
SMTP Mail Control for MailPoet Security & Risk Analysis
wordpress.org/plugins/omppm-override-phpmail-mailpoetThe missing link between MailPoet and your SMTP plugin – for reliable email delivery!
Is SMTP Mail Control for MailPoet Safe to Use in 2026?
Generally Safe
Score 100/100SMTP Mail Control for MailPoet has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "omppm-override-phpmail-mailpoet" plugin v1.2.4 exhibits a mixed security posture. While it demonstrates good practices such as using prepared statements for all SQL queries and having no recorded vulnerabilities in its history, several concerning aspects emerge from the static analysis. The plugin exposes a moderate attack surface with 6 AJAX handlers, and critically, 3 of these lack authentication checks. This significantly increases the risk of unauthorized access and manipulation of plugin functionality. Furthermore, the low percentage of properly escaped output (11%) suggests a high likelihood of cross-site scripting (XSS) vulnerabilities, allowing attackers to inject malicious scripts into the user interface. The absence of critical or high-severity taint flows is a positive sign, indicating that direct data manipulation risks are not immediately apparent. However, the combination of unprotected AJAX endpoints and poor output escaping presents a clear and present danger that requires immediate attention.
Key Concerns
- Unprotected AJAX handlers
- Low output escaping percentage
SMTP Mail Control for MailPoet Security Vulnerabilities
SMTP Mail Control for MailPoet Code Analysis
Output Escaping
Data Flow Analysis
SMTP Mail Control for MailPoet Attack Surface
AJAX Handlers 6
WordPress Hooks 8
Maintenance & Trust
SMTP Mail Control for MailPoet Maintenance & Trust
Maintenance Signals
Community Trust
SMTP Mail Control for MailPoet Alternatives
WPO365 | MICROSOFT 365 GRAPH MAILER
wpo365-msgraphmailer
Send WordPress emails from a M365 / Exchange Online Mailbox using Microsoft Graph, leveraging OAuth for authentication which is more secure than SMTP
WP SMTP Mailer – SMTP7
wp-mail-smtp-mailer
WP SMTP Mailer Plugin - SMTP7. Make email delivery easy from WordPress. It is easy to configure.
MailerSend – Official SMTP Integration
mailersend-official-smtp-integration
Improve your deliverability and avoid the spam box with MailerSend’s SMTP server. Check your analytics to improve your emails for better conversion!
Simple SMTP by Maileroo
simple-smtp-by-maileroo
Ensure seamless WordPress email delivery with our all-in-one SMTP plugin, compatible with Gmail, Outlook, Maileroo, SendGrid, Mailgun, and more!
WP Mail SMTP SendGrid Edition
wp-mail-smtp-sendgrid-edition
Based on WP Mail SMTP. Also adds subject for display on SendGrid Activity Screen.
SMTP Mail Control for MailPoet Developer Profile
5 plugins · 300 total installs
How We Detect SMTP Mail Control for MailPoet
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/omppm-override-phpmail-mailpoet/assets/css/omppm-admin.css/wp-content/plugins/omppm-override-phpmail-mailpoet/assets/js/omppm-admin.js/wp-content/plugins/omppm-override-phpmail-mailpoet/assets/js/omppm-admin.jsomppm-override-phpmail-mailpoet/assets/css/omppm-admin.css?ver=omppm-override-phpmail-mailpoet/assets/js/omppm-admin.js?ver=HTML / DOM Fingerprints
<!-- SMTP Mail Control for MailPoet --><!-- This is the working approach from version 1.0.4 --><!-- Recursion protection flag --><!-- Prevents infinite loops when wp_mail() triggers MailPoet again -->+2 more