Eight Day Week Print Workflow Security & Risk Analysis

wordpress.org/plugins/eight-day-week-print-workflow

Optimize publication workflows by using WordPress as your print CMS

10 active installs v1.2.6 PHP 7.4+ WP 6.5+ Updated Jan 5, 2026
editorialprintworkflow
76
B · Generally Safe
CVEs total2
Unpatched1
Last CVEMay 11, 2026
Safety Verdict

Is Eight Day Week Print Workflow Safe to Use in 2026?

Mostly Safe

Score 76/100

Eight Day Week Print Workflow is generally safe to use. 2 past CVEs were resolved.

2 known CVEs 1 unpatched Last CVE: May 11, 2026Updated 4mo ago
Risk Assessment

The 'eight-day-week-print-workflow' plugin v1.2.6 presents a mixed security posture. While it demonstrates good practices in areas like SQL query preparation and output escaping, significant concerns arise from its attack surface. All eight identified AJAX handlers lack authentication checks, creating a direct pathway for unauthorized actions. This, combined with the absence of any taint analysis, suggests potential weaknesses that could be exploited.

The vulnerability history shows a single medium-severity CVE related to the exposure of sensitive information, which has since been patched. However, the existence of this past vulnerability, coupled with the current lack of authentication on numerous entry points, indicates a recurring theme of potential authorization bypasses or information leakage risks. The plugin's strengths lie in its secure handling of database interactions and output rendering, but these are overshadowed by the critical flaw of exposed AJAX endpoints.

Overall, the plugin is moderately risky due to its large, unprotected attack surface. While core data handling appears robust, the lack of security on its AJAX endpoints is a critical vulnerability that requires immediate attention. The past CVE, though resolved, serves as a warning of the types of issues this plugin might be susceptible to.

Key Concerns

  • Unprotected AJAX handlers
  • All AJAX handlers lack auth checks
  • Medium severity CVE in history
Vulnerabilities
2 published

Eight Day Week Print Workflow Security Vulnerabilities

CVEs by Year

1 CVE in 2025
2025
1 CVE in 2026 · unpatched
2026
Patched Has unpatched

Severity Breakdown

Medium
2

2 total CVEs

CVE-2026-5028medium · 6.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

Eight Day Week Print Workflow <= 1.2.6 - Authenticated (Subscriber+) SQL Injection via 'title' Parameter

May 11, 2026Unpatched
CVE-2025-67621medium · 4.3Exposure of Sensitive Information to an Unauthorized Actor

Eight Day Week Print Workflow <= 1.2.5 - Authenticated (Custom+) Information Exposure

Dec 21, 2025 Patched in 1.2.6 (16d)
Version History

Eight Day Week Print Workflow Release Timeline

Code Analysis
Analyzed Mar 17, 2026

Eight Day Week Print Workflow Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
1 prepared
Unescaped Output
8
95 escaped
Nonce Checks
4
Capability Checks
8
File Operations
4
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared1 total queries

Output Escaping

92% escaped103 total outputs
Attack Surface
8 unprotected

Eight Day Week Print Workflow Attack Surface

Entry Points8
Unprotected8

AJAX Handlers 8

authwp_ajax_pp-get-articlesincludes\functions\articles.php:41
authwp_ajax_pp-get-article-rowincludes\functions\articles.php:42
authwp_ajax_pp-article-exportincludes\functions\plugins\article-export.php:44
authwp_ajax_pp-article-export-updateincludes\functions\plugins\article-export.php:46
authwp_ajax_pp-bulk-edit-article-statusesincludes\functions\plugins\article-status.php:43
authwp_ajax_pp-create-sectionincludes\functions\sections.php:54
authwp_ajax_pp-update-section-titleincludes\functions\sections.php:55
authwp_ajax_meta-box-orderincludes\functions\sections.php:58
WordPress Hooks 58
actionadmin_noticeseight-day-week.php:86
actionafter_setup_themeeight-day-week.php:151
actionadmin_headincludes\functions\admin-menu-page.php:39
actionedw_section_metaboxincludes\functions\articles.php:39
actionsave_print_issueincludes\functions\articles.php:43
filterposts_whereincludes\functions\articles.php:466
actioninitincludes\functions\core.php:27
actionadmin_initincludes\functions\core.php:31
filterpp-ajax-dataincludes\functions\core.php:36
actionEight_Day_Week\Core\plugin_initincludes\functions\plugins\article-byline.php:19
filterEight_Day_Week\Articles\article_columnsincludes\functions\plugins\article-byline.php:42
filterEight_Day_Week\Articles\article_meta_bylineincludes\functions\plugins\article-byline.php:43
actionEight_Day_Week\Core\plugin_initincludes\functions\plugins\article-count.php:17
actionsave_print_issueincludes\functions\plugins\article-count.php:32
actionEight_Day_Week\Core\plugin_initincludes\functions\plugins\article-export.php:22
actionedw_sections_topincludes\functions\plugins\article-export.php:43
filterEight_Day_Week\Articles\article_columnsincludes\functions\plugins\article-export.php:49
filterEight_Day_Week\Articles\article_meta_export_statusincludes\functions\plugins\article-export.php:52
filterposts_whereincludes\functions\plugins\article-export.php:1051
actionEight_Day_Week\Core\plugin_initincludes\functions\plugins\article-status.php:21
filterEight_Day_Week\Articles\article_columnsincludes\functions\plugins\article-status.php:36
filterEight_Day_Week\Articles\article_columnsincludes\functions\plugins\article-status.php:37
filterEight_Day_Week\Articles\article_meta_article_statusincludes\functions\plugins\article-status.php:38
actionEight_Day_Week\Admin_Menu_Page\admin_menuincludes\functions\plugins\article-status.php:40
actionedw_sections_topincludes\functions\plugins\article-status.php:42
actionEight_Day_Week\Core\plugin_initincludes\functions\plugins\issue-publication.php:18
actionadd_meta_boxesincludes\functions\plugins\issue-publication.php:32
actionEight_Day_Week\Admin_Menu_Page\admin_menuincludes\functions\plugins\issue-publication.php:39
actionEight_Day_Week\Core\plugin_initincludes\functions\plugins\issue-status.php:21
actionadd_meta_boxesincludes\functions\plugins\issue-status.php:44
actionrestrict_manage_postsincludes\functions\plugins\issue-status.php:51
filterEight_Day_Week\Print_Issue_Columns\pi_columnsincludes\functions\plugins\issue-status.php:52
actionEight_Day_Week\Admin_Menu_Page\admin_menuincludes\functions\plugins\issue-status.php:53
actionEight_Day_Week\Core\initincludes\functions\print-issue.php:39
filterpost_updated_messagesincludes\functions\print-issue.php:40
actionadd_meta_boxesincludes\functions\print-issue.php:43
actionedit_form_topincludes\functions\print-issue.php:49
filterpost_row_actionsincludes\functions\print-issue.php:53
filterdisplay_post_statesincludes\functions\print-issue.php:55
actionadmin_menuincludes\functions\print-issue.php:57
filtergettextincludes\functions\print-issue.php:59
filterEight_Day_Week\User_Roles\cuc_edit_print_issueincludes\functions\print-issue.php:63
filtershow_post_locked_dialogincludes\functions\print-issue.php:64
filterupdate_post_metadataincludes\functions\print-issue.php:65
filterget_post_metadataincludes\functions\print-issue.php:66
filteradmin_titleincludes\functions\print-issue.php:67
filterpreview_post_linkincludes\functions\print-issue.php:525
actionEight_Day_Week\Core\initincludes\functions\sections.php:47
actionedit_form_advancedincludes\functions\sections.php:52
actionsave_print_issueincludes\functions\sections.php:56
actionedw_section_metaboxincludes\functions\sections.php:62
actionEight_Day_Week\Core\initincludes\functions\user-roles.php:47
actionrestrict_manage_usersincludes\functions\user-roles.php:51
actionload-users.phpincludes\functions\user-roles.php:53
filtermanage_users_columnsincludes\functions\user-roles.php:56
filtermanage_users_custom_columnincludes\functions\user-roles.php:57
actionset_user_roleincludes\functions\user-roles.php:59
filteredw_files_to_loadplugins.php:24
Maintenance & Trust

Eight Day Week Print Workflow Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 5, 2026
PHP min version7.4
Downloads7K

Community Trust

Rating100/100
Number of ratings2
Active installs10
Developer Profile

Eight Day Week Print Workflow Developer Profile

10up

23 plugins · 1.4M total installs

76
trust score
Avg Security Score
95/100
Avg Patch Time
536 days
View full developer profile
Detection Fingerprints

How We Detect Eight Day Week Print Workflow

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/eight-day-week-print-workflow/assets/css/print-issue-admin.css/wp-content/plugins/eight-day-week-print-workflow/assets/js/print-issue-admin.js/wp-content/plugins/eight-day-week-print-workflow/assets/js/print-issue-editor.js
Script Paths
/wp-content/plugins/eight-day-week-print-workflow/assets/js/print-issue-admin.js/wp-content/plugins/eight-day-week-print-workflow/assets/js/print-issue-editor.js
Version Parameters
eight-day-week-print-workflow/assets/css/print-issue-admin.css?ver=eight-day-week-print-workflow/assets/js/print-issue-admin.js?ver=eight-day-week-print-workflow/assets/js/print-issue-editor.js?ver=

HTML / DOM Fingerprints

CSS Classes
edw-print-issue-admin-wrapperprint-issue-meta-boxedw-print-issue-editor-field
HTML Comments
<!-- Security Fields -->
Data Attributes
data-nonce-fielddata-nonce-actiondata-post-id
JS Globals
edw_print_issue_admin_params
FAQ

Frequently Asked Questions about Eight Day Week Print Workflow