
Cab fare calculator Security & Risk Analysis
wordpress.org/plugins/cab-fare-calculatorThis plugin will add an online taxi booking form on your WordPress website. You will be able to manage your vehicles and orders through the back end.
Is Cab fare calculator Safe to Use in 2026?
Generally Safe
Score 91/100Cab fare calculator has a strong security track record. Known vulnerabilities have been patched promptly.
The "cab-fare-calculator" plugin v1.2.4 exhibits a generally good security posture with many robust security practices in place. The plugin demonstrates a strong adherence to secure coding by utilizing prepared statements for 80% of its SQL queries and properly escaping 95% of its output. Furthermore, all identified entry points, including AJAX handlers and shortcodes, have checks in place, and there are no immediate REST API vulnerabilities. The presence of 19 nonce checks is also a positive indicator of attention to security.
However, the taint analysis reveals significant concerns. The presence of 8 flows with unsanitized paths, all classified as high severity, represents a critical area of risk. These unsanitized paths could potentially lead to vulnerabilities if not addressed, despite the absence of critical severity taint flows. The plugin's vulnerability history, with 2 medium severity CVEs, one of which was a Cross-site Scripting (XSS) vulnerability and the other PHP Remote File Inclusion (RFI), suggests a past pattern of susceptibility to input validation issues. The most recent vulnerability was as recent as September 2024, highlighting the importance of ongoing vigilance and updates.
In conclusion, while the plugin has strong foundational security practices, the high-severity unsanitized paths in the taint analysis and the historical vulnerability record for input validation weaknesses are notable concerns. The plugin benefits from comprehensive checks on its entry points and good output escaping, but these strengths are somewhat overshadowed by the identified taint flow risks. Addressing the unsanitized paths is paramount to improving its overall security.
Key Concerns
- High severity taint flows with unsanitized paths
- Historical medium severity CVEs (XSS, RFI)
- External HTTP requests without clear sanitization context
Cab fare calculator Security Vulnerabilities
CVEs by Year
Severity Breakdown
2 total CVEs
Cab fare calculator <= 1.1.6 - Authenticated (Admin+) Stored Cross-Site Scripting
Cab fare calculator <= 1.0.3 - Unauthenticated Local File Inclusion
Cab fare calculator Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
Cab fare calculator Attack Surface
AJAX Handlers 14
Shortcodes 2
WordPress Hooks 9
Maintenance & Trust
Cab fare calculator Maintenance & Trust
Maintenance Signals
Community Trust
Cab fare calculator Alternatives
E-cab Taxi Booking Manager for Woocommerce
ecab-taxi-booking-manager
Taxi Booking & Cab Booking for WooCommerce. Chauffeur service with fare calculator, distance pricing, and OpenStreetMap.
Cab Grid
cab-grid
Easily add a taxi fare price calculator to your website via shortcode [cabGrid] or widget. Simply enter journey prices in a table.
Cab fare calculator Developer Profile
1 plugin · 200 total installs
How We Detect Cab fare calculator
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/cab-fare-calculator/admin/js/car.js/wp-content/plugins/cab-fare-calculator/admin/js/car.jscab-fare-calculator/admin/js/car.js?ver=HTML / DOM Fingerprints
tblight-wraptblight-create-carcar_title_form_fieldcar_status_form_fieldcar_minpassenger_form_fieldcar_maxpassenger_form_fieldcar_maxsuitcases_form_fieldcar_childseat_form_field+9 moredata-car-idtblight_admin_ajax_obj[tblight]