
tablebooker – The official plugin for tablebooker Security & Risk Analysis
wordpress.org/plugins/tablebookerInclude the tablebooker modules for booking, gift cards, takeaway, menu card and more in your Wordpress site.
Is tablebooker – The official plugin for tablebooker Safe to Use in 2026?
Generally Safe
Score 85/100tablebooker – The official plugin for tablebooker has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin 'tablebooker' v3.1.0 demonstrates a mixed security posture. On the positive side, the plugin has no recorded vulnerabilities (CVEs), no bundled libraries, no file operations, no external HTTP requests, and all its SQL queries are properly prepared. This suggests a generally robust development approach regarding common security pitfalls. However, significant concerns arise from the static analysis of its code. The absence of any output escaping for its 10 identified output points represents a critical weakness, potentially exposing the site to Cross-Site Scripting (XSS) vulnerabilities. Furthermore, the lack of any nonce checks or capability checks across all entry points, including its 7 shortcodes, is a major security oversight. This leaves the plugin vulnerable to various attacks where an attacker could trigger unauthorized actions or access sensitive data by crafting malicious requests. Taint analysis did not reveal any flows, which is positive, but the other identified weaknesses are substantial.
In conclusion, while the plugin benefits from a clean vulnerability history and secure database practices, the critical lack of output escaping and the absence of authorization checks on its entry points create significant security risks. These weaknesses, if exploited, could lead to severe consequences like data breaches or site defacement. The plugin's developer should prioritize addressing the output escaping and authorization checks to improve its security posture.
Key Concerns
- No output escaping on 10 outputs
- No nonce checks on entry points
- No capability checks on entry points
tablebooker – The official plugin for tablebooker Security Vulnerabilities
tablebooker – The official plugin for tablebooker Code Analysis
Output Escaping
tablebooker – The official plugin for tablebooker Attack Surface
Shortcodes 7
WordPress Hooks 4
Maintenance & Trust
tablebooker – The official plugin for tablebooker Maintenance & Trust
Maintenance Signals
Community Trust
tablebooker – The official plugin for tablebooker Alternatives
Restaurant Menu – Food Ordering System – Table Reservation
menu-ordering-reservations
Create a restaurant menu and start taking food orders online, with no commissions or costs. Table reservations are also available for free.
WPCafe – Restaurant Menu, Online Food Ordering and Reservation Booking Solution
wp-cafe
Complete restaurant solution for restaurant menus, online food ordering, delivery, reservations and booking
Guestplan Booking Widget
guestplan-booking-widget
Turn website visitors into guests with our Guestplan Booking Widget for your website. Install our booking widget on your website and turn your visitor …
ReDi Restaurant Reservation – Instant Availability & Confirmation
redi-restaurant-reservation
Get your restaurant booming with the ReDi Reservation plugin! Simplify bookings, offer instant confirmations, and customize settings. Try today!
Quick Restaurant Reservations
quick-restaurant-reservations
Manage restaurant reservations the easiest way.
tablebooker – The official plugin for tablebooker Developer Profile
1 plugin · 200 total installs
How We Detect tablebooker – The official plugin for tablebooker
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/tablebooker/adminPage.php/wp-content/plugins/tablebooker/tablebookerAPI.php/wp-content/plugins/tablebooker/includes/tbkr-admin-functions.phphttps://reservations.tablebooker.com/tbkr-widget-import.min.jshttps://widget.tablebooker.shop/tbkr-widget-import.min.jsHTML / DOM Fingerprints
name="tablebooker_options"window.tbkr_widget_importwindow.tbkr_shop_widget_import[tablebooker_reservation][tablebooker_menu][tablebooker_feedback][tablebooker_giftcard]