OmniWise Rocket Forms Pro Security & Risk Analysis

wordpress.org/plugins/omniwise-rocket-forms-pro

Embed your Rocket Forms Pro forms anywhere on your WordPress site using shortcodes or Gutenberg blocks.

0 active installs v1.0.10 PHP 8.0+ WP 6.6+ Updated Apr 1, 2026
contact-formembedform-builderformsgutenberg
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is OmniWise Rocket Forms Pro Safe to Use in 2026?

Generally Safe

Score 100/100

OmniWise Rocket Forms Pro has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The plugin exhibits a generally good security posture with strong adherence to best practices like using prepared statements for SQL queries and proper output escaping. The absence of known vulnerabilities and critical taint flows is a significant positive indicator. However, the presence of two AJAX handlers lacking authentication checks presents a notable concern. While the attack surface is relatively small, these unprotected entry points could potentially be exploited by unauthenticated users, depending on their functionality.

The vulnerability history shows no recorded CVEs, which is excellent, suggesting a history of secure development or effective patching. The code analysis reveals no dangerous functions or file operations, further reinforcing the idea that the core code is robust. Despite the strong foundation, the unprotected AJAX handlers are the primary area of weakness that warrants attention and mitigation.

Key Concerns

  • Unprotected AJAX handlers
Vulnerabilities
None known

OmniWise Rocket Forms Pro Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

OmniWise Rocket Forms Pro Release Timeline

v1.0.10Current
v1.0.9
v1.0.8
v1.0.7
v1.0.6
v1.0.5
v1.0.4
Code Analysis
Analyzed Apr 16, 2026

OmniWise Rocket Forms Pro Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
1 prepared
Unescaped Output
0
73 escaped
Nonce Checks
4
Capability Checks
5
File Operations
0
External Requests
1
Bundled Libraries
0

SQL Query Safety

100% prepared1 total queries

Output Escaping

100% escaped73 total outputs
Data Flows · Security
All sanitized

Data Flow Analysis

2 flows
render_settings (includes/class-admin.php:76)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
2 unprotected

OmniWise Rocket Forms Pro Attack Surface

Entry Points4
Unprotected2

AJAX Handlers 3

authwp_ajax_owrfp_dismiss_reviewincludes/class-review-notice.php:25
authwp_ajax_owrfp_get_formsrocket-forms-pro.php:45
authwp_ajax_owrfp_clear_cacherocket-forms-pro.php:46

Shortcodes 1

[owrfp_form] includes/class-shortcode.php:7
WordPress Hooks 6
actionadmin_noticesincludes/class-review-notice.php:24
actioninitrocket-forms-pro.php:36
actioninitrocket-forms-pro.php:37
actionadmin_menurocket-forms-pro.php:38
actionadmin_initrocket-forms-pro.php:39
actionadmin_enqueue_scriptsrocket-forms-pro.php:40
Maintenance & Trust

OmniWise Rocket Forms Pro Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedApr 1, 2026
PHP min version8.0
Downloads109

Community Trust

Rating100/100
Number of ratings1
Active installs0
Developer Profile

OmniWise Rocket Forms Pro Developer Profile

omniwiseab

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect OmniWise Rocket Forms Pro

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/omniwise-rocket-forms-pro/assets/css/admin.css/wp-content/plugins/omniwise-rocket-forms-pro/assets/js/admin.js/wp-content/plugins/omniwise-rocket-forms-pro/assets/js/embed.js
Script Paths
/wp-content/plugins/omniwise-rocket-forms-pro/assets/js/admin.js/wp-content/plugins/omniwise-rocket-forms-pro/assets/js/embed.js
Version Parameters
omniwise-rocket-forms-pro/assets/css/admin.css?ver=omniwise-rocket-forms-pro/assets/js/admin.js?ver=omniwise-rocket-forms-pro/assets/js/embed.js?ver=

HTML / DOM Fingerprints

CSS Classes
owrfp-form-container
HTML Comments
<!-- OmniWise Rocket Forms Pro: missing id attribute -->
Data Attributes
data-owrfp-form
JS Globals
owrfpAdminowrfpEmbed
Shortcode Output
<div class="owrfp-form-container"<iframe id="
FAQ

Frequently Asked Questions about OmniWise Rocket Forms Pro