
BSK Forms Blacklist Security & Risk Analysis
wordpress.org/plugins/bsk-gravityforms-blacklistChecks field content and block submitting base on your keywords. Blocking IP, Country is only supported in the Pro version.
Is BSK Forms Blacklist Safe to Use in 2026?
Generally Safe
Score 96/100BSK Forms Blacklist has a strong security track record. Known vulnerabilities have been patched promptly.
The bsk-gravityforms-blacklist plugin v4.2 presents a mixed security posture. While it demonstrates good practices by securing all identified entry points (AJAX handlers) and largely utilizing prepared statements for SQL queries, several areas raise concern. The presence of 4 instances of the dangerous 'unserialize' function is a significant red flag, as unserialization of untrusted input can lead to arbitrary code execution vulnerabilities. Furthermore, the taint analysis indicates 14 flows with unsanitized paths, although thankfully none were classified as critical or high severity. The plugin's vulnerability history reveals a concerning pattern with 5 previously disclosed CVEs, including a high-severity one, and a recent high-severity vulnerability reported in early 2025. This suggests a history of security weaknesses that, while currently patched, require diligent monitoring and timely updates.
Key Concerns
- Dangerous function: unserialize found
- Flows with unsanitized paths found
- Previous high severity vulnerability
- Total of 5 known CVEs
- Only 26% of outputs properly escaped
BSK Forms Blacklist Security Vulnerabilities
CVEs by Year
Severity Breakdown
5 total CVEs
BSK Forms Blacklist <= 3.9 - Cross-Site Request Forgery
BSK Forms Blacklist <= 3.8.1 - Reflected Cross-Site Scripting
BSK Forms Blacklist <= 3.8 - Reflected Cross-Site Scripting
BSK Forms Blacklist <= 3.6.3 - Authenticated (Admin+) Stored Cross-Site Scripting
BSK Forms Blacklist <= 3.6.2 - Authenticated (Administrator+) SQL Injection via 'order' and 'orderby'
BSK Forms Blacklist Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Data Flow Analysis
BSK Forms Blacklist Attack Surface
AJAX Handlers 2
WordPress Hooks 52
Maintenance & Trust
BSK Forms Blacklist Maintenance & Trust
Maintenance Signals
Community Trust
BSK Forms Blacklist Alternatives
Gravity Forms Email Blacklist
gravity-forms-email-blacklist
Add-on for Gravity Forms to create a Blacklisting of specific emails or domains for the Email input field to throw a validation error or mark as spam.
WP Contact Slider – Contact Form Slider Widget
wp-contact-slider
Helps you to show slide out contact form to display CF7, Gravity forms, Ninja Forms, WP Forms, display random text/HTML and support some other forms.
Gravity Forms Block Email Domains
gf-block-email-domains
Easily set a list of email domains to block on email fields in Gravity Forms.
WP Mautic Form Integrator
wp-mautic-form-integrator
Mautic is a marketing automation software and WP Mautic Form Integrator plugin is a bridge between Mautic and several highly used form plugins.
Blacklist Unwanted Email – Formidable Forms
block-email-formidable-form
This is a free add-on plugin for Formidable Forms , which validates the email field and restrict unwanted email submission as well as allowed only bus …
BSK Forms Blacklist Developer Profile
3 plugins · 8K total installs
How We Detect BSK Forms Blacklist
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/bsk-gravityforms-blacklist/js/bsk-gfblcv-admin.js/wp-content/plugins/bsk-gravityforms-blacklist/css/bsk-gfblcv-admin.css/wp-content/plugins/bsk-gravityforms-blacklist/css/bsk-gfblcv-frontend.css/wp-content/plugins/bsk-gravityforms-blacklist/js/bsk-gfblcv-frontend.js/wp-content/plugins/bsk-gravityforms-blacklist/js/bsk-gfblcv-admin.js/wp-content/plugins/bsk-gravityforms-blacklist/js/bsk-gfblcv-frontend.jsbsk-gravityforms-blacklist/js/bsk-gfblcv-admin.js?ver=bsk-gravityforms-blacklist/css/bsk-gfblcv-admin.css?ver=bsk-gravityforms-blacklist/css/bsk-gfblcv-frontend.css?ver=bsk-gravityforms-blacklist/js/bsk-gfblcv-frontend.js?ver=HTML / DOM Fingerprints
bsk-gfblcv-admin-wrapper<!-- BSK_GFBLCV_FREE_DIR --><!-- BSK_GFBLCV_FREE_URL --><!-- plugin hook --><!-- Initialize variables -->+1 moredata-bsk-gfblcv-admin-urldata-bsk-gfblcv-plugin-pathbsk_gfblcv_vars