XllenTech Salat Timings Security & Risk Analysis

wordpress.org/plugins/xllentech-salat-timings

Salat Timings Plugin to display Salat Timings Daily by widget and Monthly by shortcode. Works on Calculation method that is derived by moonsighting.

30 active installs v1.3.1 PHP + WP 3.0+ Updated Dec 3, 2025
prayer-timesprayer-timingsshia-muslim-prayer-timingsshia-prayer-times
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is XllenTech Salat Timings Safe to Use in 2026?

Generally Safe

Score 100/100

XllenTech Salat Timings has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4mo ago
Risk Assessment

The xllentech-salat-timings v1.3.1 plugin exhibits a mixed security posture. On the positive side, it utilizes prepared statements for all SQL queries, avoids dangerous functions, and has no recorded vulnerability history, suggesting a generally well-maintained codebase. However, significant concerns arise from its attack surface. Three of the four entry points, specifically AJAX handlers, lack authentication checks. This is a critical weakness that could allow unauthenticated users to trigger potentially sensitive functionality. While the taint analysis did not reveal critical or high severity issues, the presence of unsanitized paths in all analyzed flows is a red flag. Coupled with a low percentage of properly escaped output (18%), there is a substantial risk of cross-site scripting (XSS) vulnerabilities if data is not handled carefully before outputting it to the user.

Key Concerns

  • AJAX handlers without authentication
  • High percentage of unescaped output
  • Unsanitized paths in taint flows
Vulnerabilities
None known

XllenTech Salat Timings Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

XllenTech Salat Timings Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
53
12 escaped
Nonce Checks
1
Capability Checks
1
File Operations
0
External Requests
2
Bundled Libraries
0

Output Escaping

18% escaped65 total outputs
Data Flows
6 unsanitized

Data Flow Analysis

6 flows6 with unsanitized paths
xst_get_salat_location (public\class-xllentech-salat-timings-public.php:64)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
3 unprotected

XllenTech Salat Timings Attack Surface

Entry Points4
Unprotected3

AJAX Handlers 3

authwp_ajax_xllentech_salat_timings_rd_notice_hideincludes\class-xllentech-salat-timings-activator.php:44
authwp_ajax_xst_salat_submit_reloadincludes\class-xllentech-salat-timings.php:477
noprivwp_ajax_xst_salat_submit_reloadincludes\class-xllentech-salat-timings.php:478

Shortcodes 1

[xllentech-salat-timings-monthly] includes\class-xllentech-salat-timings.php:483
WordPress Hooks 8
actionadmin_noticesincludes\class-xllentech-salat-timings-activator.php:43
actionplugins_loadedincludes\class-xllentech-salat-timings.php:438
actionadmin_enqueue_scriptsincludes\class-xllentech-salat-timings.php:453
actionadmin_menuincludes\class-xllentech-salat-timings.php:457
actionwp_enqueue_scriptsincludes\class-xllentech-salat-timings.php:473
actionwp_enqueue_scriptsincludes\class-xllentech-salat-timings.php:474
filterxst_get_salat_locationincludes\class-xllentech-salat-timings.php:481
actionwidgets_initxllentech-salat-timings.php:64
Maintenance & Trust

XllenTech Salat Timings Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 3, 2025
PHP min version
Downloads4K

Community Trust

Rating100/100
Number of ratings1
Active installs30
Developer Profile

XllenTech Salat Timings Developer Profile

Abbas

3 plugins · 140 total installs

77
trust score
Avg Security Score
97/100
Avg Patch Time
971 days
View full developer profile
Detection Fingerprints

How We Detect XllenTech Salat Timings

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/xllentech-salat-timings/admin/css/xllentech-salat-timings-admin.css/wp-content/plugins/xllentech-salat-timings/admin/js/xllentech-salat-timings-admin.js/wp-content/plugins/xllentech-salat-timings/public/css/xllentech-salat-timings-public.css/wp-content/plugins/xllentech-salat-timings/public/js/xllentech-salat-timings-public.js
Script Paths
/wp-content/plugins/xllentech-salat-timings/admin/js/xllentech-salat-timings-admin.js/wp-content/plugins/xllentech-salat-timings/public/js/xllentech-salat-timings-public.js
Version Parameters
xllentech-salat-timings/admin/css/xllentech-salat-timings-admin.css?ver=xllentech-salat-timings/admin/js/xllentech-salat-timings-admin.js?ver=xllentech-salat-timings/public/css/xllentech-salat-timings-public.css?ver=xllentech-salat-timings/public/js/xllentech-salat-timings-public.js?ver=

HTML / DOM Fingerprints

CSS Classes
xllentech-salat-timings-settingsxst_settings_form
Data Attributes
data-latitudedata-longitudedata-timezonedata-methoddata-customdata-xst_display_asr+11 more
JS Globals
xllentech_salat_timings_options
Shortcode Output
[xllentech_salat_timings_display]
FAQ

Frequently Asked Questions about XllenTech Salat Timings