
Contact Information Widget Security & Risk Analysis
wordpress.org/plugins/contact-information-widgetEasily add a Contact Information Widget to your widgetable sidebar. With this plugin you can add a contact information.
Is Contact Information Widget Safe to Use in 2026?
Generally Safe
Score 92/100Contact Information Widget has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'contact-information-widget' plugin version 1.5.0 exhibits a generally strong security posture based on the static analysis. The absence of AJAX handlers, REST API routes, shortcodes, cron events, and file operations significantly limits its attack surface. Furthermore, the adherence to prepared statements for all SQL queries and the lack of recorded vulnerabilities in its history are positive indicators of good development practices. The plugin also shows no evidence of dangerous function usage or external HTTP requests, further contributing to its safety.
However, a notable concern arises from the output escaping, where only 34% of the outputs are properly escaped. This suggests a potential for Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is not handled carefully before being displayed to users. The lack of nonce checks and capability checks on the identified entry points (though there are none in this case) is also a point to monitor in future versions or if the attack surface expands. The current analysis indicates a low immediate risk, but the insufficient output escaping warrants attention for a more robust security profile.
Key Concerns
- Low percentage of properly escaped output
Contact Information Widget Security Vulnerabilities
Contact Information Widget Code Analysis
Output Escaping
Contact Information Widget Attack Surface
WordPress Hooks 2
Maintenance & Trust
Contact Information Widget Maintenance & Trust
Maintenance Signals
Community Trust
Contact Information Widget Alternatives
Widget Contact Now
widget-contact-now
Add contact information quickly and easily with ready-made labels. Display gorgeous contact information on your website with simple, easy-to-use widge …
Contact Information Widget
simple-contact-information-widget
Contact Information Widget.
Contact Information Widget Developer Profile
1 plugin · 3K total installs
How We Detect Contact Information Widget
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/contact-information-widget/fonts/font-awesome.css/wp-content/plugins/contact-information-widget/style.csscontact-information-widget/fonts/font-awesome.css?ver=contact-information-widget/style.css?ver=HTML / DOM Fingerprints
ciw_contactinformationciw_addressciw_address_contentciw_company_nameciw_contact_addressciw_phoneciw_contact_phoneciw_email+1 more