Captcha WordPress Plugins with Most Issues

52 indexed plugins

Plugins

52

Active Installs

3m+

Average Score

58

Audited

52

RankPluginScoreErrorsWarningsInstallsAddedUpdatedTop Issue
#1CF7 Apps – Honeypot, Database, Redirection, Webhook, and Addons for Contact Form 7241,0341,396300k+Non-prefixed global variable
#2CleanTalk Anti-Spam. Spam Firewall & Bot protection248251,079200k+Missing nonce verification
#3WPBruiser {no- Captcha anti-Spam}2564625910k+Non Singular String Literal Domain
#4Captcha by BestWebSoft – Advanced Spam Protection, Math & OCR-Friendly Captcha for Site Forms2249329510k+Text Domain Mismatch
#5reCaptcha by BestWebSoft29474272100k+Text Domain Mismatch
#6SiteGuard WP Plugin24361346500k+Output is not escaped
#7Wordfence Login Security2524841870k+Output is not escaped
#8Captcha Them All213003236k+Output is not escaped
#9Anti-spam, Spam protection, ReCaptcha for all forms and GDPR-compliant302642214k+Non Singular String Literal Text
#10SilentShield – Captcha & Anti-Spam for WordPress (CF7, WPForms, Elementor, WooCommerce)2523521410k+Database parameter is not escaped
#11TomS reCAPTCHA39128256500Missing nonce verification
#12Friendly Captcha for WordPress35192629k+Output is not escaped
#13CrowdSec351301192k+Output is not escaped
#14Simple CAPTCHA with Cloudflare Turnstile3582148100k+Output is not escaped
#15Uber reCaptcha43129451k+Text Domain Mismatch
#16Advanced Custom Fields: reCAPTCHA Field3410453800Text Domain Mismatch
#17Eazy CF Captcha379354500Text Domain Mismatch
#18Contact Form Block326477500Non Singular String Literal Domain
#19hCaptcha for WP421151870k+Exception output is not escaped
#20ReCaptcha Integration for WordPress3760669k+Output is not escaped
#21Human Presence – Stop Form Spam Without ReCaptcha3354651k+Request data is not unslashed
#22Contact Form 7 BWP reCAPTCHA Extension489210500Non Singular String Literal Domain
#23SKP WP Admin Login Captcha3977181k+Output is not escaped
#24Mailster Cool Captcha426528400Text Domain Mismatch
#25Contact Form 7 Captcha41775100k+Request data is not unslashed
#26Image CAPTCHA for Contact Form 7 and WPForms by HookAndHook (DSGVO/GDPR)39284580k+Missing nonce verification
#27Contact Form 7 Text CAPTCHA7614341k+Non-prefixed global variable
#28Gravity Forms No CAPTCHA reCAPTCHA51301710k+Text Domain Mismatch
#29Simple Login Captcha70201910k+date date
#30Hizzle CAPTCHA – Protect your forms from spam80427500Non-prefixed global variable
#31CAPTCHA 4WP – Antispam CAPTCHA solution for WordPress352010100k+Missing Arg Domain
#32Image Captcha For Gravity Forms802010400Text Domain Mismatch
#33Captcha Code971712100k+wp function not compatible with requires wp
#34Affiliates Manager Google reCAPTCHA Integration671810400Request data is not unslashed
#35Captcha by Yandex for Contact Form 7889123k+Text Domain Mismatch
#36Honeypot Plus for Contact Form 777317700Missing nonce verification
#37reCaptcha Add-On for FormCraft854167k+Missing Version
#38Login Lockdown & Protection94515100k+Non-prefixed global variable
#39Mailster reCaptcha844151k+Missing nonce verification
#40Advanced Google reCAPTCHA97315200k+Non-prefixed global variable
#41Formidable Honeypot74106400Text Domain Mismatch
#42Easy Spam Filter – Privacy-Friendly CAPTCHA Alternative with Turnstile for Contact Form 7, WPForms, BuddyPress, Elementor972141k+Dynamic hook name
#43Enable Turnstile (Cloudflare) for Gravity Forms8487700Missing direct file access protection
#44Gravity Forms Zero Spam9449100k+trademarked term
#45Math Captcha for Elementor Forms861023k+No Explicit Version
#46Power Captcha reCAPTCHA85471k+Database parameter is not escaped
#47BotBlocker Security – Firewall & Bot Protection9953k+Non-prefixed constant
#48Give – Cloudflare Turnstile3532600Hidden files included
#49Really Simple CAPTCHA9822300k+Non-prefixed constant
#50DS CF7 Math Captcha1001010k+trunk stable tag