
ASPL Email PDF Invoice Security & Risk Analysis
wordpress.org/plugins/aspl-email-pdf-invoiceUsing this plugin you can send the invoice PDF automatically with the order confirmation mail sent to the customer.
Is ASPL Email PDF Invoice Safe to Use in 2026?
Generally Safe
Score 85/100ASPL Email PDF Invoice has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The ASPL Email PDF Invoice plugin v1.1.0 exhibits a generally good security posture based on the provided static analysis and vulnerability history. The absence of any known CVEs, critical taint flows, or direct SQL injection vulnerabilities is highly positive. The plugin also demonstrates good practices by using prepared statements for all SQL queries and performing nonce checks. However, there are areas for improvement. The low percentage of properly escaped output (54%) is a concern, as it could lead to cross-site scripting (XSS) vulnerabilities if malicious data is not sanitized before being displayed to users. Additionally, the use of the `ini_set` function, while not inherently a vulnerability, can sometimes be a signal for potential misconfigurations or unintended modifications of PHP settings if not handled with extreme care. The plugin's attack surface is currently zero, which is excellent, but this could change with future updates. Overall, while the plugin has a strong foundation, the unescaped output represents the most significant immediate risk.
Key Concerns
- Low percentage of properly escaped output
- Use of 'ini_set' function
ASPL Email PDF Invoice Security Vulnerabilities
ASPL Email PDF Invoice Release Timeline
ASPL Email PDF Invoice Code Analysis
Dangerous Functions Found
Output Escaping
ASPL Email PDF Invoice Attack Surface
WordPress Hooks 8
Maintenance & Trust
ASPL Email PDF Invoice Maintenance & Trust
Maintenance Signals
Community Trust
ASPL Email PDF Invoice Alternatives
WebToffee WooCommerce PDF Invoices, Packing Slips, Delivery Notes & Shipping Labels
print-invoices-packing-slip-labels-for-woocommerce
Auto-generate and attach WooCommerce PDF invoices and packing slips to order emails with customizable templates & bulk print options.
Flexible PDF Invoices for WooCommerce & WordPress
flexible-invoices
WooCommerce PDF invoices made simple. EU VAT validation, reverse charge invoice, proforma invoices, MOSS / OSS support, invoices in bulk and more.
PeproDev Ultimate Invoice
pepro-ultimate-invoice
Advanced WooCommerce invoice plugin: create customizable HTML/PDF invoices, attach to emails, and let customers download styled invoices easily.
mPDF add-on for RTL and Unicode Support
mpdf-addon-for-pdf-invoices
RTL and Unicode support add-on for WebToffee WooCommerce Gift Cards, WebToffee WooCommerce Request a Quote and WooCommerce PDF Invoices, Packing Slips …
PDF Invoices & Packing Slips for WooCommerce – Challan
webappick-pdf-invoice-for-woocommerce
WooCommerce PDF invoice generator with automatic email attachment. Create packing slips, shipping labels, credit notes, multilingual.
ASPL Email PDF Invoice Developer Profile
10 plugins · 30 total installs
How We Detect ASPL Email PDF Invoice
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/aspl-email-pdf-invoice/css/aspl_pips_custom_css.cssHTML / DOM Fingerprints
aspl_pips_pdf_meta_mainaspl_pdf_a_button