Formular af CitizenOne journalsystem Security & Risk Analysis

wordpress.org/plugins/formular-af-citizenone-journalsystem

Embed customizable contact forms from CitizenOne on any WordPress site.

0 active installs v1.4.0 PHP 7.4+ WP 5.8+ Updated Jan 5, 2026
citizenonecontactsleads
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Formular af CitizenOne journalsystem Safe to Use in 2026?

Generally Safe

Score 100/100

Formular af CitizenOne journalsystem has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The plugin 'formular-af-citizenone-journalsystem' v1.4.0 exhibits a generally positive security posture with no known vulnerabilities or critical security findings in the static analysis. The absence of external HTTP requests and the exclusive use of prepared statements for SQL queries are strong indicators of good development practices. The limited attack surface, with no identified AJAX handlers, REST API routes, or shortcodes, further reduces the potential for exploitation. However, a significant concern arises from the low percentage of properly escaped output (18%). This suggests a considerable risk of Cross-Site Scripting (XSS) vulnerabilities, as user-supplied data or internal data could be injected into the HTML output without proper sanitization. While no taint flows were flagged, the general lack of output escaping is a widespread weakness that could be exploited.

The plugin's vulnerability history is clean, indicating a lack of past security issues. This, coupled with the absence of critical findings in the static analysis, paints a picture of a plugin that is likely well-maintained and developed with security in mind. The presence of capability checks also suggests an attempt to enforce authorization, although the effectiveness of these checks is not fully detailed. The sole file operation is a point of interest that warrants further investigation, as uncontrolled file operations can lead to arbitrary file read/write vulnerabilities. Overall, the plugin has strong fundamentals but a notable weakness in output escaping that needs to be addressed.

Key Concerns

  • Low percentage of properly escaped output
  • One file operation identified
Vulnerabilities
None known

Formular af CitizenOne journalsystem Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Formular af CitizenOne journalsystem Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
14
3 escaped
Nonce Checks
0
Capability Checks
2
File Operations
1
External Requests
0
Bundled Libraries
0

Output Escaping

18% escaped17 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
settings_import (backend\class-impexp.php:81)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Formular af CitizenOne journalsystem Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actionadmin_noticesformular-af-citizenone-journalsystem.php:49
actionadmin_noticesformular-af-citizenone-journalsystem.php:86
actionenqueue_block_assetsformular-af-citizenone-journalsystem.php:94
actioninitformular-af-citizenone-journalsystem.php:114
Maintenance & Trust

Formular af CitizenOne journalsystem Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 5, 2026
PHP min version7.4
Downloads223

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Formular af CitizenOne journalsystem Developer Profile

AWORK Group A/S

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Formular af CitizenOne journalsystem

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/formular-af-citizenone-journalsystem/assets/build/plugin-admin.css/wp-content/plugins/formular-af-citizenone-journalsystem/assets/build/plugin-settings.css/wp-content/plugins/formular-af-citizenone-journalsystem/assets/build/plugin-admin.js/wp-content/plugins/formular-af-citizenone-journalsystem/assets/build/plugin-settings.js/wp-content/plugins/formular-af-citizenone-journalsystem/assets/build/plugin-block.css/wp-content/plugins/formular-af-citizenone-journalsystem/assets/build/plugin-block.js
Version Parameters
formular-af-citizenone-journalsystem/assets/build/plugin-admin.css?ver=formular-af-citizenone-journalsystem/assets/build/plugin-settings.css?ver=formular-af-citizenone-journalsystem/assets/build/plugin-admin.js?ver=formular-af-citizenone-journalsystem/assets/build/plugin-settings.js?ver=formular-af-citizenone-journalsystem/assets/build/plugin-block.css?ver=formular-af-citizenone-journalsystem/assets/build/plugin-block.js?ver=

HTML / DOM Fingerprints

JS Globals
window.FACIOJ_PLUGIN_ABSOLUTEwindow.FACIOJ_PLUGIN_ROOTwindow.FACIOJ_TEXTDOMAINwindow.FACIOJ_VERSIONwindow.FACIOJ_MIN_PHP_VERSIONwindow.FACIOJ_WP_VERSION+3 more
FAQ

Frequently Asked Questions about Formular af CitizenOne journalsystem