AcyMailing integration for MemberPress Security & Risk Analysis

wordpress.org/plugins/acymailing-integration-for-memberpress

Trigger AcyMailing automation when a user subscribes to your membership, filter users on their subscription, add custom value to your email

10 active installs v3.9 PHP + WP + Updated Feb 26, 2026
acymailingmemberpressnewslettersubscription
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is AcyMailing integration for MemberPress Safe to Use in 2026?

Generally Safe

Score 100/100

AcyMailing integration for MemberPress has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The security posture of 'acymailing-integration-for-memberpress' v3.9 appears generally strong based on the provided static analysis. The absence of a significant attack surface, including no AJAX handlers, REST API routes, shortcodes, or cron events, significantly reduces the potential for external exploitation. Furthermore, the code demonstrates good practices by exclusively using prepared statements for SQL queries and properly escaping all output, indicating a commitment to preventing common web vulnerabilities like SQL injection and cross-site scripting.

However, the presence of two 'dangerous functions', specifically 'unserialize', is a notable concern. While the static analysis did not reveal any exploitable taint flows or direct vulnerabilities associated with 'unserialize', its misuse can lead to serious security issues such as remote code execution or object injection if the serialized data originates from an untrusted source and is not properly validated or sanitized before deserialization. The lack of recorded vulnerability history is a positive sign, suggesting the plugin has been relatively secure in the past. Despite this, the 'unserialize' function represents a latent risk that requires careful consideration and secure implementation within the plugin's logic.

In conclusion, 'acymailing-integration-for-memberpress' v3.9 exhibits several positive security attributes, particularly in its limited attack surface and adherence to secure coding practices for SQL and output handling. The primary weakness identified is the presence of the 'unserialize' function, which, while not currently linked to a known exploit, warrants attention. A thorough code review focusing on how and from where data is serialized and deserialized is recommended to mitigate potential risks associated with this function.

Key Concerns

  • Presence of 'unserialize' function
Vulnerabilities
None known

AcyMailing integration for MemberPress Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

AcyMailing integration for MemberPress Release Timeline

v3.9Current
v3.8
v3.7
v3.6
v3.5
v3.4
v3.3
v3.2
v3.1
v3.0
v2.9
v2.8
v2.7
v2.6
v2.5
v2.4
v2.3
v2.2
v2.1
v2.0
Code Analysis
Analyzed Apr 16, 2026

AcyMailing integration for MemberPress Code Analysis

Dangerous Functions
2
Raw SQL Queries
0
0 prepared
Unescaped Output
0
10 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Dangerous Functions Found

unserialize$valueUnserialize = unserialize($value);MemberpressInsertion.php:83
unserialize$meprOptions = unserialize($meprOptions);MemberpressInsertion.php:113

Output Escaping

100% escaped10 total outputs
Attack Surface

AcyMailing integration for MemberPress Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 2
actionmepr-event-subscription-createdMemberpressAutomationTriggers.php:11
actionacym_load_installed_integrationsacymailing-memberpress.php:26
Maintenance & Trust

AcyMailing integration for MemberPress Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 26, 2026
PHP min version
Downloads7K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

AcyMailing integration for MemberPress Developer Profile

AcyMailing Newsletter Team

21 plugins · 8K total installs

79
trust score
Avg Security Score
100/100
Avg Patch Time
239 days
View full developer profile
Detection Fingerprints

How We Detect AcyMailing integration for MemberPress

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/acymailing-integration-for-memberpress/plugin_acymailing_memberpress.php

HTML / DOM Fingerprints

CSS Classes
acymailing-integration-for-memberpress
JS Globals
plgAcymMemberpress
Shortcode Output
memberpressproduct
FAQ

Frequently Asked Questions about AcyMailing integration for MemberPress