
Data Tensai for Contact Form 7 Security & Risk Analysis
wordpress.org/plugins/datatensai-cf7Database management for Contact Form 7: Search, filter, sort, export and get useful reports. /*** This program is free software: you can redistribut …
Is Data Tensai for Contact Form 7 Safe to Use in 2026?
Generally Safe
Score 85/100Data Tensai for Contact Form 7 has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "datatensai-cf7" plugin version 0.5.6 exhibits a concerning security posture due to a significant number of unprotected entry points. With two AJAX handlers identified and neither having authentication checks, there's a clear risk of unauthorized execution of plugin functionalities. While the plugin demonstrates good practices in its use of prepared statements for SQL queries, the low percentage of properly escaped output signals potential cross-site scripting (XSS) vulnerabilities. The taint analysis revealing one flow with unsanitized paths, classified as high severity, further amplifies this concern, indicating a direct path for malicious data to be processed insecurely. The plugin's lack of any recorded vulnerability history is a positive indicator of past development quality, but this is overshadowed by the current static analysis findings, particularly the unprotected AJAX handlers. Overall, while the plugin uses prepared statements effectively, the prominent lack of authentication on its AJAX endpoints and the identified high-severity taint flow represent significant security weaknesses that require immediate attention.
Key Concerns
- AJAX handlers without auth checks
- High severity taint flow with unsanitized paths
- Low percentage of properly escaped output
Data Tensai for Contact Form 7 Security Vulnerabilities
Data Tensai for Contact Form 7 Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Data Tensai for Contact Form 7 Attack Surface
AJAX Handlers 2
WordPress Hooks 7
Maintenance & Trust
Data Tensai for Contact Form 7 Maintenance & Trust
Maintenance Signals
Community Trust
Data Tensai for Contact Form 7 Alternatives
Database Addon for Contact Form 7 – CFDB7
contact-form-cfdb7
Save and manage Contact Form 7 messages. Never lose important data. It is a lightweight contact form 7 database plugin.
Advanced Contact form 7 DB
advanced-cf7-db
Save all contact form 7 form submitted data to the database, View, Ordering, Change field labels and Import/Export data using CSV.
Database for CF7
database-for-cf7
Save CF7 submitted form informations into your WordPress database.
Data Source for Contact Form 7
cf7-data-source
The Data Source for Contact Form 7 plugin populates fields with data from external sources like databases, CSVs, URL parameters, ACF, and others.
WPSyncSheets For Contact Form 7 – CF7 Google Sheets Connector & Save to Database
contactsheets-lite
Connect Contact Form 7 submissions to Google Sheets to sync your form entries and save all cf7 forms submitted data to the database.
Data Tensai for Contact Form 7 Developer Profile
9 plugins · 5K total installs
How We Detect Data Tensai for Contact Form 7
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/datatensai-cf7/css/datatensai.css/wp-content/plugins/datatensai-cf7/js/datatensai.js/wp-content/plugins/datatensai-cf7/views/htmlhelper.js/wp-content/plugins/datatensai-cf7/js/datatensai.js/wp-content/plugins/datatensai-cf7/views/htmlhelper.jsdatatensai-cf7/css/datatensai.css?ver=datatensai-cf7/js/datatensai.js?ver=HTML / DOM Fingerprints
datatensai-titledatatensai-datatabledatatensai-data-entry<!-- admin_menu --><!-- bulk actions --><!-- delete entries? --><!-- select fields -->+3 moredata-datatensai-field-iddata-datatensai-entry-id