
گرویتی فرم فارسی Security & Risk Analysis
wordpress.org/plugins/persian-gravity-formsبسته کامل فارسی ساز گرویتی فرم
Is گرویتی فرم فارسی Safe to Use in 2026?
Generally Safe
Score 100/100گرویتی فرم فارسی has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'persian-gravity-forms' v3.0.1 plugin exhibits a generally strong security posture, with no known vulnerabilities or critical taint flows identified in this analysis. The presence of nonces on all AJAX handlers and the high percentage of prepared statements for SQL queries are positive indicators of secure coding practices. Furthermore, the extensive output escaping suggests an effort to mitigate cross-site scripting (XSS) risks. The lack of external HTTP requests and the absence of bundled libraries also reduce potential attack vectors.
However, there are areas for improvement. The taint analysis revealed three flows with unsanitized paths, and one of these was categorized as high severity. While not classified as a critical vulnerability, this warrants attention as unsanitized paths can lead to various injection-type attacks if they are exposed to user input. The limited number of capability checks (3) and nonce checks (9) across the identified entry points, particularly with 5 AJAX handlers, could suggest potential gaps if input validation isn't thoroughly implemented within those handlers themselves, even if the handlers are technically protected by authentication.
The complete absence of recorded vulnerabilities, both historical and current, is a significant strength. This suggests a stable and well-maintained codebase. In conclusion, while the plugin has commendable security features and a clean vulnerability history, the presence of high-severity taint flows with unsanitized paths indicates a specific area of concern that should be addressed to further harden the plugin's security.
Key Concerns
- High severity taint flow with unsanitized path
- 3 flows with unsanitized paths
- Relatively low number of capability checks
گرویتی فرم فارسی Security Vulnerabilities
گرویتی فرم فارسی Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
گرویتی فرم فارسی Attack Surface
AJAX Handlers 5
WordPress Hooks 130
Maintenance & Trust
گرویتی فرم فارسی Maintenance & Trust
Maintenance Signals
Community Trust
گرویتی فرم فارسی Alternatives
Vandar.io Gravityform
vandar-gravityform
پرداخت اینترنتی وجه به وسیله درگاه پرداخت واسط وندار
GravityExport Lite for Gravity Forms
gf-entries-in-excel
Export all Gravity Forms entries to Excel (.xlsx) or CSV via a download button or a secret shareable URL.
Multiple Columns for Gravity Forms
gf-form-multicolumn
Introduces new form elements into Gravity Forms which allow for simple column creation.
Surbma | Divi & Gravity Forms
surbma-divi-gravity-forms
Responsive Divi form styles for Gravity Forms.
Smart phone field for Gravity Forms
smart-phone-field-for-gravity-forms
A simple and nice plugin to get auto country flag from user ip address on gravity form phone field.
گرویتی فرم فارسی Developer Profile
2 plugins · 30K total installs
How We Detect گرویتی فرم فارسی
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/persian-gravity-forms/assets/css/admin.css/wp-content/plugins/persian-gravity-forms/assets/css/gf-persian.css/wp-content/plugins/persian-gravity-forms/assets/js/admin.js/wp-content/plugins/persian-gravity-forms/assets/js/gf-persian.js/wp-content/plugins/persian-gravity-forms/assets/js/datepicker.js/wp-content/plugins/persian-gravity-forms/assets/js/admin.js/wp-content/plugins/persian-gravity-forms/assets/js/gf-persian.js/wp-content/plugins/persian-gravity-forms/assets/js/datepicker.jspersian-gravity-forms/assets/css/admin.css?ver=persian-gravity-forms/assets/css/gf-persian.css?ver=persian-gravity-forms/assets/js/admin.js?ver=persian-gravity-forms/assets/js/gf-persian.js?ver=persian-gravity-forms/assets/js/datepicker.js?ver=HTML / DOM Fingerprints
gf_persian_date_pickergfield_iran_citiesgf_persian_address_fielddata-gpersian-datepickerdata-iran-citiesGF_PERSIAN_VERSIONgf_persian_datepicker_lang