
Email Notice for WP Document Revisions Security & Risk Analysis
wordpress.org/plugins/email-notice-wp-document-revisionsAdd-on to WP Document Revisions to notify your users about new documents published or create user email lists to send non-users notifications.
Is Email Notice for WP Document Revisions Safe to Use in 2026?
Generally Safe
Score 100/100Email Notice for WP Document Revisions has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The email-notice-wp-document-revisions plugin version 3.2.1 exhibits a generally good security posture based on the static analysis. The absence of known vulnerabilities in its history is a strong positive indicator. Furthermore, the plugin demonstrates good coding practices with a high percentage of prepared statements for SQL queries and properly escaped output, and a significant number of nonce and capability checks across its entry points.
However, the taint analysis reveals two high-severity flows with unsanitized paths, which represent a critical concern. While the attack surface is relatively small and all entry points appear to have authentication checks, these unsanitized paths could potentially be exploited if user input is not handled rigorously within these specific flows. The presence of file operations without further context is also a minor point to note. The plugin's strengths lie in its robust input sanitization and authorization checks, but the identified high-severity taint flows warrant immediate attention to ensure proper sanitization is implemented within those specific code paths.
In conclusion, the plugin is built on a solid foundation of security best practices, as evidenced by its low vulnerability history and good use of WordPress security features. The primary weakness identified is the presence of high-severity taint flows, which, if left unaddressed, could pose a significant risk. Addressing these specific flows should be the priority, after which the plugin can be considered very secure.
Key Concerns
- High severity taint flows with unsanitized paths
- Taint analysis shows flows with unsanitized paths
Email Notice for WP Document Revisions Security Vulnerabilities
Email Notice for WP Document Revisions Release Timeline
Email Notice for WP Document Revisions Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Email Notice for WP Document Revisions Attack Surface
AJAX Handlers 5
WordPress Hooks 34
Maintenance & Trust
Email Notice for WP Document Revisions Maintenance & Trust
Maintenance Signals
Community Trust
Email Notice for WP Document Revisions Alternatives
WP JV Custom Email Settings
wp-jv-custom-email-settings
Notify users about new posts published and customize your e-mail notification settings
Change Mail Sender
cb-change-mail-sender
Easily change the default WordPress from email name and from email address.
E2Pdf – Export Pdf Tool for WordPress
e2pdf
PDF Builder for CF7, Divi, Elementor Forms, Everest, Fluent, Formidable, Forminator, Gravity, JFB, Ninja, WPForms, WooCommerce, Post Meta, ACF, etc.
Postie
postie
Postie allows you to create posts via email, including many advanced features not found in WordPress's default Post by Email feature.
ShopMagic – email automation
shopmagic-for-woocommerce
Flexible email automation and workflows triggered by customer and site events.
Email Notice for WP Document Revisions Developer Profile
2 plugins · 500 total installs
How We Detect Email Notice for WP Document Revisions
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.