
GravityWP – CSS Selector Security & Risk Analysis
wordpress.org/plugins/gravitywp-css-selectorEasily select CSS Ready Classes for your fields within Gravity Forms
Is GravityWP – CSS Selector Safe to Use in 2026?
Generally Safe
Score 100/100GravityWP – CSS Selector has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "gravitywp-css-selector" v1.1 plugin exhibits a strong security posture in several key areas. The absence of known CVEs and a clean vulnerability history are positive indicators. Furthermore, the static analysis reveals no identified dangerous functions, no file operations, and no external HTTP requests, all of which reduce the attack surface. The fact that all SQL queries utilize prepared statements is an excellent practice, mitigating SQL injection risks. Taint analysis also shows no critical or high-severity unsanitized flows, which is a significant strength.
However, there is a notable concern regarding output escaping. With 100% of the analyzed outputs not being properly escaped, this presents a potential risk of Cross-Site Scripting (XSS) vulnerabilities. If user-supplied data is displayed without proper sanitization or escaping, an attacker could inject malicious scripts into the website. The complete lack of capability checks and nonce checks, while not directly indicative of a vulnerability in the current analysis (due to zero entry points), suggests a potential weakness if new entry points were to be added in future versions without these security measures. Overall, the plugin is well-defended against common threats like SQL injection and has a clean history, but the unescaped output is a critical area requiring attention.
Key Concerns
- Unescaped output detected
GravityWP – CSS Selector Security Vulnerabilities
GravityWP – CSS Selector Code Analysis
Output Escaping
GravityWP – CSS Selector Attack Surface
WordPress Hooks 2
Maintenance & Trust
GravityWP – CSS Selector Maintenance & Trust
Maintenance Signals
Community Trust
GravityWP – CSS Selector Alternatives
CSS Ready Classes for Gravity Forms
css-ready-classes-gravity-forms
Conveniently select Gravity Form CSS Ready Classes from your form fields Appearance tab.
Gravity Forms Zero Spam
gravity-forms-zero-spam
Enhance your Gravity Forms to include anti-spam measures originally based on the work of David Walsh's "Zero Spam" technique.
Gravity Booster – Styles & Layouts for Gravity Forms
styles-and-layouts-for-gravity-forms
Gravity Booster - Styles and Layouts for Gravity Forms plugin lets you design and style Gravity Forms without CSS coding. You can also use it for addi …
Advanced Custom Fields: Gravity Forms Add-on
acf-gravityforms-add-on
Provides an Advanced Custom Field which allows a WordPress user to select a Gravity Form as part of a field group configuration.
Event Tracking for Gravity Forms
gravity-forms-google-analytics-event-tracking
Easily add event tracking using Gravity Forms and your Google Analytics or Google Tag Manager account. Supports Google Analytics v3 and Gravity Forms …
GravityWP – CSS Selector Developer Profile
4 plugins · 9K total installs
How We Detect GravityWP – CSS Selector
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
gwp_css_accordiangwp_css_acc_linkgwp_css_linkgwp_css_link_docgwp_css_ulgwp_titlerel='gf_left_half'rel='gf_right_half'rel='gf_left_third'rel='gf_middle_third'rel='gf_right_third'rel='gf_first_quarter'+17 more