
EO4WP: EmailOctopus for WordPress Security & Risk Analysis
wordpress.org/plugins/fw-integration-for-emailoctopusIncrease the subscribers for your website by using EmailOctopus and this professional integration plugin for WordPress, Elementor and WooCommerce.
Is EO4WP: EmailOctopus for WordPress Safe to Use in 2026?
Generally Safe
Score 99/100EO4WP: EmailOctopus for WordPress has a strong security track record. Known vulnerabilities have been patched promptly.
The "fw-integration-for-emailoctopus" plugin version 1.0.11.2 exhibits a mixed security posture. On the positive side, the static analysis reveals strong adherence to secure coding practices in several areas. Notably, 100% of SQL queries utilize prepared statements, and an impressive 96% of output is properly escaped, significantly reducing the risk of SQL injection and Cross-Site Scripting (XSS) vulnerabilities originating from direct output manipulation. The plugin also has a relatively small attack surface with no exposed REST API routes and a minimal number of AJAX handlers and shortcodes, all of which appear to have authorization checks, which is a good security measure. There are no detected dangerous functions or file operations, further bolstering its security. However, the presence of two medium severity CVEs in its history, specifically related to XSS, despite none being currently unpatched, suggests a pattern of past vulnerabilities that require ongoing vigilance. The taint analysis showing two flows with unsanitized paths, even without critical or high severity, warrants attention as these could potentially lead to issues if not handled carefully in future updates. The external HTTP requests, while not inherently a risk, are an area to monitor for potential supply chain attacks or communication with compromised third-party services.
Key Concerns
- Medium severity CVEs in history
- Taint flows with unsanitized paths
- External HTTP requests
EO4WP: EmailOctopus for WordPress Security Vulnerabilities
CVEs by Year
Severity Breakdown
2 total CVEs
EO4WP <= 1.0.8.4 - Authenticated (Contributor+) Stored Cross-Site Scripting
EO4WP <= 1.0.8.1 - Authenticated (Contributor+) Stored Cross-Site Scripting
EO4WP: EmailOctopus for WordPress Code Analysis
Output Escaping
Data Flow Analysis
EO4WP: EmailOctopus for WordPress Attack Surface
AJAX Handlers 2
Shortcodes 1
WordPress Hooks 12
Maintenance & Trust
EO4WP: EmailOctopus for WordPress Maintenance & Trust
Maintenance Signals
Community Trust
EO4WP: EmailOctopus for WordPress Alternatives
Integrations for mautic
integrations-for-mautic
Integrates WordPress with Mautic, allowing you to send leads from Elementor forms, WooCommerce, and more to your Mautic instance.
Essential Addons for Elementor – Popular Elementor Templates & Widgets
essential-addons-for-elementor-lite
Elementor addon offering 110+ widgets and templates — Elementor Gallery, Slider, Form, Post Grid, Menu, Accordion, WooCommerce & more.
ShopEngine Elementor WooCommerce Builder Addon – All in One WooCommerce Solution
shopengine
WooCommerce builder for Elementor and Gutenberg. It offers product templates, product sliders, shopping cart, quick view, Woo wishlist, product filter …
ShopLentor – All-in-One WooCommerce Growth & Store Enhancement Plugin
woolentor-addons
ShopLentor – More than a WooCommerce builder. A complete growth plugin to boost conversions, UX, and sales for your store.
Exclusive Addons for Elementor
exclusive-addons-for-elementor
Exclusive Addons is one of the Best Elementor Addons With 90+ Elementor Free & Pro Widgets with all the customizations options you ever imagined.
EO4WP: EmailOctopus for WordPress Developer Profile
2 plugins · 120 total installs
How We Detect EO4WP: EmailOctopus for WordPress
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/fw-integration-for-emailoctopus/assets/adminstyle.css/wp-content/plugins/fw-integration-for-emailoctopus/assets/admin.js/wp-content/plugins/fw-integration-for-emailoctopus/include/emailoctopus.js/wp-content/plugins/fw-integration-for-emailoctopus/include/style.css/wp-content/plugins/fw-integration-for-emailoctopus/include/emailoctopus.js/wp-content/plugins/fw-integration-for-emailoctopus/assets/admin.jsfw-integration-for-emailoctopus/assets/adminstyle.css?ver=fw-integration-for-emailoctopus/assets/admin.js?ver=fw-integration-for-emailoctopus/include/emailoctopus.js?ver=fw-integration-for-emailoctopus/include/style.css?ver=fw-integration-for-emailoctopus/woo-emailoctopus-integration.php?ver=HTML / DOM Fingerprints
dashicons-editdata-listiddata-redirectdata-success-messagedata-error-messagedata-fieldseo_ajax_objectFWEO_EmailOctopus_integration[FWEO_EmailOctopusSubForm]