Oganro Flight Booking Security & Risk Analysis

wordpress.org/plugins/oganro-flight-booking

This plugin is for Oganro Flight Booking. Activate this plugin from the WordPress Store, and use the shortcode which links to the Oganro Flight Bookin …

20 active installs v1.00 PHP 7.2+ WP 5.2+ Updated Feb 20, 2020
aviationflightflight-bookingoganrotravel
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Oganro Flight Booking Safe to Use in 2026?

Generally Safe

Score 85/100

Oganro Flight Booking has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6yr ago
Risk Assessment

The "oganro-flight-booking" plugin version 1.00 exhibits a mixed security posture. On the positive side, the static analysis reveals no known vulnerabilities (CVEs), no dangerous functions are used, all SQL queries are prepared, and there are no file operations or external HTTP requests. This suggests a foundation of good coding practices concerning common web vulnerabilities. However, there are significant areas for concern. The lack of nonce checks and capability checks is a major weakness, as these are fundamental security mechanisms in WordPress to prevent Cross-Site Request Forgery (CSRF) and unauthorized actions. Furthermore, the output escaping is only 40% proper, indicating a potential for Cross-Site Scripting (XSS) vulnerabilities where user-supplied data might be rendered without adequate sanitization.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
  • Low percentage of properly escaped output
Vulnerabilities
None known

Oganro Flight Booking Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Oganro Flight Booking Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
3
2 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

40% escaped5 total outputs
Attack Surface

Oganro Flight Booking Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[oganro_flight_booking] oganro-flight-booking.php:157
WordPress Hooks 3
actionadmin_enqueue_scriptsoganro-flight-booking.php:30
actionwp_enqueue_scriptsoganro-flight-booking.php:38
actionadmin_menuoganro-flight-booking.php:127
Maintenance & Trust

Oganro Flight Booking Maintenance & Trust

Maintenance Signals

WordPress version tested5.3.21
Last updatedFeb 20, 2020
PHP min version7.2
Downloads4K

Community Trust

Rating100/100
Number of ratings1
Active installs20
Developer Profile

Oganro Flight Booking Developer Profile

Oganro

8 plugins · 190 total installs

81
trust score
Avg Security Score
81/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Oganro Flight Booking

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/oganro-flight-booking/css/private/style.css/wp-content/plugins/oganro-flight-booking/js/main.js/wp-content/plugins/oganro-flight-booking/css/style.css/wp-content/plugins/oganro-flight-booking/img/pic28.png/wp-content/plugins/oganro-flight-booking/img/Oganro.png/wp-content/plugins/oganro-flight-booking/img/header_logo.png
Script Paths
/wp-content/plugins/oganro-flight-booking/js/main.js

HTML / DOM Fingerprints

CSS Classes
search-widget-flighttop-imagefooter-imgfooter-img-contentcustom-icon
Data Attributes
id="shortcodeHeight"id="shortcodeWidth"
JS Globals
otb_js_function_mainotb_js_function_gen
Shortcode Output
<iframe class="search-widget-flight" scrolling="yes" allowtransparency="true" frameBorder="0" src="https://booking.oganro.com/booking-engine/search-widget/flight"
FAQ

Frequently Asked Questions about Oganro Flight Booking