JetEmail – Reliable Email Delivery & Logging for WordPress Security & Risk Analysis

wordpress.org/plugins/jetemail

Send all WordPress emails through JetEmail's reliable transactional email service with email logging & resend capability.

0 active installs v1.0.1 PHP 7.4+ WP 5.0+ Updated Jan 24, 2026
emailemail-logsmailsmtptransactional-email
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is JetEmail – Reliable Email Delivery & Logging for WordPress Safe to Use in 2026?

Generally Safe

Score 100/100

JetEmail – Reliable Email Delivery & Logging for WordPress has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

Based on the provided static analysis and vulnerability history, the 'jetemail' plugin v1.0.1 exhibits a generally strong security posture. The plugin demonstrates good practices by implementing nonce checks and capability checks on its AJAX handlers, ensuring that most entry points are secured against unauthorized access. The high percentage of properly escaped outputs and the absence of critical or high-severity taint flows suggest a careful approach to preventing cross-site scripting (XSS) and other injection vulnerabilities. Furthermore, the plugin's clean vulnerability history with zero known CVEs indicates a history of secure development or proactive patching by its maintainers.

However, there are a few areas that warrant attention. While the overall SQL usage is reasonable with a 60% prepared statement rate, the remaining 40% of SQL queries not using prepared statements represent a potential risk for SQL injection vulnerabilities, especially if user-supplied data is directly incorporated into these queries. The presence of file operations and external HTTP requests, while not inherently malicious, are common vectors for introducing vulnerabilities if not handled with extreme care and validation. The absence of any recorded vulnerabilities is a positive sign, but it's important to remember that a lack of history doesn't guarantee future immunity.

In conclusion, 'jetemail' v1.0.1 appears to be a relatively secure plugin, with a good foundation of security practices. The primary area for improvement lies in ensuring all SQL queries utilize prepared statements. Continued vigilance regarding the secure handling of file operations and external requests will further bolster its security. The lack of historical vulnerabilities is a significant strength, but the plugin should still be monitored for new threats.

Key Concerns

  • SQL queries without prepared statements
Vulnerabilities
None known

JetEmail – Reliable Email Delivery & Logging for WordPress Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

JetEmail – Reliable Email Delivery & Logging for WordPress Release Timeline

v1.0.1Current
v1.0.0
Code Analysis
Analyzed Mar 17, 2026

JetEmail – Reliable Email Delivery & Logging for WordPress Code Analysis

Dangerous Functions
0
Raw SQL Queries
8
12 prepared
Unescaped Output
3
158 escaped
Nonce Checks
8
Capability Checks
9
File Operations
1
External Requests
2
Bundled Libraries
0

SQL Query Safety

60% prepared20 total queries

Output Escaping

98% escaped161 total outputs
Data Flows · Security
All sanitized

Data Flow Analysis

2 flows
<logs> (admin\views\logs.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

JetEmail – Reliable Email Delivery & Logging for WordPress Attack Surface

Entry Points4
Unprotected0

AJAX Handlers 4

authwp_ajax_jetemail_get_emailadmin\class-jetemail-admin.php:40
authwp_ajax_jetemail_bulk_resendadmin\class-jetemail-admin.php:41
authwp_ajax_jetemail_bulk_deleteadmin\class-jetemail-admin.php:42
authwp_ajax_jetemail_test_emailadmin\class-jetemail-admin.php:43
WordPress Hooks 11
actionadmin_menuadmin\class-jetemail-admin.php:33
actionadmin_initadmin\class-jetemail-admin.php:34
actionadmin_enqueue_scriptsadmin\class-jetemail-admin.php:35
actionadmin_post_jetemail_test_connectionadmin\class-jetemail-admin.php:36
actionadmin_post_jetemail_resend_emailadmin\class-jetemail-admin.php:37
actionadmin_post_jetemail_delete_emailadmin\class-jetemail-admin.php:38
actionadmin_post_jetemail_purge_emailsadmin\class-jetemail-admin.php:39
actionwp_dashboard_setupadmin\class-jetemail-admin.php:44
actionjetemail_purge_old_emailsincludes\class-jetemail-purge.php:33
filterpre_wp_mailjetemail.php:221
actionplugins_loadedjetemail.php:339

Scheduled Events 2

jetemail_purge_old_emails
jetemail_purge_old_emails
Maintenance & Trust

JetEmail – Reliable Email Delivery & Logging for WordPress Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 24, 2026
PHP min version7.4
Downloads204

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

JetEmail – Reliable Email Delivery & Logging for WordPress Developer Profile

jetemail

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect JetEmail – Reliable Email Delivery & Logging for WordPress

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/jetemail/admin/css/jetemail-admin.css/wp-content/plugins/jetemail/admin/js/jetemail-admin.js/wp-content/plugins/jetemail/assets/css/jetemail.css/wp-content/plugins/jetemail/assets/js/jetemail-frontend.js
Script Paths
/wp-content/plugins/jetemail/admin/js/jetemail-admin.js/wp-content/plugins/jetemail/assets/js/jetemail-frontend.js
Version Parameters
jetemail/assets/css/jetemail.css?ver=jetemail/assets/js/jetemail-frontend.js?ver=

HTML / DOM Fingerprints

CSS Classes
jetemail-settings-pagejetemail-api-key-fieldjetemail-settings-sectionjetemail-email-log-table
HTML Comments
<!-- JetEmail API Key Management --><!-- JetEmail Main Plugin Class --><!-- JetEmail Database Operations --><!-- JetEmail Mailer Operations -->+2 more
Data Attributes
data-jetemail-api-key-statusdata-jetemail-settings-nonce
JS Globals
jetemail_ajax_object
REST Endpoints
/wp-json/jetemail/v1/log/get/wp-json/jetemail/v1/log/resend
FAQ

Frequently Asked Questions about JetEmail – Reliable Email Delivery & Logging for WordPress