Permissions Editor for Ninja Forms Security & Risk Analysis

wordpress.org/plugins/permissions-editor-for-ninja-forms

Edit user permissions for Ninja Forms.

1K active installs v1.2.1 PHP + WP 4.1+ Updated Jan 15, 2018
form-permissionsninja-formspermissionsuser-permissions
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Permissions Editor for Ninja Forms Safe to Use in 2026?

Generally Safe

Score 85/100

Permissions Editor for Ninja Forms has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8yr ago
Risk Assessment

The plugin 'permissions-editor-for-ninja-forms' v1.2.1 exhibits a generally strong security posture based on the provided static analysis. The absence of direct attack surface entries like AJAX handlers, REST API routes, and shortcodes, coupled with no reported vulnerabilities (CVEs) and the exclusive use of prepared statements for SQL queries, indicates a developer awareness of common security pitfalls. The presence of capability checks is also a positive sign for enforcing access controls. However, a significant concern arises from the low percentage of properly escaped output (10%). This suggests a substantial risk of Cross-Site Scripting (XSS) vulnerabilities, where user-supplied data could be injected into the page without proper sanitization, allowing attackers to execute malicious scripts in the user's browser. The lack of taint analysis results with unsanitized paths could be misleading if the analysis depth was limited, but given the other positive indicators, it suggests a potentially low risk in that specific area.

Key Concerns

  • Low output escaping rate
Vulnerabilities
None known

Permissions Editor for Ninja Forms Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Permissions Editor for Ninja Forms Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
19
2 escaped
Nonce Checks
0
Capability Checks
3
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

10% escaped21 total outputs
Attack Surface

Permissions Editor for Ninja Forms Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 15
actionplugins_loadedpermissions-editor-for-ninja_forms.php:15
actionadmin_menupermissions-editor-for-ninja_forms.php:40
actionadmin_post_penf_update_capabilitiespermissions-editor-for-ninja_forms.php:121
actionadmin_noticespermissions-editor-for-ninja_forms.php:127
actionadmin_initpermissions-editor-for-ninja_forms.php:136
filterninja_forms_admin_parent_menu_capabilitiespermissions-editor-for-ninja_forms.php:144
filterninja_forms_admin_all_forms_capabilitiespermissions-editor-for-ninja_forms.php:150
filterninja_forms_admin_extend_capabilitiespermissions-editor-for-ninja_forms.php:151
filterninja_forms_admin_add_new_capabilitiespermissions-editor-for-ninja_forms.php:152
filterninja_forms_admin_submissions_capabilitiespermissions-editor-for-ninja_forms.php:158
filterninja_forms_admin_menu_capabilitiespermissions-editor-for-ninja_forms.php:159
filterninja_forms_admin_import_export_capabilitiespermissions-editor-for-ninja_forms.php:166
filterninja_forms_admin_settings_capabilitiespermissions-editor-for-ninja_forms.php:174
filterninja_forms_admin_excel_export_capabilitiespermissions-editor-for-ninja_forms.php:181
filterninja_forms_admin_spreadsheet_capabilitiespermissions-editor-for-ninja_forms.php:182
Maintenance & Trust

Permissions Editor for Ninja Forms Maintenance & Trust

Maintenance Signals

WordPress version tested4.9.29
Last updatedJan 15, 2018
PHP min version
Downloads16K

Community Trust

Rating100/100
Number of ratings4
Active installs1K
Developer Profile

Permissions Editor for Ninja Forms Developer Profile

Rapidweb

1 plugin · 1K total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Permissions Editor for Ninja Forms

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

CSS Classes
penf_role_matrix
FAQ

Frequently Asked Questions about Permissions Editor for Ninja Forms