
Yeem Contact Form Security & Risk Analysis
wordpress.org/plugins/yeem-contact-formYeem Contact Form is a simple contact form plugin with very easy to use form builder.
Is Yeem Contact Form Safe to Use in 2026?
Generally Safe
Score 85/100Yeem Contact Form has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "yeem-contact-form" plugin version 1.0.0 presents a concerning security posture primarily due to its unprotected entry points. While the code signals indicate a lack of dangerous functions, no SQL queries, and a high percentage of output escaping, the presence of five AJAX handlers without any authentication checks is a significant weakness. This means any unauthenticated user could potentially interact with these handlers, opening the door to various attacks.
The taint analysis, although limited in scope with only two flows analyzed, did reveal two flows with unsanitized paths. While these did not escalate to critical or high severity, it suggests a potential for code injection or other vulnerabilities if these paths are exploited in combination with other weaknesses or if the scope of analysis was wider.
The plugin's vulnerability history is clean, with zero known CVEs. This is a positive indicator, suggesting the developers may have good security practices or the plugin hasn't been widely targeted or scrutinized. However, this does not negate the risks identified in the static analysis. The plugin's strengths lie in its internal code quality regarding SQL and output handling, but these are overshadowed by its exposed attack surface.
Key Concerns
- Unprotected AJAX handlers
- Taint flows with unsanitized paths
- No nonce checks on AJAX handlers
- No capability checks
Yeem Contact Form Security Vulnerabilities
Yeem Contact Form Code Analysis
Output Escaping
Data Flow Analysis
Yeem Contact Form Attack Surface
AJAX Handlers 5
Shortcodes 1
WordPress Hooks 11
Maintenance & Trust
Yeem Contact Form Maintenance & Trust
Maintenance Signals
Community Trust
Yeem Contact Form Alternatives
AKM Feedback Form
akm-feedback-form
Just insert the [AKMFORM] shortcode in pages of your WordPress site to display a simple and easy to use Feedback form.
Simple Contact Form Plugin for WordPress – WP Easy Contact
wp-easy-contact
Simple contact form with a searchable contact list. Collect, store and manage submissions in one place.
ALIDANI Contact forms
alidani-contact-form
Contact form with visual form builder. Contact form that sends the data to email, to a database list and easy to update the content.
FEP Contact Form
fep-contact-form
FEP Contact Form is a secure contact form to your WordPress site.This can be used with Front End PM or without.
OweBest Contact Form
ob-contact-form
OweBest Contact form is a simple contact form which works out of the box. Use shortcode on posts or pages to generate OweBest Contact Form.
Yeem Contact Form Developer Profile
1 plugin · 10 total installs
How We Detect Yeem Contact Form
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/yeem-contact-form/admin/css/yeem-contact-form-admin.css/wp-content/plugins/yeem-contact-form/admin/js/yeem-contact-form-admin.jsyeem-contact-form-adminHTML / DOM Fingerprints
YEEMYEEMYEEMyeemScriptObj