Mailchimp Importer for Mailster Security & Risk Analysis

wordpress.org/plugins/mailster-mailchimp

Import your Lists from Mailchimp into WordPress and use it with the Mailster Newsletter Plugin for WordPress.

100 active installs v2.0.1 PHP + WP 6.0+ Updated May 27, 2024
mailchimpmailsternewsletter
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Mailchimp Importer for Mailster Safe to Use in 2026?

Generally Safe

Score 92/100

Mailchimp Importer for Mailster has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The static analysis of mailster-mailchimp v2.0.1 indicates a generally strong security posture. The plugin exhibits excellent coding practices by having no identified dangerous functions, all SQL queries using prepared statements, and all outputs being properly escaped. Furthermore, there are no recorded vulnerabilities (CVEs) for this plugin, suggesting a history of security diligence. The absence of any identified taint flows and a zero attack surface from traditional entry points like AJAX handlers, REST API routes, and shortcodes is highly positive. However, a potential area of concern, though not a direct vulnerability in this version, is the presence of external HTTP requests without explicit mention of authentication or validation. While this is not a confirmed risk without further analysis, it's a common vector for vulnerabilities if not handled securely. The lack of nonce and capability checks on the identified entry points (albeit zero) might be a concern if the attack surface were larger, but given its current state, it's less of an immediate threat. Overall, this version appears robust, with the primary nuanced risk residing in the unauthenticated external HTTP request.

Key Concerns

  • External HTTP requests without explicit auth checks noted
  • No nonce checks on entry points (though none exist)
  • No capability checks on entry points (though none exist)
Vulnerabilities
None known

Mailchimp Importer for Mailster Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Mailchimp Importer for Mailster Release Timeline

v2.0.1Current
v2.0
v1.0.2
v1.0.1
v1.0
Code Analysis
Analyzed Mar 16, 2026

Mailchimp Importer for Mailster Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
1
Bundled Libraries
0
Attack Surface

Mailchimp Importer for Mailster Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 1
filtermailster_importerclasses\mailchimp.class.php:20
Maintenance & Trust

Mailchimp Importer for Mailster Maintenance & Trust

Maintenance Signals

WordPress version tested6.5.8
Last updatedMay 27, 2024
PHP min version
Downloads5K

Community Trust

Rating20/100
Number of ratings1
Active installs100
Developer Profile

Mailchimp Importer for Mailster Developer Profile

EverPress

28 plugins · 120K total installs

73
trust score
Avg Security Score
91/100
Avg Patch Time
255 days
View full developer profile
Detection Fingerprints

How We Detect Mailchimp Importer for Mailster

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/mailster-mailchimp/assets/css/admin.css/wp-content/plugins/mailster-mailchimp/assets/js/admin.js
Script Paths
/wp-content/plugins/mailster-mailchimp/assets/js/admin.js
Version Parameters
mailster-mailchimp/assets/css/admin.css?ver=mailster-mailchimp/assets/js/admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
mailster-mailchimp-import-formmailster-mailchimp-status-message
Data Attributes
data-mailster-mailchimp-nonce
JS Globals
mailster_mailchimp_params
FAQ

Frequently Asked Questions about Mailchimp Importer for Mailster