Rdv360 Réservation en ligne Security & Risk Analysis

wordpress.org/plugins/rdv360-reservation-en-ligne

Le plugin permet d'ajouter une page de réservation en ligne rdv360.

100 active installs v3.0 PHP 5.6+ WP 4.1+ Updated Oct 31, 2022
online-bookingplanning-rdv-en-ligneprise-de-rdvreservation-en-lignerdv360
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Rdv360 Réservation en ligne Safe to Use in 2026?

Generally Safe

Score 85/100

Rdv360 Réservation en ligne has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The plugin "rdv360-reservation-en-ligne" v3.0 exhibits a mixed security posture. On the positive side, the plugin has no known vulnerabilities (CVEs) and its static analysis indicates a limited attack surface with no discovered dangerous functions or raw SQL queries. Furthermore, there are no recorded vulnerabilities, suggesting a generally well-maintained codebase in the past. However, significant concerns arise from the complete lack of output escaping. This means that any data displayed by the plugin, including potentially user-supplied input, is not sanitized, opening the door to Cross-Site Scripting (XSS) vulnerabilities. Additionally, the absence of capability checks and nonce checks on the identified shortcode entry point is a major weakness, as it implies that any logged-in user, regardless of their role or intent, could potentially trigger its functionality, leading to unauthorized actions or information disclosure. The presence of an external HTTP request without clear context regarding its purpose or security implications also warrants caution.

Key Concerns

  • All outputs are unescaped
  • No capability checks on shortcode
  • No nonce checks on shortcode
  • External HTTP request present
Vulnerabilities
None known

Rdv360 Réservation en ligne Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Rdv360 Réservation en ligne Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
10
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
1
Bundled Libraries
0

Output Escaping

0% escaped10 total outputs
Attack Surface

Rdv360 Réservation en ligne Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[rdv360] includes\rdv360-functions.php:287
WordPress Hooks 4
actionadmin_menuincludes\rdv360-functions.php:6
actionadmin_initincludes\rdv360-functions.php:90
actioninitincludes\rdv360-functions.php:290
actionadmin_enqueue_scriptsincludes\rdv360-functions.php:304
Maintenance & Trust

Rdv360 Réservation en ligne Maintenance & Trust

Maintenance Signals

WordPress version tested6.0.11
Last updatedOct 31, 2022
PHP min version5.6
Downloads5K

Community Trust

Rating100/100
Number of ratings1
Active installs100
Developer Profile

Rdv360 Réservation en ligne Developer Profile

alex

1 plugin · 100 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Rdv360 Réservation en ligne

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/rdv360-reservation-en-ligne/assets/css/widget.css/wp-content/plugins/rdv360-reservation-en-ligne/assets/js/widget.js
Script Paths
/wp-content/plugins/rdv360-reservation-en-ligne/assets/js/widget.js
Version Parameters
rdv360-reservation-en-ligne/assets/css/widget.css?ver=rdv360-reservation-en-ligne/assets/js/widget.js?ver=

HTML / DOM Fingerprints

CSS Classes
rdv360-settingsrdv360-widget
Data Attributes
data-api-keydata-api-secret
JS Globals
rdv360Api
Shortcode Output
[rdv360_widget]
FAQ

Frequently Asked Questions about Rdv360 Réservation en ligne