Smart System Eat Delivery by xCloud.pro Security & Risk Analysis

wordpress.org/plugins/smart-system-eat-delivery-xcloud-pro

Professional System for Food Delivery. This plugin will integrate The Booking Form from xcloud.pro with your WordPress website.

0 active installs v1.0.5 PHP + WP 4.2.2+ Updated Apr 14, 2023
booking-formbooking-integrationeat-bookingfood-deliveryfood-pickup
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Smart System Eat Delivery by xCloud.pro Safe to Use in 2026?

Generally Safe

Score 85/100

Smart System Eat Delivery by xCloud.pro has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2yr ago
Risk Assessment

Based on the static analysis, this plugin exhibits a relatively good security posture in several key areas. The absence of dangerous functions, reliance on prepared statements for all SQL queries, and zero external HTTP requests are positive indicators. The limited attack surface, with only one shortcode and no AJAX handlers or REST API routes, further contributes to its defensibility. However, there are significant areas of concern. The extremely low percentage of properly escaped output (25%) is a major red flag, indicating a high risk of Cross-Site Scripting (XSS) vulnerabilities. Furthermore, the complete lack of nonce checks and capability checks, especially in the presence of any executable code within the shortcode, leaves it vulnerable to various attacks if the shortcode's functionality can be triggered by an attacker. The plugin's vulnerability history is clean, which is a positive sign, but it doesn't mitigate the risks identified in the static analysis. The lack of any taint analysis results might be due to the limited scope of the analysis or a lack of complex data flows. In conclusion, while the plugin avoids common pitfalls like unpatched CVEs and direct SQL injection, the severe deficiencies in output sanitization and the absence of crucial security checks for its limited entry point represent significant, actionable security risks.

Key Concerns

  • Low output escaping percentage
  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

Smart System Eat Delivery by xCloud.pro Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Smart System Eat Delivery by xCloud.pro Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
3
1 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

25% escaped4 total outputs
Attack Surface

Smart System Eat Delivery by xCloud.pro Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[xcloud-eat] shortcode_xcloud.php:32
WordPress Hooks 3
actionadmin_menuxcloud-smart-system-eat-delivery.php:32
actionadmin_initxcloud-smart-system-eat-delivery.php:33
actioninitxcloud-smart-system-eat-delivery.php:34
Maintenance & Trust

Smart System Eat Delivery by xCloud.pro Maintenance & Trust

Maintenance Signals

WordPress version tested4.9.29
Last updatedApr 14, 2023
PHP min version
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Smart System Eat Delivery by xCloud.pro Developer Profile

lucianopreite

3 plugins · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Smart System Eat Delivery by xCloud.pro

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

Shortcode Output
[xcloud-eat]
FAQ

Frequently Asked Questions about Smart System Eat Delivery by xCloud.pro