Prayer Times Bangla Security & Risk Analysis

wordpress.org/plugins/prayer-times-bangla

A simple plugin to display daily Islamic prayer times in Bangla or English with location detection.

0 active installs v1.0 PHP 7.2+ WP 5.0+ Updated Unknown
banglaislamnamazprayer-timessalat
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Prayer Times Bangla Safe to Use in 2026?

Generally Safe

Score 100/100

Prayer Times Bangla has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The "prayer-times-bangla" v1.0 plugin exhibits a generally good security posture based on the provided static analysis. The absence of dangerous functions, raw SQL queries, file operations, and external HTTP requests is a positive indicator. Crucially, all SQL queries are prepared, mitigating the risk of SQL injection. The limited attack surface, with only two shortcodes and no unprotected entry points, further strengthens its security. The lack of any recorded vulnerabilities or CVEs in its history suggests a history of stable and secure development.

However, there are areas for improvement. The plugin has no nonce checks or capability checks implemented for its entry points, which can be a significant security concern. While the current attack surface is small, any future additions without proper authentication and authorization mechanisms could introduce vulnerabilities. The output escaping, while mostly proper, still has a small percentage that is not, leaving a minor risk of cross-site scripting (XSS) if the unescaped outputs handle user-supplied data. The taint analysis yielded no flows, which is excellent, but the lack of analysis itself might mean some flows were not thoroughly examined.

In conclusion, "prayer-times-bangla" v1.0 appears to be a relatively secure plugin, especially considering its clean vulnerability history and absence of critical code signals. The primary weaknesses lie in the missing nonce and capability checks, which are fundamental security practices for WordPress plugins. Addressing these would significantly enhance its overall security posture.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
  • Partially unescaped output
Vulnerabilities
None known

Prayer Times Bangla Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Prayer Times Bangla Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
6 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

75% escaped8 total outputs
Attack Surface

Prayer Times Bangla Attack Surface

Entry Points2
Unprotected0

Shortcodes 2

[prayer_times_bn] prayer-times-bn.php:187
[prayer_times_bn] trunk\prayer-times-bn.php:187
WordPress Hooks 6
actionwp_enqueue_scriptsprayer-times-bn.php:15
actionadmin_menuprayer-times-bn.php:25
actionadmin_initprayer-times-bn.php:53
actionwp_enqueue_scriptstrunk\prayer-times-bn.php:15
actionadmin_menutrunk\prayer-times-bn.php:25
actionadmin_inittrunk\prayer-times-bn.php:53
Maintenance & Trust

Prayer Times Bangla Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedUnknown
PHP min version7.2
Downloads305

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Prayer Times Bangla Developer Profile

sheikhshuhad

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Prayer Times Bangla

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/prayer-times-bangla/assets/css/prayer-times.css/wp-content/plugins/prayer-times-bangla/assets/js/prayer-times.js
Script Paths
assets/js/prayer-times.js
Version Parameters
prayer-times-bangla/assets/css/prayer-times.css?ver=prayer-times-bangla/assets/js/prayer-times.js?ver=

HTML / DOM Fingerprints

CSS Classes
ptb-boxptb-headerptb-locationptb-tableprayer-times-bn
Data Attributes
data-lang
JS Globals
window.ptb_lang
Shortcode Output
<div class="ptb-box"<div class="ptb-header" id="ptb-location"><table class="ptb-table" id="prayer-times-table"><tbody id="prayer-times-bn">
FAQ

Frequently Asked Questions about Prayer Times Bangla