Content Audit Exporter Security & Risk Analysis

wordpress.org/plugins/content-audit-exporter

Make content auditing easy by exporting your post, pages, and custom post types to an XLSX file.

10 active installs v1.1 PHP 7.4+ WP 5.0+ Updated Jan 17, 2024
auditcontentcontent-audit
64
C · Use Caution
CVEs total1
Unpatched1
Last CVENov 28, 2024
Safety Verdict

Is Content Audit Exporter Safe to Use in 2026?

Use With Caution

Score 64/100

Content Audit Exporter has 1 unpatched vulnerability. Evaluate alternatives or apply available mitigations.

1 known CVE 1 unpatched Last CVE: Nov 28, 2024Updated 2yr ago
Risk Assessment

The plugin 'content-audit-exporter' v1.1 exhibits a mixed security posture. While static analysis reveals a commendable absence of dangerous functions, raw SQL queries, and a high percentage of properly escaped output, significant concerns remain. The plugin has a history of vulnerabilities, including one currently unpatched medium-severity CVE related to information exposure. This unaddressed vulnerability, coupled with the fact that the plugin's attack surface is entirely unprotected (0 unprotected entry points), suggests a potential for exploitation if an attacker can trigger the conditions for the known CVE. The lack of identified taint flows is positive, but the presence of file operations and non-trivial capability and nonce checks indicate areas where vulnerabilities could theoretically emerge, especially given the past history.

Key Concerns

  • Unpatched CVE found
  • Medium severity unpatched CVE
  • All entry points unprotected
  • File operations present
  • Capability checks present
  • Nonce checks present
Vulnerabilities
1

Content Audit Exporter Security Vulnerabilities

CVEs by Year

1 CVE in 2024 · unpatched
2024
Patched Has unpatched

Severity Breakdown

Medium
1

1 total CVE

CVE-2024-53768medium · 5.3Exposure of Sensitive Information to an Unauthorized Actor

Content Audit Exporter <= 1.1 - Unauthenticated Sensitive Information Exposure

Nov 28, 2024Unpatched
Code Analysis
Analyzed Mar 16, 2026

Content Audit Exporter Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
38 escaped
Nonce Checks
2
Capability Checks
2
File Operations
1
External Requests
0
Bundled Libraries
0

Output Escaping

97% escaped39 total outputs
Attack Surface

Content Audit Exporter Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actionadmin_menuincludes\Pages\Settings.php:21
actionadmin_post_create_content_auditincludes\Pages\Settings.php:22
actionadmin_post_delete_content_auditincludes\Pages\Settings.php:23
actionadmin_enqueue_scriptsincludes\Pages\Settings.php:24
Maintenance & Trust

Content Audit Exporter Maintenance & Trust

Maintenance Signals

WordPress version tested6.4.8
Last updatedJan 17, 2024
PHP min version7.4
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Content Audit Exporter Developer Profile

ideinteractive

1 plugin · 10 total installs

69
trust score
Avg Security Score
64/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Content Audit Exporter

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/content-audit-exporter/assets/admin/css/ca-admin.css
Version Parameters
content-audit-exporter/assets/admin/css/ca-admin.css?ver=1.1

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Content Audit Exporter