Agile CRM Campaigns Security & Risk Analysis

wordpress.org/plugins/agile-crm-campaigns

Agile CRM is an all-in-one, affordable and next-gen Customer Relationship Management (CRM) software with marketing, sales and service automation

10 active installs v1.0 PHP + WP 3.0.1+ Updated Dec 26, 2017
agile-crmcrmcrm-plugincustomer-relationship-managementsmall-business-crm
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Agile CRM Campaigns Safe to Use in 2026?

Generally Safe

Score 85/100

Agile CRM Campaigns has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8yr ago
Risk Assessment

The "agile-crm-campaigns" v1.0 plugin presents a generally good security posture with some areas of concern. The absence of known CVEs and the diligent use of prepared statements for SQL queries are strong indicators of a well-maintained and secure codebase. The plugin also implements a reasonable number of nonce and capability checks, which are crucial for preventing common WordPress attacks.

However, the analysis reveals a significant weakness in output escaping, with nearly 42% of outputs not being properly escaped. This could lead to cross-site scripting (XSS) vulnerabilities if user-supplied data is not handled with care before being rendered in the browser. While taint analysis shows no critical or high-severity unsanitized flows, the high percentage of unescaped outputs warrants further investigation into how these outputs are generated and if they are susceptible to manipulation.

Overall, the plugin's vulnerability history is clean, suggesting a proactive approach to security. The primary risk lies in the potential for unescaped output, which, despite the lack of observed taint flows, represents a latent vulnerability. The plugin's strengths lie in its robust SQL handling and the absence of historical vulnerabilities, but the output escaping needs attention to achieve a truly robust security profile.

Key Concerns

  • High percentage of unescaped output
Vulnerabilities
None known

Agile CRM Campaigns Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Agile CRM Campaigns Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
55
75 escaped
Nonce Checks
4
Capability Checks
2
File Operations
0
External Requests
13
Bundled Libraries
0

Output Escaping

58% escaped130 total outputs
Data Flows
All sanitized

Data Flow Analysis

5 flows
agilecrm_campaigns_dashboard_page (index.php:136)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Agile CRM Campaigns Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[agileform_campaigns] index.php:1226
WordPress Hooks 17
actionwp_enqueue_stylesindex.php:28
actionwpindex.php:35
actioninitindex.php:52
actionadmin_menuindex.php:93
actionload-post.phpindex.php:1081
actionload-post-new.phpindex.php:1082
actionsave_postindex.php:1083
actionadd_meta_boxesindex.php:1086
actionadmin_headindex.php:1199
filtermce_external_pluginsindex.php:1211
filtermce_buttonsindex.php:1212
actionadmin_enqueue_scriptsindex.php:1312
actionwp_footerindex.php:1382
actionwp_enqueue_scriptsindex.php:1389
actionadmin_enqueue_scriptsindex.php:1393
actionadmin_enqueue_scriptsindex.php:1399
actionadmin_enqueue_scriptsindex.php:1404
Maintenance & Trust

Agile CRM Campaigns Maintenance & Trust

Maintenance Signals

WordPress version tested4.7.32
Last updatedDec 26, 2017
PHP min version
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Agile CRM Campaigns Developer Profile

Agile CRM

9 plugins · 860 total installs

85
trust score
Avg Security Score
87/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Agile CRM Campaigns

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/agile-crm-campaigns/css/style.css

HTML / DOM Fingerprints

CSS Classes
agilewrapperagilewrapper2label-success
REST Endpoints
/dev/api/forms
FAQ

Frequently Asked Questions about Agile CRM Campaigns