
Contact Forms, Live Support, CRM, Video Messages Security & Risk Analysis
wordpress.org/plugins/live-support-ticketsStreamline support with integrated CRM, live chat, and custom contact forms for enhanced user interaction.
Is Contact Forms, Live Support, CRM, Video Messages Safe to Use in 2026?
Generally Safe
Score 99/100Contact Forms, Live Support, CRM, Video Messages has a strong security track record. Known vulnerabilities have been patched promptly. It's a solid choice for most WordPress installations.
The 'live-support-tickets' plugin v1.12.1 exhibits a mixed security posture. On the positive side, it demonstrates strong adherence to secure coding practices, with a high percentage of SQL queries using prepared statements and a large majority of output being properly escaped. The plugin also incorporates a significant number of nonce and capability checks, indicating an effort to protect against common WordPress attacks. However, the presence of 8 unprotected AJAX handlers represents a notable weakness in its attack surface, potentially allowing unauthorized users to trigger actions. The taint analysis revealing two high-severity flows with unsanitized paths is a significant concern, suggesting potential for exploitation even with other good practices in place.
The plugin's vulnerability history shows one previously known medium-severity CVE related to Exposure of Sensitive Information to an Unauthorized Actor. While this CVE is currently patched, the nature of the vulnerability suggests a need for continued vigilance in handling sensitive data. The lack of critical or high severity historical vulnerabilities is positive, but the existence of even one indicates that security is not absolute. Overall, the plugin has strengths in its general coding hygiene, but the specific issues identified in the static analysis (unprotected AJAX, high-severity taint flows) and its past vulnerability history necessitate careful consideration of its security.
Key Concerns
- Unprotected AJAX handlers
- High severity unsanitized taint flows
- Medium severity CVE in history
- Use of unserialize function
Contact Forms, Live Support, CRM, Video Messages Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Contact Forms, Live Support, CRM, Video Messages <= 1.10.3 - Unauthenticated Information Disclosure
Contact Forms, Live Support, CRM, Video Messages Release Timeline
Contact Forms, Live Support, CRM, Video Messages Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Data Flow Analysis
Contact Forms, Live Support, CRM, Video Messages Attack Surface
AJAX Handlers 8
REST API Routes 16
Shortcodes 11
WordPress Hooks 26
Maintenance & Trust
Contact Forms, Live Support, CRM, Video Messages Maintenance & Trust
Maintenance Signals
Community Trust
Contact Forms, Live Support, CRM, Video Messages Alternatives
SlimFAQ
slimfaq
Easy integration of the SlimFAQ sidebar with optional Intercom integration.
Engage Agent
engage-agent
AI chat, contact form, waitlist, and newsletter in one plugin. Feeds leads into EmpireVault CRM automatically.
HubSpot All-In-One Marketing – Forms, Popups, Live Chat
leadin
The CRM, Sales, and Marketing WordPress plugin to grow your business better. Capture and engage web visitors with free live chat, forms, CRM, email ma …
AFI – The Easiest Integration Plugin
advanced-form-integration
Connect any WordPress form or event to 200+ apps — no code. Send leads, orders, and signups to your CRM, email, or sheets in minutes.
Lenix Leads Collector
lenix-elementor-leads-addon
Leads Collector, Collects forms entries from Elementor,Cf7,WPForms and more with export to CSV.
Contact Forms, Live Support, CRM, Video Messages Developer Profile
13 plugins · 1K total installs
How We Detect Contact Forms, Live Support, CRM, Video Messages
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/live-support-tickets/assets/css/vw-support-style.css/wp-content/plugins/live-support-tickets/assets/css/vw-support-frontend.css/wp-content/plugins/live-support-tickets/assets/js/vw-support-app.js/wp-content/plugins/live-support-tickets/assets/js/vw-support-frontend.js/wp-content/plugins/live-support-tickets/assets/js/vw-support-backend.js/wp-content/plugins/live-support-tickets/assets/js/vw-support-app.js/wp-content/plugins/live-support-tickets/assets/js/vw-support-frontend.js/wp-content/plugins/live-support-tickets/assets/js/vw-support-backend.jslive-support-tickets/assets/css/vw-support-style.css?ver=live-support-tickets/assets/css/vw-support-frontend.css?ver=live-support-tickets/assets/js/vw-support-app.js?ver=live-support-tickets/assets/js/vw-support-frontend.js?ver=live-support-tickets/assets/js/vw-support-backend.js?ver=HTML / DOM Fingerprints
vw-support-login-formvw-support-register-formvw-support-account-statsvw-support-schedule-widgetvw-support-conversation-threadvw-support-ticket-list<!-- VideoWhisper.com - Support - Contacts @2022 --><!-- VideoWhisper - Support - Tickets @2022 --><!-- VideoWhisper.com - Support - Ticket Contacts @2022 --><!-- VideoWhisper.com - Support - Messages @2022 -->+10 moredata-vw-support-iddata-vw-user-iddata-conversation-iddata-ticket-idvw_support_ajax_urlvw_support_data/wp-json/vws/v1/settings/wp-json/vws/v1/app/wp-json/vws/v1/contact/wp-json/vws/v1/message/wp-json/vws/v1/ticket/wp-json/vws/v1/conversation/wp-json/vws/v1/user[videowhisper_support_account_stats][videowhisper_support_schedule][videowhisper_support_schedule_editor][videowhisper_support_dash]