
Email Scheduling Security & Risk Analysis
wordpress.org/plugins/email-schedulingSend the custom email to the logged in users.
Is Email Scheduling Safe to Use in 2026?
Generally Safe
Score 85/100Email Scheduling has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'email-scheduling' plugin v1.0.0 exhibits a concerning security posture primarily due to a lack of authentication checks on its AJAX handlers. With 3 AJAX handlers, all of which are unprotected, there is a significant attack surface that could be exploited by unauthenticated users. While the code signals are generally positive with no dangerous functions, 100% of SQL queries using prepared statements, and a high percentage of output escaping, the absence of nonces and capability checks on these critical entry points overshadows these strengths. The taint analysis indicates no critical or high severity unsanitized flows, which is a positive sign, and the plugin has no recorded vulnerability history, suggesting a clean past. However, the current state of unprotected AJAX handlers presents a direct and exploitable risk that requires immediate attention.
Key Concerns
- Unprotected AJAX handlers detected
- Missing nonce checks on AJAX handlers
- Missing capability checks on AJAX handlers
- Output escaping not 100% (75% escaped)
Email Scheduling Security Vulnerabilities
Email Scheduling Code Analysis
Output Escaping
Data Flow Analysis
Email Scheduling Attack Surface
AJAX Handlers 3
WordPress Hooks 6
Scheduled Events 1
Maintenance & Trust
Email Scheduling Maintenance & Trust
Maintenance Signals
Community Trust
Email Scheduling Alternatives
AsynCRONous bbPress Subscriptions
asyncronous-bbpress-subscriptions
Email notifications done right. No BCC lists, no added page load time, better performance.
Tuyul Ninja
tuyul-ninja
Tuyul Ninja enables you to send wordpress post to available providers via cronjob.
WP Mail SMTP by WPForms – The Most Popular SMTP and Email Log Plugin
wp-mail-smtp
Make email delivery easy for WordPress. Connect with SMTP, Gmail, Outlook, SendGrid, Mailgun, SES, Zoho, + more. Rated #1 WordPress SMTP Email plugin.
Hostinger Reach – AI-Powered Email Marketing for WordPress
hostinger-reach
Launch and grow your email marketing effortlessly with Hostinger Reach. Collect contacts, sync subscribers, and send emails – all in one, AI powered.
MC4WP: Mailchimp for WordPress
mailchimp-for-wp
The #1 Mailchimp plugin for WordPress. Allows you to add a multitude of newsletter sign-up methods to your site.
Email Scheduling Developer Profile
2 plugins · 0 total installs
How We Detect Email Scheduling
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/email-scheduling/assets/js/bulk-email.js/wp-content/plugins/email-scheduling/assets/css/bulk-email.css/wp-content/plugins/email-scheduling/assets/js/test-email.js/wp-content/plugins/email-scheduling/assets/css/test-email.cssassets/js/bulk-email.jsassets/js/test-email.jsemail_js?ver=1.0email-style?ver=1.0test_js?ver=1.0test-style?ver=1.0HTML / DOM Fingerprints
responserespemailFormfielddescloadermsgdata-editor-id="mail_template_id"id="saveEmail"id="sendEmail"id="email"class="email"class="email_btn"+3 moremyVar