
Contact Form 7 Charts Security & Risk Analysis
wordpress.org/plugins/contact-form-7-chartsA plugin for automatically generating color dashboard pie and trend charts from Contact Forms DB and Contact Form 7 forms activity.
Is Contact Form 7 Charts Safe to Use in 2026?
Generally Safe
Score 85/100Contact Form 7 Charts has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "contact-form-7-charts" v1.0 plugin exhibits a mixed security posture. On the positive side, there are no reported CVEs and the static analysis indicates no dangerous functions, file operations, external HTTP requests, or issues with taint analysis. The use of prepared statements for all SQL queries is also a strong security practice, mitigating the risk of SQL injection. However, a significant concern is the complete lack of output escaping for all identified outputs. This widespread issue presents a high risk of Cross-Site Scripting (XSS) vulnerabilities, as user-supplied data displayed by the plugin could be manipulated to inject malicious scripts into the user's browser. Furthermore, the absence of nonce checks and capability checks on any potential entry points (though none were identified in this specific analysis) is a worrying pattern. While this version shows no direct vulnerabilities, the lack of fundamental security checks in its code signals potential weaknesses that could be exploited if new entry points were introduced or if the plugin's functionality were to change.
Key Concerns
- 100% of outputs are not properly escaped
- 0 nonce checks on entry points
- 0 capability checks on entry points
Contact Form 7 Charts Security Vulnerabilities
Contact Form 7 Charts Code Analysis
SQL Query Safety
Output Escaping
Contact Form 7 Charts Attack Surface
WordPress Hooks 4
Maintenance & Trust
Contact Form 7 Charts Maintenance & Trust
Maintenance Signals
Community Trust
Contact Form 7 Charts Alternatives
Dashboard Graphs for Contact Form 7
forms-overview-for-cf7
Displays a stacked bar chart with form submission data per form on the WordPress dashboard. Works standalone or with Flamingo plugin for historical da …
Database Addon for Contact Form 7 – CFDB7
contact-form-cfdb7
Save and manage Contact Form 7 messages. Never lose important data. It is a lightweight contact form 7 database plugin.
Advanced Contact form 7 DB
advanced-cf7-db
Save all contact form 7 form submitted data to the database, View, Ordering, Change field labels and Import/Export data using CSV.
Database for Contact Form 7, WPforms, Elementor forms
contact-form-entries
Saves Contact Form 7, WPforms,Elementor Forms, CRM Perks Forms and many other contact form submissions to database.
Business Essentials for Contact Form 7
cf7-redirect-thank-you-page
Business Essentials for Contact Form 7
Contact Form 7 Charts Developer Profile
2 plugins · 40 total installs
How We Detect Contact Form 7 Charts
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/contact-form-7-charts/cf7charts.csshttps://www.google.com/jsapiHTML / DOM Fingerprints
cf7charts_monthly_dashboard_widgetcf7charts_daily_dashboard_widgetcf7charts_piechart_dashboard_widgetcf7charts_daily_chartcf7charts_monthly_chartcf7charts_piechart_chartgoogle<div id="cf7charts_daily_chart"></div><div id="cf7charts_monthly_chart"></div><div id="cf7charts_onemonth_chart"></div>