Sports Booking Slot Security & Risk Analysis

wordpress.org/plugins/sports-booking-slot

Sports Booking Slot is amazing free plugin that enables one to book and purchase available slots for any sports( indoor & outdoor ) and virtual ga …

10 active installs v1.0.0 PHP 7.0+ WP 5.0+ Updated Apr 6, 2021
booking-slotgamessports-booking
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Sports Booking Slot Safe to Use in 2026?

Generally Safe

Score 85/100

Sports Booking Slot has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4yr ago
Risk Assessment

The 'sports-booking-slot' plugin v1.0.0 exhibits a mixed security posture. On the positive side, the plugin demonstrates good practices by including nonce checks and capability checks for its entry points, and it has no known historical vulnerabilities. The absence of dangerous functions, file operations, and external HTTP requests is also a strong indicator of a secure development approach.

However, there are notable concerns. The static analysis reveals that only 33% of output is properly escaped, suggesting a significant risk of Cross-Site Scripting (XSS) vulnerabilities. Furthermore, the taint analysis identified one flow with unsanitized paths, classified as high severity, indicating a potential pathway for malicious input to be processed without adequate sanitization, which could lead to various injection attacks. While the SQL query preparation is at 40%, this still leaves 60% potentially vulnerable to SQL injection if not handled carefully.

Overall, the plugin has a solid foundation in terms of authentication and preventing known exploit vectors. The lack of historical vulnerabilities further bolsters this. However, the high percentage of unescaped output and the critical taint flow are significant weaknesses that require immediate attention to mitigate potential security risks.

Key Concerns

  • High percentage of unescaped output
  • High severity unsanitized taint flow
  • SQL queries not using prepared statements
Vulnerabilities
None known

Sports Booking Slot Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Sports Booking Slot Code Analysis

Dangerous Functions
0
Raw SQL Queries
3
2 prepared
Unescaped Output
27
13 escaped
Nonce Checks
4
Capability Checks
3
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

40% prepared5 total queries

Output Escaping

33% escaped40 total outputs
Data Flows
1 unsanitized

Data Flow Analysis

1 flows1 with unsanitized paths
<SlotList> (includes\Admin\SlotList.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Sports Booking Slot Attack Surface

Entry Points5
Unprotected0

AJAX Handlers 4

authwp_ajax_sbks_admin_slot_listincludes\Admin\Ajax.php:19
authwp_ajax_sbks_admin_update_listincludes\Admin\Ajax.php:20
authwp_ajax_sbks_select_actionincludes\Frontend\Ajax.php:33
noprivwp_ajax_sbks_select_actionincludes\Frontend\Ajax.php:34

Shortcodes 1

[booking_shortcode] includes\Frontend\Shortcode.php:18
WordPress Hooks 11
actionadmin_menuincludes\Admin\Menu.php:18
actionadmin_noticesincludes\Admin\Requirements.php:34
actionadmin_initincludes\Admin.php:21
actionwp_enqueue_scriptsincludes\Assets.php:18
actionadmin_enqueue_scriptsincludes\Assets.php:19
filterwoocommerce_add_cart_item_dataincludes\Frontend\Ajax.php:36
filterwoocommerce_get_item_dataincludes\Frontend\Ajax.php:37
actionwoocommerce_checkout_create_order_line_itemincludes\Frontend\Ajax.php:38
actionwoocommerce_after_checkout_validationincludes\Orders.php:19
actionwoocommerce_order_status_completedincludes\Orders.php:20
actionplugins_loadedsports-booking-slot.php:43
Maintenance & Trust

Sports Booking Slot Maintenance & Trust

Maintenance Signals

WordPress version tested5.7.15
Last updatedApr 6, 2021
PHP min version7.0
Downloads1K

Community Trust

Rating100/100
Number of ratings1
Active installs10
Developer Profile

Sports Booking Slot Developer Profile

naim42

2 plugins · 20 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Sports Booking Slot

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/sports-booking-slot/assets/js/frontend.js/wp-content/plugins/sports-booking-slot/assets/js/admin-ajax-script.js/wp-content/plugins/sports-booking-slot/assets/css/frontend.css/wp-content/plugins/sports-booking-slot/assets/css/admin.css
Script Paths
sports-booking-slot/assets/js/frontend.jssports-booking-slot/assets/js/admin-ajax-script.js
Version Parameters
sports-booking-slot/assets/js/frontend.js?ver=sports-booking-slot/assets/js/admin-ajax-script.js?ver=sports-booking-slot/assets/css/frontend.css?ver=sports-booking-slot/assets/css/admin.css?ver=

HTML / DOM Fingerprints

JS Globals
sbksAjaxObjbkAjaxObj
FAQ

Frequently Asked Questions about Sports Booking Slot