Newsletters, Email Marketing, SMS and Popups by Omnisend Security & Risk Analysis

wordpress.org/plugins/omnisend

Newsletters, Email Marketing, Email Automation, Forms, Pop Up, SMS by Omnisend

100K active installs v1.7.9 PHP 7.4+ WP 4.7.0+ Updated Jan 6, 2026
email-marketingformmarketingnewslettersms
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Newsletters, Email Marketing, SMS and Popups by Omnisend Safe to Use in 2026?

Generally Safe

Score 100/100

Newsletters, Email Marketing, SMS and Popups by Omnisend has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The Omnisend plugin version 1.7.9 demonstrates a generally strong security posture based on the provided static analysis. The absence of any known vulnerabilities in its history is a significant positive indicator, suggesting a commitment to secure development practices and timely patching of any past issues. The code analysis reveals a well-controlled attack surface, with no unprotected AJAX handlers or REST API routes. Furthermore, the plugin utilizes prepared statements for its SQL queries and performs adequate output escaping, mitigating common web application vulnerabilities.

Vulnerabilities
None known

Newsletters, Email Marketing, SMS and Popups by Omnisend Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Newsletters, Email Marketing, SMS and Popups by Omnisend Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
1 prepared
Unescaped Output
1
9 escaped
Nonce Checks
2
Capability Checks
3
File Operations
0
External Requests
17
Bundled Libraries
0

SQL Query Safety

100% prepared1 total queries

Output Escaping

90% escaped10 total outputs
Attack Surface

Newsletters, Email Marketing, SMS and Popups by Omnisend Attack Surface

Entry Points1
Unprotected0

REST API Routes 1

GET/wp-json/omnisend/v1/connectclass-omnisend-core-bootstrap.php:103
WordPress Hooks 17
actionplugins_loadedclass-omnisend-core-bootstrap.php:48
filtercron_schedulesclass-omnisend-core-bootstrap.php:54
actionrest_api_initclass-omnisend-core-bootstrap.php:55
actionin_admin_headerclass-omnisend-core-bootstrap.php:56
actionadmin_noticesclass-omnisend-core-bootstrap.php:58
actionadmin_menuclass-omnisend-core-bootstrap.php:59
actionadmin_enqueue_scriptsclass-omnisend-core-bootstrap.php:60
actionwp_enqueue_scriptsclass-omnisend-core-bootstrap.php:61
actionadmin_initclass-omnisend-core-bootstrap.php:64
actionwp_footerclass-omnisend-core-bootstrap.php:67
actionuser_registerclass-omnisend-core-bootstrap.php:69
actionwp_loginclass-omnisend-core-bootstrap.php:70
actionprofile_updateclass-omnisend-core-bootstrap.php:78
actionadmin_enqueue_scriptsclass-omnisend-core-bootstrap.php:254
actionadmin_enqueue_scriptsclass-omnisend-core-bootstrap.php:275
actionadmin_enqueue_scriptsclass-omnisend-core-bootstrap.php:297
actionadmin_enqueue_scriptsclass-omnisend-core-bootstrap.php:327
Maintenance & Trust

Newsletters, Email Marketing, SMS and Popups by Omnisend Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 6, 2026
PHP min version7.4
Downloads843K

Community Trust

Rating94/100
Number of ratings15
Active installs100K
Developer Profile

Newsletters, Email Marketing, SMS and Popups by Omnisend Developer Profile

Omnisend

9 plugins · 161K total installs

88
trust score
Avg Security Score
100/100
Avg Patch Time
42 days
View full developer profile
Detection Fingerprints

How We Detect Newsletters, Email Marketing, SMS and Popups by Omnisend

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/omnisend/assets/fonts/roboto/roboto.css/wp-content/plugins/omnisend/styles/styles.css/wp-content/plugins/omnisend/styles/site-styles.css/wp-content/plugins/omnisend/styles/notice-styles.css
Script Paths
https://omnisnippet1.com/inshop/launcher-v2.js
Version Parameters
omnisend/assets/fonts/roboto/roboto.css?ver=omnisend/styles/styles.css?ver=omnisend/styles/site-styles.css?ver=omnisend/styles/notice-styles.css?ver=

HTML / DOM Fingerprints

JS Globals
Omnisend_Core_Bootstrap
REST Endpoints
/wp-json/omnisend/v1/connect
Shortcode Output
<div id="omnisend-app-market"></div><div id="omnisend-hostinger-discount-notice"></div>
FAQ

Frequently Asked Questions about Newsletters, Email Marketing, SMS and Popups by Omnisend