across all identified entry points. While the current analysis shows zero entry points, this absence suggests a fundamental lack of security controls. Should any new entry points be introduced in future versions, they would likely be vulnerable to common attacks like Cross-Site Request Forgery (CSRF) and unauthorized access. The absence of taint analysis results, while potentially good, could also indicate that the analysis tool was not able to thoroughly inspect the code for such vulnerabilities, or that the code is so simple that no such flows were detected. Therefore, while the current version appears clean based on the provided data, the lack of fundamental security checks presents a latent risk and suggests a need for more robust security practices in development.

Key Concerns

  • Complete absence of nonce checks
  • Complete absence of capability checks
Vulnerabilities
None known

WPCafe Elementor Addon – Restaurant Menu, Ordering and Reservation Widgets Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

WPCafe Elementor Addon – Restaurant Menu, Ordering and Reservation Widgets Release Timeline

v1.0.1Current
v1.0.0
Code Analysis
Analyzed Mar 16, 2026

WPCafe Elementor Addon – Restaurant Menu, Ordering and Reservation Widgets Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
58
403 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

87% escaped461 total outputs
Attack Surface

WPCafe Elementor Addon – Restaurant Menu, Ordering and Reservation Widgets Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actionelementor/elements/categories_registeredwidgets\manifest.php:25
actionelementor/widgets/registerwidgets\manifest.php:26
actionelementor/frontend/before_enqueue_scriptswidgets\manifest.php:27
actionplugins_loadedwpcafe-elementor-addons.php:74
Maintenance & Trust

WPCafe Elementor Addon – Restaurant Menu, Ordering and Reservation Widgets Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 14, 2025
PHP min version7.4
Downloads902

Community Trust

Rating0/100
Number of ratings0
Active installs100
Developer Profile

WPCafe Elementor Addon – Restaurant Menu, Ordering and Reservation Widgets Developer Profile

Arraytics

10 plugins · 20K total installs

91
trust score
Avg Security Score
95/100
Avg Patch Time
27 days
View full developer profile
Detection Fingerprints

How We Detect WPCafe Elementor Addon – Restaurant Menu, Ordering and Reservation Widgets

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/wpcafe-elementor-addons/assets/js/frontend.js
Script Paths
/wp-content/plugins/wpcafe-elementor-addons/assets/js/frontend.js
Version Parameters
wpcafe-elementor-addons/assets/js/frontend.js?ver=

HTML / DOM Fingerprints

JS Globals
Wpcafe_Elementor_Addonswpcafe_elementor_addons
FAQ

Frequently Asked Questions about WPCafe Elementor Addon – Restaurant Menu, Ordering and Reservation Widgets