
Form Builder Blocks Security & Risk Analysis
wordpress.org/plugins/ninja-chandel-form-builder-blocksBuild powerful, custom forms directly inside the WordPress Block Editor with drag-and-drop ease and built-in entry management.
Is Form Builder Blocks Safe to Use in 2026?
Generally Safe
Score 100/100Form Builder Blocks has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin 'ninja-chandel-form-builder-blocks' v1.1.1 exhibits a strong security posture based on the provided static analysis and vulnerability history. The plugin demonstrates adherence to several key security best practices, including the exclusive use of prepared statements for SQL queries, a high percentage of properly escaped output, and the absence of dangerous functions or file operations. Furthermore, the lack of any recorded historical vulnerabilities, including critical or high severity issues, indicates a well-maintained and secure codebase. The plugin also implements nonce and capability checks on its AJAX handlers, which are the primary entry points identified.
While the static analysis shows an absence of critical security flaws like unsanitized taint flows or raw SQL queries, there are minor areas for potential improvement. The presence of three AJAX handlers, even with checks in place, represents a potential attack surface. The percentage of output escaping, while high at 89%, leaves room for improvement to reach 100% to eliminate any potential for cross-site scripting vulnerabilities. However, given the current data, the overall risk is assessed as low, with the plugin demonstrating robust security practices and a clean vulnerability record.
Key Concerns
- Minor unescaped outputs detected
- Presence of AJAX handlers, albeit protected
Form Builder Blocks Security Vulnerabilities
Form Builder Blocks Code Analysis
Output Escaping
Form Builder Blocks Attack Surface
AJAX Handlers 3
WordPress Hooks 11
Maintenance & Trust
Form Builder Blocks Maintenance & Trust
Maintenance Signals
Community Trust
Form Builder Blocks Alternatives
JetFormBuilder — Dynamic Blocks Form Builder
jetformbuilder
Advanced form builder plugin for Gutenberg. Create forms from the ground up, customize the existing ones, and style them up – all in one editor.
HT Contact Form – Drag & Drop Form Builder for WordPress
ht-contactform
The easiest drag & drop form builder for WordPress. Create contact forms, surveys, and lead capture forms in minutes with 38+ fields and 21+ integ …
Fluent Forms Block
fluentform-block
Fluent forms block is the extension of Fluent forms plugin. You can build advanced Contact form by Fluent form block.
Form Block
form-block
An extensive yet user-friendly form block.
VPSUForm – Drag & Drop Contact Form Builder with Email Automation
v-form
A lightweight drag-and-drop WordPress form builder with email automation, conditional logic, spam protection, and full lead management.
Form Builder Blocks Developer Profile
2 plugins · 90 total installs
How We Detect Form Builder Blocks
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/ninja-chandel-form-builder-blocks/build/block.json/wp-content/plugins/ninja-chandel-form-builder-blocks/build/render.php/wp-content/plugins/ninja-chandel-form-builder-blocks/includes/fmb-post.php/wp-content/plugins/ninja-chandel-form-builder-blocks/includes/rating.php/wp-content/plugins/ninja-chandel-form-builder-blocks/build/index.js/wp-content/plugins/ninja-chandel-form-builder-blocks/build/editor.jsninja-chandel-form-builder-blocks/build/index.js?ver=ninja-chandel-form-builder-blocks/build/editor.js?ver=ninja-chandel-form-builder-blocks/style.css?ver=HTML / DOM Fingerprints
fmb-form-builder<!-- wp:fmb/block-form-builder --><!-- /wp:fmb/block-form-builder -->data-form-iddata-form-configninjchfo_submit_ajax_object