
form-multipopup-quiz-builder Security & Risk Analysis
wordpress.org/plugins/form-multipopup-quiz-builderform-multipopup-quiz-builder is a flexible popup form plugin with quiz and calculator support.
Is form-multipopup-quiz-builder Safe to Use in 2026?
Generally Safe
Score 100/100form-multipopup-quiz-builder has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "form-multipopup-quiz-builder" v2.2 exhibits a generally good security posture with strong adherence to best practices in many areas. The extensive use of prepared statements for SQL queries (82%) and the high percentage of properly escaped output (96%) are commendable. Furthermore, the absence of any recorded vulnerabilities or CVEs in its history suggests a history of relatively secure development. The lack of critical taint flows and dangerous functions further bolsters this positive outlook.
However, several areas present potential risks that warrant attention. A significant concern is the presence of 6 unprotected entry points within its attack surface of 20. Specifically, 5 AJAX handlers and 1 REST API route lack proper authentication or permission checks. This could allow unauthenticated or unauthorized users to trigger potentially sensitive functionalities. While the plugin utilizes nonces and capability checks, their absence on these specific entry points creates exploitable gaps.
Overall, the plugin demonstrates a strong foundation in secure coding. The primary weaknesses lie in the incomplete application of access controls to certain AJAX and REST API endpoints. Addressing these unprotected entry points would significantly improve the plugin's security, transforming it from good to excellent.
Key Concerns
- Unprotected AJAX handlers (5)
- Unprotected REST API route (1)
- SQL queries without prepared statements (estimated 18%)
form-multipopup-quiz-builder Security Vulnerabilities
form-multipopup-quiz-builder Release Timeline
form-multipopup-quiz-builder Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
form-multipopup-quiz-builder Attack Surface
AJAX Handlers 15
REST API Routes 1
Shortcodes 4
WordPress Hooks 37
Maintenance & Trust
form-multipopup-quiz-builder Maintenance & Trust
Maintenance Signals
Community Trust
form-multipopup-quiz-builder Alternatives
Digioh Forms, Popups, Quizzes, Surveys, Abandon Cart
digioh
Turn visitors into customers with a suite of list growth and conversion rate optimization tools that drive revenue. Supports WooCommerce.
CalcStack — Lead Generation Tools
calcstack-embeddable-calculators
Turn WordPress visitors into qualified leads with interactive calculators, scorecards, quizzes, and more — with built-in lead capture and CRM integrat …
dream popup
dream-popup
Dream Popup is a Perfect solution for any WordPress website. With a wide range of WordPress popup types, conditions, and events (From Image Popup to C …
Popup Builder & Popup Maker for WordPress – OptinMonster Email Marketing and Lead Generation
optinmonster
🤩 Make popups & optin forms to get more email newsletter subscribers, leads, and sales - #1 most popular popup builder plugin! 🚀
Popup Maker – Boost Sales, Conversions, Optins, Subscribers with the Ultimate WP Popup Builder
popup-maker
Want to boost sales & marketing efforts? Use your favorite forms & builder. Unlimited popups & impressions, keep your data, no monthly subscription.
form-multipopup-quiz-builder Developer Profile
2 plugins · 0 total installs
How We Detect form-multipopup-quiz-builder
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/form-multipopup-quiz-builder/assets/css/admin-custom-styles.css/wp-content/plugins/form-multipopup-quiz-builder/assets/css/frontend-styles.css/wp-content/plugins/form-multipopup-quiz-builder/assets/js/admin-scripts.js/wp-content/plugins/form-multipopup-quiz-builder/assets/js/frontend-scripts.js/wp-content/plugins/form-multipopup-quiz-builder/assets/js/quiz-builder.js/wp-content/plugins/form-multipopup-quiz-builder/assets/js/quiz-editor.js/wp-content/plugins/form-multipopup-quiz-builder/assets/js/form-editor.js/wp-content/plugins/form-multipopup-quiz-builder/assets/js/form-render.js+4 moreform-multipopup-quiz-builder/wp-content/plugins/form-multipopup-quiz-builder/assets/js/admin-scripts.js/wp-content/plugins/form-multipopup-quiz-builder/assets/js/frontend-scripts.js/wp-content/plugins/form-multipopup-quiz-builder/assets/js/quiz-builder.js/wp-content/plugins/form-multipopup-quiz-builder/assets/js/quiz-editor.js/wp-content/plugins/form-multipopup-quiz-builder/assets/js/form-editor.js/wp-content/plugins/form-multipopup-quiz-builder/assets/js/form-render.js+4 moreform-multipopup-quiz-builder/assets/css/admin-custom-styles.css?ver=form-multipopup-quiz-builder/assets/css/frontend-styles.css?ver=form-multipopup-quiz-builder/assets/js/admin-scripts.js?ver=form-multipopup-quiz-builder/assets/js/frontend-scripts.js?ver=form-multipopup-quiz-builder/assets/js/quiz-builder.js?ver=form-multipopup-quiz-builder/assets/js/quiz-editor.js?ver=form-multipopup-quiz-builder/assets/js/form-editor.js?ver=form-multipopup-quiz-builder/assets/js/form-render.js?ver=form-multipopup-quiz-builder/assets/js/admin-enqueue.js?ver=form-multipopup-quiz-builder/assets/js/tools-page.js?ver=form-multipopup-quiz-builder/assets/js/documentation.js?ver=form-multipopup-quiz-builder/assets/js/ai-constructor.js?ver=HTML / DOM Fingerprints
fmpqb-admin-footerfmpqb-custom-footer-note<!-- блок для квиз-калькулятора -->data-fmpqb-field-typedata-fmpqb-quiz-iddata-fmpqb-quiz-option-idfmpqb_frontend_paramsfmpqb_quiz_builder_paramsfmpqb_quiz_editor_paramsfmpqb_form_editor_paramsfmpqb_tools_page_params/wp-json/fmpqb/v1/quiz/get-options/wp-json/fmpqb/v1/quiz/save-quiz/wp-json/fmpqb/v1/form/save-form[fmpqb-form][fmpqb-quiz]