
Mobile-Refuel Table Reservation Security & Risk Analysis
wordpress.org/plugins/mobile-refuel-table-reservationProfessional table reservation system for restaurants. Manage bookings, opening hours, and guest communication via your personal app.
Is Mobile-Refuel Table Reservation Safe to Use in 2026?
Generally Safe
Score 100/100Mobile-Refuel Table Reservation has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The mobile-refuel-table-reservation plugin v1.2.6 exhibits a generally good security posture with several strengths. The vast majority of SQL queries utilize prepared statements, and an impressive 93% of outputs are properly escaped, significantly mitigating common injection and cross-site scripting vulnerabilities. The plugin also demonstrates a strong adherence to WordPress security best practices by including a substantial number of nonce checks and at least one capability check.
However, there are notable areas of concern. The presence of two AJAX handlers without authentication checks represents a significant attack surface that could potentially be exploited by unauthenticated users. Furthermore, the taint analysis revealed four flows with unsanitized paths, all classified as high severity. This indicates potential vulnerabilities where user-supplied data could be improperly processed, leading to security issues like directory traversal or command injection.
The plugin's vulnerability history is currently clean, with no recorded CVEs. This is a positive indicator, suggesting the developers have a good track record. Nevertheless, the identified weaknesses in the static and taint analysis, particularly the unprotected AJAX endpoints and high-severity unsanitized paths, warrant immediate attention to prevent potential exploitation.
Key Concerns
- Unprotected AJAX handlers found
- High severity unsanitized taint flows found
Mobile-Refuel Table Reservation Security Vulnerabilities
Mobile-Refuel Table Reservation Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Mobile-Refuel Table Reservation Attack Surface
AJAX Handlers 13
Shortcodes 1
WordPress Hooks 16
Maintenance & Trust
Mobile-Refuel Table Reservation Maintenance & Trust
Maintenance Signals
Community Trust
Mobile-Refuel Table Reservation Alternatives
Five Star Restaurant Reservations – WordPress Booking Plugin
restaurant-reservations
Restaurant reservations made easy. Accept bookings online. Quickly confirm or reject reservations, send email notifications, set booking times and mor …
ReDi Restaurant Reservation – Instant Availability & Confirmation
redi-restaurant-reservation
Get your restaurant booming with the ReDi Reservation plugin! Simplify bookings, offer instant confirmations, and customize settings. Try today!
Quick Restaurant Reservations
quick-restaurant-reservations
Manage restaurant reservations the easiest way.
VikRestaurants Table Reservations and Take-Away
vikrestaurants
The all-in-one solution to manage your restaurant reservations and take-away or delivery orders.
Alex Reservations: Smart Restaurant Booking
alex-reservations
Restaurant reservations solution to help you manage your daily bookings.
Mobile-Refuel Table Reservation Developer Profile
1 plugin · 0 total installs
How We Detect Mobile-Refuel Table Reservation
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/mobile-refuel-table-reservation/css/style.css/wp-content/plugins/mobile-refuel-table-reservation/css/admin.css/wp-content/plugins/mobile-refuel-table-reservation/js/scripts.js/wp-content/plugins/mobile-refuel-table-reservation/js/scripts.jsmobile-refuel-table-reservation/style.css?ver=mobile-refuel-table-reservation/css/admin.css?ver=mobile-refuel-table-reservation/js/scripts.js?ver=HTML / DOM Fingerprints
mrtr-reservation-formmrtr-reservation-calendarmrtr-reservation-detailsmrtr-admin-section<!-- Mobile-Refuel Table Reservation Plugin --><!-- Start: Mobile-Refuel Table Reservation Form --><!-- End: Mobile-Refuel Table Reservation Form --><!-- Start: Mobile-Refuel Admin Settings -->+1 moredata-restaurant-namedata-reservation-iddata-action='mrtr_save_reservation'data-action='mrtr_delete_reservation'var mrtr_ajax_object = var mrtr_settings = window.mrtr_booking_data = /wp-json/mobile-refuel-table-reservation/v1/reservations/wp-json/mobile-refuel-table-reservation/v1/settings[mobile_refuel_reservation_form][mobile_refuel_reservation_list][mobile_refuel_availability_calendar]