
Track Geolocation Of Users Using Contact Form 7 Security & Risk Analysis
wordpress.org/plugins/track-geolocation-of-users-using-contact-form-7Track Geolocation Of Users Using Contact Form 7 allows you to get geolocation information with their form submission.
Is Track Geolocation Of Users Using Contact Form 7 Safe to Use in 2026?
Generally Safe
Score 100/100Track Geolocation Of Users Using Contact Form 7 has a strong security track record. Known vulnerabilities have been patched promptly.
This plugin, track-geolocation-of-users-using-contact-form-7 v3.0.1, exhibits a mixed security posture. On the positive side, all identified entry points (AJAX handlers) appear to have authentication checks, and all SQL queries utilize prepared statements, indicating good practices in these areas. The plugin also performs a commendable number of nonce and capability checks. However, the presence of the `unserialize` function is a significant concern, as it can lead to Remote Code Execution if not handled with extreme caution and proper input sanitization, which is not explicitly detailed in the provided static analysis. While the taint analysis shows no critical or high-severity unsanitized flows, the single flow with an unsanitized path warrants investigation.
The plugin's vulnerability history shows a single medium-severity CVE related to Cross-Site Scripting, last patched in late 2023. This suggests that while the developers are responsive to patching, there's a past indicator of input sanitization weaknesses. The lack of currently unpatched vulnerabilities is a good sign, but the history of an XSS vulnerability combined with the static analysis's moderately low output escaping rate (72%) suggests potential for similar issues if not carefully managed. Overall, the plugin has strengths in its structured approach to security checks, but the identified use of `unserialize` and the past XSS vulnerability present areas for careful monitoring and potential mitigation.
Key Concerns
- Use of unserialize function
- Moderate output escaping rate (72%)
- Flow with unsanitized path
- Previous medium severity CVE (XSS)
Track Geolocation Of Users Using Contact Form 7 Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Track Geolocation Of Users Using Contact Form 7 <= 2.0 - Authenticated (Administrator+) Stored Cross-Site Scripting
Track Geolocation Of Users Using Contact Form 7 Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Data Flow Analysis
Track Geolocation Of Users Using Contact Form 7 Attack Surface
AJAX Handlers 5
WordPress Hooks 17
Maintenance & Trust
Track Geolocation Of Users Using Contact Form 7 Maintenance & Trust
Maintenance Signals
Community Trust
Track Geolocation Of Users Using Contact Form 7 Alternatives
Simple Fields Map extension
simple-fields-map-extension
Extension to Simple Fields that adds a field type for selecting a location on a Google Map.
Quick Maps
quick-maps
The easiest Google Maps integration for your Wordpress website [quick-maps]Orlando, Florida[/quick-maps] - No Google API required.
BuddyPress Maps
buddypress-maps
BuddyPress Maps is a component that allows to find and display location markers on a Google Map.
Fundify Geolocated Campaigns
fundify-geolocated-campaigns
This plugin enables you to show your Fundify Geolocated campagins on Google map with shortcode
Map It! by Two Row Studio
map-it-by-two-row-studio
Map your posts and pages - customize the look, feel, and data.
Track Geolocation Of Users Using Contact Form 7 Developer Profile
18 plugins · 7K total installs
How We Detect Track Geolocation Of Users Using Contact Form 7
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/track-geolocation-of-users-using-contact-form-7/assets/css/style.css/wp-content/plugins/track-geolocation-of-users-using-contact-form-7/assets/js/script.js/wp-content/plugins/track-geolocation-of-users-using-contact-form-7/assets/js/script.jstrack-geolocation-of-users-using-contact-form-7/assets/css/style.css?ver=track-geolocation-of-users-using-contact-form-7/assets/js/script.js?ver=HTML / DOM Fingerprints
cfgeo-advanced-filterscfgeo-loadingspinneris-activecfgeo-filter-rowcfgeo-labelcfgeo-input-textcfgeo-input-select+3 more<!-- Basic plugin definitions --><!-- Initialize the main class --><!-- CFGEO_Admin_Action Class --><!-- Handles the admin functionality. -->+10 moredata-cfgeo-countrydata-cfgeo-citydata-cfgeo-datecfgeo_ajax_object