
Viable Support for Zendesk Security & Risk Analysis
wordpress.org/plugins/viable-support-for-zendeskConnect your Zendesk Support account with WordPress — create tickets, sync custom fields, and automatically convert comments into Zendesk tickets.
Is Viable Support for Zendesk Safe to Use in 2026?
Generally Safe
Score 100/100Viable Support for Zendesk has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "viable-support-for-zendesk" plugin version 1.1.1 exhibits a generally strong security posture based on static analysis. All identified entry points (AJAX handlers and shortcodes) appear to have authentication checks, which is a crucial security measure. The absence of dangerous functions, file operations, and raw SQL queries is also commendable. The use of prepared statements for all SQL queries is a significant strength. However, a notable concern is the 87% output escaping rate, meaning approximately 13% of outputs are not properly escaped. This could lead to Cross-Site Scripting (XSS) vulnerabilities if user-controlled data is outputted without sanitization.
Taint analysis revealed two flows with unsanitized paths, though they were not categorized as critical or high severity. This suggests a potential for subtle vulnerabilities if these paths involve user input that is not adequately validated before being used in file operations or other sensitive contexts. The plugin's history of zero known CVEs is positive, indicating a lack of previously discovered critical flaws. Nevertheless, the presence of unsanitized paths warrants further investigation to ensure no latent vulnerabilities exist.
In conclusion, while the plugin demonstrates good security practices in several key areas, the imperfect output escaping and the identified unsanitized paths are points of concern that slightly detract from an otherwise robust security profile. Continued vigilance and proactive code review for these areas are recommended.
Key Concerns
- Unescaped output detected
- Flows with unsanitized paths detected
Viable Support for Zendesk Security Vulnerabilities
Viable Support for Zendesk Code Analysis
Output Escaping
Data Flow Analysis
Viable Support for Zendesk Attack Surface
AJAX Handlers 6
Shortcodes 1
WordPress Hooks 17
Maintenance & Trust
Viable Support for Zendesk Maintenance & Trust
Maintenance Signals
Community Trust
Viable Support for Zendesk Alternatives
Zendesk Support for WordPress
zendesk
Bring the helpdesk into your blog
Fluent Support – Helpdesk & Customer Support Ticket System
fluent-support
Feature Rich and Super Fast Support and Customer Ticketing System for WordPress.
SupportCandy – Helpdesk & Customer Support Ticket System
supportcandy
Enhance your WordPress site with our helpdesk and support ticket system. Manage customer support, tickets, and email tickets efficiently.
Majestic Support – The Leading-Edge Help Desk & Customer Support Plugin
majestic-support
Majestic Support for WordPress is a top-tier ticket system that can significantly enhance your customers' support experience.
Support Genix – Helpdesk, AI Chatbot, Knowledge Base & Customer Support Ticketing System
support-genix-lite
Manage customer support with a powerful helpdesk & support ticket system — track customer tickets, resolve, and streamline your support workflow.
Viable Support for Zendesk Developer Profile
2 plugins · 0 total installs
How We Detect Viable Support for Zendesk
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/viable-support-for-zendesk/assets/css/style.cssviable-support-for-zendesk/assets/css/style.css?ver=HTML / DOM Fingerprints
viasuzen-form-settings-section-wrapperviasuzen-form-descriptionviasuzen-form-submit-buttonzc-form-rowzc-inputzc-toggle-switch-wrapperzc-toggle-switchzc-slidername="viasuzen_form_settings[form_title]"name="viasuzen_form_settings[field_name_label]"name="viasuzen_form_settings[field_email_label]"name="viasuzen_form_settings[field_subject_label]"name="viasuzen_form_settings[field_message_label]"name="viasuzen_form_settings[custom_field_.*_label]"+1 more[viasuzen_ticket_form]