Newsletters
by Tribulant Software · Email & Marketing
Also makes 6 other plugins · 17.6K+ installs across the portfolio →
Newsletter plugin for WordPress to capture subscribers and send beautiful, bulk newsletter emails.
89 health vs 63 average across 1,297 Email & Marketing plugins
Directory ranking optimization
How it's scored →How well this listing is tuned to rank in WordPress.org search, on the factors an owner controls. Not popularity, optimization.
Excellent listing optimization
Well tuned across the board
Daily downloads
Since 2022-10-05 · 1,423 days · wp.org + Plugin Pulse archive
30-day downloads
Rolling 30-day volume · peaks are release surges
4.4K
now · peak 5.9K
Directory rank vs rivals
wp.org popularity rank over time · higher is better · when a rival's line climbs above yours, they've overtaken you
Rating trend
Star average over time · dips mark rough releases
Update activity
How busy the existing users are, measured as downloads in the last 30 days for every 1,000 active sites. A spike means a new release everyone's pulling; a long, slow decline means an aging user base that updates less.
Release cadence
Occasionally updatedHow often this plugin actually ships. A steady rhythm is the maintenance signal a single "last updated" date can't show.
3
releases in the last 12 months
2mo ago
latest release · v4.15
124
tagged releases on record
Recent releases
What its installed base runs
via wordpress.orgShare of active installs on each version of this plugin. Green is the current release; a big slice on older versions is a user base that has stopped updating.
Estimated active installs
The public count shows “2K+”. Our estimate pins where the real number sits.
Refined from the date this plugin crossed into its current band.
Install history · since 2015-03-17 · 1,451 observations
Estimated value
What this plugin might earn a year, and what it might sell for. Modeled from public signals; we don't see anyone's books.
Est. annual revenue
Est. acquisition value
A small install base leaves thin data to model from. The range spans more than 10x because wp.org publishes install counts as broad bands, and conversion and price compound on top. Read the midpoint as an order of magnitude, not a valuation.
How we estimate this
Assumptions
- Free → paid conversion. 0.5%–2% of active installs pay for the pro tier. Typical for freemium WordPress plugins; the real rate varies a lot by product.
- Annual price per customer. $49–$149 a year, typical for Email & Marketing plugins rather than this plugin's own pricing.
- Acquisition multiple. 2.5x–4.5x annual revenue, the going range for small WordPress-plugin businesses, stretched a little because downloads are growing.
- Install base. 2K–3K active installs, from our install estimate (wp.org only publishes the floor).
Inputs
- Active installs
- 2K–3K
- Category
- Email & Marketing
- Pro tier
- detected ("Lite" naming, the free tier of a paid product)
- Download trend
- growing (30d downloads up vs prior 30d)
- Reviews
- 245
- Last updated
- 4 days ago
Revenue is installs × conversion × price; value is revenue × a typical acquisition multiple. Every factor is an assumption band, so the output is a wide range on purpose. If you're buying or selling, treat this as a starting point for due diligence.
Details
Recent reviews
All reviews on wp.org ↗- ★★★★★ Justin3mo ago
Nowhere did I see the 500 subscriber limit, not until I investigated the logs when I wondered why it wasn’t sending. Uninstalling.
Read on wp.org ↗ - ★★★★★ wpvolker17mo ago
can recommend.
Read on wp.org ↗ - ★★★★★ imijam1.0y ago
Great plugin with excellent support! This is one of the few newsletter plugins that works well and allows you to send PDF attachments with your message. Recently, we encountered a problem sending newsletters. We couldn’t figure it out and contacted Tribulant for advice. The support team was very friendly and quickly resolved the issue.
Read on wp.org ↗ - ★★★★★ gutte1.3y ago
I have used this plugin for quite some time. But it was tiresome to set up and to customize. And I newer really was sure how the newsletters would show up when received by customers. I tested it, but sometimes the header would not show up.I finally left it and opted by a online newsletter/email system, that is sooo much easier to handle. This topic was modified 1 year, 2 months ago by gutte. This topic was modified 1 year, 2 months ago by gutte.
Read on wp.org ↗ - ★★★★★ gattodigital3.0y ago
Not happy with the harrassing notice every time I log in to WordPress to leave a review. Also, the output HTML is extremely junky. Other than that, the free version more or less meets functionality.
Read on wp.org ↗ - ★★★★★ herbert3.1y ago
Had a problem with the plugin, got some strange errors on cloning newsletters with content areas and also on sending through Mailgun api. Opened ticket in Tribulant support and after a good week they had it fixed. Great service.
Read on wp.org ↗ - ★★★★★ dave100013.3y ago
I’m rooting for this one to get better. When functional, it can be good. That said, its functionality has proved to be rather volatile at times. Regarding customer service, there’s room for improvement. I have received some help from them and it’s been appreciated when it came through. That said, the predictability of timely responses isn’t there. That can be frustrating when issues arise (and they often do). This topic was modified 3 years, 2 months ago by dave10001. This topic was modified 3 years, 2 months ago by dave10001. This topic was modified 3 years, 1 month ago by dave10001. This topic was modified 3 years, 1 month ago by dave10001. This topic was modified 3 years, 1 month ago by dave10001. This topic was modified 3 years ago by dave10001. This topic was modified 3 years ago by dave10001. This topic was modified 3 years ago by dave10001.
Read on wp.org ↗ - ★★★★★ vagtech3.4y ago
Our email system has been through many different companies trying to get out of spam folders and into the inbox. all of them said they guaranteed results. but the only results were to be listed on spam lists because of shared IP address or entire IP blocks being listed and we just happen to be in a bad IP network. once we started using Tribulant our numbers to the inbox almost quadrupled because we were using our own server and not a service. And after their support team showed us how our site was slow and how to fix it, along with the updates they have helped us with regarding our send rate issues, i couldn’t be happier with the software or their service. we have even transferred from our old hosting service to tribulants hosting for a much faster and flexible system then our old expensive “daddy”. as to the software itself… its very flexible and has many features that more expensive services do not have. the ability to use your hosting server or an external smtp server for sending makes it useable if you already have a SMTP service you send through. the bounce and unsubscribe features are automatic when setup correctly and make you fully compliant with the BIG 4 mail services (gmail, aol, hotmail, and yahoo) along with all the rest as far as removal of unhappy recipients. The Newsletter Creator is simple to learn and use as well as fully customizable to make it look and feel like a part of your website…or be something completely new each mail you send. the mailing lists being a separate list than the website user list was a major factor for us but its ability to link to a site user would be very useful in others cases. stuff i haven’t even got to tinker with yet are the ability to customize the sign up and list management pages for the subscribers. or the subscription to multiple lists for different send rates (day/week/month) or products or whatever… and the cost makes it a tool that can grow as you do and not kill your bank account just to try. and the MANY more features i haven’t list here, are the reason im leaving this long review. I hope this helps someone make a decision… because Tribulant helped us, Im sure they could help you.
Read on wp.org ↗
Known vulnerabilities
via Wordfence Intelligence36 disclosed vulnerabilities on record for this plugin, all fixed in the current version. Sites on older versions stay exposed until they update.
- Medium · 6.4 Newsletters <= 4.15 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'link' Shortcode Attribute ↗2026-07-28 CVE-2026-12939 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.15 Patched in 4.16
- Medium · 6.4 Newsletters <= 4.15 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'target' Shortcode Attribute ↗2026-07-28 CVE-2026-12938 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.15 Patched in 4.16
- 2026-07-08 CVE-2026-57394 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.14 Patched in 4.15
- Medium · 4.3 Newsletters <= 4.13 - Missing Authorization ↗
- Medium · 5.3 Newsletters <= 4.13 - Missing Authorization ↗
- 2026-06-09 CVE-2026-3018 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 4.13 Patched in 4.14
- 2025-12-28 CVE-2025-69020 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.12 Patched in 4.13
- 2025-07-29 CVE-2025-54034 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') Affects <= 4.10 Patched in 4.11
- Medium · 4.3 Newsletters <= 4.10 - Cross-Site Request Forgery ↗
- 2025-05-30 CVE-2025-4857 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Affects <= 4.9.9.9 Patched in 4.10
- Medium · 6.5 Newsletters <= 4.9.9.8 - Authenticated (Contributor+) SQL Injection orderby Parameter ↗2025-05-12 CVE-2025-3107 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 4.9.9.8 Patched in 4.9.9.9
- 2025-03-27 CVE-2025-30921 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Affects <= 4.9.9.7 Patched in 4.9.9.8
- 2025-03-25 CVE-2025-2009 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.9.9.7 Patched in 4.9.9.8
- 2025-03-21 CVE-2024-13739 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.9.9.7 Patched in 4.9.9.8
- 2024-12-26 CVE-2025-24599 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.9.9.6 Patched in 4.9.9.7
- Medium · 6.4 Newsletters <= 4.9.9.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via newsletters_video Shortcode ↗2024-10-28 CVE-2024-10181 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.9.9.4 Patched in 4.9.9.5
- 2024-09-27 CVE-2024-47346 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.9.9.1 Patched in 4.9.9.2
- 2024-08-16 CVE-2024-43279 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.9.8 Patched in 4.9.9
- 2024-08-14 CVE-2024-7411 Exposure of Sensitive Information to an Unauthorized Actor Affects <= 4.9.9 Patched in 4.9.9.1
- Medium · 4.3 Newsletters <= 4.9.7 - Cross-Site Request Forgery ↗
- 2024-06-06 CVE-2024-35718 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.9.5 Patched in 4.9.6
- 2024-04-22 CVE-2024-32953 Insertion of Sensitive Information into Log File Affects <= 4.9.5 Patched in 4.9.6
- 2024-04-22 CVE-2024-32954 Unrestricted Upload of File with Dangerous Type Affects <= 4.9.5 Patched in 4.9.6
- 2023-10-05 CVE-2023-4797 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Affects <= 4.9.2 Patched in 4.9.3
- Medium · 5.4 Newsletters <= 4.8.8 - Cross-Site Request Forgery ↗
- 2019-07-01 CVE-2019-14788 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Affects < 4.6.19 Patched in 4.6.19
- 2019-07-01 CVE-2019-14787 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects < 4.6.19 Patched in 4.6.19
- Critical · 9.8 Newsletters <= 4.6.8.5 - Object Injection ↗
- 2017-05-29 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 4.6.5.2 Patched in 4.6.5.3
- Medium · 4.9 Newsletters <= 4.6.4.2 - Directory Traversal ↗2017-05-29 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') Affects <= 4.6.4.2 Patched in 4.6.4.3
Vulnerability records provided by Wordfence Intelligence. Copyright 2012-2026 Defiant Inc. License and terms.
CVE records: Copyright 1999-2026 The MITRE Corporation. CVE terms of use.
Behavioral tests
via WP HiveAutomated install-time checks, tested on PHP 8.1.12 · WP 7.0
Growth timeline
Install-tier crossings we have observed, and how long each tier took to outgrow
- 2025-07-27 3K+ → 2K+ down after 943 days in tier
- 2022-12-27 4K+ → 3K+ down
Competes with
The plugins that solve the same job, ranked by shared tags then reach, closest match first. The letter on the right is each plugin's health grade (A best, F worst).
-
Email Marketing Plugin – WP Email Capture 1K+ installs · 4.2★ · 2 shared tags B -
Contact Form 7 GetResponse Extension 1K+ installs · 4.0★ · 2 shared tags B -
Mailster Gravity Forms 800+ installs · 4.0★ · 2 shared tags D -
NewsmanApp 500+ installs · 3.9★ · 2 shared tags B -
WP Mail SMTP by WPForms – The Most Popular SMTP and Email Log Plugin 4M+ installs · 4.8★ · 1 shared tag A -
MC4WP: Mailchimp for WordPress 1M+ installs · 4.8★ · 1 shared tag A
Embed this report card
Drop a live Pulse card for Newsletters into a readme, a review or a deck. It updates itself.
<iframe src="https://plugins.wpmayor.com/embed/newsletters-lite" width="480" height="300" style="border:0" loading="lazy" title="Newsletters — Plugin Pulse"></iframe> Newsletters: 2K+ active installs, 4.6★ (245 reviews). Plugin Pulse (WP Mayor), as of 2026-08-28. https://plugins.wpmayor.com/plugin/newsletters-lite