Integration for Zoho Desk – Contact Form 7, WPForms, Elementor, Gravity Forms and More Security & Risk Analysis

wordpress.org/plugins/integrate-with-zoho-desk

Connect Contact Form 7, WPForms, Elementor Forms, Gravity Forms, and more form submissions with Zoho Desk.

10 active installs v1.0.11 PHP 7.4+ WP 6.0+ Updated Mar 10, 2026
contact-form-7elementor-formsgravity-formswpformszoho-desk
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Integration for Zoho Desk – Contact Form 7, WPForms, Elementor, Gravity Forms and More Safe to Use in 2026?

Generally Safe

Score 100/100

Integration for Zoho Desk – Contact Form 7, WPForms, Elementor, Gravity Forms and More has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 24d ago
Risk Assessment

The "integrate-with-zoho-desk" plugin version 1.0.11 exhibits a generally strong security posture with several positive indicators. The absence of known CVEs and the robust handling of SQL queries (58% prepared statements) and output escaping (98% properly escaped) are commendable. Furthermore, the plugin's entry points are all protected by authentication checks, and there are no reported vulnerabilities in its history, suggesting a commitment to secure development practices.

However, the static analysis reveals some areas of concern. The taint analysis shows three high-severity flows with unsanitized paths, which could potentially be exploited if they involve user-supplied data. While these are not explicitly classified as vulnerabilities yet, they represent a significant risk that warrants immediate investigation and remediation. The plugin also makes a considerable number of external HTTP requests (14), which could be a vector for supply chain attacks or denial-of-service if not handled securely.

In conclusion, while the plugin has a solid foundation in terms of general security practices and a clean vulnerability history, the identified high-severity taint flows are a critical weakness. Addressing these specific code paths is paramount to ensure the plugin's continued security. The extensive external HTTP requests should also be reviewed for secure implementation.

Key Concerns

  • High severity taint flows with unsanitized paths
  • External HTTP requests (14)
  • SQL queries (42% not prepared)
Vulnerabilities
None known

Integration for Zoho Desk – Contact Form 7, WPForms, Elementor, Gravity Forms and More Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Integration for Zoho Desk – Contact Form 7, WPForms, Elementor, Gravity Forms and More Code Analysis

Dangerous Functions
0
Raw SQL Queries
10
14 prepared
Unescaped Output
6
330 escaped
Nonce Checks
19
Capability Checks
0
File Operations
0
External Requests
14
Bundled Libraries
0

SQL Query Safety

58% prepared24 total queries

Output Escaping

98% escaped336 total outputs
Data Flows
7 unsanitized

Data Flow Analysis

14 flows7 with unsanitized paths
iafwzdesk_handle_request (src\product\setup-action.php:10)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Integration for Zoho Desk – Contact Form 7, WPForms, Elementor, Gravity Forms and More Attack Surface

Entry Points5
Unprotected0

AJAX Handlers 5

authwp_ajax_iafwzdesk_review_actionincludes\function\review.php:50
authwp_ajax_iafwzdesk_ai_settings_requestsrc\product\ai-settings-action.php:61
authwp_ajax_IAFWZDESK_Error_Log_show_actionsrc\product\errorlog-action.php:109
authwp_ajax_iafwzdesk_handle_requestsrc\product\setup-action.php:146
authwp_ajax_iafwzdesk_integration_statussrc\product\setup-action.php:184
WordPress Hooks 17
actionadmin_menuincludes\admin\admin.php:10
actionadmin_enqueue_scriptsincludes\admin\admin.php:27
actionadmin_post_iafwzdesk_process_requestincludes\function\common-actions.php:40
actionadmin_noticesincludes\function\review.php:8
actionwpcf7_mail_sentsrc\forms\submit-action.php:16
actionwpforms_process_completesrc\forms\submit-action.php:19
actiongform_after_submissionsrc\forms\submit-action.php:22
actionfrm_after_create_entrysrc\forms\submit-action.php:25
actionelementor_pro/forms/new_recordsrc\forms\submit-action.php:28
actionadmin_post_iafwzdesk_authenticatesrc\product\account-action.php:8
actionadmin_initsrc\product\account-action.php:75
actionadmin_initsrc\product\account-action.php:238
actionadmin_initsrc\product\errorlog-action.php:26
actionadmin_initsrc\product\errorlog-action.php:66
actionadmin_initsrc\product\errorlog-action.php:194
actionadmin_post_iafwzdesk_delete_data_confirmsrc\product\settings-action.php:45
actionadmin_initsrc\product\setup-action.php:150
Maintenance & Trust

Integration for Zoho Desk – Contact Form 7, WPForms, Elementor, Gravity Forms and More Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 10, 2026
PHP min version7.4
Downloads871

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Integration for Zoho Desk – Contact Form 7, WPForms, Elementor, Gravity Forms and More Developer Profile

Plugcrux

8 plugins · 110 total installs

93
trust score
Avg Security Score
99/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Integration for Zoho Desk – Contact Form 7, WPForms, Elementor, Gravity Forms and More

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/integrate-with-zoho-desk/includes/assets/css/admin-style.css/wp-content/plugins/integrate-with-zoho-desk/includes/assets/css/main-style.css/wp-content/plugins/integrate-with-zoho-desk/includes/assets/js/admin-script.js/wp-content/plugins/integrate-with-zoho-desk/includes/assets/js/main-script.js
Script Paths
/wp-content/plugins/integrate-with-zoho-desk/includes/assets/js/admin-script.js/wp-content/plugins/integrate-with-zoho-desk/includes/assets/js/main-script.js
Version Parameters
integrate-with-zoho-desk/includes/assets/css/admin-style.css?ver=integrate-with-zoho-desk/includes/assets/css/main-style.css?ver=integrate-with-zoho-desk/includes/assets/js/admin-script.js?ver=integrate-with-zoho-desk/includes/assets/js/main-script.js?ver=

HTML / DOM Fingerprints

CSS Classes
iafwzdesk-tab-contentiafwzdesk-span-headeriafwzdesk-help-icon-wrapperiafwzdesk-help-iconiafwzdesk-help-tooltipiafwzdesk-auth-popup-contentiafwzdesk-auth-popup-headeriafwzdesk-auth-popup-close+8 more
HTML Comments
<!-- Exit if accessed directly to ensure security. --><!-- Multisite handling: loop through all sites in the network --><!-- Activation and deactivation hooks. --><!-- Add a "Settings" link to the plugin action links on the Plugins page. -->+40 more
Data Attributes
data-iafwzdesk-modal-target="iafwzdesk-auth-popupOverlay"
JS Globals
iafwzdesk_accountDBInstanceiafwzdesk_admin_script_params
FAQ

Frequently Asked Questions about Integration for Zoho Desk – Contact Form 7, WPForms, Elementor, Gravity Forms and More