
ACF Onyx Poll Security & Risk Analysis
wordpress.org/plugins/acf-onyx-pollCreate polls widgets, blocks and modals based on regular Wordpress and acf (advanced custom fields) functionalities.
Is ACF Onyx Poll Safe to Use in 2026?
Generally Safe
Score 99/100ACF Onyx Poll has a strong security track record. Known vulnerabilities have been patched promptly.
The acf-onyx-poll v1.2.0 plugin exhibits a generally positive security posture due to its use of prepared statements for all SQL queries and the absence of dangerous functions or file operations. However, a significant concern arises from the low rate of proper output escaping (45%), indicating a substantial risk of Cross-Site Scripting (XSS) vulnerabilities. This is further corroborated by its vulnerability history, which includes a past medium-severity XSS vulnerability. The plugin has no unpatched CVEs currently, which is a strength, but the consistent pattern of XSS suggests an ongoing weakness in how user-provided data is handled before being displayed to users. While the attack surface is small and protected, the lack of comprehensive output escaping is a critical oversight that could be exploited.
Key Concerns
- Low rate of output escaping
- Past medium severity XSS vulnerability
- No nonce checks on entry points
ACF Onyx Poll Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
ACF Onyx Poll <= 1.1.9 - Authenticated (Contributor+) Stored Cross-Site Scripting via class Parameter
ACF Onyx Poll Code Analysis
Output Escaping
ACF Onyx Poll Attack Surface
Shortcodes 1
WordPress Hooks 16
Scheduled Events 1
Maintenance & Trust
ACF Onyx Poll Maintenance & Trust
Maintenance Signals
Community Trust
ACF Onyx Poll Alternatives
Crowdsignal Forms
crowdsignal-forms
The Crowdsignal Forms plugin allows you to create and manage polls right from within the block editor.
Crowdsignal Dashboard – Polls, Surveys & more
polldaddy
Manage your Crowdsignal polls, surveys, quizzes, and ratings directly from the WordPress dashboard.
WP-Polls
wp-polls
Adds an AJAX poll system to your WordPress blog. You can also easily add a poll into your WordPress's blog post/page.
YOP Poll
yop-poll
Use a full option polling solution to get the answers you need. YOP Poll is the perfect, easy to use poll plugin for your WordPress site.
Democracy Poll
democracy-poll
WordPress polls plugin with multiple-choice, custom answers, cache compatibility, widgets, and shortcodes.
ACF Onyx Poll Developer Profile
1 plugin · 90 total installs
How We Detect ACF Onyx Poll
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/acf-onyx-poll/assets/css/admin.min.css/wp-content/plugins/acf-onyx-poll/assets/js/onyx-poll.min.js/wp-content/plugins/acf-onyx-poll/assets/css/onyx-poll.min.cssassets/js/onyx-poll.min.jsacf-onyx-poll/assets/css/admin.min.css?ver=acf-onyx-poll/assets/js/onyx-poll.min.js?ver=acf-onyx-poll/assets/css/onyx-poll.min.css?ver=HTML / DOM Fingerprints
onyx-pollonyx-poll-modalonyx-poll-widgetonyx-poll-invaliddata-pollOnyxPolls/wp-json/acf-onyx-poll<div id="onyx-poll- class="onyx-poll onyx-poll-widget active show data-poll="</div>