
WI Contact Form 7 for Elementor Security & Risk Analysis
wordpress.org/plugins/wi-contact-form-7-for-elementorThe WI Contact Form 7 for Elementor plugin allows you to easily add the Contact Form 7 widget element to pages being created with the Elementor page b …
Is WI Contact Form 7 for Elementor Safe to Use in 2026?
Generally Safe
Score 85/100WI Contact Form 7 for Elementor has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "wi-contact-form-7-for-elementor" v1 exhibits a strong security posture based on the provided static analysis and vulnerability history. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events significantly limits the potential attack surface. Furthermore, the code analysis reveals no dangerous functions, file operations, or external HTTP requests, and all SQL queries utilize prepared statements. This indicates a good practice in preventing common web vulnerabilities like SQL injection and remote code execution.
However, a significant concern arises from the complete lack of output escaping. With 7 total outputs and 0% properly escaped, there is a high risk of Cross-Site Scripting (XSS) vulnerabilities. Any data displayed to users that originates from potentially untrusted sources could be injected with malicious scripts. The absence of nonce checks and capability checks also presents a weakness, as it implies that actions performed by the plugin may not be properly authorized or protected against CSRF attacks.
The plugin's vulnerability history is clean, with no recorded CVEs. This, combined with the limited attack surface, suggests that the plugin has historically been developed with security in mind, or has not yet been a target for exploitation. While the lack of historical vulnerabilities is a positive sign, it does not negate the present risks identified in the code analysis, particularly the unescaped output. The overall security is good in terms of known exploits and fundamental web security practices like prepared statements, but it has critical weaknesses in output sanitization and authorization checks that need immediate attention.
Key Concerns
- Unescaped output detected
- Missing nonce checks
- Missing capability checks
WI Contact Form 7 for Elementor Security Vulnerabilities
WI Contact Form 7 for Elementor Code Analysis
Output Escaping
WI Contact Form 7 for Elementor Attack Surface
WordPress Hooks 3
Maintenance & Trust
WI Contact Form 7 for Elementor Maintenance & Trust
Maintenance Signals
Community Trust
WI Contact Form 7 for Elementor Alternatives
Void Contact Form 7 Widget For Elementor Page Builder
cf7-widget-elementor
This WordPress Plugin Adds Contact Form 7 widget element to Elementor page builder for easy drag & drop the created contact forms with CF7 (contac …
Styler Mate for Contact Form 7
cf7-styler-for-divi
Style and enhance Contact Form 7 for Divi, Bricks, Elementor, Gutenberg, and more.
Mascaras CF7
mascaras-para-cf7
Adicione máscaras de telefone, CPF, CNPJ, CEP e Dinheiro nos campos do Contact Form 7, Elementor e outros tipos de formulários.
Eazy CF Captcha
eazy-cf-catpcha
Eazy C(omment)F(orm) Captcha adds a mathematic exercise to the comment form, contact form 7 & elementor, preventing bots to spam your comments and …
Cf7 For Elementor
cf7-for-elementor
This plugin is an addon of Elementor Page Builder. A simple and nice Contact Form 7 Widget for elementor.No need of going in cf7 & copying the sho …
WI Contact Form 7 for Elementor Developer Profile
1 plugin · 60 total installs
How We Detect WI Contact Form 7 for Elementor
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wi-contact-form-7-for-elementor/assets/css/frontend.css/wp-content/plugins/wi-contact-form-7-for-elementor/assets/js/frontend.js/wp-content/plugins/wi-contact-form-7-for-elementor/assets/css/elementor-widgets.css/wp-content/plugins/wi-contact-form-7-for-elementor/assets/js/elementor-widgets.js/wp-content/plugins/wi-contact-form-7-for-elementor/assets/js/frontend.js/wp-content/plugins/wi-contact-form-7-for-elementor/assets/js/elementor-widgets.jswi-contact-form-7-for-elementor/assets/css/frontend.css?ver=wi-contact-form-7-for-elementor/assets/js/frontend.js?ver=wi-contact-form-7-for-elementor/assets/css/elementor-widgets.css?ver=wi-contact-form-7-for-elementor/assets/js/elementor-widgets.js?ver=HTML / DOM Fingerprints
wi-cf7-elementor-frontend