Is "Add-on SweetAlert Contact Form 7" safe?
WordPress Plugin security and safety information.
Rating: Good (current version safe)
Recommendations
Add-on SweetAlert Contact Form 7: Plugin Details
Type: | Plugin |
Author: | Camilo |
URL: | https://wordpress.org/plugins/addon-sweetalert-contact-form-7/ |
Latest Version: | 1.1.1 |
Add-on SweetAlert Contact Form 7: Security Information
Insecure versions: | Up To 1.0.7 |
Known since: | 2020-05-28 14:35:17 |
Description: | Stored XSS "post-auth" in "tittle" field of the "Error Alert" and "Success Alert" sections of the plugin's settings page due to poor sanitization of entered characters. When you enter the payload and save the changes, it is permanently embedded in the html code of the settings page, so all users who visit the plugin's settings can suffer the attack. |
Add-on SweetAlert Contact Form 7: Safety Recommendations
We have rated Add-on SweetAlert Contact Form 7 as Good (current version safe) which means that we have found vulnerabilities in older versions.
We recommend that you only use the latest version of Add-on SweetAlert Contact Form 7.
Add-on SweetAlert Contact Form 7: Staying Up-to-date
Make sure your installation of Add-on SweetAlert Contact Form 7 is safe with the following free Jetpack services for WordPress sites:
- Updates & Management
Turn on auto-updates for Add-on SweetAlert Contact Form 7 or manage in bulk. - Prevent Infiltrations
Automatic protection against brute force attacks and secure sign on.
Add-on SweetAlert Contact Form 7: Keeping Safe
If you're running a business, ecommerce, news, or other critical website, Jetpack also provides additional indispensable services:
- Automated Backups
Full backup of your entire site with unlimited storage space. - Restores & Migrations
Restore or migrate your site from a backup with one click. - Security Scanning
Regular, automated scans of your site for malware, threats, and hacks. - Expert Support
Fast, priority support for any WordPress security issue.
About this information
This WordPress security information is part of our security library and is brought to you by Jetpack as part of our committment to a safer WordPress experience.
If you have any questions, please do not hesitate to contact us.