
Entries For CF7 Security & Risk Analysis
wordpress.org/plugins/entries-for-cf7Thanks For using our plugin.
Is Entries For CF7 Safe to Use in 2026?
Generally Safe
Score 100/100Entries For CF7 has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "entries-for-cf7" plugin v1.0.1 exhibits a strong security posture based on the provided static analysis. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events with an unprotected attack surface is a significant positive. Furthermore, the code signals show no dangerous functions or file operations, and a healthy percentage of SQL queries utilize prepared statements. The complete lack of any recorded vulnerabilities in its history, including critical or high severity issues, strongly suggests a well-maintained and secure codebase. The plugin also avoids external HTTP requests, which can often be a vector for attacks.
However, a notable concern is the complete absence of nonce checks and capability checks. While the current attack surface is zero, this leaves a significant gap in security best practices. If any new entry points are introduced in future versions, they would be inherently vulnerable without these checks. The presence of the DataTables library, while not explicitly flagged as outdated, represents a bundled library that could potentially introduce vulnerabilities if not kept up-to-date by the plugin developer. Overall, the plugin appears very secure currently, but the lack of authorization checks on potential future entry points is a weakness that should be addressed.
Key Concerns
- Missing nonce checks
- Missing capability checks
- Bundled library (DataTables) without explicit version check
Entries For CF7 Security Vulnerabilities
Entries For CF7 Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Entries For CF7 Attack Surface
WordPress Hooks 4
Maintenance & Trust
Entries For CF7 Maintenance & Trust
Maintenance Signals
Community Trust
Entries For CF7 Alternatives
Database Addon for Contact Form 7 – CFDB7
contact-form-cfdb7
Save and manage Contact Form 7 messages. Never lose important data. It is a lightweight contact form 7 database plugin.
Redirection for Contact Form 7
wpcf7-redirect
Redirect to any page or URL, execute scripts after submission, save data to the database, and unlock additional submission actions for Contact Form 7.
Advanced Contact form 7 DB
advanced-cf7-db
Save all contact form 7 form submitted data to the database, View, Ordering, Change field labels and Import/Export data using CSV.
Connect Contact Form 7 and Mailchimp
contact-form-7-mailchimp-extension
Connect Contact Form 7 to Mailchimp. Automatically sync form submissions to your Mailchimp audiences with merge field mapping, double opt-in, and opt- …
Contact Form 7 Multi-Step Forms
contact-form-7-multi-step-module
Enables the Contact Form 7 plugin to create multi-page, multi-step forms.
Entries For CF7 Developer Profile
3 plugins · 60 total installs
How We Detect Entries For CF7
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/entries-for-cf7/assets/css/dataTables.min.css/wp-content/plugins/entries-for-cf7/assets/js/dataTables.min.js/wp-content/plugins/entries-for-cf7/assets/js/entries-for-cf7.js/wp-content/plugins/entries-for-cf7/assets/js/dataTables.min.js/wp-content/plugins/entries-for-cf7/assets/js/entries-for-cf7.jsentries-for-cf7/assets/css/dataTables.min.css?ver=entries-for-cf7/assets/js/dataTables.min.js?ver=entries-for-cf7/assets/js/entries-for-cf7.js?ver=HTML / DOM Fingerprints
entries-for-cf7-table