
PDF for Forminator Forms + Drag and Drop Template Builder Security & Risk Analysis
wordpress.org/plugins/pdf-for-forminator-formsForminator PDF allows you to automatically generate PDF documents from your Forminator form submissions.
Is PDF for Forminator Forms + Drag and Drop Template Builder Safe to Use in 2026?
Generally Safe
Score 100/100PDF for Forminator Forms + Drag and Drop Template Builder has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "pdf-for-forminator-forms" plugin, version 6.5.1, exhibits a generally good security posture with several strengths. A notable positive is the absence of any recorded vulnerabilities (CVEs) or critical/high taint flows, suggesting a well-maintained and secure codebase historically. The high percentage of prepared statements in SQL queries and the excellent rate of output escaping indicate robust practices against common web vulnerabilities like SQL injection and cross-site scripting.
However, there are specific areas that introduce risk. The presence of 10 AJAX handlers, with 3 of them lacking authentication checks, represents a significant attack surface that could be exploited if not properly secured within the application logic. While the taint analysis did not reveal critical or high severity issues, the single flow with unsanitized paths is a concern that warrants further investigation to ensure no sensitive data can be manipulated.
In conclusion, while the plugin benefits from a clean vulnerability history and strong coding practices in areas like SQL and output handling, the unprotected AJAX endpoints are a clear weakness. The single unsanitized path flow, though not critically flagged, also introduces a potential risk. Addressing the unauthenticated AJAX handlers should be the priority to mitigate immediate threats.
Key Concerns
- Unprotected AJAX handlers
- Flows with unsanitized paths
PDF for Forminator Forms + Drag and Drop Template Builder Security Vulnerabilities
PDF for Forminator Forms + Drag and Drop Template Builder Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
PDF for Forminator Forms + Drag and Drop Template Builder Attack Surface
AJAX Handlers 10
Shortcodes 6
WordPress Hooks 102
Maintenance & Trust
PDF for Forminator Forms + Drag and Drop Template Builder Maintenance & Trust
Maintenance Signals
Community Trust
PDF for Forminator Forms + Drag and Drop Template Builder Alternatives
PDF for WPForms + Drag and Drop Template Builder
pdf-for-wpforms
The plugin helps you create PDF for WPForms you can builder PDF template
PDF for Contact Form 7 + Drag and Drop Template Builder
pdf-for-contact-form-7
The plugin helps you create PDF for contact form 7 you can builder template pdf
PDF for Gravity Forms + Drag And Drop Template Builder
pdf-for-gravity-forms
The plugin helps you create PDF for Gravity Forms you can builder template pdf
PDF for Ninja Forms + Drag and Drop Template Builder
pdf-for-ninja-forms
The plugin helps you create PDF for Ninja Form you can builder template pdf
PDF for eForm + Drag And Drop Template Builder
eforms-pdf
The plugin helps you create PDF for eForm you can builder template pdf
PDF for Forminator Forms + Drag and Drop Template Builder Developer Profile
55 plugins · 26K total installs
How We Detect PDF for Forminator Forms + Drag and Drop Template Builder
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/pdf-for-forminator-forms/pdf/frontend/assets/css/styles.css/wp-content/plugins/pdf-for-forminator-forms/pdf/frontend/assets/js/script.js/wp-content/plugins/pdf-for-forminator-forms/pdf/frontend/assets/css/pdf_template.css/wp-content/plugins/pdf-for-forminator-forms/pdf/frontend/assets/js/script.jspdf-for-forminator-forms/pdf/frontend/assets/css/styles.css?ver=pdf-for-forminator-forms/pdf/frontend/assets/js/script.js?ver=pdf-for-forminator-forms/pdf/frontend/assets/css/pdf_template.css?ver=HTML / DOM Fingerprints
yeepdf-forminator-form-wrapperyeepdf-forminator-form-pdf-wrapperdata-yeepdf_forminator_form_idyeepdf_forminator_params[crm_marketingCurrent timestampCurrent Date and Time ( Y-m-d H:i:s )Current Date ( Y-m-d )