Cf7 Icons and Labels Security & Risk Analysis
wordpress.org/plugins/cf7-icons-and-labelsThis plugin can be used to add font awesome icons and labels to the Contact Form 7.
Is Cf7 Icons and Labels Safe to Use in 2026?
Generally Safe
Score 85/100Cf7 Icons and Labels has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The static analysis of cf7-icons-and-labels v1.3 reveals a seemingly secure plugin with no identified attack surface or dangerous functions. All SQL queries are prepared, and there are no file operations or external HTTP requests. The absence of known CVEs and the lack of taint analysis findings further contribute to a positive security posture. However, a significant concern arises from the fact that 100% of output escaping is unaddressed, indicating a potential for Cross-Site Scripting (XSS) vulnerabilities. While the plugin has no recorded vulnerability history, this doesn't guarantee future safety, especially given the identified output escaping issues. The lack of capability checks and nonce checks, though not directly flagged as risky in the current static analysis, could become vulnerabilities if new entry points are introduced or if the existing structure is misunderstood. Overall, while the plugin demonstrates good practices in some areas like SQL handling, the critical deficiency in output escaping presents a notable risk that needs immediate attention.
Key Concerns
- Output escaping is not implemented
Cf7 Icons and Labels Security Vulnerabilities
Cf7 Icons and Labels Code Analysis
Output Escaping
Cf7 Icons and Labels Attack Surface
WordPress Hooks 3
Maintenance & Trust
Cf7 Icons and Labels Maintenance & Trust
Maintenance Signals
Community Trust
Cf7 Icons and Labels Alternatives
Database Addon for Contact Form 7 – CFDB7
contact-form-cfdb7
Save and manage Contact Form 7 messages. Never lose important data. It is a lightweight contact form 7 database plugin.
CF7 Apps – Honeypot, Database, Redirection, Webhook, and Addons for Contact Form 7
contact-form-7-honeypot
Addons for Contact Form 7 — Honeypot, Database Entries, Redirection, Spam Protection, Webhooks, ACF integration for Contact Form 7, and more.
Redirection for Contact Form 7
wpcf7-redirect
Redirect to any page or URL, execute scripts after submission, save data to the database, and unlock additional submission actions for Contact Form 7.
Advanced Contact form 7 DB
advanced-cf7-db
Save all contact form 7 form submitted data to the database, View, Ordering, Change field labels and Import/Export data using CSV.
Connect Contact Form 7 and Mailchimp
contact-form-7-mailchimp-extension
Connect Contact Form 7 to Mailchimp. Automatically sync form submissions to your Mailchimp audiences with merge field mapping, double opt-in, and opt- …
Cf7 Icons and Labels Developer Profile
1 plugin · 600 total installs
How We Detect Cf7 Icons and Labels
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/cf7-icons-and-labels/css/cf7_style.css/wp-content/plugins/cf7-icons-and-labels/js/cf7_script.jshttps://use.fontawesome.com/2deb5ba708.jsHTML / DOM Fingerprints
cf7_global_class