
Cab Grid Security & Risk Analysis
wordpress.org/plugins/cab-gridEasily add a taxi fare price calculator to your website via shortcode [cabGrid] or widget. Simply enter journey prices in a table.
Is Cab Grid Safe to Use in 2026?
Generally Safe
Score 100/100Cab Grid has a strong security track record. Known vulnerabilities have been patched promptly.
The "cab-grid" plugin v1.6.36 exhibits a mixed security posture. On one hand, it demonstrates good practices by exclusively using prepared statements for SQL queries and having no file operations or bundled libraries, which are positive indicators. However, significant concerns arise from its attack surface and output escaping. The presence of two AJAX handlers without authentication checks presents a clear entry point for attackers, potentially allowing unauthorized actions.
The taint analysis reveals a flow with unsanitized paths, though it's not classified as critical or high severity. The plugin's vulnerability history shows one known medium severity CVE related to Cross-site Scripting (XSS), which was patched. While the historical XSS vulnerability has been addressed, the low percentage of properly escaped output (19%) suggests a persistent risk for potential XSS vulnerabilities that may not have been identified or patched.
Overall, while the plugin has addressed past vulnerabilities and utilizes secure database practices, the unprotected AJAX endpoints and the high number of unescaped output points represent actionable security risks that require attention. The presence of unescaped outputs, coupled with unprotected entry points, suggests a general lack of robust input validation and output sanitization.
Key Concerns
- Unprotected AJAX handlers
- Low output escaping percentage
- Unsanitized path flow
- No nonce checks on AJAX
- No capability checks
Cab Grid Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Cab Grid <= 1.5.15 - Authenticated (Administrator+) Stored Cross-Site Scripting
Cab Grid Code Analysis
Output Escaping
Data Flow Analysis
Cab Grid Attack Surface
AJAX Handlers 2
Shortcodes 1
WordPress Hooks 9
Maintenance & Trust
Cab Grid Maintenance & Trust
Maintenance Signals
Community Trust
Cab Grid Alternatives
E-cab Taxi Booking Manager for Woocommerce
ecab-taxi-booking-manager
Taxi Booking & Cab Booking for WooCommerce. Chauffeur service with fare calculator, distance pricing, and OpenStreetMap.
Cab fare calculator
cab-fare-calculator
This plugin will add an online taxi booking form on your WordPress website. You will be able to manage your vehicles and orders through the back end.
TaxiMap Integration
taximap-integration
Displays the TaxiMap fare price calculator on your site via shortcode [taximap] or widget.
AForms — Form Builder for Price Calculator & Cost Estimation
aforms-form-builder-for-price-calculator-cost-estimation
Form builder for Cost estimation and Custom order.
Flexible Quantity – Measurement Price Calculator for WooCommerce
flexible-quantity-measurement-price-calculator-for-woocommerce
WooCommerce price calculator. Sell products by unit, dimension or volume. Calculate quantity increment and final price for a new unit of measure.
Cab Grid Developer Profile
3 plugins · 340 total installs
How We Detect Cab Grid
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/cab-grid/cab-grid.css/wp-content/plugins/cab-grid/cab-grid.js/wp-content/plugins/cab-grid/cab-grid-form-amp.php/wp-content/plugins/cab-grid/cab-grid-form.php/wp-content/plugins/cab-grid/cab-grid-admin.php/wp-content/plugins/cab-grid/cab-grid.jscab-grid.css?ver=cab-grid.js?ver=HTML / DOM Fingerprints
cabGridcabGridPriceValuecabGridCurrencySymbolcabGridWidget<!-- CabGrid Wordpress Taxi Plugin - https://cabgrid.com --><!-- setup database --><!-- too extreme for CSS and Message --><!-- would be called from register_settings in admin when needed -->+5 moreid="cabGridCSS"id="cabGridCustomCSS"id="cabGridHeaderCSS"id="cabGridCSSpreLoad"data-cabgrid-instancecabGridObjcabGridAJAXcabGridInstance[cabGrid]