
Citizens Feedbacks Security & Risk Analysis
wordpress.org/plugins/citizens-feedbacksSimple citizens feedback form.
Is Citizens Feedbacks Safe to Use in 2026?
Generally Safe
Score 85/100Citizens Feedbacks has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "citizens-feedbacks" plugin v1.1.1 exhibits a mixed security posture. While it boasts no known CVEs and a good percentage of properly escaped output, significant concerns arise from the static analysis. The plugin utilizes raw SQL queries without prepared statements, which is a major vulnerability that could lead to SQL injection attacks. Furthermore, the taint analysis revealed multiple flows with unsanitized paths, three of which are classified as high severity. This indicates a potential for attackers to manipulate input and execute malicious code or access sensitive data. The complete absence of nonce checks and capability checks, combined with the reliance on raw SQL, presents a substantial risk despite the lack of historical vulnerabilities. The plugin's strengths lie in its minimal attack surface and good output escaping, but these are overshadowed by the critical flaws in data handling.
Key Concerns
- SQL queries without prepared statements
- High severity taint flows (3)
- Missing nonce checks
- Missing capability checks
Citizens Feedbacks Security Vulnerabilities
Citizens Feedbacks Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Citizens Feedbacks Attack Surface
Shortcodes 2
WordPress Hooks 2
Maintenance & Trust
Citizens Feedbacks Maintenance & Trust
Maintenance Signals
Community Trust
Citizens Feedbacks Alternatives
Contact Form & SMTP Plugin for WordPress by PirateForms
pirate-forms
A simple and effective WordPress contact form & SMTP plugin. Compatible with best themes out there, is both a secure and responsive contact form p …
Contact Form Clean and Simple
clean-and-simple-contact-form-by-meg-nicholas
A clean and simple contact form with flexible CSS framework support.
Feedback Button – Jotform
jotform-feedback-button
Display a beautiful feedback button on the side of your blog. When a reader clicks on it a feedback form pops up. Completely customizable.
Lite Contact Form
lite-contact-form
Lightweight and simple contact form with no additional user-unfriendly options. Can be additionally protected against spam by using Akismet and Google …
Surveys by Feedback Cat
surveys-by-feedback-cat
Surveys by Feedback Cat Helps You Grow Your Business Or Blog By Making It Easy To Gather Feedback Using Onpage User Surveys.
Citizens Feedbacks Developer Profile
2 plugins · 20 total installs
How We Detect Citizens Feedbacks
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/citizens-feedbacks/css/citizens-feedbacks-style.cssHTML / DOM Fingerprints
[show_cfeedbacks_form][check_status]