All in One Reservation Security & Risk Analysis

wordpress.org/plugins/all-in-one-reservation

A powerful reservation and bookings plugin to book your restaurant/cafeteria table, seat bookings, and appointment bookings.

0 active installs v1.0.2 PHP 7.4+ WP 5.9+ Updated Apr 5, 2023
appointmentbookingcalendarpaymentsservices
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is All in One Reservation Safe to Use in 2026?

Generally Safe

Score 85/100

All in One Reservation has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2yr ago
Risk Assessment

The plugin "all-in-one-reservation" v1.0.2 demonstrates a generally strong security posture, particularly in its handling of database interactions and output escaping, which are crucial for preventing common web vulnerabilities. The static analysis indicates that all identified entry points, including AJAX handlers and shortcodes, appear to have appropriate authentication or permission checks. Furthermore, all SQL queries utilize prepared statements, and a high percentage of output is properly escaped, reducing the risk of injection and cross-site scripting (XSS) attacks respectively. The absence of known vulnerabilities in its history is a positive indicator of diligent security practices or a lack of prior exploitation.

Key Concerns

  • Dangerous function "unserialize" found
  • Zero capability checks found
  • File operation detected
  • External HTTP request detected
Vulnerabilities
None known

All in One Reservation Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

All in One Reservation Code Analysis

Dangerous Functions
3
Raw SQL Queries
0
9 prepared
Unescaped Output
77
483 escaped
Nonce Checks
11
Capability Checks
0
File Operations
1
External Requests
1
Bundled Libraries
0

Dangerous Functions Found

unserialize$mv = unserialize( $meta_value[0] );admin\class-aior-reservation-list.php:250
unserialize$nvm = unserialize( $mv );admin\class-aior-reservation-list.php:255
unserialize$task_detais = unserialize( $task_detais );appointment-booking\class-aior-appointment-booking.php:1230

SQL Query Safety

100% prepared9 total queries

Output Escaping

86% escaped560 total outputs
Data Flows
All sanitized

Data Flow Analysis

3 flows
<class-aior-appointment-list> (appointment-booking\class-aior-appointment-list.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

All in One Reservation Attack Surface

Entry Points9
Unprotected0

AJAX Handlers 4

authwp_ajax_aoir_reservation_global_ajaxadmin\class-aior-admin.php:52
noprivwp_ajax_aoir_reservation_global_ajaxadmin\class-aior-admin.php:53
authwp_ajax_aoir_reservation_form_submitpublic\class-aior-public.php:58
noprivwp_ajax_aoir_reservation_form_submitpublic\class-aior-public.php:59

Shortcodes 5

[aior_cancel_page] appointment-booking\class-aior-appointment-list.php:50
[fsn_aior] public\class-aior-front-feature.php:77
[reservation_booking] public\class-aior-public.php:57
[aior_pay] public\class-aior-public.php:61
[aior_pay_success] public\class-aior-public.php:62
WordPress Hooks 96
actionadmin_menuadmin\class-aior-admin.php:51
actioninitadmin\class-aior-admin.php:54
actionadmin_enqueue_scriptsadmin\class-aior-admin.php:61
actionaior_admin_settings_add_tab_navadmin\class-aior-admin.php:87
actionaior_admin_settings_add_tab_contentadmin\class-aior-admin.php:99
actioninitadmin\class-aior-default-appointment-list.php:29
actionadd_meta_boxesadmin\class-aior-default-appointment-list.php:30
actionmanage_reservation_posts_custom_columnadmin\class-aior-default-appointment-list.php:31
filtermanage_reservation_posts_columnsadmin\class-aior-default-appointment-list.php:32
filtermanage_edit-reservation_sortable_columnsadmin\class-aior-default-appointment-list.php:33
actionaior_rfs_notificationadmin\class-aior-notification.php:30
actionaior_appointment_approvedadmin\class-aior-notification.php:61
actionaior_appointment_declinedadmin\class-aior-notification.php:88
actioninitadmin\class-aior-reservation-form.php:34
actionadd_meta_boxesadmin\class-aior-reservation-form.php:35
actionsave_post_sol_reservation_formadmin\class-aior-reservation-form.php:36
actionaior_reservation_form_saveadmin\class-aior-reservation-form.php:38
filtermanage_sol_reservation_form_posts_columnsadmin\class-aior-reservation-form.php:40
actionmanage_sol_reservation_form_posts_custom_columnadmin\class-aior-reservation-form.php:41
actionaior_comment_formadmin\class-aior-reservation-form.php:51
actionaior_add_tab_navadmin\class-aior-reservation-form.php:251
actionaior_add_tab_contentadmin\class-aior-reservation-form.php:263
actioninitadmin\class-aior-reservation-list.php:30
actionadd_meta_boxesadmin\class-aior-reservation-list.php:31
actionmanage_posts_extra_tablenavadmin\class-aior-reservation-list.php:32
actioninitadmin\class-aior-reservation-list.php:33
actionaoir_reservation_global_ajaxadmin\class-aior-reservation-list.php:34
filteraior_add_calendar_feeds_admin_settingsadmin\partials\admin-settings-tab-calendar-feeds.php:24
filteraior_add_dashboard_admin_settingsadmin\partials\admin-settings-tab-dashboard.php:21
filteraior_add_dbt_admin_settingsadmin\partials\admin-settings-tab-direct-bank-transfer.php:24
filteraior_add_import_admin_settingsadmin\partials\admin-settings-tab-import.php:24
filteraior_add_security_admin_settingsadmin\partials\admin-settings-tab-security.php:23
filteraior_add_common_admin_settingsadmin\partials\admin-settings-tab-settings.php:23
filteraior_add_in_day_settingsadmin\partials\tab-day-settings.php:22
filteraior_add_in_security_settingsadmin\partials\tab-form.php:22
filteraior_add_in_general_settingsadmin\partials\tab-general.php:22
filteraior_add_in_notification_settingsadmin\partials\tab-notification.php:22
filteraior_add_in_sms_settingsadmin\partials\tab-sms.php:22
filterupload_mimesall-in-one-reservation.php:49
actionenqueue_block_editor_assetsappointment-booking\class-aior-appointment-block.php:29
actionadmin_print_scriptsappointment-booking\class-aior-appointment-block.php:30
actionmanage_posts_extra_tablenavappointment-booking\class-aior-appointment-block.php:31
actioninitappointment-booking\class-aior-appointment-block.php:32
filteraior_add_in_slot_settingsappointment-booking\class-aior-appointment-booking.php:29
filteraior_default_formappointment-booking\class-aior-appointment-booking.php:30
actionadmin_enqueue_scriptsappointment-booking\class-aior-appointment-booking.php:32
actionadmin_enqueue_scriptsappointment-booking\class-aior-appointment-booking.php:33
actionwp_enqueue_scriptsappointment-booking\class-aior-appointment-booking.php:35
actionwp_enqueue_scriptsappointment-booking\class-aior-appointment-booking.php:36
actionaior_save_rf_settingsappointment-booking\class-aior-appointment-booking.php:38
filteraior_obj_adminappointment-booking\class-aior-appointment-booking.php:40
actionaoir_reservation_global_ajaxappointment-booking\class-aior-appointment-booking.php:67
actionaoir_reservation_global_ajaxappointment-booking\class-aior-appointment-booking.php:68
actionaoir_reservation_global_ajaxappointment-booking\class-aior-appointment-booking.php:69
actionaoir_reservation_global_ajaxappointment-booking\class-aior-appointment-booking.php:70
actionaoir_reservation_global_ajaxappointment-booking\class-aior-appointment-booking.php:71
filteraior_shortcodeappointment-booking\class-aior-appointment-booking.php:72
actionaior_rfs_before_saveappointment-booking\class-aior-appointment-booking.php:73
actionaior_rfs_meta_saveappointment-booking\class-aior-appointment-booking.php:74
filteraior_new_appointment_notificationappointment-booking\class-aior-appointment-booking.php:75
actioncurrent_screenappointment-booking\class-aior-appointment-booking.php:83
actionadmin_initappointment-booking\class-aior-appointment-booking.php:92
filteraior_add_in_theme_and_styleappointment-booking\class-aior-appointment-booking.php:108
actioninitappointment-booking\class-aior-appointment-list.php:30
actionadd_meta_boxesappointment-booking\class-aior-appointment-list.php:31
actionaior_before_admin_menuappointment-booking\class-aior-appointment-list.php:32
actionmanage_sol_appointment_list_posts_custom_columnappointment-booking\class-aior-appointment-list.php:46
filtermanage_sol_appointment_list_posts_columnsappointment-booking\class-aior-appointment-list.php:47
filtermanage_edit-sol_appointment_list_sortable_columnsappointment-booking\class-aior-appointment-list.php:48
actionaoir_reservation_global_ajaxappointment-booking\class-aior-appointment-list.php:49
filterposts_whereappointment-booking\class-aior-appointment-list.php:51
filterposts_joinappointment-booking\class-aior-appointment-list.php:52
filterpost_row_actionsappointment-booking\class-aior-appointment-list.php:53
actionbulk_actions-edit-sol_appointment_listappointment-booking\class-aior-appointment-list.php:54
actionwidgets_initappointment-booking\class-aior-appointment-widget.php:120
actionplugins_loadedincludes\class-aior.php:141
actionadmin_enqueue_scriptsincludes\class-aior.php:156
actionadmin_enqueue_scriptsincludes\class-aior.php:157
actionwp_enqueue_scriptsincludes\class-aior.php:172
actionwp_enqueue_scriptsincludes\class-aior.php:173
actionaior_comment_formpublic\class-aior-front-feature.php:52
actioncomment_form_logged_in_afterpublic\class-aior-front-feature.php:53
actioncomment_form_after_fieldspublic\class-aior-front-feature.php:54
actioncomment_postpublic\class-aior-front-feature.php:55
filterpreprocess_commentpublic\class-aior-front-feature.php:56
filtercomment_textpublic\class-aior-front-feature.php:57
filterthe_contentpublic\class-aior-front-feature.php:58
actionadmin_enqueue_scriptspublic\class-aior-front-feature.php:59
actionvc_before_initpublic\class-aior-front-feature.php:61
actionfl_builder_ui_panel_after_modulespublic\class-aior-front-feature.php:64
filtersiteorigin_panels_widget_dialog_tabspublic\class-aior-front-feature.php:68
filtersiteorigin_panels_widgetspublic\class-aior-front-feature.php:69
actionfusion_builder_before_initpublic\class-aior-front-feature.php:73
actioninitpublic\class-aior-front-feature.php:76
actionwp_headpublic\class-aior-public.php:60
actionaior_payment_gateway_defaultpublic\class-aior-public.php:63
Maintenance & Trust

All in One Reservation Maintenance & Trust

Maintenance Signals

WordPress version tested6.2.9
Last updatedApr 5, 2023
PHP min version7.4
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

All in One Reservation Developer Profile

solwininfotech

7 plugins · 14K total installs

66
trust score
Avg Security Score
82/100
Avg Patch Time
642 days
View full developer profile
Detection Fingerprints

How We Detect All in One Reservation

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/all-in-one-reservation/public/css/aior-public.css/wp-content/plugins/all-in-one-reservation/public/js/aior-public.js/wp-content/plugins/all-in-one-reservation/admin/css/aior-admin.css/wp-content/plugins/all-in-one-reservation/admin/js/aior-admin.js/wp-content/plugins/all-in-one-reservation/admin/js/aior-reservation-form.js/wp-content/plugins/all-in-one-reservation/admin/js/aior-reservation-list.js/wp-content/plugins/all-in-one-reservation/admin/js/aior-builder.js/wp-content/plugins/all-in-one-reservation/admin/js/aior-notification.js+5 more
Script Paths
/wp-content/plugins/all-in-one-reservation/public/js/aior-public.js/wp-content/plugins/all-in-one-reservation/admin/js/aior-admin.js/wp-content/plugins/all-in-one-reservation/admin/js/aior-reservation-form.js/wp-content/plugins/all-in-one-reservation/admin/js/aior-reservation-list.js/wp-content/plugins/all-in-one-reservation/admin/js/aior-builder.js/wp-content/plugins/all-in-one-reservation/admin/js/aior-notification.js+5 more
Version Parameters
all-in-one-reservation/public/css/aior-public.css?ver=all-in-one-reservation/public/js/aior-public.js?ver=all-in-one-reservation/admin/css/aior-admin.css?ver=all-in-one-reservation/admin/js/aior-admin.js?ver=all-in-one-reservation/admin/js/aior-reservation-form.js?ver=all-in-one-reservation/admin/js/aior-reservation-list.js?ver=all-in-one-reservation/admin/js/aior-builder.js?ver=all-in-one-reservation/admin/js/aior-notification.js?ver=all-in-one-reservation/appointment-booking/js/aior-appointment-block.js?ver=all-in-one-reservation/appointment-booking/js/aior-appointment-booking.js?ver=all-in-one-reservation/appointment-booking/js/aior-appointment-list.js?ver=all-in-one-reservation/appointment-booking/js/aior-appointment-widget.js?ver=all-in-one-reservation/admin/js/settings.js?ver=

HTML / DOM Fingerprints

CSS Classes
aior-tabaior-tab-contentaior-tabs-containeraior-tabs
Data Attributes
id="aior-tab-dashboard"id="aior-tab-settings"id="aior-tab-import"id="aior-tab-security"id="aior-tab-calendar-feeds"id="aior-tab-dashboard-content"+14 more
JS Globals
window.aior_reservation_data
FAQ

Frequently Asked Questions about All in One Reservation