
Nationwide Auto-Transportation Quote Calculator Security & Risk Analysis
wordpress.org/plugins/nationwide-auto-transportation-quote-calculatorQuote Calculator Plugin for Getting Free Quotes from Nationwide Auto-Transportation
Is Nationwide Auto-Transportation Quote Calculator Safe to Use in 2026?
Generally Safe
Score 100/100Nationwide Auto-Transportation Quote Calculator has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "nationwide-auto-transportation-quote-calculator" v1.0 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of any known CVEs and the developer's apparent adherence to secure coding practices, such as utilizing prepared statements for all SQL queries and almost universally escaping output, are significant positive indicators. The limited attack surface, consisting of a single shortcode with no apparent access controls, also suggests a low risk of direct exploitation through common WordPress entry points.
However, there are areas of concern that warrant attention. The presence of two taint flows with unsanitized paths, despite no critical or high severity being flagged, indicates potential for attackers to manipulate data inputs if not handled carefully within the shortcode's logic. Furthermore, the lack of any nonce checks or capability checks, particularly for the shortcode which represents the sole entry point, is a notable weakness. This means that any user, regardless of their logged-in status or privileges, could potentially trigger the shortcode's functionality, opening the door for Cross-Site Request Forgery (CSRF) or other unintended executions if the shortcode performs sensitive actions.
In conclusion, while the plugin demonstrates good practices in database and output handling and has a clean vulnerability history, the absence of authentication and authorization checks on its sole entry point, coupled with the identified unsanitized taint flows, presents a tangible risk. Addressing these specific security gaps should be a priority to further harden the plugin.
Key Concerns
- Unsanitized taint flows detected
- No nonce checks on entry points
- No capability checks on entry points
Nationwide Auto-Transportation Quote Calculator Security Vulnerabilities
Nationwide Auto-Transportation Quote Calculator Code Analysis
Output Escaping
Data Flow Analysis
Nationwide Auto-Transportation Quote Calculator Attack Surface
Shortcodes 1
WordPress Hooks 1
Maintenance & Trust
Nationwide Auto-Transportation Quote Calculator Maintenance & Trust
Maintenance Signals
Community Trust
Nationwide Auto-Transportation Quote Calculator Alternatives
No alternatives data available yet.
Nationwide Auto-Transportation Quote Calculator Developer Profile
1 plugin · 10 total installs
How We Detect Nationwide Auto-Transportation Quote Calculator
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/nationwide-auto-transportation-quote-calculator/css/admin-page.css/wp-content/plugins/nationwide-auto-transportation-quote-calculator/js/admin-page.jsnationwide-auto-transportation-quote-calculator/css/admin-page.css?ver=nationwide-auto-transportation-quote-calculator/js/admin-page.js?ver=HTML / DOM Fingerprints
input-containerid="title"id="main-color"id="secondary-color"id="submit-bg"id="submit-color"id="submit-hover-bg"+9 morewindow.nat_qc_quoteCalculator[nat-quote-caclculator]