
MWB GF Integration for HubSpot -Sync HubSpot Forms, Contacts, Tickets Security & Risk Analysis
wordpress.org/plugins/mwb-gf-integration-for-hubspotAutomate lead generation & nurturing by syncing Gravity Form data over HubSpot with this MWB GF Integration for HubSpot plugin.
Is MWB GF Integration for HubSpot -Sync HubSpot Forms, Contacts, Tickets Safe to Use in 2026?
Generally Safe
Score 85/100MWB GF Integration for HubSpot -Sync HubSpot Forms, Contacts, Tickets has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The mwb-gf-integration-for-hubspot plugin v1.0.0 demonstrates a mixed security posture. On the positive side, it shows excellent practices regarding SQL queries, with 100% of them using prepared statements, and a very high rate of output escaping (98%). The plugin also correctly implements nonce checks for its AJAX handlers and includes capability checks. Its vulnerability history is clean, with no recorded CVEs, suggesting a history of secure development or infrequent targeting.
However, significant concerns arise from its attack surface. The presence of 5 AJAX handlers, with 3 of them lacking authentication checks, presents a direct risk. Furthermore, the taint analysis revealed one flow with unsanitized paths, categorized as high severity, which is a critical finding. This indicates that user-supplied data could potentially be used in an unsafe manner, leading to vulnerabilities such as directory traversal or command injection. While the plugin adheres to good practices in many areas, the unprotected AJAX endpoints and the high-severity taint flow represent the most pressing security risks that require immediate attention.
Key Concerns
- Unprotected AJAX handlers
- High severity unsanitized taint flow
MWB GF Integration for HubSpot -Sync HubSpot Forms, Contacts, Tickets Security Vulnerabilities
MWB GF Integration for HubSpot -Sync HubSpot Forms, Contacts, Tickets Release Timeline
MWB GF Integration for HubSpot -Sync HubSpot Forms, Contacts, Tickets Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
MWB GF Integration for HubSpot -Sync HubSpot Forms, Contacts, Tickets Attack Surface
AJAX Handlers 5
WordPress Hooks 22
Maintenance & Trust
MWB GF Integration for HubSpot -Sync HubSpot Forms, Contacts, Tickets Maintenance & Trust
Maintenance Signals
Community Trust
MWB GF Integration for HubSpot -Sync HubSpot Forms, Contacts, Tickets Alternatives
MWB CF7 Integration with HubSpot -Sync HubSpot Forms, Contacts, Tickets
mwb-cf7-integration-with-hubspot
Automate lead generation & nurturing by syncing Contact Form 7 data over HubSpot with this MWB CF7 Integration with HubSpot plugin.
CF7 HubSpot Forms Add-on For Contact Form 7
cf7-hubspot-forms-add-on-for-contact-form-7
This plugin integrates HubSpot forms with Contact Form 7 forms.
WPOP Contact Form 7 to Hubspot
wpop-contactform-hubspot
Add Contact Form 7 Data to Hubspot Contact lists.
Contact Form user to HubSpot Contacts
cf7-user-to-hubspot-contacts
Plugin sends Contact Form 7 (first name, last name, email, phone) to HubSpot CRM contact.
Integration for HubSpot and Contact Form 7, WPForms, Elementor, Ninja Forms
cf7-hubspot
Send Contact Form 7, WPForms, Elementor, Ninja Forms, WPforms, Elementor, Ninja Forms, Contact Form Entries Plugin and many other contact form submiss …
MWB GF Integration for HubSpot -Sync HubSpot Forms, Contacts, Tickets Developer Profile
5 plugins · 7K total installs
How We Detect MWB GF Integration for HubSpot -Sync HubSpot Forms, Contacts, Tickets
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/mwb-gf-integration-for-hubspot/admin/images/Demo.svg/wp-content/plugins/mwb-gf-integration-for-hubspot/admin/images/Documentation.svg/wp-content/plugins/mwb-gf-integration-for-hubspot/admin/images/Support.svgmwb-gf-integration-for-hubspot/style.css?ver=mwb-gf-integration-for-hubspot/script.js?ver=HTML / DOM Fingerprints
mwb-gf-integration-for-hubspot-admin-wrapperdata-mwb-gf-hs-plugin-url