Monzur Mailer – Dashboard Email Composer with Template and Logs Security & Risk Analysis

wordpress.org/plugins/monzurmailer

A powerful dashboard mailer to compose and send styled emails. Includes SMTP support, email logging, and email templates for easy newsletters.

0 active installs v1.3.2 PHP 7.4+ WP 5.0+ Updated Oct 9, 2025
dashboard-maileremailnewslettersmtpwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Monzur Mailer – Dashboard Email Composer with Template and Logs Safe to Use in 2026?

Generally Safe

Score 100/100

Monzur Mailer – Dashboard Email Composer with Template and Logs has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7mo ago
Risk Assessment

The "monzurmailer" v1.3.2 plugin exhibits a strong security posture based on the provided static analysis. All identified entry points, including the single AJAX handler, are protected with nonce and capability checks. The code demonstrates excellent adherence to security best practices with 100% of SQL queries using prepared statements and 100% of outputs being properly escaped. There are no observed file operations, external HTTP requests, or bundled libraries, further reducing the attack surface. The taint analysis, while showing two flows with unsanitized paths, did not result in any critical or high severity vulnerabilities, suggesting these paths might be within a controlled environment or do not lead to exploitable outcomes.

The vulnerability history is completely clear, with no recorded CVEs. This lack of historical vulnerabilities, coupled with the robust static analysis findings, indicates a well-maintained and secure plugin. The plugin's strengths lie in its proactive security measures like proper authentication and sanitization. The only minor concern raised by the static analysis is the presence of two unsanitized paths in the taint analysis, though their severity is rated as non-critical. Overall, "monzurmailer" v1.3.2 appears to be a highly secure plugin, with minimal apparent risks.

Key Concerns

  • Flows with unsanitized paths
Vulnerabilities
None known

Monzur Mailer – Dashboard Email Composer with Template and Logs Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Monzur Mailer – Dashboard Email Composer with Template and Logs Release Timeline

v1.3.2Current
v1.3.1
Code Analysis
Analyzed Mar 17, 2026

Monzur Mailer – Dashboard Email Composer with Template and Logs Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
100 escaped
Nonce Checks
1
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped100 total outputs
Data Flows · Security
2 unsanitized

Data Flow Analysis

2 flows2 with unsanitized paths
ajax_action_handler (monzurmailer.php:160)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Monzur Mailer – Dashboard Email Composer with Template and Logs Attack Surface

Entry Points1
Unprotected0

AJAX Handlers 1

authwp_ajax_monzurmailer_handle_actionmonzurmailer.php:61
WordPress Hooks 10
actionplugins_loadedmonzurmailer.php:58
actionadmin_menumonzurmailer.php:59
actionadmin_enqueue_scriptsmonzurmailer.php:60
actionphpmailer_initmonzurmailer.php:62
filterwp_mail_frommonzurmailer.php:63
filterwp_mail_from_namemonzurmailer.php:64
actionphpmailer_initmonzurmailer.php:253
filterwp_mail_failedmonzurmailer.php:254
actionphpmailer_initmonzurmailer.php:298
filterwp_mail_failedmonzurmailer.php:299
Maintenance & Trust

Monzur Mailer – Dashboard Email Composer with Template and Logs Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedOct 9, 2025
PHP min version7.4
Downloads304

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Monzur Mailer – Dashboard Email Composer with Template and Logs Developer Profile

Monzur Alam

6 plugins · 1K total installs

93
trust score
Avg Security Score
99/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Monzur Mailer – Dashboard Email Composer with Template and Logs

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/monzurmailer/assets/css/admin-style.css/wp-content/plugins/monzurmailer/assets/js/admin.js
Script Paths
/wp-content/plugins/monzurmailer/assets/js/admin.js
Version Parameters
monzurmailer/assets/css/admin-style.css?ver=monzurmailer/assets/js/admin.js?ver=

HTML / DOM Fingerprints

HTML Comments
<!-- Monzur Mailer Admin Page --><!-- Main Monzur Mailer Form Container --><!-- Email Composer Section --><!-- Template Management Section -->+5 more
Data Attributes
data-monzurmailer-actiondata-monzurmailer-template-iddata-monzurmailer-nonce
JS Globals
monzurmailer_data
FAQ

Frequently Asked Questions about Monzur Mailer – Dashboard Email Composer with Template and Logs