
Contact Form 7 2Checkout Security & Risk Analysis
wordpress.org/plugins/cf7-2checkoutTwochout payment gateway integrated with contact form 7
Is Contact Form 7 2Checkout Safe to Use in 2026?
Generally Safe
Score 85/100Contact Form 7 2Checkout has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'cf7-2checkout' plugin version 1.0.0 exhibits a generally good security posture based on the provided static analysis. The absence of any identified entry points like AJAX handlers, REST API routes, or shortcodes significantly limits the potential attack surface. Furthermore, the code demonstrates responsible SQL handling by exclusively using prepared statements. The vulnerability history is also clean, with no recorded CVEs, which is a positive indicator. However, a notable concern arises from the output escaping, where only 55% of outputs are properly escaped. This indicates a potential for Cross-Site Scripting (XSS) vulnerabilities, as unsanitized output can be rendered directly in the browser, allowing attackers to inject malicious scripts. While the taint analysis found no issues, the output escaping metric warrants attention. The lack of capability checks, nonce checks, and the presence of dangerous functions being zero are all positive signs, but the unescaped output remains the primary area of risk.
Key Concerns
- Low output escaping coverage
Contact Form 7 2Checkout Security Vulnerabilities
Contact Form 7 2Checkout Code Analysis
Output Escaping
Contact Form 7 2Checkout Attack Surface
WordPress Hooks 12
Maintenance & Trust
Contact Form 7 2Checkout Maintenance & Trust
Maintenance Signals
Community Trust
Contact Form 7 2Checkout Alternatives
Payment Gateway – 2Checkout for WooCommerce
woo-2checkout
2Checkout Payment Gateway for WooCommerce allow to accept online store payment from Paypal, Credit Card, MasterCard and more.
Donate by BestWebSoft – Donations Acception Extention for WordPress
donate-button
Add PayPal and 2CO donate buttons to receive charity payments.
2Checkout Integration for WordPress – WP Super Pay
2checkout
2Checkout integration for WordPress. Collect donation and payments without any E-commerce programs
2CPay
2cpay
2CPay is a 2Checkout plugin developed for Woocommerce
Accept 2Checkout Payments Using Contact Form 7
accept-2checkout-payments-using-contact-form-7
The 2Checkout Payment system provides a secure, simple means of authorizing credit and debit card transactions from your website.
Contact Form 7 2Checkout Developer Profile
3 plugins · 20 total installs
How We Detect Contact Form 7 2Checkout
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/cf7-2checkout/includes/template/cf7-2checkout-form.phphttps://www.2checkout.com/checkout/api/2co.min.jsHTML / DOM Fingerprints
card_expiry_fieldsmonthyeardata-2checkout-keydata-2checkout-environmentdata-2checkout-pricedata-2checkout-currencyTwocheckout[twocheckout]