
Contact Form DB Divi Security & Risk Analysis
wordpress.org/plugins/contact-form-db-diviThe Contact Form DB plugin is designed to provide an easy way to store and manage form submissions on your Divi website
Is Contact Form DB Divi Safe to Use in 2026?
Generally Safe
Score 100/100Contact Form DB Divi has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The static analysis of the contact-form-db-divi plugin v1.3.2 reveals a generally strong security posture. The plugin demonstrates good practices by avoiding dangerous functions, implementing prepared statements for all SQL queries, and properly escaping the vast majority of its output. Crucially, the absence of any reported vulnerabilities in its history, including critical or high severity ones, further reinforces this positive outlook. The plugin also incorporates a nonce check, indicating an awareness of common WordPress security mechanisms.
However, there are a few areas that prevent a perfect score. The plugin lacks capability checks, which is a concern as it means any authenticated user could potentially interact with its functionality without proper authorization checks. While the attack surface appears to be zero for AJAX handlers, REST API routes, shortcodes, and cron events, this is based on the static analysis and could be more robust with explicit capability checks where applicable. The presence of a bundled Freemius library, version 1.0, also raises a potential concern as older versions of bundled libraries can sometimes harbor unpatched vulnerabilities, though no specific issues were identified in this analysis. Overall, the plugin appears secure with good coding practices, but the absence of capability checks and the version of the bundled library present minor areas for improvement.
Key Concerns
- Missing capability checks
- Bundled outdated Freemius v1.0 library
Contact Form DB Divi Security Vulnerabilities
Contact Form DB Divi Code Analysis
Bundled Libraries
Output Escaping
Contact Form DB Divi Attack Surface
WordPress Hooks 13
Maintenance & Trust
Contact Form DB Divi Maintenance & Trust
Maintenance Signals
Community Trust
Contact Form DB Divi Alternatives
Supreme Modules Lite – Divi Theme, Extra Theme and Divi Builder
supreme-modules-for-divi
Divi Supreme lite plugin enhances the experience and features found on Divi and extend with custom creative modules to help you build amazing websites …
Popups for Divi
popups-for-divi
A quick and easy way to create Popup layers inside the Divi Visual Builder!
Column Shortcodes
column-shortcodes
Adds shortcodes to easily create columns in your posts or pages.
Divi Torque Lite – Divi Theme, Divi Builder & Extra Theme
addons-for-divi
The Divi Torque plugin you install after Divi builder! Packed with 70+ stunning modules like Post Grid, Filterable Gallery, Google Reviews, and more.
Styler Mate for Contact Form 7
cf7-styler-for-divi
Style and enhance Contact Form 7 for Divi, Bricks, Elementor, Gutenberg, and more.
Contact Form DB Divi Developer Profile
9 plugins · 31K total installs
How We Detect Contact Form DB Divi
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/contact-form-db-divi/assets/css/style.css/wp-content/plugins/contact-form-db-divi/assets/js/custom.js/wp-content/plugins/contact-form-db-divi/assets/js/custom.jscontact-form-db-divi/assets/css/style.css?ver=contact-form-db-divi/assets/js/custom.js?ver=HTML / DOM Fingerprints
lwp_cfdb_read_status<!-- The plugin saves all form submission made to Divi forms in the WordPress backend. --><!-- A constant to store the current version of the plugin. --><!-- A global variable to check if the version of the plugin is the free version. --><!-- Create a helper function for easy SDK access. -->+22 morepost_type="lwp_form_submission"key="lwp_cfdb_read_status"value="false"lwp_cfdb_is_free_version$lwp_cfdd_fslwp_cfdd_fs$lwp_cfdb_is_free_versionlwp_cfdb_check_upgrade_callbacklwp_cfdb_activation_hook