
FoodBoxBooker Security & Risk Analysis
wordpress.org/plugins/foodboxbookerFoodBoxBooker - Professional tiffin service management.
Is FoodBoxBooker Safe to Use in 2026?
Generally Safe
Score 100/100FoodBoxBooker has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The Foodboxbooker plugin v1.0.3 presents a mixed security posture. On the positive side, it demonstrates strong adherence to secure coding practices by utilizing prepared statements for nearly all SQL queries and performing a significant amount of output escaping. The absence of known CVEs and bundled libraries is also a good indicator. However, there are notable areas of concern that detract from its overall security.
The plugin has a substantial attack surface with 31 AJAX handlers, and critically, 3 of these lack any authentication checks. This is a direct pathway for unauthenticated attackers to potentially interact with sensitive functionalities. Furthermore, the taint analysis reveals 3 flows with unsanitized paths, all flagged as high severity. While these don't directly translate to known CVEs, they indicate potential vulnerabilities that could be exploited if not addressed, especially given the lack of explicit capability checks for many entry points.
Given the lack of historical vulnerabilities, it's difficult to draw definitive conclusions about long-term security trends. However, the current static analysis highlights immediate risks related to unprotected AJAX handlers and high-severity unsanitized taint flows. The plugin has strengths in its SQL and output handling, but the exposed AJAX endpoints and taint issues require attention to improve its overall security.
Key Concerns
- Unprotected AJAX handlers
- High severity unsanitized taint flows
- Lack of capability checks on entry points
FoodBoxBooker Security Vulnerabilities
FoodBoxBooker Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
FoodBoxBooker Attack Surface
AJAX Handlers 31
Shortcodes 6
WordPress Hooks 29
Maintenance & Trust
FoodBoxBooker Maintenance & Trust
Maintenance Signals
Community Trust
FoodBoxBooker Alternatives
Orderable – WordPress Restaurant Online Ordering System and Food Ordering Plugin
orderable
Take your restaurant/food business online with the online ordering system plugin for WordPress, Orderable.
WPCafe – Restaurant Menu, Online Food Ordering and Reservation Booking Solution
wp-cafe
Complete restaurant solution for restaurant menus, online food ordering, delivery, reservations and booking
Food Menu – Restaurant Menu & Online Ordering for WooCommerce
tlp-food-menu
A Simple Food & Restaurant Menu Display Plugin for Restaurant, Cafes, Fast Food, Coffee House with WooCommerce Online Ordering.
Restaurant Menu and Food Ordering
mp-restaurant-menu
Create and maintain modern online menus for almost any kind of restaurant. Sell food and beverages online. All in one plugin.
Food Store – Online Food Delivery & Pickup
food-store
Food Store is complete online food ordering platform with all your favourite WooCommerce functionalities.
FoodBoxBooker Developer Profile
2 plugins · 610 total installs
How We Detect FoodBoxBooker
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/foodboxbooker/assets/js/foodboxbooker_custom.js/wp-content/plugins/foodboxbooker/assets/js/foodboxbooker_custom_script.js/wp-content/plugins/foodboxbooker/assets/js/bootstrap.js/wp-content/plugins/foodboxbooker/assets/css/foodboxbooker_css.css/wp-content/plugins/foodboxbooker/assets/css/foodboxbooker_variables.css/wp-content/plugins/foodboxbooker/assets/css/animate.css/wp-content/plugins/foodboxbooker/assets/css/bootstrap.css/wp-content/plugins/foodboxbooker/assets/font-awesome/css/font-awesome.min.css+5 morefoodboxbooker/assets/js/foodboxbooker_custom.js?ver=foodboxbooker/assets/js/foodboxbooker_custom_script.js?ver=foodboxbooker/assets/js/bootstrap.js?ver=foodboxbooker/assets/css/foodboxbooker_css.css?ver=foodboxbooker/assets/css/foodboxbooker_variables.css?ver=foodboxbooker/assets/css/animate.css?ver=foodboxbooker/assets/css/bootstrap.css?ver=foodboxbooker/assets/css/foodboxbooker_admincomman.css?ver=foodboxbooker/assets/js/foodboxbooker_frontcustom.js?ver=foodboxbooker/assets/css/foodboxbooker_front.css?ver=foodboxbooker/assets/css/foodboxbooker_front_rtl.css?ver=foodboxbooker/assets/css/bootstrap-rtl.css?ver=HTML / DOM Fingerprints
fbbttm_fooditemsfbbttm_foodboxbooker_cartfbbttm_foodboxbooker_checkoutfbbttm_foodboxbooker_orderinfofbbttm_foodboxbooker_tabledatafbbttm_foodboxbooker_emailsfbbttm_foodboxbooker_myaccountfbbttm_foodboxbooker_pageconfig+3 morefbbttm_setting_idfbbttm_setting_keyfbbttm_setting_valuefbbttm_ajaxurlajax_object