
Freshjet Security & Risk Analysis
wordpress.org/plugins/freshjetSend email through wp_mail() but super-powered by Mailjet transactional email. This plugin is probably the most convenient way to use Mailjet transact …
Is Freshjet Safe to Use in 2026?
Generally Safe
Score 85/100Freshjet has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
Based on the static analysis, the Freshjet plugin v0.6.6 exhibits a seemingly strong security posture. The absence of dangerous functions, the use of prepared statements for all SQL queries, and the 100% proper output escaping are excellent practices. Furthermore, the lack of any recorded vulnerabilities, including CVEs, suggests a history of secure development or a lack of prior scrutiny. The plugin also demonstrates a minimal attack surface, with no exposed AJAX handlers, REST API routes, shortcodes, or cron events that are unprotected. However, the presence of file operations and external HTTP requests, while not inherently problematic, warrants further investigation to ensure these actions are handled securely and are not exploitable. The bundling of Guzzle, a third-party library, also introduces a potential dependency risk if it's not kept up-to-date, although its version is not specified. The complete lack of capability checks and nonce checks on any potential entry points is a significant concern, as it implies that any code executed within these (even if currently zero) would be accessible without proper authorization checks.
Key Concerns
- Missing capability checks on entry points
- Missing nonce checks on entry points
- Bundled library Guzzle without version information
Freshjet Security Vulnerabilities
Freshjet Code Analysis
Bundled Libraries
Output Escaping
Freshjet Attack Surface
WordPress Hooks 5
Maintenance & Trust
Freshjet Maintenance & Trust
Maintenance Signals
Community Trust
Freshjet Alternatives
Elastic Email Sender
elastic-email-sender
Reconfigures wp_mail() to send email using Elastic Email API instead of SMTP.
YaySMTP and Email Logs: Amazon SES, SendGrid, Outlook, Mailgun, Brevo, Google and Any SMTP Service
yaysmtp
Send WordPress emails successfully with WP Mail SMTP via your favorite mailer
Swift SMTP (formerly Welcome Email Editor)
welcome-email-editor
Swift SMTP is a free & simple SMTP Plugin for WordPress.
Zoho ZeptoMail
transmail
Zoho ZeptoMail Plugin lets you configure your ZeptoMail account on your WordPress site enabling you to send transactional emails of your site via Zept …
Bit SMTP – Easy SMTP Solution with Email Logs
bit-smtp
Short Description
Freshjet Developer Profile
2 plugins · 100 total installs
How We Detect Freshjet
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/freshjet/assets/css/settings.css/wp-content/plugins/freshjet/assets/js/settings.js/wp-content/plugins/freshjet/vendor/autoload.php/wp-content/plugins/freshjet/autoload.phpHTML / DOM Fingerprints
freshjet-keysfreshjet-keys-sectionfreshjet-sender-sectionfreshjet-template-sectionfreshjet-public-key-fieldfreshjet-secret-key-fieldfreshjet-sender-name-fieldfreshjet-sender-email-field+2 morename="freshjet_options[public_key]"name="freshjet_options[secret_key]"name="freshjet_options[sender_name]"name="freshjet_options[sender_email]"name="freshjet_options[template_id]"