
Address Autocomplete via Google for Gravity Forms Security & Risk Analysis
wordpress.org/plugins/gf-google-address-autocompleteA simple and nice plugin to get auto suggestion from google place api in gravity form address field.
Is Address Autocomplete via Google for Gravity Forms Safe to Use in 2026?
Generally Safe
Score 99/100Address Autocomplete via Google for Gravity Forms has a strong security track record. Known vulnerabilities have been patched promptly.
The plugin "gf-google-address-autocomplete" v1.3.6 exhibits a generally strong security posture based on the static analysis. The absence of dangerous functions, raw SQL queries, unescaped output, file operations, external HTTP requests, and a clean taint analysis indicate that the core code is well-written and resistant to common vulnerabilities. The plugin also adheres to good practices by not exposing a large attack surface through AJAX handlers, REST API routes, shortcodes, or cron events without proper checks.
However, the plugin's vulnerability history presents a notable concern. It has a recorded CVE, specifically a medium-severity Cross-Site Request Forgery (CSRF) vulnerability, which was last patched on June 27, 2025. While currently unpatched CVEs are zero, the existence of a past CSRF vulnerability, even if patched, suggests a potential area of weakness. The lack of nonce checks in the static analysis could be a contributing factor to such vulnerabilities, as it indicates a reliance on other mechanisms or assumptions for security, which can be brittle.
In conclusion, while the static code analysis is impressive and points to robust development practices, the historical vulnerability data, particularly the CSRF issue, warrants a cautious approach. Developers should ensure that all entry points, even those not immediately apparent in the static analysis, are protected against CSRF attacks and that ongoing security monitoring remains a priority.
Key Concerns
- Past medium-severity CVE (CSRF)
- Zero nonce checks detected
Address Autocomplete via Google for Gravity Forms Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Address Autocomplete via Google for Gravity Forms <= 1.3.4 - Cross-Site Request Forgery
Address Autocomplete via Google for Gravity Forms Code Analysis
Output Escaping
Address Autocomplete via Google for Gravity Forms Attack Surface
WordPress Hooks 6
Maintenance & Trust
Address Autocomplete via Google for Gravity Forms Maintenance & Trust
Maintenance Signals
Community Trust
Address Autocomplete via Google for Gravity Forms Alternatives
Address Autocomplete Anything
address-autocomplete-anything
Easily integrate Google Address Autocomplete to anything on your WordPress website!
Address autocomplete Contact Form 7
address-autocomplete-contact-form-7
Contact form 7 address autocomplete feature. We are using google maps api. https://maps.googleapis.com/maps/api
GoMaps Address Autocomplete for Checkout
gomaps-address-autocomplete-for-checkout
GoMaps Address Autocomplete enhances checkout address fields using real-time, fast and privacy-respecting location suggestions. Built for WooCommerce.
IP Location Block
ip-location-block
Easily block visitors by country, state or ISP provider. Also, protects your site from spam, login attempts, malicious access & more.
Autocomplete Google Address
autocomplete-google-address
Add Google Places address autocomplete to any existing form in WordPress using a selector-based mapping builder.
Address Autocomplete via Google for Gravity Forms Developer Profile
16 plugins · 11K total installs
How We Detect Address Autocomplete via Google for Gravity Forms
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/gf-google-address-autocomplete/assets/css/gf-auto-address-complete.css/wp-content/plugins/gf-google-address-autocomplete/assets/js/gf-auto-address-complete.js/wp-content/plugins/gf-google-address-autocomplete/assets/js/gf-auto-address-complete.js/wp-content/plugins/gf-google-address-autocomplete/assets/css/gf-auto-address-complete.css?ver=/wp-content/plugins/gf-google-address-autocomplete/assets/js/gf-auto-address-complete.js?ver=