
Accept Stripe Payments Using Contact Form 7 Security & Risk Analysis
wordpress.org/plugins/accept-stripe-payments-using-contact-form-7Contact Form 7 - Integrate Stripe payment gateway for making your payments through Contact Form 7.
Is Accept Stripe Payments Using Contact Form 7 Safe to Use in 2026?
Generally Safe
Score 96/100Accept Stripe Payments Using Contact Form 7 has a strong security track record. Known vulnerabilities have been patched promptly.
The plugin "accept-stripe-payments-using-contact-form-7" v3.3 exhibits a generally good security posture based on the static analysis. It demonstrates strong adherence to secure coding practices by not utilizing dangerous functions, employing prepared statements for all SQL queries, and showing a high percentage of properly escaped output. The presence of nonce and capability checks, along with a limited number of file operations and no external HTTP requests, further contribute to a secure foundation. However, the taint analysis revealing two flows with unsanitized paths, even if not critical, presents a potential concern for input validation weaknesses that could be exploited. The vulnerability history, with three medium-severity CVEs related to Cross-site Scripting and Sensitive Information Exposure, indicates a pattern of past vulnerabilities that required patching. While there are currently no unpatched vulnerabilities, this history suggests a tendency for certain types of flaws to emerge. Overall, the plugin has strengths in its secure coding implementation and recent patch status but requires attention to the identified unsanitized input flows and awareness of its past vulnerability trends.
Key Concerns
- Taint flows with unsanitized paths detected
- Past medium severity CVEs indicate potential recurring issues
- Bundled Select2 library (potential for outdated components)
Accept Stripe Payments Using Contact Form 7 Security Vulnerabilities
CVEs by Year
Severity Breakdown
3 total CVEs
Accept Stripe Payments Using Contact Form 7 <= 3.1 - Reflected Cross-Site Scripting via failure_message
Accept Stripe Payments Using Contact Form 7 <= 3.0 - Unauthenticated Information Exposure
Accept Stripe Payments Using Contact Form 7 <= 2.5 - Unauthenticated Information Exposure
Accept Stripe Payments Using Contact Form 7 Code Analysis
Bundled Libraries
Output Escaping
Data Flow Analysis
Accept Stripe Payments Using Contact Form 7 Attack Surface
WordPress Hooks 29
Maintenance & Trust
Accept Stripe Payments Using Contact Form 7 Maintenance & Trust
Maintenance Signals
Community Trust
Accept Stripe Payments Using Contact Form 7 Alternatives
Stripe Payment Forms by WP Full Pay – Accept Credit Card Payments, Donations & Subscriptions
wp-full-stripe-free
🚀 Create Stripe payment forms for WordPress. Accept credit cards, Apple Pay, donations, subscriptions & more. Easy setup, no coding needed!
Better Payment – Instant Payments, Donations, Fundraising with Subscriptions & More
better-payment
Better Payment allows you to automate payment transactions to manage payments, donations, subscriptions, sell products, etc on your Elementor website.
AidWP – Donation & Payment Forms (Stripe Powered)
wp-stripe-donation
Create fast donation and payment forms. Accept payments on WordPress with Stripe — no WooCommerce required.
Church Tithe WP
churchtithewp
Smoothly, easily, and quickly accepting online tithes and donations is an important thing for every church today. Church Tithe WP makes it simple for …
Buy Me a Coffee button & widgets – Fundraise with Stripe and PayPal
buy-me-coffee
Easy way to collect donations like "buy me a coffee" directly your own Stripe and PayPal for free.
Accept Stripe Payments Using Contact Form 7 Developer Profile
18 plugins · 7K total installs
How We Detect Accept Stripe Payments Using Contact Form 7
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/accept-stripe-payments-using-contact-form-7/inc/admin/template/cf7sa.template.phpaccept-stripe-payments-using-contact-form-7/style.css?ver=accept-stripe-payments-using-contact-form-7/js/cf7sa_admin_js.js?ver=HTML / DOM Fingerprints
stripe-add-oncf7sa_datadata-cf7sa-form-idcf7sa_admin_js[stripe_amount][stripe_currency][stripe_description]