
Wizweb Post Submission Security & Risk Analysis
wordpress.org/plugins/wizweb-post-submissionA powerful WordPress plugin that allows users to submit posts from the frontend with custom fields, dashboards, and WooCommerce monetization options.
Is Wizweb Post Submission Safe to Use in 2026?
Generally Safe
Score 100/100Wizweb Post Submission has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The wizweb-post-submission plugin v1.1.5 exhibits a generally good security posture, with strong adherence to secure coding practices. The static analysis reveals a high percentage of properly escaped outputs and the use of prepared statements for the majority of SQL queries. Furthermore, the absence of known vulnerabilities in its history suggests a development team that is either proactive about security or the plugin has not been a significant target.
However, a notable concern is the presence of one unprotected AJAX handler. This represents a direct attack vector that could be exploited by unauthenticated users, potentially leading to unauthorized actions or data manipulation if the handler performs sensitive operations. While there are no critical taint flows identified and a low overall attack surface, this single unprotected entry point is a significant weakness.
In conclusion, the plugin demonstrates a commendable effort towards security with its extensive use of prepared statements and output escaping. The lack of historical vulnerabilities is a positive indicator. The primary weakness lies in the single unprotected AJAX handler, which, despite the plugin's otherwise solid foundation, presents a tangible security risk that should be addressed.
Key Concerns
- Unprotected AJAX handler detected
Wizweb Post Submission Security Vulnerabilities
Wizweb Post Submission Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
Wizweb Post Submission Attack Surface
AJAX Handlers 5
Shortcodes 8
WordPress Hooks 19
Maintenance & Trust
Wizweb Post Submission Maintenance & Trust
Maintenance Signals
Community Trust
Wizweb Post Submission Alternatives
Bit integrations – Easy Automator with no-code automation, integrate Webhook and automate 300+ Platform
bit-integrations
Perfect Automation and integration plugin: Connect 300+ platforms and automate CRM, Email marketing tools, Google Sheets, Contact forms, LMS and more
Frontend Post Submission Manager Lite – Frontend Posting WordPress Plugin
frontend-post-submission-manager-lite
Frontend Post Submission with or without Login, 5 PreDesigned Form Templates, Add Unlimited Custom Fields, Google Captcha Security, Post Notifications
Firebase Authentication
firebase-authentication
This plugin allows login into WordPress using Firebase user credentials and maps Firebase user data to WordPress user profile.
Connector Woo Odoo By Tech-Receptives
connector-woo-odoo
This plugin extends WooCommerce Web Services by adding some additional endpoints.
LMSACE Connect – WooCommerce Moodle™ LMS Integration
lmsace-connect
LMSACE Connect plugin connects the popular Moodle™ LMS with woocommerce. LMSACE Connect will help the course creators to sell their courses on WordPre …
Wizweb Post Submission Developer Profile
1 plugin · 10 total installs
How We Detect Wizweb Post Submission
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wizweb-post-submission/assets/css/custom.css/wp-content/plugins/wizweb-post-submission/assets/css/select2.min.css/wp-content/plugins/wizweb-post-submission/assets/js/custom.js/wp-content/plugins/wizweb-post-submission/assets/js/select2.min.js/wp-content/plugins/wizweb-post-submission/assets/js/tinymce/tinymce.min.js/wp-content/plugins/wizweb-post-submission/assets/js/wpsub-admin.js/wp-content/plugins/wizweb-post-submission/assets/js/custom.js/wp-content/plugins/wizweb-post-submission/assets/js/select2.min.js/wp-content/plugins/wizweb-post-submission/assets/js/tinymce/tinymce.min.js/wp-content/plugins/wizweb-post-submission/assets/js/wpsub-admin.jswizweb-post-submission/assets/css/custom.css?ver=wizweb-post-submission/assets/css/select2.min.css?ver=wizweb-post-submission/assets/js/custom.js?ver=wizweb-post-submission/assets/js/select2.min.js?ver=wizweb-post-submission/assets/js/tinymce/tinymce.min.js?ver=wizweb-post-submission/assets/js/wpsub-admin.js?ver=HTML / DOM Fingerprints
wpsub-login-formwpsub-signup-formwpsub-forgot-password-formwpsub-reset-password-formwpsub-post-submission-pagewpsub-user-dashboardwpsub-user-articleswpsub-user-transaction+6 more<!-- Wizweb Post Submission plugin --><!-- Login Form --><!-- Signup Form --><!-- Forgot Password Form -->+5 moredata-wpsub-noncedata-wpsub-actiondata-wpsub-user-idWPSUB_AJAX_URLWPSUB_NONCEWPSUB_POST_SUBMISSION_SETTINGSWPSUB_TINYMCE_SETTINGS/wp-json/wizweb-post-submission/v1/submit/wp-json/wizweb-post-submission/v1/get-post-data[wpsub_login_form][wpsub_signup_form][wpsub_forgot_password_form][wpsub_reset_password_form]