
Advanced Import: One-Click Demo Import for WordPress Security & Risk Analysis
wordpress.org/plugins/advanced-importAdvanced Import simplifies importing demo data for WordPress sites, enabling users to import posts, pages, media, widgets, customizer settings, and Gu …
Is Advanced Import: One-Click Demo Import for WordPress Safe to Use in 2026?
Generally Safe
Score 91/100Advanced Import: One-Click Demo Import for WordPress has a strong security track record. Known vulnerabilities have been patched promptly.
The 'advanced-import' plugin v1.4.5 exhibits a mixed security posture. While it demonstrates strengths in areas like a high percentage of properly escaped output and a good rate of prepared SQL statements, significant concerns arise from its attack surface. All identified AJAX handlers lack authentication checks, presenting a substantial risk of unauthorized actions. The absence of permission callbacks for its entry points further exacerbates this, allowing any authenticated user to potentially trigger these functionalities. The plugin's vulnerability history, featuring a past high-severity CSRF vulnerability, suggests a prior lack of robust security measures, even though it is currently patched. The taint analysis did not reveal any high-severity issues, which is a positive sign. However, the broad exposure of AJAX handlers without any form of access control is the most pressing security concern, potentially overshadowing its other positive attributes.
Key Concerns
- Unprotected AJAX handlers
- High number of AJAX handlers
- One High severity CVE history
Advanced Import: One-Click Demo Import for WordPress Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Advanced Import <= 1.3.7 - Cross-Site Request Forgery
Advanced Import: One-Click Demo Import for WordPress Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Advanced Import: One-Click Demo Import for WordPress Attack Surface
AJAX Handlers 8
WordPress Hooks 19
Scheduled Events 2
Maintenance & Trust
Advanced Import: One-Click Demo Import for WordPress Maintenance & Trust
Maintenance Signals
Community Trust
Advanced Import: One-Click Demo Import for WordPress Alternatives
UnfoldWP Import Companion
unfoldwp-import-companion
UnfoldWP Import Companion eases the process of one click importing starter templates for UnfoldWP themes. Needs One Click Demo Import to work.
ThemeinWP Import Companion
themeinwp-import-companion
The plugin simply store data to import.
Demo Importer Companion
demo-importer-companion
A powerful tool designed to streamline and enhance the process of importing and setting up demo content for your WordPress website.
Customizer Export/Import
customizer-export-import
Easily export or import your WordPress customizer settings!
Keon Toolset
keon-toolset
Import dummy data for themes developed by Keon Themes.
Advanced Import: One-Click Demo Import for WordPress Developer Profile
5 plugins · 92K total installs
How We Detect Advanced Import: One-Click Demo Import for WordPress
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/advanced-import/css/advanced-import-admin.css/wp-content/plugins/advanced-import/js/advanced-import-admin.js/wp-content/plugins/advanced-import/css/advanced-import-public.css/wp-content/plugins/advanced-import/js/advanced-import-public.js/wp-content/plugins/advanced-import/js/advanced-import-admin.js/wp-content/plugins/advanced-import/js/advanced-import-public.jsadvanced-import/css/advanced-import-admin.css?ver=advanced-import/js/advanced-import-admin.js?ver=advanced-import/css/advanced-import-public.css?ver=advanced-import/js/advanced-import-public.js?ver=HTML / DOM Fingerprints
advanced-import-wrapadvanced_import_settingsadvanced-import-loader-containerai-demo-list-itemAdvanced Import Page WrapperAdvanced Import LoaderAdvanced Import ErrorAdvanced Import Successdata-plugin-name="advanced-import"data-plugin-version="1.4.5"advanced_import_admin_paramsadvanced_import_public_paramsadvanced_import_vars/wp-json/advanced-import/v1/import-data/wp-json/advanced-import/v1/get-demo-list/wp-json/advanced-import/v1/process-import[advanced_import_demo_list]