Bilbok Bulk Mailer for Flamingo Security & Risk Analysis

wordpress.org/plugins/bilbok-bulk-mailer-for-flamingo

Send bulk email campaigns to your Flamingo contacts (Contact Form 7) with a safe queue, Gmail‑friendly rate limiting, and campaign management.

0 active installs v3.0.0 PHP 7.4+ WP 5.6+ Updated Dec 10, 2025
bulk-mailcontact-form-7email-sendernewslettertags-flamingo
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Bilbok Bulk Mailer for Flamingo Safe to Use in 2026?

Generally Safe

Score 100/100

Bilbok Bulk Mailer for Flamingo has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5mo ago
Risk Assessment

The "bilbok-bulk-mailer-for-flamingo" v3.0.0 plugin exhibits a generally good security posture, adhering to several best practices. The plugin demonstrates a strong adherence to using prepared statements for its SQL queries and a high percentage of properly escaped output, which significantly reduces the risk of SQL injection and cross-site scripting (XSS) vulnerabilities. Furthermore, the absence of known CVEs and a clean vulnerability history suggest a developer who is mindful of security. The plugin also incorporates nonce and capability checks, adding layers of authentication and authorization to its operations.

Key Concerns

  • All analyzed taint flows have unsanitized paths
  • High number of taint flows with unsanitized paths
  • All taint flows have unsanitized paths (High severity)
  • All taint flows have unsanitized paths (High severity)
  • All taint flows have unsanitized paths (High severity)
  • All taint flows have unsanitized paths (High severity)
  • All taint flows have unsanitized paths (High severity)
  • All taint flows have unsanitized paths (High severity)
  • All taint flows have unsanitized paths (High severity)
  • All taint flows have unsanitized paths (High severity)
Vulnerabilities
None known

Bilbok Bulk Mailer for Flamingo Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Bilbok Bulk Mailer for Flamingo Release Timeline

No version history available.
Code Analysis
Analyzed Mar 17, 2026

Bilbok Bulk Mailer for Flamingo Code Analysis

Dangerous Functions
0
Raw SQL Queries
6
64 prepared
Unescaped Output
40
236 escaped
Nonce Checks
10
Capability Checks
8
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

91% prepared70 total queries

Output Escaping

86% escaped276 total outputs
Data Flows · Security
12 unsanitized

Data Flow Analysis

12 flows12 with unsanitized paths
render_campaigns_page (bilbok-bulk-mailer-for-flamingo.php:299)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Bilbok Bulk Mailer for Flamingo Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 18
actionadmin_menubilbok-bulk-mailer-for-flamingo.php:48
actionadmin_initbilbok-bulk-mailer-for-flamingo.php:49
actionbilbok_cf7bm_cron_sendbilbok-bulk-mailer-for-flamingo.php:52
filterbilbok_cf7bm_mail_before_sendbilbok-bulk-mailer-for-flamingo.php:55
actioninitbilbok-bulk-mailer-for-flamingo.php:58
actioninitbilbok-bulk-mailer-for-flamingo.php:61
actionplugins_loadedbilbok-bulk-mailer-for-flamingo.php:1806
filtercron_schedulesbilbok-bulk-mailer-for-flamingo.php:1810
actionwp_mail_failedincludes\class-bilbok-cf7-email-queue.php:22
actionadmin_menutags\3.0.0\bilbok-bulk-mailer-for-flamingo.php:48
actionadmin_inittags\3.0.0\bilbok-bulk-mailer-for-flamingo.php:49
actionbilbok_cf7bm_cron_sendtags\3.0.0\bilbok-bulk-mailer-for-flamingo.php:52
filterbilbok_cf7bm_mail_before_sendtags\3.0.0\bilbok-bulk-mailer-for-flamingo.php:55
actioninittags\3.0.0\bilbok-bulk-mailer-for-flamingo.php:58
actioninittags\3.0.0\bilbok-bulk-mailer-for-flamingo.php:61
actionplugins_loadedtags\3.0.0\bilbok-bulk-mailer-for-flamingo.php:1806
filtercron_schedulestags\3.0.0\bilbok-bulk-mailer-for-flamingo.php:1810
actionwp_mail_failedtags\3.0.0\includes\class-bilbok-cf7-email-queue.php:22

Scheduled Events 4

bilbok_cf7bm_cron_send
bilbok_cf7bm_cron_send
bilbok_cf7bm_cron_send
bilbok_cf7bm_cron_send
Maintenance & Trust

Bilbok Bulk Mailer for Flamingo Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 10, 2025
PHP min version7.4
Downloads160

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Bilbok Bulk Mailer for Flamingo Developer Profile

Yousefi

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Bilbok Bulk Mailer for Flamingo

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/bilbok-bulk-mailer-for-flamingo/assets/css/admin.css/wp-content/plugins/bilbok-bulk-mailer-for-flamingo/assets/js/admin.js
Script Paths
/wp-content/plugins/bilbok-bulk-mailer-for-flamingo/assets/js/admin.js
Version Parameters
bilbok-bulk-mailer-for-flamingo/assets/css/admin.css?ver=bilbok-bulk-mailer-for-flamingo/assets/js/admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
bilbok-cf7bm-form-settingsbilbok-cf7bm-fields-group
HTML Comments
<!-- If you are using a plugin that intercepts mail, like Contact Form 7 to Mailchimp or similar, you might need to disable it for this plugin to work. -->
Data Attributes
data-cf7bm-lists-table
JS Globals
BILBOK_CF7BM_AJAX_URLBILBOK_CF7BM_AJAX_NONCE
FAQ

Frequently Asked Questions about Bilbok Bulk Mailer for Flamingo