FleekCode – Omnibus Price Tracker Security & Risk Analysis

wordpress.org/plugins/fleekcode-omnibus

🚀 Automatically track and display the minimum price of your WooCommerce products! Stay compliant with Omnibus Directive requirements effortlessly. 🛒

0 active installs v1.0.7 PHP 7.4+ WP 5.6+ Updated Apr 7, 2025
minimum-priceomnibusprice-historyprice-trackingwoocommerce
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is FleekCode – Omnibus Price Tracker Safe to Use in 2026?

Generally Safe

Score 92/100

FleekCode – Omnibus Price Tracker has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The fleekcode-omnibus plugin v1.0.7 presents a mixed security posture. On the positive side, it demonstrates strong adherence to secure coding practices by utilizing prepared statements for all SQL queries and a high percentage of proper output escaping. The absence of known CVEs and bundled libraries is also encouraging. However, there are notable areas of concern that warrant attention.

The plugin exposes a significant attack surface with 10 entry points, of which 4 (40%) lack authentication checks. This is a critical vulnerability as it allows unauthenticated users to potentially interact with sensitive functionalities. Furthermore, the taint analysis revealed two high-severity flows with unsanitized paths, indicating potential for arbitrary file access or other dangerous operations if these paths are manipulated by an attacker.

While the vulnerability history is clean, this should not breed complacency. The identified code signals, particularly the unprotected AJAX handlers and high-severity taint flows, suggest inherent risks within the current codebase. The lack of recent vulnerabilities could be due to limited historical analysis or simply good luck. Therefore, while the plugin has strengths in areas like SQL handling, the presence of unprotected entry points and critical taint flows demands immediate mitigation to improve its overall security.

Key Concerns

  • Unprotected AJAX handlers
  • High severity taint flows with unsanitized paths
Vulnerabilities
None known

FleekCode – Omnibus Price Tracker Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

FleekCode – Omnibus Price Tracker Release Timeline

v1.0.7Current
v1.0.6
v1.0.5
v1.0.4
v1.0.3
v1.0.2
v1.0.1
v1.0.0
Code Analysis
Analyzed Apr 16, 2026

FleekCode – Omnibus Price Tracker Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
61 prepared
Unescaped Output
13
112 escaped
Nonce Checks
5
Capability Checks
10
File Operations
1
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared61 total queries

Output Escaping

90% escaped125 total outputs
Data Flows · Security
2 unsanitized

Data Flow Analysis

6 flows2 with unsanitized paths
toggle_prices_status (admin/class-admin.php:391)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
4 unprotected

FleekCode – Omnibus Price Tracker Attack Surface

Entry Points10
Unprotected4

AJAX Handlers 9

authwp_ajax_fleekcode_hide_review_banneradmin/class-admin.php:34
authwp_ajax_fleekcode_toggle_prices_statusadmin/class-admin.php:35
authwp_ajax_fleekcode_omnibus_bulk_actionadmin/class-admin.php:37
authwp_ajax_fleekcode_get_variation_reference_priceincludes/class-database.php:16
noprivwp_ajax_fleekcode_get_variation_reference_priceincludes/class-database.php:17
authwp_ajax_fleekcode_get_parent_idincludes/class-database.php:18
noprivwp_ajax_fleekcode_get_parent_idincludes/class-database.php:19
authwp_ajax_fleekcode_statistics_consentincludes/class-statistics.php:19
authwp_ajax_fleekcode_deactivation_surveyincludes/class-statistics.php:27

Shortcodes 1

[fleekcode_omnibus_price] fleekcode-omnibus.php:199
WordPress Hooks 27
actionadmin_menuadmin/class-admin.php:24
actionadmin_initadmin/class-admin.php:25
actionadmin_enqueue_scriptsadmin/class-admin.php:26
actionadmin_enqueue_scriptsadmin/class-admin.php:27
filterwoocommerce_product_data_tabsadmin/class-admin.php:29
actionwoocommerce_product_data_panelsadmin/class-admin.php:30
actionadmin_initadmin/class-admin.php:32
actionadmin_noticesadmin/class-admin.php:33
filterplugin_action_links_fleekcode-omnibus/fleekcode-omnibus.phpadmin/class-admin.php:39
actionplugins_loadedfleekcode-omnibus.php:64
actionupgrader_process_completefleekcode-omnibus.php:65
actionadmin_initfleekcode-omnibus.php:66
actionplugins_loadedfleekcode-omnibus.php:93
actioninitfleekcode-omnibus.php:103
actionadmin_noticesfleekcode-omnibus.php:107
actionadmin_noticesfleekcode-omnibus.php:112
actionwp_footerfleekcode-omnibus.php:159
actionadmin_noticesincludes/class-activator.php:410
filterwoocommerce_get_price_htmlincludes/class-core.php:13
actionwp_footerincludes/class-core.php:35
actionwoocommerce_update_productincludes/class-database.php:14
actionwoocommerce_save_product_variationincludes/class-database.php:15
actionadmin_noticesincludes/class-statistics.php:18
actionadmin_enqueue_scriptsincludes/class-statistics.php:20
actiondeactivate_fleekcode-omnibus/fleekcode-omnibus.phpincludes/class-statistics.php:23
actionadmin_footer-plugins.phpincludes/class-statistics.php:26
actionwp_enqueue_scriptspublic/class-public.php:10
Maintenance & Trust

FleekCode – Omnibus Price Tracker Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedApr 7, 2025
PHP min version7.4
Downloads797

Community Trust

Rating100/100
Number of ratings1
Active installs0
Developer Profile

FleekCode – Omnibus Price Tracker Developer Profile

fleekcode

1 plugin · 0 total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect FleekCode – Omnibus Price Tracker

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/fleekcode-omnibus/admin/css/admin.css/wp-content/plugins/fleekcode-omnibus/public/css/public.css/wp-content/plugins/fleekcode-omnibus/public/js/public.js
Script Paths
/wp-content/plugins/fleekcode-omnibus/public/js/public.js
Version Parameters
/wp-content/plugins/fleekcode-omnibus/admin/css/admin.css?ver=/wp-content/plugins/fleekcode-omnibus/public/css/public.css?ver=/wp-content/plugins/fleekcode-omnibus/public/js/public.js?ver=

HTML / DOM Fingerprints

CSS Classes
fleekcode-omnibus-price
Data Attributes
data-product-iddata-variation-id
JS Globals
Fleekcode_Core
Shortcode Output
<span class="fleekcode-omnibus-price"
FAQ

Frequently Asked Questions about FleekCode – Omnibus Price Tracker