
Surbma | Divi & Gravity Forms Security & Risk Analysis
wordpress.org/plugins/surbma-divi-gravity-formsResponsive Divi form styles for Gravity Forms.
Is Surbma | Divi & Gravity Forms Safe to Use in 2026?
Generally Safe
Score 85/100Surbma | Divi & Gravity Forms has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The static analysis of "surbma-divi-gravity-forms" v5.1 reveals a strong security posture regarding common web vulnerabilities. The plugin demonstrates excellent adherence to best practices by implementing 100% prepared statements for all SQL queries, proper output escaping for all identified outputs, and the absence of file operations or external HTTP requests. Furthermore, the attack surface is minimal, with no AJAX handlers, REST API routes, shortcodes, or cron events identified. The taint analysis also shows no concerning flows, indicating no obvious vulnerabilities related to unsanitized data. The vulnerability history is equally positive, with zero recorded CVEs, suggesting a history of secure development and maintenance.
Despite the overwhelmingly positive findings, the complete absence of nonce checks and capability checks across all potential entry points (even though there are none identified) is a notable concern. While the current attack surface is zero, any future addition of AJAX handlers, REST API routes, or other interactive elements without these fundamental security measures could introduce significant vulnerabilities. The lack of these checks is a gap in the security framework that, while not currently exploitable, represents a potential risk should the plugin evolve. Therefore, while the current version is highly secure based on the provided data, future development should prioritize the implementation of nonce and capability checks.
Key Concerns
- Missing nonce checks
- Missing capability checks
Surbma | Divi & Gravity Forms Security Vulnerabilities
Surbma | Divi & Gravity Forms Code Analysis
Output Escaping
Surbma | Divi & Gravity Forms Attack Surface
WordPress Hooks 2
Maintenance & Trust
Surbma | Divi & Gravity Forms Maintenance & Trust
Maintenance Signals
Community Trust
Surbma | Divi & Gravity Forms Alternatives
Divi Gravity Forms (WP Tools)
wp-tools-gravity-forms-divi-module
Divi 4 & 5 module to integrate Gravity Forms. Create custom-designed forms for your website using extensive style customization options, no coding …
Divi Styling Add-On for Gravity Forms
gf-divi
Have your Gravity Forms look just like the rest of Divi
Module for Gravity Forms in Divi Builder
module-for-gravity-forms-in-divi-builder
Module for Gravity Forms in Divi Builder.
GravityExport Lite for Gravity Forms
gf-entries-in-excel
Export all Gravity Forms entries to Excel (.xlsx) or CSV via a download button or a secret shareable URL.
Multiple Columns for Gravity Forms
gf-form-multicolumn
Introduces new form elements into Gravity Forms which allow for simple column creation.
Surbma | Divi & Gravity Forms Developer Profile
27 plugins · 30K total installs
How We Detect Surbma | Divi & Gravity Forms
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/surbma-divi-gravity-forms/css/surbma-divi-gravity-forms.csssurbma-divi-gravity-forms/css/surbma-divi-gravity-forms.css?ver=