
WP Libre Form Security & Risk Analysis
wordpress.org/plugins/wp-libre-formUse standard HTML5 markup to create fully functional forms for WordPress
Is WP Libre Form Safe to Use in 2026?
Generally Safe
Score 85/100WP Libre Form has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The wp-libre-form v1.4.3 plugin demonstrates a generally good security posture with several positive indicators. The absence of any recorded vulnerabilities (CVEs) and the complete reliance on prepared statements for SQL queries are significant strengths. Furthermore, the plugin utilizes capability checks for its entry points and has a high percentage of properly escaped outputs, indicating an awareness of common web security pitfalls. However, there are notable areas of concern. The analysis reveals a total of three entry points, with two of them lacking authentication checks. This exposes the plugin to potential unauthorized access and actions if these unprotected entry points handle sensitive data or functionality. The lack of taint analysis results also limits the understanding of potential data flow vulnerabilities, although the absence of dangerous functions and file operations is a positive sign.
Key Concerns
- 2 AJAX handlers without auth checks
- 1 entry point without authentication
- No taint analysis results
WP Libre Form Security Vulnerabilities
WP Libre Form Release Timeline
WP Libre Form Code Analysis
Output Escaping
WP Libre Form Attack Surface
AJAX Handlers 2
Shortcodes 1
WordPress Hooks 38
Maintenance & Trust
WP Libre Form Maintenance & Trust
Maintenance Signals
Community Trust
WP Libre Form Alternatives
Lenix Leads Collector
lenix-elementor-leads-addon
Leads Collector, Collects forms entries from Elementor,Cf7,WPForms and more with export to CSV.
GB Forms DB
gb-forms-db
One lead collector to rule them all! The best place to save all your leads from all forms in one place! Easily manage, export or post all your leads …
Ninja Forms – The Contact Form Builder That Grows With You
ninja-forms
The 100% beginner friendly WordPress form builder. Drag & drop form fields to build beautiful, professional contact forms in minutes.
HTML Forms – Simple WordPress Forms Plugin
html-forms
A simpler, faster, and smarter WordPress forms plugin.
Lead Form Builder & Contact Form
lead-form-builder
Drag & Drop Contact Form Builder for WordPress to create contact, lead generation, newsletter & registration forms. Works with Elementor & Gutenberg.
WP Libre Form Developer Profile
4 plugins · 240 total installs
How We Detect WP Libre Form
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-libre-form/assets/css/libre-form-admin.css/wp-content/plugins/wp-libre-form/assets/js/libre-form-admin.js/wp-content/plugins/wp-libre-form/assets/css/libre-form-frontend.css/wp-content/plugins/wp-libre-form/assets/js/libre-form-frontend.js/wp-content/plugins/wp-libre-form/assets/js/libre-form-admin.js/wp-content/plugins/wp-libre-form/assets/js/libre-form-frontend.jswp-libre-form/assets/css/libre-form-admin.css?ver=wp-libre-form/assets/js/libre-form-admin.js?ver=wp-libre-form/assets/css/libre-form-frontend.css?ver=wp-libre-form/assets/js/libre-form-frontend.js?ver=HTML / DOM Fingerprints
wplf-form-containerwplf-form-wrapper<!-- form options --><!-- form submit options --><!-- form confirmation message -->data-wplf-idwpLibreFormAdminwpLibreFormFrontend/wp-json/wplf/v1/forms[libre-form id="%d"]