
Model Trains Data Security & Risk Analysis
wordpress.org/plugins/model-trains-dataAccess to the Model Train Prices API. Display model train prices using Wordpress shortcodes.
Is Model Trains Data Safe to Use in 2026?
Generally Safe
Score 85/100Model Trains Data has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "model-trains-data" plugin v1.0 demonstrates a strong adherence to secure coding practices in its static analysis. The absence of dangerous functions, the complete reliance on prepared statements for SQL queries, and 100% proper output escaping are excellent indicators of a well-developed plugin. Furthermore, the lack of any identified vulnerability history suggests a consistent focus on security by the developers. However, a critical concern arises from the presence of a single external HTTP request that lacks any explicit mention of authentication or authorization checks in the provided data. While the attack surface is small and has no directly unprotected entry points, this outbound communication could potentially be exploited if the target service is compromised or if the plugin doesn't properly validate or sanitize the data sent in this request, potentially leading to unintended consequences or information leakage.
Key Concerns
- External HTTP request without evident auth/validation
Model Trains Data Security Vulnerabilities
Model Trains Data Release Timeline
Model Trains Data Code Analysis
Model Trains Data Attack Surface
Shortcodes 1
Maintenance & Trust
Model Trains Data Maintenance & Trust
Maintenance Signals
Community Trust
Model Trains Data Alternatives
No alternatives data available yet.
Model Trains Data Developer Profile
2 plugins · 10 total installs
How We Detect Model Trains Data
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
https://www.modelprices.com/wp-json/public/get-product<a href=''>