Food Truck Locations & Times Security & Risk Analysis

wordpress.org/plugins/food-truck

A WordPress plugin built for the needs of Food Trucks & Mobile Vendors

100 active installs v1.0.15 PHP 5.6+ WP 5.0+ Updated Jul 19, 2020
datesfoodfood-trucklocationsstreet-food
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Food Truck Locations & Times Safe to Use in 2026?

Generally Safe

Score 85/100

Food Truck Locations & Times has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5yr ago
Risk Assessment

The food-truck plugin v1.0.15 exhibits a generally positive security posture based on the provided static analysis. It demonstrates good practices by avoiding dangerous functions, utilizing prepared statements for all SQL queries, and implementing nonce and capability checks. The absence of known vulnerabilities in its history and zero critical or high severity taint flows are also strong indicators of a well-developed and secure plugin.

However, a notable concern is the relatively low percentage of properly escaped output (38%). This suggests that a significant portion of dynamic data displayed by the plugin might be susceptible to Cross-Site Scripting (XSS) vulnerabilities if user-supplied input is not adequately sanitized before being rendered in the browser. While the attack surface is small and all identified entry points have checks, the unescaped output represents a potential weakness that could be exploited.

In conclusion, the plugin is built on a solid foundation with secure handling of database operations and access control. The primary area for improvement lies in strengthening output escaping mechanisms to mitigate XSS risks. With this enhancement, the plugin's security would be significantly bolstered.

Key Concerns

  • Low percentage of properly escaped output
Vulnerabilities
None known

Food Truck Locations & Times Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Food Truck Locations & Times Release Timeline

No version history available.
Code Analysis
Analyzed Mar 16, 2026

Food Truck Locations & Times Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
36
22 escaped
Nonce Checks
1
Capability Checks
4
File Operations
2
External Requests
0
Bundled Libraries
0

Output Escaping

38% escaped58 total outputs
Data Flows · Security
All sanitized

Data Flow Analysis

2 flows
trucklot_handle_ajax (food-truck.php:104)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Food Truck Locations & Times Attack Surface

Entry Points2
Unprotected0

AJAX Handlers 1

authwp_ajax_food-truckfood-truck.php:38

Shortcodes 1

[foodtruck] food-truck.php:28
WordPress Hooks 8
actioninitfood-truck.php:26
actioninitfood-truck.php:27
actionenqueue_scriptsfood-truck.php:29
actionadmin_bar_menufood-truck.php:30
actionwidgets_initfood-truck.php:31
actionadmin_menufood-truck.php:35
actionadmin_enqueue_scriptsfood-truck.php:36
actionwp_enqueue_scriptsfood-truck.php:41
Maintenance & Trust

Food Truck Locations & Times Maintenance & Trust

Maintenance Signals

WordPress version tested5.4.19
Last updatedJul 19, 2020
PHP min version5.6
Downloads5K

Community Trust

Rating100/100
Number of ratings2
Active installs100
Developer Profile

Food Truck Locations & Times Developer Profile

paulcollett

1 plugin · 100 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Food Truck Locations & Times

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/food-truck/admin/assets/libs.min.js/wp-content/plugins/food-truck/assets/src/js/main.js/wp-content/plugins/food-truck/assets/dist/css/main.css
Script Paths
/wp-content/plugins/food-truck/admin/assets/libs.min.js/wp-content/plugins/food-truck/assets/src/js/main.js
Version Parameters
food-truck/assets/src/js/main.js?ver=food-truck/assets/dist/css/main.css?ver=

HTML / DOM Fingerprints

CSS Classes
wp-menu-image dashicons-before dashicons-location-alt
Data Attributes
data-page='trucklot-locations'
JS Globals
TRUCKLOT_THEME_URITRUCKLOT_PLUGIN_VERtrucklot_toolbar_link_to_editortrucklot_register_post_typestrucklot_outtrucklot_handle_shortcode+13 more
REST Endpoints
/wp-json/wp/v2/trucklot-locations
Shortcode Output
[foodtruck
FAQ

Frequently Asked Questions about Food Truck Locations & Times