
Zervise Support for WordPress Security & Risk Analysis
wordpress.org/plugins/zerviseZervise Support for WordPress is the best way to give your customers support right from your site.
Is Zervise Support for WordPress Safe to Use in 2026?
Generally Safe
Score 100/100Zervise Support for WordPress has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The zervise plugin v1.1.0 exhibits a strong security posture based on the provided static analysis. The absence of AJAX handlers, REST API routes, shortcodes, and cron events significantly limits the potential attack surface. Furthermore, the code shows good practices regarding SQL queries, as all identified queries utilize prepared statements. The high percentage of properly escaped output also indicates a good effort to prevent cross-site scripting (XSS) vulnerabilities.
Despite these strengths, the static analysis reveals zero nonce checks and zero capability checks across the plugin's code. This is a significant concern, as these mechanisms are crucial for preventing common WordPress vulnerabilities like Cross-Site Request Forgery (CSRF) and unauthorized actions. While the attack surface is currently zero, any future addition of entry points without proper authentication and authorization checks will present a substantial risk.
The plugin's vulnerability history is clean, with no recorded CVEs. This, coupled with the static analysis findings of no critical or high severity taint flows, suggests a well-developed plugin. However, the lack of nonce and capability checks remains a critical area for improvement to ensure robust security, especially as the plugin evolves.
Key Concerns
- Missing nonce checks
- Missing capability checks
- Some output not properly escaped
Zervise Support for WordPress Security Vulnerabilities
Zervise Support for WordPress Code Analysis
Output Escaping
Zervise Support for WordPress Attack Surface
WordPress Hooks 2
Maintenance & Trust
Zervise Support for WordPress Maintenance & Trust
Maintenance Signals
Community Trust
Zervise Support for WordPress Alternatives
Zervise Contact Us Form
zervise-contact-us-form
Add Zervise Contact Us Widget in your wordpress site so that your users can reach you with just a click.
Zendesk Support for WordPress
zendesk
Bring the helpdesk into your blog
HappyFox Helpdesk
happyfox-helpdesk
HappyFox plugin for WordPress offers a simple solution for delivering great customer support directly from your Wordpress admin dashboard.
Easy Digital Downloads – Omnidesk Support
edd-omnidesk-support
Bring the helpdesk into your blog
Fluent Support – Helpdesk & Customer Support Ticket System
fluent-support
Feature Rich and Super Fast Support and Customer Ticketing System for WordPress.
Zervise Support for WordPress Developer Profile
2 plugins · 0 total installs
How We Detect Zervise Support for WordPress
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/zervise/includes/css/style.css/wp-content/plugins/zervise/includes/js/main.jshttps://cdn.jsdelivr.net/npm/socket.io-client@4.1.2/dist/socket.io.jsHTML / DOM Fingerprints
yts-main-styleyts-main-script