• We use Contact Form 7 and one of our users could not submit the form as it didn’t accept an apostrophe in their email address (e.g. daniel.o’[email protected]). I would never have expected this to be a valid email address but apparently it is (https://stackoverflow.com/a/8527264/101642). My concern is that allowing it could open the door to SQL injection. Are apostrophes something that have been considered by Contact Form 7?

  • The topic ‘Apostrophe in email address’ is closed to new replies.