
Followize Security & Risk Analysis
wordpress.org/plugins/followizeReceba os leads gerados através do seu site diretamente no Followize.
Is Followize Safe to Use in 2026?
Generally Safe
Score 85/100Followize has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "followize" plugin v0.7.7 exhibits a mixed security posture. On the positive side, it has no known CVEs and utilizes prepared statements for the vast majority of its SQL queries, indicating good database interaction practices. It also avoids dangerous functions and file operations. However, there are notable concerns arising from the static analysis. The plugin has a significant number of unsanitized paths identified in the taint analysis (4 out of 6 flows analyzed), with 3 of these being classified as high severity. This suggests potential vulnerabilities where external input could lead to unintended or malicious behavior within the plugin's execution. Furthermore, while the plugin has a small attack surface with only one shortcode, the overall percentage of properly escaped output (65%) is a concern, as this could lead to cross-site scripting (XSS) vulnerabilities if user-controlled data is displayed without adequate sanitization.
The lack of recorded vulnerability history, while generally positive, doesn't fully mitigate the risks identified in the static analysis. It's possible that these vulnerabilities have simply not been discovered or exploited yet. The absence of capability checks is also a weakness, as it means that functionalities might not be properly restricted to authorized users. In conclusion, while "followize" v0.7.7 demonstrates strengths in database querying and avoids certain risky coding practices, the high number of unsanitized paths and the moderate output escaping rate represent significant security weaknesses that warrant attention.
Key Concerns
- High severity unsanitized paths in taint analysis
- Significant number of unsanitized paths
- Moderate output escaping (65% proper)
- No capability checks
Followize Security Vulnerabilities
Followize Release Timeline
Followize Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Followize Attack Surface
Shortcodes 1
WordPress Hooks 22
Maintenance & Trust
Followize Maintenance & Trust
Maintenance Signals
Community Trust
Followize Alternatives
Followize Extension – Contact Form 7
followize-extension-cf7
Receba os leads gerados através do seu site diretamente no Followize.
Followize Extension – Gravity Forms
followize-extension-gf
Receba os leads gerados através do seu site diretamente no Followize.
Zoho CRM Lead Magnet
zoho-crm-forms
Websites are one of the most important sources of leads for your business.
Vtiger CRM Integration for WordPress
wp-tiger
Elevate Lead Capture and CRM Integration Effortlessly with Vtiger CRM Integration for WordPress
Zoho Integration for WordPress
wp-zoho-crm
Elevate Your Leads: Automate with Smackcoders' Zoho WordPress Integration. An easy, automated and advanced Zoho Wordpress web form generator to c …
Followize Developer Profile
3 plugins · 190 total installs
How We Detect Followize
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/followize/assets/javascripts/admin/built.js/wp-content/plugins/followize/assets/javascripts/front/built.js/wp-content/plugins/followize/assets/javascripts/admin/built.js/wp-content/plugins/followize/assets/javascripts/front/built.jsfollowize/assets/javascripts/admin/built.js?ver=followize/assets/javascripts/front/built.js?ver=