
Give Donation – Email Template Security & Risk Analysis
wordpress.org/plugins/wp-html-mail-giveUse your email templates for your Give donations
Is Give Donation – Email Template Safe to Use in 2026?
Generally Safe
Score 85/100Give Donation – Email Template has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin 'wp-html-mail-give' v1.1 presents a seemingly secure profile based on the provided static analysis and vulnerability history. The absence of any recorded CVEs and the current lack of unpatched vulnerabilities suggest a history of stable and secure development. Furthermore, the static analysis indicates a very small attack surface with no identified AJAX handlers, REST API routes, shortcodes, or cron events. The code also demonstrates good practices regarding SQL queries, with all queries utilizing prepared statements, and there are no identified dangerous functions, file operations, external HTTP requests, or bundled libraries. Taint analysis also shows no critical or high severity vulnerabilities. However, the static analysis does reveal a significant concern: 100% of the identified output is not properly escaped. This represents a substantial risk, as unsanitized output can lead to Cross-Site Scripting (XSS) vulnerabilities. Despite the otherwise strong security posture, this lack of output escaping is a critical weakness that could be exploited by attackers. The plugin's strength lies in its minimal attack surface and secure data handling for SQL, but its failure to properly escape output is a notable deficiency.
Key Concerns
- Unescaped output detected
Give Donation – Email Template Security Vulnerabilities
Give Donation – Email Template Code Analysis
Output Escaping
Give Donation – Email Template Attack Surface
WordPress Hooks 8
Maintenance & Trust
Give Donation – Email Template Maintenance & Trust
Maintenance Signals
Community Trust
Give Donation – Email Template Alternatives
BuddyPress Email Template Designer – WP HTML Mail
wp-html-mail-buddypress
Simply customize email templates for BuddyPress
Triangle – Email Template Builder
triangle-email-template
Drag and drop email template editor for wordpress.
PressMailer
pressmailer
PressMailer enables you to change the texts of default notifications in WordPress and makes the notifications a bit nicer with HTML mails.
Kadence WooCommerce Email Designer
kadence-woocommerce-email-designer
Customize the default WooCommerce email templates design and text through the native WordPress customizer. Preview emails and send test emails.
EmailKit – Email Customizer for WooCommerce & WP
emailkit
EmailKit is a powerful WordPress and WooCommerce email customizer tool, free for everyone! It allows users to customize and design templates that show …
Give Donation – Email Template Developer Profile
5 plugins · 20K total installs
How We Detect Give Donation – Email Template
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-html-mail-give/views/templates/