
Easily integrate Pipedrive CRM with your WordPress site Security & Risk Analysis
wordpress.org/plugins/contact-manager-for-pipedriveContact Manager for Pipedrive lets you automatically create deals in Pipedrive from any WPForms form. Under the form settings, just map form fields t …
Is Easily integrate Pipedrive CRM with your WordPress site Safe to Use in 2026?
Generally Safe
Score 85/100Easily integrate Pipedrive CRM with your WordPress site has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The static analysis of contact-manager-for-pipedrive v1.0 reveals a generally strong security posture at first glance, with no identified dangerous functions, SQL injection vulnerabilities through prepared statements, or file operations. The plugin also avoids making external HTTP requests. However, a significant concern arises from the complete absence of capability checks and nonce checks. This lack of authorization and CSRF protection means that any unauthenticated or authenticated user could potentially trigger actions within the plugin if an entry point were to be discovered or introduced. The output escaping rate of 72% also indicates a moderate risk of cross-site scripting (XSS) vulnerabilities, as a substantial portion of outputs are not being properly sanitized.
The vulnerability history shows no known CVEs, which is a positive indicator of the plugin's past security. However, this absence of historical issues should be viewed in conjunction with the identified code signals. The lack of capability and nonce checks represent fundamental security oversights that could be exploited even without prior documented vulnerabilities. While the plugin demonstrates good practices in areas like SQL query handling, the critical weaknesses in authentication and output sanitization present a tangible risk. A balanced conclusion would be that the plugin has some good internal security practices but suffers from fundamental flaws in user authorization and output sanitization, leaving it vulnerable to exploitation.
Key Concerns
- No capability checks found
- No nonce checks found
- Moderate unescaped output risk
Easily integrate Pipedrive CRM with your WordPress site Security Vulnerabilities
Easily integrate Pipedrive CRM with your WordPress site Code Analysis
Output Escaping
Easily integrate Pipedrive CRM with your WordPress site Attack Surface
WordPress Hooks 5
Maintenance & Trust
Easily integrate Pipedrive CRM with your WordPress site Maintenance & Trust
Maintenance Signals
Community Trust
Easily integrate Pipedrive CRM with your WordPress site Alternatives
AFI – The Easiest Integration Plugin
advanced-form-integration
Connect any WordPress form or event to 200+ apps — no code. Send leads, orders, and signups to your CRM, email, or sheets in minutes.
WP Zoho for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms – CRM, Bigin
cf7-zoho
Send Contact Form 7, WPforms, Elementor, Formidable, Ninja Forms and many other contact form submissions to zoho CRM and Bigin.
FormsCRM – Connect Forms to CRM directly
formscrm
Connects your CRM, ERP and Email Marketing with your Forms plugin and create new Leads/Entries as the forms are filled automatically. GDPR compliant.
Integration for Pipedrive and Contact Form 7, WPForms, Elementor, Ninja Forms
integration-for-contact-form-7-and-pipedrive
Send Contact Form 7, WPForms, Elementor, Ninja Forms, CRM Perks Forms and many other contact form submissions to Pipedrive.
Ultimate WP Mail
ultimate-wp-mail
Custom email and SMS notifications. Automatic send actions. WPForms SMS integration. WooCommerce notifications for purchases, abandoned cart and more!
Easily integrate Pipedrive CRM with your WordPress site Developer Profile
2 plugins · 100 total installs
How We Detect Easily integrate Pipedrive CRM with your WordPress site
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/contact-manager-for-pipedrive/css/admin.css