
HT Form Widget for Elementor and WPForms Security & Risk Analysis
wordpress.org/plugins/ht-wpformHT Form Widget for Elementor and WPForms allows you to easily display WPForms forms using Elementor with full styling control.
Is HT Form Widget for Elementor and WPForms Safe to Use in 2026?
Generally Safe
Score 100/100HT Form Widget for Elementor and WPForms has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The ht-wpform plugin v1.1.6 demonstrates a generally strong security posture based on the provided static analysis. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events significantly limits the attack surface. Furthermore, the plugin successfully avoids dangerous functions and file operations, and all SQL queries are properly prepared. The vulnerability history also shows no recorded CVEs, suggesting a history of secure development or diligent patching.
However, a significant concern arises from the output escaping analysis, where 0% of the identified outputs are properly escaped. This indicates a high risk of Cross-Site Scripting (XSS) vulnerabilities, as user-supplied or dynamic data could be rendered directly in the browser without sanitization, allowing attackers to inject malicious scripts. While the plugin has a clean vulnerability history, the lack of output escaping presents an immediate and critical risk that needs addressing.
Key Concerns
- 0% of outputs properly escaped
HT Form Widget for Elementor and WPForms Security Vulnerabilities
HT Form Widget for Elementor and WPForms Code Analysis
Output Escaping
HT Form Widget for Elementor and WPForms Attack Surface
WordPress Hooks 7
Maintenance & Trust
HT Form Widget for Elementor and WPForms Maintenance & Trust
Maintenance Signals
Community Trust
HT Form Widget for Elementor and WPForms Alternatives
Database for Contact Form 7, WPforms, Elementor forms
contact-form-entries
Saves Contact Form 7, WPforms,Elementor Forms, CRM Perks Forms and many other contact form submissions to database.
Integration for HubSpot and Contact Form 7, WPForms, Elementor, Ninja Forms
cf7-hubspot
Send Contact Form 7, WPForms, Elementor, Ninja Forms, WPforms, Elementor, Ninja Forms, Contact Form Entries Plugin and many other contact form submiss …
Integration for Salesforce and Contact Form 7, WPForms, Elementor, Formidable, Ninja Forms
cf7-salesforce
Send Contact Form 7, WPforms, Elementor, Ninja Forms, Contact Form Entries Plugin and many other contact form submissions to salesforce.
Contact Form 7 styler for Elementor Page Builder
elementor-contact-form-7
Style your Contact Form 7 forms right from the Elementor visual editor.
Integration for Pipedrive and Contact Form 7, WPForms, Elementor, Ninja Forms
integration-for-contact-form-7-and-pipedrive
Send Contact Form 7, WPForms, Elementor, Ninja Forms, CRM Perks Forms and many other contact form submissions to Pipedrive.
HT Form Widget for Elementor and WPForms Developer Profile
23 plugins · 64K total installs
How We Detect HT Form Widget for Elementor and WPForms
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/ht-wpform/assets/css/ht-wpform-public.css/wp-content/plugins/ht-wpform/assets/js/ht-wpform-public.js/wp-content/plugins/ht-wpform/assets/js/ht-wpform-public.jsht-wpform/assets/css/ht-wpform-public.css?ver=ht-wpform/assets/js/ht-wpform-public.js?ver=HTML / DOM Fingerprints
htwpf-form-wrapper