
Book Doctor Appointments – iCliniq Security & Risk Analysis
wordpress.org/plugins/book-doctor-appointments-icliniqThis plugin uses https://www.icliniq.com 's doctor search API to list doctors in your website. Users can book doctor appointments directly from y …
Is Book Doctor Appointments – iCliniq Safe to Use in 2026?
Generally Safe
Score 85/100Book Doctor Appointments – iCliniq has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'book-doctor-appointments-icliniq' plugin v1.0 exhibits a mixed security posture. On one hand, it demonstrates good practices by having no known vulnerabilities in its history and by exclusively using prepared statements for its SQL queries. This indicates a potential awareness of common web vulnerabilities like SQL injection. However, significant concerns arise from the static analysis. The plugin has a complete lack of output escaping for all identified outputs, which presents a high risk of Cross-Site Scripting (XSS) vulnerabilities. Additionally, the taint analysis revealed two flows with unsanitized paths, which, although not classified as critical or high, still represent potential security weaknesses that could be exploited if data manipulation is possible.
The absence of any recorded CVEs or common vulnerability types is positive, suggesting the plugin has not historically been a significant security target or has been developed with reasonable care. However, the lack of vulnerability history can also sometimes indicate limited auditing or testing rather than inherent security. The presence of file operations without further context is a minor concern, as is the complete absence of nonce and capability checks, which, combined with the zero entry points without auth, could be a design choice but also leaves potential for future vulnerabilities if new entry points are added without proper security measures.
In conclusion, while the plugin avoids common pitfalls like raw SQL and known exploits, the critical deficiency in output escaping and the presence of unsanitized paths in taint analysis are substantial risks. The lack of any authentication checks on entry points, even though there are none currently, is a structural weakness that could lead to future security issues. Developers should prioritize implementing proper output sanitization to mitigate XSS risks.
Key Concerns
- 0% output escaping
- 2 unsanitized paths in taint analysis
- 0 capability checks
- 0 nonce checks
Book Doctor Appointments – iCliniq Security Vulnerabilities
Book Doctor Appointments – iCliniq Code Analysis
Output Escaping
Data Flow Analysis
Book Doctor Appointments – iCliniq Attack Surface
WordPress Hooks 4
Maintenance & Trust
Book Doctor Appointments – iCliniq Maintenance & Trust
Maintenance Signals
Community Trust
Book Doctor Appointments – iCliniq Alternatives
Custom Sidebars – Dynamic Sidebar Classic Widget Area Manager
custom-sidebars
Flexible sidebars for custom classic widget configurations on any page or post. Create custom sidebars with ease!
Image Widget
image-widget
A simple image widget that uses the native WordPress media manager to add image widgets to your site.
Widget Logic
widget-logic
Widget Logic lets you control on which pages widgets appear using WP's conditional tags.
WooSidebars
woosidebars
WooSidebars adds functionality to display different widgets in a sidebar, according to a context (for example, a specific page or a category).
Fixed Widget and Sticky Elements for WordPress
q2w3-fixed-widget
More attention and a higher ad performance with fixed sticky widgets.
Book Doctor Appointments – iCliniq Developer Profile
1 plugin · 10 total installs
How We Detect Book Doctor Appointments – iCliniq
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/book-doctor-appointments-icliniq/css/style.css/wp-content/plugins/book-doctor-appointments-icliniq/js/custom.js/wp-content/plugins/book-doctor-appointments-icliniq/js/custom.jsbook-doctor-appointments-icliniq/css/style.css?ver=book-doctor-appointments-icliniq/js/custom.js?ver=