Chat Support for Telegram – Bubble & Button with Gutenberg, Elementor and Shortcode Security & Risk Analysis

wordpress.org/plugins/chat-telegram

Unlimited customer support tool that allows visitors to engage using Telegram

60 active installs v1.1.9 PHP + WP 5.0+ Updated Mar 12, 2026
agentssupporttelegramtelegram-businesstelegram-chat
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Chat Support for Telegram – Bubble & Button with Gutenberg, Elementor and Shortcode Safe to Use in 2026?

Generally Safe

Score 100/100

Chat Support for Telegram – Bubble & Button with Gutenberg, Elementor and Shortcode has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The "chat-telegram" plugin version 1.1.9 demonstrates a generally good security posture based on the static analysis provided. The absence of any recorded vulnerabilities (CVEs) and the strong adherence to security best practices like prepared statements for all SQL queries, a high percentage of properly escaped output, and a comprehensive set of nonce and capability checks are commendable. The plugin also appears to have a well-defined and secured attack surface, with no unprotected entry points identified in its AJAX handlers, REST API routes, or shortcodes.

Key Concerns

  • Presence of unserialize function
Vulnerabilities
None known

Chat Support for Telegram – Bubble & Button with Gutenberg, Elementor and Shortcode Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Chat Support for Telegram – Bubble & Button with Gutenberg, Elementor and Shortcode Release Timeline

v1.1.9Current
v1.1.8
v1.1.7
v1.1.6
v1.1.5
v1.1.4
v1.1.3
v1.1.2
v1.1.1
Code Analysis
Analyzed Apr 16, 2026

Chat Support for Telegram – Bubble & Button with Gutenberg, Elementor and Shortcode Code Analysis

Dangerous Functions
1
Raw SQL Queries
0
3 prepared
Unescaped Output
186
2327 escaped
Nonce Checks
10
Capability Checks
5
File Operations
0
External Requests
3
Bundled Libraries
0

Dangerous Functions Found

unserialize$plugins = unserialize($response['body']);admin/HelpPage/Help.php:139

SQL Query Safety

100% prepared3 total queries

Output Escaping

93% escaped2513 total outputs
Data Flows · Security
All sanitized

Data Flow Analysis

5 flows
dismiss_offer_banner (Helpers/ThemeAtelier_Offer_Banner.php:154)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Chat Support for Telegram – Bubble & Button with Gutenberg, Elementor and Shortcode Attack Surface

Entry Points8
Unprotected0

AJAX Handlers 7

authwp_ajax_themeatelier_dismiss_offer_bannerHelpers/ThemeAtelier_Offer_Banner.php:35
authwp_ajax_cts-never-show-review-noticeadmin/HelpPage/ReviewNotice.php:28
authwp_ajax_csf-get-iconsadmin/csf/functions/actions.php:50
authwp_ajax_csf-exportadmin/csf/functions/actions.php:87
authwp_ajax_csf-importadmin/csf/functions/actions.php:123
authwp_ajax_csf-resetadmin/csf/functions/actions.php:150
authwp_ajax_csf-chosenadmin/csf/functions/actions.php:189

Shortcodes 1

[cts] view/shortcodes/custom-shortcode.php:11
WordPress Hooks 37
actionadmin_noticesHelpers/ThemeAtelier_Offer_Banner.php:34
actionadmin_noticesadmin/HelpPage/ReviewNotice.php:27
actionadmin_footeradmin/appsero/Insights.php:122
actionadmin_noticesadmin/appsero/Insights.php:141
actionadmin_initadmin/appsero/Insights.php:144
filtercron_schedulesadmin/appsero/Insights.php:150
actionwp_enqueue_scriptsadmin/csf/classes/abstract.class.php:20
actionadmin_menuadmin/csf/classes/admin-options.class.php:107
actionadmin_bar_menuadmin/csf/classes/admin-options.class.php:108
actionnetwork_admin_menuadmin/csf/classes/admin-options.class.php:112
filteradmin_footer_textadmin/csf/classes/admin-options.class.php:432
actionafter_setup_themeadmin/csf/classes/setup.class.php:72
actioninitadmin/csf/classes/setup.class.php:73
actionswitch_themeadmin/csf/classes/setup.class.php:74
actionadmin_enqueue_scriptsadmin/csf/classes/setup.class.php:75
actionwp_enqueue_scriptsadmin/csf/classes/setup.class.php:76
actionwp_headadmin/csf/classes/setup.class.php:77
filteradmin_body_classadmin/csf/classes/setup.class.php:78
actionadmin_footeradmin/csf/fields/icon/icon.php:41
actioncustomize_controls_print_footer_scriptsadmin/csf/fields/icon/icon.php:42
actionadmin_print_footer_scriptsadmin/csf/fields/link/link.php:65
actionprint_default_editor_scriptsadmin/csf/fields/wp_editor/wp_editor.php:62
actionwp_enqueue_scriptsinc/class-enqueue.php:20
actionadmin_enqueue_scriptsinc/class-enqueue.php:21
actionplugins_loadedtelegram-chat.php:46
actioninittelegram-chat.php:60
actionblock_categories_alltelegram-chat.php:61
actionadmin_menutelegram-chat.php:90
actionafter_setup_themetelegram-chat.php:119
actionwp_footerview/chat-bubbles/chat-bubbles.php:3
actioninitview/elementor-widgets/elementor-widget.php:153
actionadmin_noticesview/elementor-widgets/elementor-widget.php:178
actionadmin_noticesview/elementor-widgets/elementor-widget.php:185
actionelementor/elements/categories_registeredview/elementor-widgets/elementor-widget.php:190
actionelementor/widgets/widgets_registeredview/elementor-widgets/elementor-widget.php:194
actionwp_enqueue_scriptsview/elementor-widgets/elementor-widget.php:197
actionwp_enqueue_scriptsview/elementor-widgets/elementor-widget.php:360
Maintenance & Trust

Chat Support for Telegram – Bubble & Button with Gutenberg, Elementor and Shortcode Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 12, 2026
PHP min version
Downloads5K

Community Trust

Rating0/100
Number of ratings0
Active installs60
Developer Profile

Chat Support for Telegram – Bubble & Button with Gutenberg, Elementor and Shortcode Developer Profile

Foysal Imran

8 plugins · 780 total installs

88
trust score
Avg Security Score
91/100
Avg Patch Time
21 days
View full developer profile
Detection Fingerprints

How We Detect Chat Support for Telegram – Bubble & Button with Gutenberg, Elementor and Shortcode

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/chat-telegram/admin/csf/js/main.js/wp-content/plugins/chat-telegram/admin/csf/js/codemirror/lib/codemirror.js/wp-content/plugins/chat-telegram/admin/csf/js/codemirror/mode/css/css.js/wp-content/plugins/chat-telegram/admin/csf/js/codemirror/mode/javascript/javascript.js/wp-content/plugins/chat-telegram/admin/csf/js/select2/js/select2.min.js/wp-content/plugins/chat-telegram/admin/csf/js/field-dependencies.js/wp-content/plugins/chat-telegram/admin/csf/js/repeater.js/wp-content/plugins/chat-telegram/admin/csf/js/spinner-addon.js+18 more
Script Paths
/wp-content/plugins/chat-telegram/admin/csf/js/main.js/wp-content/plugins/chat-telegram/admin/csf/js/codemirror/lib/codemirror.js/wp-content/plugins/chat-telegram/admin/csf/js/codemirror/mode/css/css.js/wp-content/plugins/chat-telegram/admin/csf/js/codemirror/mode/javascript/javascript.js/wp-content/plugins/chat-telegram/admin/csf/js/select2/js/select2.min.js/wp-content/plugins/chat-telegram/admin/csf/js/field-dependencies.js+12 more
Version Parameters
?ver=1.1.9

HTML / DOM Fingerprints

CSS Classes
chat-telegram-get-pro-text
HTML Comments
Cannot access directly.Block Direct access
Data Attributes
data-unique-iddata-opt-id
JS Globals
CTS_DIR_PATHCTS_VERSIONCTS_VIEW_DIR_PATHTELEGRAM_EW_DIR_PATHCTS_DIR_URLcsf_framework_options
FAQ

Frequently Asked Questions about Chat Support for Telegram – Bubble & Button with Gutenberg, Elementor and Shortcode