Add-On for Zoom Registration and Gravity Forms Security & Risk Analysis

wordpress.org/plugins/gravity-zwr

Register attendees in your Zoom Webinar or Zoom Meeting through a Gravity Form.

70 active installs v1.5.3 PHP 8.0+ WP 5.9+ Updated Feb 21, 2026
gravity-formsmeetingregistrationwebinarzoom
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Add-On for Zoom Registration and Gravity Forms Safe to Use in 2026?

Generally Safe

Score 100/100

Add-On for Zoom Registration and Gravity Forms has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The Gravity-ZWR plugin exhibits a strong security posture based on the provided static analysis. The absence of any identified dangerous functions, SQL queries without prepared statements, unescaped output, file operations, or external HTTP requests not properly handled suggests good development practices. The plugin also demonstrates a lack of critical or high-severity taint flows, indicating that user input is not being improperly processed within the analyzed code. Furthermore, the plugin's vulnerability history is completely clear, with no recorded CVEs of any severity. This suggests a commitment to security by the developers or a lack of past exploitation.

However, the static analysis also reveals several areas that, while not indicating immediate vulnerabilities, warrant attention. The complete absence of AJAX handlers, REST API routes, shortcodes, and cron events, while reducing the attack surface to zero, might also indicate limited functionality. More importantly, the complete lack of nonce checks and capability checks across all entry points is a significant concern. While the attack surface is reported as zero, if any future functionality were to be added that involved user interaction, the absence of these fundamental WordPress security mechanisms would create a direct path for various attacks. The presence of two external HTTP requests, without explicit details on their handling, also introduces a potential point of failure or risk if not implemented securely.

In conclusion, Gravity-ZWR appears to be a secure plugin in its current state, with excellent coding practices and no known vulnerabilities. The primary weakness lies in the fundamental absence of security checks like nonces and capability checks, which are essential for future extensibility and to protect against common WordPress attack vectors. While the current attack surface is zero, this lack of built-in security mechanisms presents a latent risk should the plugin evolve or if hidden entry points exist that were not detected by this analysis.

Key Concerns

  • No nonce checks found
  • No capability checks found
  • Two external HTTP requests detected
Vulnerabilities
None known

Add-On for Zoom Registration and Gravity Forms Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Add-On for Zoom Registration and Gravity Forms Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
9 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
2
Bundled Libraries
0

Output Escaping

100% escaped9 total outputs
Attack Surface

Add-On for Zoom Registration and Gravity Forms Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 2
actiongform_loadedgravity-zwr.php:62
filterplugin_row_metagravity-zwr.php:92
Maintenance & Trust

Add-On for Zoom Registration and Gravity Forms Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedFeb 21, 2026
PHP min version8.0
Downloads3K

Community Trust

Rating100/100
Number of ratings3
Active installs70
Developer Profile

Add-On for Zoom Registration and Gravity Forms Developer Profile

PluginRx

12 plugins · 2K total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
10 days
View full developer profile
Detection Fingerprints

How We Detect Add-On for Zoom Registration and Gravity Forms

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/gravity-zwr/assets/css/gravityzwr.css/wp-content/plugins/gravity-zwr/assets/js/gravityzwr.js
Script Paths
/wp-content/plugins/gravity-zwr/assets/js/gravityzwr.js
Version Parameters
gravity-zwr/assets/css/gravityzwr.css?ver=gravity-zwr/assets/js/gravityzwr.js?ver=

HTML / DOM Fingerprints

CSS Classes
gravityzwr-settings-page
HTML Comments
<!-- Require Gravity Forms Notice -->
Data Attributes
data-gravityzwr-field-iddata-gravityzwr-zoom-field-id
JS Globals
gravityzwr_admin_params
FAQ

Frequently Asked Questions about Add-On for Zoom Registration and Gravity Forms