
Simple Contact Us Form Widget Security & Risk Analysis
wordpress.org/plugins/simple-contact-us-form-widgetSimple contact form (name, email, message) to be added to sidebars or footer area (as a widget), and/or any post or page (as a shortcode).
Is Simple Contact Us Form Widget Safe to Use in 2026?
Generally Safe
Score 100/100Simple Contact Us Form Widget has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'simple-contact-us-form-widget' plugin version 2.2.1 exhibits a generally strong security posture based on the provided static analysis. The absence of dangerous functions, file operations, and external HTTP requests, coupled with the use of prepared statements for all SQL queries and a high percentage of properly escaped outputs, are positive indicators. The presence of nonce and capability checks, while not exhaustive, further contribute to a more secure design. The plugin has no recorded vulnerabilities, which suggests a history of stable and secure development. However, the lack of any capability checks across the identified entry points (AJAX handlers and shortcodes) presents a potential concern. While the static analysis did not reveal any critical taint flows or unsanitized paths, the absence of explicit authorization checks on all entry points means that unauthorized users *could* potentially trigger these actions if an attacker finds a way to bypass WordPress's default permission system or if the plugin's intended use case doesn't strictly require authorization for these actions. This is a weakness that, while not currently exploited, leaves room for potential future issues if the plugin's functionality evolves or if new attack vectors are discovered.
Key Concerns
- No capability checks on entry points
- Low percentage of properly escaped outputs (86%)
Simple Contact Us Form Widget Security Vulnerabilities
Simple Contact Us Form Widget Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Simple Contact Us Form Widget Attack Surface
AJAX Handlers 2
Shortcodes 1
WordPress Hooks 6
Maintenance & Trust
Simple Contact Us Form Widget Maintenance & Trust
Maintenance Signals
Community Trust
Simple Contact Us Form Widget Alternatives
Contact Information Widget
contact-information-widget
Easily add a Contact Information Widget to your widgetable sidebar. With this plugin you can add a contact information.
SiteOrigin Widgets Bundle
so-widgets-bundle
Essential elements for modern websites. Add buttons, sliders, heroes, maps, images, carousels, features, icons, more. Create dynamic pages easily.
Contact Form by BestWebSoft – Advanced WP Contact Form Builder for WordPress
contact-form-plugin
The most powerful and user-friendly WordPress contact form plugin. Create beautiful contact forms, widgets and pages using shortcodes.
Void Contact Form 7 Widget For Elementor Page Builder
cf7-widget-elementor
This WordPress Plugin Adds Contact Form 7 widget element to Elementor page builder for easy drag & drop the created contact forms with CF7 (contac …
JetWidgets For Elementor
jetwidgets-for-elementor
Addon for Elementor Page builder. It provides the set of widgets to create different kinds of content like pricing tables, posts lists, banners, etc.
Simple Contact Us Form Widget Developer Profile
1 plugin · 0 total installs
How We Detect Simple Contact Us Form Widget
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/simple-contact-us-form-widget/css/simple-contact-us-widget.css/wp-content/plugins/simple-contact-us-form-widget/js/simple-contact-us-widget.js/wp-content/plugins/simple-contact-us-form-widget/js/simple-contact-us-widget.jssimple-contact-us-form-widget/css/simple-contact-us-widget.css?ver=simple-contact-us-form-widget/js/simple-contact-us-widget.js?ver=HTML / DOM Fingerprints
contact-us-form-widgetsend-emil-simple-contact-us-widgetdata-noncegbsccw_script[gbsimple_contact_us_widget]