EmBe Demo Import Security & Risk Analysis

wordpress.org/plugins/embe-demo-import

One-Click Demo Import for Embe theme. Based on Redux Framework.

20 active installs v2.2.0 PHP 5.3+ WP 4.3+ Updated May 29, 2020
alithemesembe-thememagazine-themeone-click-demo-importredux-framework
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is EmBe Demo Import Safe to Use in 2026?

Generally Safe

Score 85/100

EmBe Demo Import has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5yr ago
Risk Assessment

Based on the provided static analysis and vulnerability history, the "embe-demo-import" v2.2.0 plugin exhibits a strong security posture. The static analysis reveals a remarkably clean codebase with no identified dangerous functions, SQL queries not using prepared statements, or unescaped output. Furthermore, the absence of external HTTP requests, file operations, nonce checks, and capability checks on identified entry points (though there are none) suggests a deliberate effort to minimize the attack surface and potential for exploitation. The taint analysis also indicates no concerning data flows.

Compounding this positive internal assessment is the plugin's clean vulnerability history. The absence of any recorded CVEs, regardless of severity, and the lack of common vulnerability types suggest a well-maintained and secure plugin over time. This indicates either a lack of discovered vulnerabilities or a proactive approach to security by the developers. The plugin's strengths lie in its apparent lack of common WordPress plugin vulnerabilities and its adherence to secure coding practices where applicable.

However, the analysis also highlights a potential area for concern: the complete absence of any identified entry points (AJAX handlers, REST API routes, shortcodes, cron events). While this leads to zero unprotected entry points, it could also imply that the plugin's core functionality is not designed to be interactive or exposed through typical WordPress mechanisms. If the plugin *is* intended to have interactive features that are somehow not being picked up by the static analysis, this could represent an unknown attack surface. In the absence of any specific issues found, the plugin appears secure for its current reported state.

Vulnerabilities
None known

EmBe Demo Import Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

EmBe Demo Import Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

EmBe Demo Import Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 3
filterwbc_importer_dir_pathembe-demo-import.php:29
actionwbc_importer_before_widget_importembe-demo-import.php:39
actionwbc_importer_after_content_importembe-demo-import.php:67
Maintenance & Trust

EmBe Demo Import Maintenance & Trust

Maintenance Signals

WordPress version tested5.2.24
Last updatedMay 29, 2020
PHP min version5.3
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs20
Developer Profile

EmBe Demo Import Developer Profile

Alithemes

3 plugins · 150 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect EmBe Demo Import

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/embe-demo-import/assets/css/admin-style.css/wp-content/plugins/embe-demo-import/assets/js/admin-script.js/wp-content/plugins/embe-demo-import/assets/js/plugin-script.js
Script Paths
/wp-content/plugins/embe-demo-import/assets/js/admin-script.js/wp-content/plugins/embe-demo-import/assets/js/plugin-script.js
Version Parameters
embe-demo-import/assets/css/admin-style.css?ver=embe-demo-import/assets/js/admin-script.js?ver=embe-demo-import/assets/js/plugin-script.js?ver=

HTML / DOM Fingerprints

CSS Classes
embe-demo-import-wrapembe-demo-import-headerembe-demo-import-contentembe-demo-import-footer
HTML Comments
<!-- EmBe Demo Import Plugin --><!-- End EmBe Demo Import Plugin --><!-- Demo Import Area --><!-- End Demo Import Area -->+2 more
Data Attributes
data-demo-import-iddata-demo-import-namedata-demo-import-action
JS Globals
EmbeDemoImport
Shortcode Output
[embe_demo_import_button][embe_demo_import_notice]
FAQ

Frequently Asked Questions about EmBe Demo Import