Vigore Widget Security & Risk Analysis

wordpress.org/plugins/bookme-widget

Embed the Vigore widget directly on your WordPress site as an iframe for easy service bookings.

0 active installs v2.1.0 PHP 7.0+ WP 6.0+ Updated Nov 26, 2025
appointmentsbookingschedulingvigorewidget
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Vigore Widget Safe to Use in 2026?

Generally Safe

Score 100/100

Vigore Widget has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4mo ago
Risk Assessment

The "bookme-widget" v2.1.0 plugin demonstrates a strong security posture based on the provided static analysis. All identified AJAX handlers are protected with authentication checks, and there are no unescaped outputs, dangerous functions, or SQL queries that do not use prepared statements. The absence of identified taint flows with unsanitized paths and a clean vulnerability history further contribute to a positive assessment. The plugin adheres well to WordPress security best practices, including the implementation of nonce and capability checks.

Vulnerabilities
None known

Vigore Widget Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Vigore Widget Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
41 escaped
Nonce Checks
7
Capability Checks
9
File Operations
2
External Requests
2
Bundled Libraries
0

Output Escaping

100% escaped41 total outputs
Data Flows
All sanitized

Data Flow Analysis

4 flows
vigore_store_instructor (vigore-widget.php:135)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Vigore Widget Attack Surface

Entry Points8
Unprotected0

AJAX Handlers 8

authwp_ajax_vigore_fetch_instructorsvigore-widget.php:83
authwp_ajax_vigore_store_instructorvigore-widget.php:134
authwp_ajax_vigore_store_authvigore-widget.php:391
authwp_ajax_vigore_logoutvigore-widget.php:426
authwp_ajax_vigore_api_loginvigore-widget.php:445
authwp_ajax_vigore_save_settingsvigore-widget.php:554
authwp_ajax_vigore_remove_instructorvigore-widget.php:622
authwp_ajax_vigore_logout_jsvigore-widget.php:670
WordPress Hooks 7
actionwp_footervigore-widget.php:20
actionwp_footervigore-widget.php:21
actionadmin_menuvigore-widget.php:22
actionadmin_initvigore-widget.php:23
actionadmin_menuvigore-widget.php:24
actionadmin_initvigore-widget.php:69
actionadmin_enqueue_scriptsvigore-widget.php:578
Maintenance & Trust

Vigore Widget Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedNov 26, 2025
PHP min version7.0
Downloads557

Community Trust

Rating100/100
Number of ratings1
Active installs0
Developer Profile

Vigore Widget Developer Profile

devvigore

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Vigore Widget

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/vigore-widget/assets/css/vigore-widget-settings.css/wp-content/plugins/vigore-widget/assets/js/vigore-widget-settings.js
Script Paths
/wp-content/plugins/vigore-widget/assets/js/vigore-widget-settings.js

HTML / DOM Fingerprints

CSS Classes
vigore-settings-containervigore-user-name
Data Attributes
data-organization-iddata-professional-iddata-languagedata-access-tokendata-user-emaildata-user-first-name
JS Globals
vigore_organization_idvigore_professional_idvigore_languagevigore_access_tokenvigore_user_emailvigore_user_first_name+4 more
Shortcode Output
<div id="vigore-widget-app"></div>
FAQ

Frequently Asked Questions about Vigore Widget