
Popup Builder for Block Editor – FooConvert Security & Risk Analysis
wordpress.org/plugins/fooconvertFooConvert is a powerful Popup, Bar, and Flyout Builder for WordPress that helps you turn more visitors into leads, subscribers, and customers.
Is Popup Builder for Block Editor – FooConvert Safe to Use in 2026?
Generally Safe
Score 100/100Popup Builder for Block Editor – FooConvert has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "fooconvert" v1.2.6 plugin exhibits a generally strong security posture, with good practices like using prepared statements for all SQL queries and a high percentage of properly escaped output. The absence of known CVEs and common vulnerability types in its history is a positive indicator. However, a significant concern arises from the presence of one unprotected AJAX handler within its attack surface. This creates a direct entry point for unauthenticated attackers to potentially interact with the plugin's functionality in unintended ways, which could lead to various exploits depending on the handler's implementation. The taint analysis, while limited in scope (3 flows), did reveal one flow with unsanitized paths, which, even without a critical or high severity rating, warrants attention as it indicates a potential area for path traversal or file inclusion vulnerabilities.
Key Concerns
- Unprotected AJAX handler
- Taint flow with unsanitized paths
- Bundled library (Freemius v1.0) may be outdated
Popup Builder for Block Editor – FooConvert Security Vulnerabilities
Popup Builder for Block Editor – FooConvert Release Timeline
Popup Builder for Block Editor – FooConvert Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
Popup Builder for Block Editor – FooConvert Attack Surface
AJAX Handlers 4
WordPress Hooks 52
Maintenance & Trust
Popup Builder for Block Editor – FooConvert Maintenance & Trust
Maintenance Signals
Community Trust
Popup Builder for Block Editor – FooConvert Alternatives
Popup Maker – Boost Sales, Conversions, Optins, Subscribers with the Ultimate WP Popup Builder
popup-maker
Want to boost sales & marketing efforts? Use your favorite forms & builder. Unlimited popups & impressions, keep your data, no monthly subscription.
SendPulse – Popup Builder for Email Optins, Lead Generation, Sticky Bars and Videos
sendpulse-popups
SendPulse Pop-ups plugin for WordPress. Create highly converting and mobile-friendly pop-ups, opt-in forms, exit popups, sticky bars, NPS surveys, etc
I Love PopUps Connector
i-love-popups-connector
Lightweight connector that loads the official I Love PopUps script on your site using your Project ID.
Wing Popup
wing-popup
Pop up everything you like! Easily create informative and promotional popups. Boost your sales, lead generation, and conversions rates.
Popup Builder & Popup Maker for WordPress – OptinMonster Email Marketing and Lead Generation
optinmonster
🤩 Make popups & optin forms to get more email newsletter subscribers, leads, and sales - #1 most popular popup builder plugin! 🚀
Popup Builder for Block Editor – FooConvert Developer Profile
5 plugins · 204K total installs
How We Detect Popup Builder for Block Editor – FooConvert
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/fooconvert/assets/css/fooconvert-admin.css/wp-content/plugins/fooconvert/assets/css/fooconvert-public.css/wp-content/plugins/fooconvert/assets/js/fooconvert-admin.js/wp-content/plugins/fooconvert/assets/js/fooconvert-public.js/wp-content/plugins/fooconvert/assets/js/fooconvert-admin.js/wp-content/plugins/fooconvert/assets/js/fooconvert-public.jsfooconvert/assets/css/fooconvert-admin.css?ver=fooconvert/assets/css/fooconvert-public.css?ver=fooconvert/assets/js/fooconvert-admin.js?ver=fooconvert/assets/js/fooconvert-public.js?ver=HTML / DOM Fingerprints
fooconvert-admin-pagefooconvert-wrapperfooconvert-widget-areafooconvert-dashboard-panelfooconvert-settings-sectionfooconvert-modalfooconvert-spinnerfooconvert-tooltip<!-- FooConvert Admin Menu --><!-- FooConvert Dashboard Panel --><!-- FooConvert Settings Form --><!-- FooConvert Modal Window -->data-fooconvert-paneldata-fooconvert-widget-iddata-fooconvert-actiondata-fooconvert-noncefooconvert_admin_paramsfooconvert_public_params/wp-json/fooconvert/v1/settings/wp-json/fooconvert/v1/widgets/wp-json/fooconvert/v1/stats[fooconvert_form[fooconvert_popup[fooconvert_banner[fooconvert_optin_box