Anti-Spam URL Blocker for Contact Form Security & Risk Analysis

wordpress.org/plugins/anti-spam-url-blocker-for-contact-form

Short Description: Securely prevents submission of URLs in Contact Form 7 forms.

0 active installs v1.0.1 PHP 7.2+ WP 5.0+ Updated Oct 17, 2024
contact-formspam-protectionurlvalidation
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Anti-Spam URL Blocker for Contact Form Safe to Use in 2026?

Generally Safe

Score 92/100

Anti-Spam URL Blocker for Contact Form has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The plugin "anti-spam-url-blocker-for-contact-form" v1.0.1 exhibits a strong security posture based on the provided static analysis. It demonstrates excellent adherence to secure coding practices by exclusively using prepared statements for SQL queries and ensuring all output is properly escaped. The absence of dangerous functions, file operations, and external HTTP requests further bolsters its security. The presence of a nonce check on one of its two AJAX handlers is a positive sign for protecting against CSRF attacks, although the lack of capability checks on any entry points is a notable weakness.

The taint analysis revealed no concerning flows, and the vulnerability history is clean, with no recorded CVEs. This suggests a well-maintained codebase and a lack of historically exploitable flaws. However, the complete absence of capability checks on both AJAX handlers represents a potential risk. If these handlers perform sensitive operations that should be restricted to authenticated users, they could be exploited by unauthenticated attackers.

In conclusion, this plugin appears to be robustly built with a focus on secure coding fundamentals. Its lack of known vulnerabilities and absence of risky code patterns are significant strengths. The primary area for concern is the missing capability checks on its AJAX handlers, which could lead to unauthorized actions if these handlers are not inherently safe for public access. Addressing this would further strengthen its overall security.

Key Concerns

  • Missing capability checks on AJAX handlers
Vulnerabilities
None known

Anti-Spam URL Blocker for Contact Form Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Anti-Spam URL Blocker for Contact Form Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Anti-Spam URL Blocker for Contact Form Attack Surface

Entry Points2
Unprotected0

AJAX Handlers 2

authwp_ajax_b47_validate_urlanti-spam-url-blocker.php:78
noprivwp_ajax_b47_validate_urlanti-spam-url-blocker.php:79
WordPress Hooks 6
actionplugins_loadedanti-spam-url-blocker.php:53
actionwpcf7_initanti-spam-url-blocker.php:54
actionadmin_noticesanti-spam-url-blocker.php:64
actionwp_enqueue_scriptsanti-spam-url-blocker.php:72
filterwpcf7_validateanti-spam-url-blocker.php:87
actioninitanti-spam-url-blocker.php:199
Maintenance & Trust

Anti-Spam URL Blocker for Contact Form Maintenance & Trust

Maintenance Signals

WordPress version tested6.6.5
Last updatedOct 17, 2024
PHP min version7.2
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Anti-Spam URL Blocker for Contact Form Developer Profile

ajaypatidar8085

1 plugin · 0 total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Anti-Spam URL Blocker for Contact Form

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/anti-spam-url-blocker-for-contact-form/assets/css/47b-cf-url-validator.css/wp-content/plugins/anti-spam-url-blocker-for-contact-form/assets/js/47b-cf-url-validator.js
Script Paths
/wp-content/plugins/anti-spam-url-blocker-for-contact-form/assets/js/47b-cf-url-validator.js
Version Parameters
anti-spam-url-blocker-for-contact-form/assets/css/47b-cf-url-validator.css?ver=anti-spam-url-blocker-for-contact-form/assets/js/47b-cf-url-validator.js?ver=

HTML / DOM Fingerprints

JS Globals
b47CFURLValidator
FAQ

Frequently Asked Questions about Anti-Spam URL Blocker for Contact Form