
Forms: 3rd-Party Submission Reformat Security & Risk Analysis
wordpress.org/plugins/forms-3rdparty-submission-reformatCustomize specific Forms-3rdparty submission fields' format.
Is Forms: 3rd-Party Submission Reformat Safe to Use in 2026?
Generally Safe
Score 85/100Forms: 3rd-Party Submission Reformat has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "forms-3rdparty-submission-reformat" plugin, in version 0.2.2, presents a generally positive security posture based on the provided static analysis. The complete absence of AJAX handlers, REST API routes, shortcodes, and cron events significantly limits the plugin's attack surface, and importantly, all discovered entry points appear to be protected by authorization checks, which is a strong security practice. Furthermore, the code demonstrates a commitment to secure database interactions, with 100% of SQL queries utilizing prepared statements, and no file operations or external HTTP requests were detected, which are common vectors for vulnerabilities.
However, there are notable areas for improvement. The most significant concern is the low percentage of properly escaped output (22%). This suggests that user-supplied data or other dynamic content might be outputted without adequate sanitization, potentially leading to Cross-Site Scripting (XSS) vulnerabilities if an attacker can inject malicious scripts. The absence of nonce checks, while perhaps mitigated by the limited attack surface, is also a potential concern, as it represents a missed opportunity for robust protection against Cross-Site Request Forgery (CSRF) attacks. The lack of any recorded vulnerabilities in its history is a positive indicator, suggesting a well-maintained codebase or a lack of prior scrutiny. Despite the strong foundations in limiting attack vectors and secure SQL handling, the unescaped output remains a tangible risk that warrants immediate attention.
Key Concerns
- Low percentage of properly escaped output
- No nonce checks detected
Forms: 3rd-Party Submission Reformat Security Vulnerabilities
Forms: 3rd-Party Submission Reformat Code Analysis
Output Escaping
Forms: 3rd-Party Submission Reformat Attack Surface
WordPress Hooks 3
Maintenance & Trust
Forms: 3rd-Party Submission Reformat Maintenance & Trust
Maintenance Signals
Community Trust
Forms: 3rd-Party Submission Reformat Alternatives
Forms: 3rd-Party Integration
forms-3rdparty-integration
Send contact form submissions from other plugins to multiple external services e.g. CRM. Configurable, custom field mapping, pre/post processing.
Autopreenchimento de endereço em formulários
cf7-cep-autofill
Preenchimento automático de campos de endereço baseado no CEP informado.
Forms: 3rd-Party Xml Post
forms-3rd-party-xpost
Converts submission from Forms 3rdparty Integration to xml/json, add headers, or nest fields.
Forms: 3rd-Party Dynamic Fields
forms-3rdparty-dynamic-fields
Using pre-configured placeholders like ##UID##, ##REFERER##, or ##SITEURL##, add dynamic fields to the normally map-only or static-only Forms: 3rdpart …
Forms: 3rd-Party Migration
forms-3rdparty-migrate
To upgrade deprecated Wordpress Plugin CF7-3rdparty Integration to the new version Forms 3rdparty Integration, or migrate settings of either plugin be …
Forms: 3rd-Party Submission Reformat Developer Profile
13 plugins · 5K total installs
How We Detect Forms: 3rd-Party Submission Reformat
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
forms-3rdparty-submission-reformat/style.css?ver=forms-3rdparty-submission-reformat/script.js?ver=