
NetLeader Aviator Security & Risk Analysis
wordpress.org/plugins/netleader-aviatorAircraft Weight and Balance calculator for flying clubs and organizations.
Is NetLeader Aviator Safe to Use in 2026?
Generally Safe
Score 92/100NetLeader Aviator has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "netleader-aviator" plugin v1.1.5 exhibits a generally strong security posture based on the provided static analysis. The plugin demonstrates good practices by ensuring all identified entry points (AJAX handlers, REST API routes, shortcodes, cron events) are either absent or protected by appropriate checks. Notably, all output is properly escaped, and there are no identified dangerous functions or external HTTP requests, which are common vectors for exploits. The absence of any known vulnerabilities or CVEs in its history further reinforces this positive assessment, suggesting diligent security awareness from the developers.
However, a key concern arises from the SQL query handling. With 7 total SQL queries and only 14% utilizing prepared statements, there is a significant risk of SQL injection vulnerabilities. This is a critical oversight as raw SQL queries are highly susceptible to malicious input. Additionally, the complete absence of nonce checks, even with capability checks in place, leaves a potential opening for Cross-Site Request Forgery (CSRF) attacks if an attacker can trick a logged-in user into performing an action. While the plugin has a clean history and good output sanitization, these specific code issues introduce notable risks that require attention.
Key Concerns
- SQL queries not using prepared statements
- Missing nonce checks
NetLeader Aviator Security Vulnerabilities
NetLeader Aviator Code Analysis
SQL Query Safety
Output Escaping
NetLeader Aviator Attack Surface
Shortcodes 1
WordPress Hooks 1
Maintenance & Trust
NetLeader Aviator Maintenance & Trust
Maintenance Signals
Community Trust
NetLeader Aviator Alternatives
Weight and balance
weight-and-balance
Compute weight and balance for your aircraft.
Calculated Fields Form
calculated-fields-form
The CFF plugin allows you to create both simple and professional forms. Its form builder includes dynamic calculated fields and many other controls.
Cost Calculator Builder
cost-calculator-builder
WP Cost Calculator is a simple and powerful tool that lets you create price estimation forms. Easily give your clients information about your services …
Cost of Goods: Product Cost & Profit Calculator for WooCommerce
cost-of-goods-for-woocommerce
Unlock detailed insights into products profitability, calculate COGS & profit margins, and get a better financial analytics insights with our Cost …
WPCargo Track & Trace
wpcargo
WPCargo is a track & trace system for courier, courier script, parcel, balikbayan system, shipment and transportation management system, ideal sol …
NetLeader Aviator Developer Profile
1 plugin · 10 total installs
How We Detect NetLeader Aviator
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/netleader-aviator/js/jquery.serializeall.js/wp-content/plugins/netleader-aviator/js/netleader-aviator.js/wp-content/plugins/netleader-aviator/css/netleader-aviator.css/wp-content/plugins/netleader-aviator/js/jquery.serializeall.js/wp-content/plugins/netleader-aviator/js/netleader-aviator.jsnetleader-aviator/js/jquery.serializeall.js?ver=netleader-aviator/js/netleader-aviator.js?ver=netleader-aviator/css/netleader-aviator.css?ver=HTML / DOM Fingerprints
nlavprofnlavdesctabnlavctrnlavdescnlavinpnlavweightnlavcgnlavlabel+6 moredata-profiledata-weightdata-cgjQueryacParamscanEditshowEditmodProfilesqlID+20 more<div id="acprofiles"></div><div id="acdescription"></div><div id="statusmsg"></div><div id="acsummary"></div>