Pending Submission Notifications Security & Risk Analysis

wordpress.org/plugins/pending-submission-notifications

Email notifications for pending review content submission.

1K active installs v1.2 PHP + WP 4.6+ Updated Feb 21, 2018
email-notificationnotificationspending-notificationpending-submissionssubmit-for-review
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Pending Submission Notifications Safe to Use in 2026?

Generally Safe

Score 85/100

Pending Submission Notifications has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8yr ago
Risk Assessment

Based on the provided static analysis and vulnerability history, the 'pending-submission-notifications' plugin version 1.2 exhibits a strong security posture with no identified vulnerabilities or concerning code patterns. The absence of any attack surface points, dangerous functions, raw SQL queries, or unescaped output suggests meticulous development practices that adhere to WordPress security best practices. Furthermore, the lack of any recorded vulnerabilities in its history reinforces this positive assessment.

While the plugin currently appears secure, the complete absence of entry points and checks like nonce and capability checks warrants a cautious approach. This could indicate a plugin that is very narrowly focused or relies entirely on other plugins or themes for its functionality. If the plugin were to evolve and introduce new features that create an attack surface, the current lack of implemented checks could become a point of concern. However, with the data provided, the plugin demonstrates a high level of security by design.

Vulnerabilities
None known

Pending Submission Notifications Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Pending Submission Notifications Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
4 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped4 total outputs
Attack Surface

Pending Submission Notifications Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 6
actionadmin_menuadmin\admin.php:14
actionadmin_initadmin\admin.php:21
actiontransition_post_statuspending-submission-notifications.php:22
actionadmin_menutrunk\admin\admin.php:14
actionadmin_inittrunk\admin\admin.php:21
actiontransition_post_statustrunk\pending-submission-notifications.php:22
Maintenance & Trust

Pending Submission Notifications Maintenance & Trust

Maintenance Signals

WordPress version tested4.9.29
Last updatedFeb 21, 2018
PHP min version
Downloads22K

Community Trust

Rating72/100
Number of ratings12
Active installs1K
Developer Profile

Pending Submission Notifications Developer Profile

razvanh

1 plugin · 1K total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Pending Submission Notifications

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/pending-submission-notifications/admin/js/admin-script.js/wp-content/plugins/pending-submission-notifications/admin/css/admin-style.css
Version Parameters
pending-submission-notifications/admin/js/admin-script.js?ver=pending-submission-notifications/admin/css/admin-style.css?ver=

HTML / DOM Fingerprints

CSS Classes
pending-submission-notification-admin-field
Data Attributes
data-admin-email-option
JS Globals
pendingSubmissionNotificationAdmin
FAQ

Frequently Asked Questions about Pending Submission Notifications