
Feed2Post – Import feeds as posts and users Security & Risk Analysis
wordpress.org/plugins/feed2post-ircfFeed2Post provides a single interface to import multiple types of feeds into posts and/or users.
Is Feed2Post – Import feeds as posts and users Safe to Use in 2026?
Generally Safe
Score 100/100Feed2Post – Import feeds as posts and users has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The feed2post-ircf plugin v1.54 presents a mixed security posture. On the positive side, there are no recorded vulnerabilities or CVEs, and the code does not appear to use dangerous functions. The majority of SQL queries utilize prepared statements, and a good portion of output is properly escaped, indicating some attention to secure coding practices. However, significant concerns arise from the static analysis. The presence of one AJAX handler without any authentication check creates a direct entry point for potential unauthorized actions. Furthermore, while the total number of flows is low, the high percentage of flows with unsanitized paths is concerning, even without critical or high severity findings in the taint analysis. The absence of nonce checks on AJAX handlers, coupled with limited capability checks, amplifies the risk associated with the unprotected AJAX endpoint. The plugin's lack of a vulnerability history could indicate good security, or simply a lack of discovered issues, which can change over time.
Key Concerns
- Unprotected AJAX handler
- Flows with unsanitized paths (high percentage)
- Missing nonce checks on AJAX
- Low number of capability checks
- SQL queries without prepared statements (36%)
- Output escaping (61% proper)
Feed2Post – Import feeds as posts and users Security Vulnerabilities
Feed2Post – Import feeds as posts and users Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Feed2Post – Import feeds as posts and users Attack Surface
AJAX Handlers 1
Shortcodes 1
WordPress Hooks 72
Scheduled Events 4
Maintenance & Trust
Feed2Post – Import feeds as posts and users Maintenance & Trust
Maintenance Signals
Community Trust
Feed2Post – Import feeds as posts and users Alternatives
Importe CSV
importe-csv
Import CSV
WP All Import – Drag & Drop Import for CSV, XML, Excel & Google Sheets
wp-all-import
Easily import any file of any size into any plugin, post type, custom field, or taxonomy. Supports WooCommerce, ACF, images, galleries, users, real es …
Product Import Export for WooCommerce – Import Export Product CSV Suite
product-import-export-for-woo
Easily import/export WooCommerce products (simple, grouped, external/affiliate) via CSV. Transfer product data, including images, reviews, categories, …
WP All Import – Import Add-On for ACF
csv-xml-import-for-acf
Drag & drop to import any CSV, Excel, XML, or Google Sheets file into Advanced Custom Fields. Supports repeaters, flexible content, galleries, and …
Import Users from CSV
import-users-from-csv
Import users from a CSV into WordPress
Feed2Post – Import feeds as posts and users Developer Profile
5 plugins · 310 total installs
How We Detect Feed2Post – Import feeds as posts and users
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/feed2post-ircf/assets/css/style.css/wp-content/plugins/feed2post-ircf/assets/js/script.js/wp-content/plugins/feed2post-ircf/assets/js/script.jsfeed2post-ircf/assets/css/style.css?ver=feed2post-ircf/assets/js/script.js?ver=HTML / DOM Fingerprints
feed2post-archivefeed2post-postfield-post_titlefield-post_contentfield-thumbnaildata-feed2post-idfeed2post[feed2post get="post_title"][feed2post get="posts_count"][feed2post get="posts_admin_url"]