
Order Dropdown WooCommerce For Contact Form 7 Security & Risk Analysis
wordpress.org/plugins/order-dropdown-contact-form-7-for-woocommerceOrder Dropdown WooCommerce For Contact Form 7 Making Order List Field to you conact form. This field creates a drop down of current user's orders …
Is Order Dropdown WooCommerce For Contact Form 7 Safe to Use in 2026?
Generally Safe
Score 92/100Order Dropdown WooCommerce For Contact Form 7 has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "order-dropdown-contact-form-7-for-woocommerce" plugin version 1.0 exhibits a strong security posture based on the provided static analysis. The absence of any identified entry points such as AJAX handlers, REST API routes, shortcodes, or cron events significantly limits the plugin's attack surface. Furthermore, the code analysis reveals a lack of dangerous functions, no raw SQL queries (all using prepared statements), and a high percentage of properly escaped output, which are all positive security indicators. The absence of file operations and external HTTP requests also reduces potential risks. Taint analysis found no vulnerabilities, and the plugin has no recorded CVEs, indicating a clean history.
While the current analysis presents a very secure profile, it's important to note that the static analysis identified zero capability checks and zero nonce checks. While this might be acceptable given the extremely limited attack surface observed (or potentially nonexistent), in a more complex plugin, this would be a significant concern, as it could allow unauthenticated actions if new entry points were discovered or if the interpretation of the attack surface is incomplete. The lack of any recorded vulnerabilities in its history is a strong positive, but it doesn't guarantee future security. Overall, this version of the plugin appears robust and well-developed from a security perspective, with minimal to no immediate risks detected.
Key Concerns
- No nonce checks found
- No capability checks found
- 12% of output not properly escaped
Order Dropdown WooCommerce For Contact Form 7 Security Vulnerabilities
Order Dropdown WooCommerce For Contact Form 7 Release Timeline
Order Dropdown WooCommerce For Contact Form 7 Code Analysis
Output Escaping
Order Dropdown WooCommerce For Contact Form 7 Attack Surface
WordPress Hooks 5
Maintenance & Trust
Order Dropdown WooCommerce For Contact Form 7 Maintenance & Trust
Maintenance Signals
Community Trust
Order Dropdown WooCommerce For Contact Form 7 Alternatives
Database Addon for Contact Form 7 – CFDB7
contact-form-cfdb7
Save and manage Contact Form 7 messages. Never lose important data. It is a lightweight contact form 7 database plugin.
ReCaptcha v2 for Contact Form 7
wpcf7-recaptcha
Adds reCaptcha v2 from Contact Form 7 5.0.5 that was dropped on Contact Form 7 5.1
Redirection for Contact Form 7
wpcf7-redirect
Redirect to any page or URL, execute scripts after submission, save data to the database, and unlock additional submission actions for Contact Form 7.
Conditional Fields for Contact Form 7
cf7-conditional-fields
Adds conditional logic to Contact Form 7.
Contact Form 7 – Dynamic Text Extension
contact-form-7-dynamic-text-extension
Extends Contact Form 7 by adding dynamic form fields that accepts shortcodes to prepopulate form fields with default values and dynamic placeholders.
Order Dropdown WooCommerce For Contact Form 7 Developer Profile
20 plugins · 5K total installs
How We Detect Order Dropdown WooCommerce For Contact Form 7
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/order-dropdown-contact-form-7-for-woocommerce/public/css/design.cssorder-dropdown-contact-form-7-for-woocommerce/public/css/design.css?ver=HTML / DOM Fingerprints
description-boxcontrol-boxinsert-boxflex-containercodesubmitboxmail-tag-tipdata-tag-partdata-tag-optionwoocommerce_order