
Triangle – Email Template Builder Security & Risk Analysis
wordpress.org/plugins/triangle-email-templateDrag and drop email template editor for wordpress.
Is Triangle – Email Template Builder Safe to Use in 2026?
Generally Safe
Score 85/100Triangle – Email Template Builder has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "triangle-email-template" v1.1.0 exhibits a concerning security posture primarily due to significant weaknesses in its code, despite a lack of recorded historical vulnerabilities. While the static analysis shows a very limited attack surface and no direct SQL injection risks via prepared statements, the presence of 21 dangerous functions, including `unserialize` and `system`, is a major red flag. Furthermore, a very low percentage of output escaping (6%) suggests a high likelihood of cross-site scripting (XSS) vulnerabilities. The taint analysis revealing two flows with unsanitized paths, even without a high severity rating, contributes to this risk profile. The absence of any recorded CVEs is positive but could also indicate a lack of thorough historical security auditing or a relatively new plugin without significant past exposure. The lack of nonce and capability checks on what little attack surface exists (though minimal in this case) also contributes to potential privilege escalation or unauthorized action risks if any entry points were to be discovered or added in the future.
Key Concerns
- Dangerous functions: unserialize, system
- Low output escaping percentage (6%)
- Taint analysis: 2 flows with unsanitized paths
- No nonce checks
- No capability checks
Triangle – Email Template Builder Security Vulnerabilities
Triangle – Email Template Builder Code Analysis
Dangerous Functions Found
Bundled Libraries
Output Escaping
Data Flow Analysis
Triangle – Email Template Builder Attack Surface
WordPress Hooks 1
Maintenance & Trust
Triangle – Email Template Builder Maintenance & Trust
Maintenance Signals
Community Trust
Triangle – Email Template Builder Alternatives
Email Templates Customizer and Designer for WordPress and WooCommerce
email-templates
Design and send custom emails with Email Templates plugin for WordPress and WooCommerce
Advanced Emailing for WooCommerce
advanced-emailing-for-woocommerce
Customize your WooCommerce emails or create new one that are sent when a condition is met.
Email Design Studio
email-design-studio
create and customize powerful email design and templates for your customers.
EmailCraft
emailcraft
Design stunning, responsive email templates with intuitive drag-and-drop blocks. Professional results, no coding required.
PressMailer
pressmailer
PressMailer enables you to change the texts of default notifications in WordPress and makes the notifications a bit nicer with HTML mails.
Triangle – Email Template Builder Developer Profile
1 plugin · 10 total installs
How We Detect Triangle – Email Template Builder
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/triangle-email-template/backend/user.js/wp-content/plugins/triangle-email-template/backend/contact.js/wp-content/plugins/triangle-email-template/builder/juice.build.js/wp-content/plugins/triangle-email-template/builder/none.build.js/wp-content/plugins/triangle-email-template/backend/setting.jsbackend/user.jsbackend/contact.jsbuilder/juice.build.jsbuilder/none.build.jsbackend/setting.jsHTML / DOM Fingerprints
<!-- @backend - Eneque scripts --><!-- @backend - Add setting link for plugin in plugins page --><!-- @backend - Eneque scripts --><!-- @backend - Load plugin scripts in a page -->+4 moredata-triangle-smtpdata-triangle-smtp-authdata-triangle-smtp-hostdata-triangle-smtp-portdata-triangle-smtp-usernamedata-triangle-smtp-password+4 moreTRIANGLE_SCREEN