
Psmailer Security & Risk Analysis
wordpress.org/plugins/psmailerYa puedes colocar de forma fácil un formulario para que tus visitantes se suscriban al newsletter.
Is Psmailer Safe to Use in 2026?
Generally Safe
Score 85/100Psmailer has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "psmailer" plugin v3.4 exhibits a generally positive security posture with some areas for improvement. The absence of known vulnerabilities and CVEs, coupled with the lack of dangerous functions and a reliance on prepared statements for SQL queries, are strong indicators of good development practices. The static analysis reveals a limited attack surface, with no unprotected AJAX handlers or REST API routes identified. However, the plugin does present some potential weaknesses. A significant portion of its output (40%) is not properly escaped, which could lead to cross-site scripting (XSS) vulnerabilities if user-supplied data is directly rendered. Furthermore, the complete absence of nonce checks and capability checks, especially given that the plugin has an external HTTP request, raises concerns about potential CSRF or unauthorized actions. While no taint flows were identified in this analysis, the combination of unescaped output and lack of authorization checks on entry points warrants caution. Overall, "psmailer" v3.4 is relatively secure due to its clean vulnerability history and absence of critical code signals, but the identified output escaping and authorization weaknesses represent the primary risks.
Key Concerns
- Unescaped output detected
- Missing nonce checks
- Missing capability checks
Psmailer Security Vulnerabilities
Psmailer Code Analysis
Output Escaping
Psmailer Attack Surface
Shortcodes 1
WordPress Hooks 3
Maintenance & Trust
Psmailer Maintenance & Trust
Maintenance Signals
Community Trust
Psmailer Alternatives
Newsletter – Send awesome emails from WordPress
newsletter
An email marketing tool for your blog: subscription forms to create your lists with unlimited subscribers and newsletters.
Constant Contact Forms by MailMunch
constant-contact-forms-by-mailmunch
The #1 Constant Contact plugin to get more email subscribers. Easily add Constant Contact sign-up forms as popup, embedded widget or sticky top bar.
Newsletter Subscription Form – User Subscriptions Form, Capture Email
newsletter-subscription-form
Newsletter Subscription Form for WordPress is the ultimate lead generation, customer acquisition and email marketing plugin to grow and engage your ma …
Moptin – Email Subscription Optin form
moptin-email-subscription-optin-form
Moptin is an Email Subscription Optin Form WordPress Plugin.
MC4WP: Mailchimp for WordPress
mailchimp-for-wp
The #1 Mailchimp plugin for WordPress. Allows you to add a multitude of newsletter sign-up methods to your site.
Psmailer Developer Profile
1 plugin · 10 total installs
How We Detect Psmailer
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/psmailer/css/psmailer_style.cssHTML / DOM Fingerprints
psmailerpsmailer_infopsmailer_senderrorhideid="psmailer"id="psmailer_name"id="psmailer_email"id="psmailer_firstname"id="psmailer_lastname"id="psmailer_send"window.psmailer-rand<form class="psmailer" id="psmailer" method="post" action="">