Is Contact Form 7 Secure?
C
Grade C — Fair
Elevated RiskContact Form 7 receives a Grade C from WP HealthKit's 46-layer security audit, with 427 findings including 48 high severity issues that should be addressed.
Grade
C
Findings
427
Critical
2
Standards
N/A
Active Installs
10.0M+
Last Audited
65 days ago
What We Found
Global Nonce Verification BypassCRITICAL
Insufficient MIME Type Validation in File UploadCRITICAL
Missing Capability Check in Contact Form Copy ActionHIGH
Unescaped Output in Admin Menu NoticeHIGH
Weak Permission Callback for REST APIHIGH
+ 422 more findings in the full report.
How It Compares
Frequently Asked Questions
Is Contact Form 7 safe to use?
Contact Form 7 receives a Grade C from WP HealthKit's 46-layer security audit, with 427 findings including 48 high severity issues that should be addressed.
How many vulnerabilities does Contact Form 7 have?
WP HealthKit's audit found 427 findings for Contact Form 7: 2 critical, 48 high, and 353 medium severity issues.
What is Contact Form 7's security grade?
Contact Form 7 has an overall security grade of C (Fair) based on WP HealthKit's 46-layer security audit.