Easy Panel for Contact Form 7 Security & Risk Analysis

wordpress.org/plugins/easy-panel-for-contact-form-7

Contact form submissions analytics dashboard. Understand all your submission statistics at a glance. Built with CF7 & Flamingo.

100 active installs v1.2 PHP 7.4+ WP 6.4+ Updated Nov 20, 2024
analyticscontact-form-7flamingoformsreports
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Easy Panel for Contact Form 7 Safe to Use in 2026?

Generally Safe

Score 92/100

Easy Panel for Contact Form 7 has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The "easy-panel-for-contact-form-7" plugin v1.2 demonstrates a generally strong security posture based on the provided static analysis and vulnerability history. The plugin exhibits excellent adherence to secure coding practices, with a high percentage of SQL queries utilizing prepared statements and nearly all output being properly escaped. The absence of dangerous functions, file operations, and external HTTP requests further contributes to its security. Furthermore, the presence of nonce checks on all AJAX handlers and capability checks on some of them suggests an awareness of common web vulnerabilities. The lack of any recorded vulnerabilities, past or present, is a significant positive indicator of its stability and security.

While the static analysis reveals a moderate attack surface of 7 AJAX handlers, the crucial point is that none are reported as unprotected, indicating that all entry points are subject to authentication checks. The taint analysis also shows no critical or high severity flows with unsanitized paths, which is highly reassuring. The plugin's vulnerability history is completely clear, with zero recorded CVEs of any severity. This clean history, coupled with the robust static analysis findings, suggests a well-maintained and secure codebase. However, the presence of only 2 capability checks across 7 AJAX handlers, while 7 nonce checks are present, could potentially leave room for minor privilege escalation concerns if the AJAX actions are sensitive and lack proper role-based access control beyond basic authentication.

In conclusion, this plugin appears to be very secure. Its strengths lie in its diligent use of prepared statements, output escaping, and nonce checks, supported by a complete absence of past vulnerabilities. The primary area of minor concern would be the potentially limited scope of capability checks on its AJAX handlers, although the absence of unprotected entry points mitigates this significantly. Overall, the plugin exhibits a high level of security.

Key Concerns

  • Low capability checks relative to AJAX handlers
Vulnerabilities
None known

Easy Panel for Contact Form 7 Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Easy Panel for Contact Form 7 Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
6 prepared
Unescaped Output
2
186 escaped
Nonce Checks
7
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

86% prepared7 total queries

Output Escaping

99% escaped188 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
edupanel_get_submission_data_callback (includes\dashboard-handler.php:157)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Easy Panel for Contact Form 7 Attack Surface

Entry Points7
Unprotected0

AJAX Handlers 7

authwp_ajax_edupanel_get_submission_dataincludes\dashboard-handler.php:154
noprivwp_ajax_edupanel_get_submission_dataincludes\dashboard-handler.php:155
authwp_ajax_get_formsincludes\dashboard-handler.php:655
authwp_ajax_get_form_fieldsincludes\dashboard-handler.php:656
authwp_ajax_edupanel_save_custom_chartincludes\dashboard-handler.php:657
authwp_ajax_edupanel_delete_custom_chartincludes\dashboard-handler.php:763
authwp_ajax_edupanel_fetch_chart_dataincludes\dashboard-handler.php:879
WordPress Hooks 7
actionadmin_initeasy-panel-for-contact-form-7.php:59
actionadmin_enqueue_scriptseasy-panel-for-contact-form-7.php:70
actionadmin_menueasy-panel-for-contact-form-7.php:106
actionadmin_initeasy-panel-for-contact-form-7.php:127
actionadmin_menueasy-panel-for-contact-form-7.php:130
actionadmin_print_scriptseasy-panel-for-contact-form-7.php:203
filterscreen_options_show_screeneasy-panel-for-contact-form-7.php:217
Maintenance & Trust

Easy Panel for Contact Form 7 Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedNov 20, 2024
PHP min version7.4
Downloads2K

Community Trust

Rating100/100
Number of ratings1
Active installs100
Developer Profile

Easy Panel for Contact Form 7 Developer Profile

edupanel

1 plugin · 100 total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Easy Panel for Contact Form 7

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/easy-panel-for-contact-form-7/admin/css/sb-admin-2.min.css/wp-content/plugins/easy-panel-for-contact-form-7/admin/css/edupanel-plugin.css/wp-content/plugins/easy-panel-for-contact-form-7/admin/css/vendor/fontawesome-free/css/all.min.css/wp-content/plugins/easy-panel-for-contact-form-7/admin/css/edupanel-sidebar-fix.css/wp-content/plugins/easy-panel-for-contact-form-7/admin/js/external/jquery.easing.min.js/wp-content/plugins/easy-panel-for-contact-form-7/admin/js/external/sb-admin-2.min.js/wp-content/plugins/easy-panel-for-contact-form-7/admin/js/external/chart.js/wp-content/plugins/easy-panel-for-contact-form-7/admin/js/edupanel-dashboard.js
Script Paths
https://fonts.googleapis.com/css?family=Nunito:200,200i,300,300i,400,400i,600,600i,700,700i,800,800i,900,900i
Version Parameters
easy-panel-for-contact-form-7/admin/css/sb-admin-2.min.css?ver=easy-panel-for-contact-form-7/admin/css/edupanel-plugin.css?ver=easy-panel-for-contact-form-7/admin/css/vendor/fontawesome-free/css/all.min.css?ver=easy-panel-for-contact-form-7/admin/css/edupanel-sidebar-fix.css?ver=easy-panel-for-contact-form-7/admin/js/external/jquery.easing.min.js?ver=easy-panel-for-contact-form-7/admin/js/external/sb-admin-2.min.js?ver=easy-panel-for-contact-form-7/admin/js/external/chart.js?ver=easy-panel-for-contact-form-7/admin/js/edupanel-dashboard.js?ver=

HTML / DOM Fingerprints

CSS Classes
edupanel-pluginedupanel-sidebar-fix
HTML Comments
Copyright 2024 EdupanelThis program is free software; you can redistribute it and/or modifyThis program is distributed in the hope that it will be useful,You should have received a copy of the GNU General Public License+16 more
Data Attributes
data-sb-toggle="sidebar"data-sb-hide-on-escape
JS Globals
edupanel_dashboard_ajax_object
FAQ

Frequently Asked Questions about Easy Panel for Contact Form 7