
Xllentech English Islamic Calendar Security & Risk Analysis
wordpress.org/plugins/xllentech-english-islamic-calendarThe Best English Islamic Calendar plugin on WordPress.
Is Xllentech English Islamic Calendar Safe to Use in 2026?
Generally Safe
Score 99/100Xllentech English Islamic Calendar has a strong security track record. Known vulnerabilities have been patched promptly.
The "xllentech-english-islamic-calendar" v2.8.0 plugin exhibits a generally positive security posture, with a strong emphasis on code hardening practices. The static analysis reveals a relatively small attack surface with no unprotected entry points. The code demonstrates good habits regarding SQL query preparedness (78% prepared) and output escaping (83% escaped), along with a decent number of nonce and capability checks. The absence of external HTTP requests and bundled libraries also contributes to a more secure profile.
However, the static analysis does highlight two concerning taint flows with unsanitized paths, even though they are not categorized as critical or high severity. While the plugin has a history of known vulnerabilities, specifically one high-severity SQL injection in the past, it's encouraging that there are no currently unpatched CVEs. The historical presence of an SQL injection vulnerability, even if patched, suggests that input sanitization and prepared statements should be meticulously reviewed and maintained. The taint analysis findings, though not critical, warrant attention as they represent potential vectors for data manipulation or unintended behavior.
In conclusion, "xllentech-english-islamic-calendar" v2.8.0 shows promising security practices, particularly in its handling of SQL queries and output escaping, and its lack of currently unpatched vulnerabilities is a significant strength. The primary area for improvement lies in thoroughly investigating and rectifying the identified taint flows with unsanitized paths, and continuing to vigilantly monitor for and address any future security weaknesses, especially given its past SQL injection history.
Key Concerns
- Unsanitized path taint flows found
- Past high severity SQL injection CVE
- SQL queries not fully prepared
- Output not always properly escaped
Xllentech English Islamic Calendar Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Xllentech English Islamic Calendar <= 2.6.7 - SQL Injection
Xllentech English Islamic Calendar Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Xllentech English Islamic Calendar Attack Surface
Shortcodes 3
WordPress Hooks 14
Maintenance & Trust
Xllentech English Islamic Calendar Maintenance & Trust
Maintenance Signals
Community Trust
Xllentech English Islamic Calendar Alternatives
Hijri Calendar
hijri-calendar
Easily display current Hijri/Islamic date (according to hijri calendar), anywhere in your wordpress blog!
The Events Calendar
the-events-calendar
The Events Calendar: #1 calendar plugin for WordPress. Create/manage events (virtual too!) on your site with the free plugin.
LatePoint – Calendar Booking Plugin for Appointments and Events
latepoint
Optimize your appointment scheduling with our plugin. Sync calendars, automate reminders, and keep your bookings organized.
Online Scheduling and Appointment Booking System – Bookly
bookly-responsive-appointment-booking-tool
Appointment booking system for WordPress — schedule appointments, manage calendars, send reminders, take payments. Start booking today!
Events Manager – Calendar, Bookings, Tickets, and more!
events-manager
Events calendar with bookings, scheduling, appointments, event registration, tickets, recurring events, and venue management.
Xllentech English Islamic Calendar Developer Profile
3 plugins · 140 total installs
How We Detect Xllentech English Islamic Calendar
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/xllentech-english-islamic-calendar/public/css/xllentech-english-islamic-calendar.css/wp-content/plugins/xllentech-english-islamic-calendar/public/js/xllentech-english-islamic-calendar.js/wp-content/plugins/xllentech-english-islamic-calendar/public/js/moment.min.js/wp-content/plugins/xllentech-english-islamic-calendar/public/js/moment-hijri.js/wp-content/plugins/xllentech-english-islamic-calendar/public/js/moment-hijri-config.js/wp-content/plugins/xllentech-english-islamic-calendar/admin/css/xllentech-english-islamic-calendar-admin.css/wp-content/plugins/xllentech-english-islamic-calendar/admin/js/xllentech-english-islamic-calendar-admin.js/wp-content/plugins/xllentech-english-islamic-calendar/admin/js/xc-admin-monthnames.js+2 moreXllenTech English Islamic Calendar v2.8.0/wp-content/plugins/xllentech-english-islamic-calendar/public/js/xllentech-english-islamic-calendar.js/wp-content/plugins/xllentech-english-islamic-calendar/public/js/moment.min.js/wp-content/plugins/xllentech-english-islamic-calendar/public/js/moment-hijri.js/wp-content/plugins/xllentech-english-islamic-calendar/public/js/moment-hijri-config.js/wp-content/plugins/xllentech-english-islamic-calendar/admin/js/xllentech-english-islamic-calendar-admin.js/wp-content/plugins/xllentech-english-islamic-calendar/admin/js/xc-admin-monthnames.js+2 morexllentech-english-islamic-calendar/public/css/xllentech-english-islamic-calendar.css?ver=xllentech-english-islamic-calendar/public/js/xllentech-english-islamic-calendar.js?ver=xllentech-english-islamic-calendar/admin/css/xllentech-english-islamic-calendar-admin.css?ver=xllentech-english-islamic-calendar/admin/js/xllentech-english-islamic-calendar-admin.js?ver=HTML / DOM Fingerprints
xllentech-islamic-calendar-widgetxllentech-islamic-today-widget<!--Shortcode code [xcalendar] Starts --><!--Shortcode code [xcalendar] Ends --><!--Shortcode code [xllentech-today] Starts --><!--Shortcode code [xllentech-today] Ends -->+10 moredata-day=""data-month=""data-year=""window.momentwindow.momentHijrixc_settingsXC_PLUGIN_VERSIONXC_PLUGIN_DIRXC_PLUGIN_URL+1 more[xcalendar][xllentech-today]