
Export 2 Multisite Security & Risk Analysis
wordpress.org/plugins/export-2-multisiteExports your standalone database SQL for import into a WP Multisite installation.
Is Export 2 Multisite Safe to Use in 2026?
Generally Safe
Score 100/100Export 2 Multisite has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'export-2-multisite' plugin v0.2 presents a moderate security risk due to several concerning findings in its static analysis. While the plugin boasts a clean vulnerability history with no recorded CVEs, this could be misleading as the code itself exhibits potential weaknesses. A significant concern is the presence of 5 AJAX handlers that lack authentication checks, creating a substantial attack surface for unauthorized actions. Furthermore, the taint analysis reveals 6 high-severity flows with unsanitized paths, indicating a strong possibility of data manipulation or injection vulnerabilities if these paths are reachable by malicious input. The frequent use of the `unserialize` function without clear context on its input sources is also a red flag, as unserialization of untrusted data is a known attack vector. The low rate of properly escaped output (14%) further exacerbates these risks, making cross-site scripting (XSS) a plausible threat. Despite a relatively low number of entry points and the absence of critical taint flows, the combination of unprotected AJAX handlers, high-severity taint flows, and poor output escaping necessitates caution. The vulnerability history, while currently clean, does not negate the inherent risks identified in the code analysis.
Key Concerns
- AJAX handlers without auth checks
- High severity taint flows with unsanitized paths
- Low percentage of properly escaped output
- Use of unserialize function
- SQL queries without prepared statements
Export 2 Multisite Security Vulnerabilities
Export 2 Multisite Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Data Flow Analysis
Export 2 Multisite Attack Surface
AJAX Handlers 12
WordPress Hooks 6
Maintenance & Trust
Export 2 Multisite Maintenance & Trust
Maintenance Signals
Community Trust
Export 2 Multisite Alternatives
Simple Table Manager
simple-table-manager
Enables viewing and editing table records and exporting them to CSV files through a minimal database interface from your dashboard.
OB DB Excel Converter
ob-db-excel-converter
This plugin provide you the functionality to export MySql database table to excel file. The plugin is very easy to use.
LH Mysqldump
lh-mysqldump
A simple plugin to export and backup your database, on an ongoing basis
Move Post/Page to Subsite
move-postpage-to-subsite
Wordpress multisite plugin to move posts in a category and/or a page hierarchy to a new subsite, with seamless redirects. It copy also post attachmen …
Pitta Migration
pitta-migration
Migrate WordPress databases using WP_HOME and WP_SITEURL constants.
Export 2 Multisite Developer Profile
3 plugins · 4K total installs
How We Detect Export 2 Multisite
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/export-2-multisite/css/e2wpms-admin.css/wp-content/plugins/export-2-multisite/js/e2wpms-admin.js/wp-content/plugins/export-2-multisite/js/e2wpms-admin.jsexport-2-multisite/css/e2wpms-admin.css?ver=export-2-multisite/js/e2wpms-admin.js?ver=HTML / DOM Fingerprints
e2wpms-admin-wrappere2wpms-migrate-tabe2wpms-settings-tabe2wpms-tab-contentjs-action-linkmigrate-tjs-migrate-tabjs-settings-tab+3 moredata-div-namedata-migration-profile-iddata-profile-namedata-delete-profile-iddata-iddata-source-id+3 moree2wpms_ajax_object/wp-json/e2wpms/v1/delete_migration_profile/wp-json/e2wpms/v1/save_profile/wp-json/e2wpms/v1/initiate_migration/wp-json/e2wpms/v1/migrate_table/wp-json/e2wpms/v1/finalize_migration/wp-json/e2wpms/v1/clear_log/wp-json/e2wpms/v1/get_log/wp-json/e2wpms/v1/fire_migration_complete/wp-json/e2wpms/v1/plugin_compatibility/wp-json/e2wpms/v1/blacklist_plugins/wp-json/e2wpms/v1/update_max_request_size/wp-json/e2wpms/v1/cancel_migration