
Gutena Forms – Contact Form, Survey Form, Feedback Form, Booking Form, and Custom Form Builder Security & Risk Analysis
wordpress.org/plugins/gutena-formsWordPress form builder to create lightweight contact forms, survey forms, feedback forms, booking forms, etc., right inside the Gutenberg editor.
Is Gutena Forms – Contact Form, Survey Form, Feedback Form, Booking Form, and Custom Form Builder Safe to Use in 2026?
Generally Safe
Score 99/100Gutena Forms – Contact Form, Survey Form, Feedback Form, Booking Form, and Custom Form Builder has a strong security track record. Known vulnerabilities have been patched promptly.
The plugin 'gutena-forms' v1.6.1 exhibits a mixed security posture. While it demonstrates good practices in areas like SQL query preparation and output escaping, which are strong indicators of secure coding, there are significant concerns related to its attack surface and taint analysis. The presence of two AJAX handlers without authentication checks is a primary vulnerability, potentially allowing unauthorized users to trigger sensitive actions. This is further compounded by taint analysis revealing four flows with unsanitized paths, all classified as high severity, indicating a substantial risk of data manipulation or injection vulnerabilities if these paths are reachable through the unprotected AJAX endpoints. The plugin's vulnerability history, with a single medium CVE last recorded in 2026, suggests a past security issue that has since been addressed, but the recent nature of that vulnerability and the current high-severity taint flows warrant careful attention. Overall, while the developer seems to be making efforts towards secure coding, the current version has exploitable weaknesses that need immediate remediation.
Key Concerns
- AJAX handlers without auth checks
- High severity taint flows
- REST API routes without permission callbacks
- Past medium CVE (though patched)
Gutena Forms – Contact Form, Survey Form, Feedback Form, Booking Form, and Custom Form Builder Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Gutena Forms – Contact Form, Survey Form, Feedback Form, Booking Form, and Custom Form Builder <= 1.6.0 - Authenticated (Contributor+) Limited Options Update in save_gutena_forms_schema()
Gutena Forms – Contact Form, Survey Form, Feedback Form, Booking Form, and Custom Form Builder Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
Gutena Forms – Contact Form, Survey Form, Feedback Form, Booking Form, and Custom Form Builder Attack Surface
AJAX Handlers 4
REST API Routes 2
WordPress Hooks 49
Scheduled Events 2
Maintenance & Trust
Gutena Forms – Contact Form, Survey Form, Feedback Form, Booking Form, and Custom Form Builder Maintenance & Trust
Maintenance Signals
Community Trust
Gutena Forms – Contact Form, Survey Form, Feedback Form, Booking Form, and Custom Form Builder Alternatives
Online Forms — Customizable Payment, Contact, Quiz, Survey Form Builder – Jotform
embed-form
Create and embed secure online forms in WordPress using Jotform’s drag-and-drop builder, with PCI and HIPAA compliance and full data-security support.
Happyforms – Form Builder for WordPress: Drag & Drop Contact Forms, Surveys, Payments & Multipurpose Forms
happyforms
Best WordPress contact form, newsletter form and payment form builder without the sucky stuff — lost emails, pesky spam, leaky privacy and outsourced …
WPForms – Easy Form Builder for WordPress – Contact Forms, Payment Forms, Surveys, & More
wpforms-lite
The best WordPress contact form plugin. Drag & Drop form builder to create beautiful contact forms, payment forms, & other custom forms.
Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder
fluentform
Get a fast contact form plugin. Create advanced forms using drag and drop form builder with all smart features.
Forminator Forms – Contact Form, Payment Form & Custom Form Builder
forminator
Best WordPress form builder plugin. Create contact forms, payment forms & order forms with 1000+ integrations.
Gutena Forms – Contact Form, Survey Form, Feedback Form, Booking Form, and Custom Form Builder Developer Profile
84 plugins · 1.4M total installs
How We Detect Gutena Forms – Contact Form, Survey Form, Feedback Form, Booking Form, and Custom Form Builder
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/gutena-forms/build/form-confirm-msg/wp-content/plugins/gutena-forms/build/form-error-msg/wp-content/plugins/gutena-forms/build/f/wp-content/plugins/gutena-forms/build/index.js/wp-content/plugins/gutena-forms/build/view.jsgutena-forms/style.css?ver=gutena-forms/editor.css?ver=gutena-forms/build/index.js?ver=gutena-forms/build/view.js?ver=HTML / DOM Fingerprints
gutena-forms-wrappergutena-forms-fieldgutena-forms-blockgutena-forms-submit-buttongutena-forms-input-wrapper<!-- wp:gutena-forms/f --><!-- /wp:gutena-forms/f --><!-- wp:gutena-forms/form-confirm-msg --><!-- /wp:gutena-forms/form-confirm-msg -->+2 moredata-gf-form-iddata-gf-field-iddata-gf-form-submit-urlwindow.GutenaFormsvar GutenaForms/wp-json/gutena-forms/v1/submit[gutena_forms[/gutena_forms]