
Mailing Manager – PN Security & Risk Analysis
wordpress.org/plugins/mailpnEffortlessly manage your email campaigns. Schedule, send, and track emails directly from your dashboard to engage your audience like never before.
Is Mailing Manager – PN Safe to Use in 2026?
Generally Safe
Score 100/100Mailing Manager – PN has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "mailpn" plugin v1.0.20 exhibits a concerning security posture due to a significant number of unprotected entry points. The static analysis reveals 3 total entry points, with all 3 lacking proper authentication or permission checks. This includes 2 AJAX handlers and 1 REST API route that are directly accessible to unauthenticated users, posing a significant risk of unauthorized actions. While the code demonstrates good practices in other areas, such as the absence of dangerous functions, the exclusive use of prepared statements for SQL queries, and a high percentage of properly escaped output, these strengths are overshadowed by the critical flaw of unprotected endpoints. The plugin's vulnerability history is clean, with no recorded CVEs, which is a positive sign. However, the current static analysis findings suggest that even without past vulnerabilities, the inherent design of the accessible entry points creates a high potential for future exploits. The plugin needs immediate attention to implement robust authentication and authorization mechanisms for all identified entry points to mitigate the substantial risks.
Key Concerns
- AJAX handlers without auth checks
- REST API routes without permission callbacks
- Unprotected entry points (all 3)
Mailing Manager – PN Security Vulnerabilities
Mailing Manager – PN Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Mailing Manager – PN Attack Surface
AJAX Handlers 2
REST API Routes 1
WordPress Hooks 18
Scheduled Events 3
Maintenance & Trust
Mailing Manager – PN Maintenance & Trust
Maintenance Signals
Community Trust
Mailing Manager – PN Alternatives
Admin Email As From Address
admin-email-as-from-address
Use the admin email address as the from email address
Lemme Know
wp-lemme-know
Sends e-mail notification for all subscribers when a new post is published.
CN Blog Mailer
cn-blog-mailer
Simple automated newsletter plugin for WordPress. Automatically email your latest blog posts to subscribers with scheduled newsletters, subscription f …
Site Mailer – SMTP Replacement, Email API Deliverability & Email Log
site-mailer
Effortlessly manage transactional emails with Site Mailer. High deliverability, logs and statistics, and no SMTP plugins needed.
Email Subscribers & Newsletters – Email Marketing, Post Notifications & Newsletter Plugin for WordPress
email-subscribers
Add subscription forms on the website and send newsletters & automatically send post notification about new blog posts once it gets published.
Mailing Manager – PN Developer Profile
8 plugins · 20 total installs
How We Detect Mailing Manager – PN
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/mailpn/assets/css/admin/mailpn-admin.css/wp-content/plugins/mailpn/assets/css/mailpn-popups.css/wp-content/plugins/mailpn/assets/css/mailpn-style.css/wp-content/plugins/mailpn/assets/css/mailpn-frontend.css/wp-content/plugins/mailpn/assets/js/mailpn-admin.js/wp-content/plugins/mailpn/assets/js/mailpn-frontend.js/wp-content/plugins/mailpn/assets/js/mailpn-scripts.js/wp-content/plugins/mailpn/assets/js/mailpn-admin.js/wp-content/plugins/mailpn/assets/js/mailpn-frontend.js/wp-content/plugins/mailpn/assets/js/mailpn-scripts.jsmailpn/assets/css/admin/mailpn-admin.css?ver=mailpn/assets/css/mailpn-popups.css?ver=mailpn/assets/css/mailpn-style.css?ver=mailpn/assets/css/mailpn-frontend.css?ver=mailpn/assets/js/mailpn-admin.js?ver=mailpn/assets/js/mailpn-frontend.js?ver=mailpn/assets/js/mailpn-scripts.js?ver=HTML / DOM Fingerprints
mailpn-dashboardmailpn-popupsmailpn-post-list-wrapmailpn-mail-composermailpn-rec-list-wrapmailpn-form-fieldmailpn-form-groupmailpn-settings-section+9 more<!-- mailpn_mail Custom Post Type --><!-- mailpn_rec Custom Post Type --><!-- Mailpn Admin notices --><!-- Mailpn Mail Composer Start -->+6 moredata-mailpn-section-iddata-mailpn-post-iddata-mailpn-user-iddata-mailpn-copy-contentdata-mailpn-parentdata-mailpn-parent-option+3 moremailpn_admin_paramsmailpn_frontend_paramsMAILPN_AJAX_URLMAILPN_PLUGIN_URLMAILPN_VERSION/wp-json/mailpn/v1/send/wp-json/mailpn/v1/schedule/wp-json/mailpn/v1/recipients/wp-json/mailpn/v1/settings/wp-json/mailpn/v1/campaigns[mailpn_form][mailpn_preview][mailpn_campaigns][mailpn_recipients]