
WCC CF7 to Brevo Security & Risk Analysis
wordpress.org/plugins/wcc-cf7-to-brevoSend Contact Form 7 Plugin Submissions to Brevo.
Is WCC CF7 to Brevo Safe to Use in 2026?
Generally Safe
Score 100/100WCC CF7 to Brevo has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "wcc-cf7-to-brevo" plugin v1.1.0 exhibits a generally good security posture based on the static analysis. The plugin demonstrates strong adherence to secure coding practices by using prepared statements for the vast majority of its SQL queries and properly escaping nearly all output. The absence of any known CVEs in its history is also a positive indicator of its security maintenance. The plugin also implements a substantial number of nonce checks, which helps protect against CSRF attacks.
However, there are specific areas of concern highlighted by the taint analysis. The presence of 5 high-severity flows with unsanitized paths suggests potential vulnerabilities where user-supplied input could be manipulated to affect file operations or other sensitive system functions. While the overall attack surface via AJAX is protected by authentication, these unsanitized paths represent a critical risk that needs immediate attention. The single file operation and external HTTP requests, while not explicitly flagged as vulnerable, warrant scrutiny in conjunction with the taint analysis results.
In conclusion, while the plugin has a solid foundation in secure coding, the high-severity taint flows present a significant risk that overshadows its otherwise positive attributes. The lack of any historical vulnerabilities is encouraging but does not negate the current, data-backed risks identified. Addressing these taint flows should be the top priority to improve the plugin's overall security.
Key Concerns
- High severity unsanitized path flows (5)
- Limited capability checks on entry points
WCC CF7 to Brevo Security Vulnerabilities
WCC CF7 to Brevo Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
WCC CF7 to Brevo Attack Surface
AJAX Handlers 8
WordPress Hooks 7
Maintenance & Trust
WCC CF7 to Brevo Maintenance & Trust
Maintenance Signals
Community Trust
WCC CF7 to Brevo Alternatives
WCC GF to Brevo
wcc-gf-to-brevo
Send Gravity Form Plugin Submissions to Brevo.
Brevo – Email, SMS, Web Push, Chat, and more.
mailin
Turn your WordPress site into a marketing powerhouse. Grow your audience, boost engagement, and drive more sales with Brevo.
Integration for Elementor forms – Sendinblue
integration-for-elementor-forms-sendinblue
Connect your Elementor Pro forms to Sendinblue/Brevo to easily capture and manage contacts from your website.
Add-on Brevo for Gravity Forms
addon-gravityforms-sendinblue-free
Connect Gravity Forms to Brevo (Sendinblue). Sync form fields with Brevo attributes and automatically generate contacts in specified lists.
Contact Form to Brevo
contact-form-to-brevo
Add Contact Form 7 Data to Brevo Contact lists.
WCC CF7 to Brevo Developer Profile
11 plugins · 10 total installs
How We Detect WCC CF7 to Brevo
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wcc-cf7-to-brevo/assets/css/wcc-cf7-to-brevo.css/wp-content/plugins/wcc-cf7-to-brevo/assets/js/wcc-cf7-to-brevo.jswcc-cf7-to-brevo/assets/css/wcc-cf7-to-brevo.css?ver=wcc-cf7-to-brevo/assets/js/wcc-cf7-to-brevo.js?ver=HTML / DOM Fingerprints
wcc-cf7-brevo-form-wrapper<!-- WCC CF7 TO BREVO START --><!-- WCC CF7 TO BREVO END -->data-wcc-cf7-brevo-form-idwcc_cf7_brevo_ajax_object[wcc_cf7_brevo_shortcode]