Agile CRM Webrules Security & Risk Analysis

wordpress.org/plugins/agile-crm-webrules

Agile CRM is an all-in-one, affordable and next-gen Customer Relationship Management (CRM) software with marketing, sales and service automation

10 active installs v1.0 PHP + WP 3.0.1+ Updated Jan 2, 2018
agile-crmcrmcrm-plugincustomer-relationship-managementsmall-business-crm
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Agile CRM Webrules Safe to Use in 2026?

Generally Safe

Score 85/100

Agile CRM Webrules has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8yr ago
Risk Assessment

The agile-crm-webrules plugin v1.0 exhibits a generally positive security posture based on the static analysis, with no critical or high-severity taint flows, no direct SQL queries, and a strong emphasis on prepared statements. The plugin also demonstrates an awareness of security best practices with the inclusion of nonce and capability checks. However, a significant concern arises from the output escaping, where only 58% of outputs are properly escaped. This suggests a potential for cross-site scripting (XSS) vulnerabilities if user-supplied data is not correctly sanitized before being displayed, impacting a substantial portion of the plugin's output surface.

The vulnerability history is clean, with no recorded CVEs, which is a strong indicator of past diligence or a lack of exploitation. This, combined with the limited attack surface identified (primarily one shortcode), contributes to a generally favorable impression. Despite the absence of known vulnerabilities and good practices in core areas like SQL handling, the moderate rate of improperly escaped output represents the most significant risk. Addressing this would greatly strengthen the plugin's overall security.

Key Concerns

  • Moderate output escaping (58%)
Vulnerabilities
None known

Agile CRM Webrules Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Agile CRM Webrules Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
55
75 escaped
Nonce Checks
4
Capability Checks
2
File Operations
0
External Requests
13
Bundled Libraries
0

Output Escaping

58% escaped130 total outputs
Data Flows
All sanitized

Data Flow Analysis

5 flows
agilecrm_webrules_dashboard_page (index.php:136)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Agile CRM Webrules Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[agileform_webrules] index.php:1226
WordPress Hooks 17
actionwp_enqueue_stylesindex.php:28
actionwpindex.php:35
actioninitindex.php:52
actionadmin_menuindex.php:93
actionload-post.phpindex.php:1081
actionload-post-new.phpindex.php:1082
actionsave_postindex.php:1083
actionadd_meta_boxesindex.php:1086
actionadmin_headindex.php:1199
filtermce_external_pluginsindex.php:1211
filtermce_buttonsindex.php:1212
actionadmin_enqueue_scriptsindex.php:1312
actionwp_footerindex.php:1382
actionwp_enqueue_scriptsindex.php:1389
actionadmin_enqueue_scriptsindex.php:1393
actionadmin_enqueue_scriptsindex.php:1399
actionadmin_enqueue_scriptsindex.php:1404
Maintenance & Trust

Agile CRM Webrules Maintenance & Trust

Maintenance Signals

WordPress version tested4.7.32
Last updatedJan 2, 2018
PHP min version
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Agile CRM Webrules Developer Profile

Agile CRM

9 plugins · 860 total installs

85
trust score
Avg Security Score
87/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Agile CRM Webrules

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/agile-crm-webrules/css/style.css
Version Parameters
agile-crm-webrules/css/style.css?ver=

HTML / DOM Fingerprints

CSS Classes
textaligncenterlabel-success
Data Attributes
id="agilewrapper"id="agilewrapper2"
REST Endpoints
/dev/api/forms
FAQ

Frequently Asked Questions about Agile CRM Webrules