
WP All Import – Import SEO Settings for Rank Math SEO Security & Risk Analysis
wordpress.org/plugins/import-xml-csv-settings-to-rank-math-seoDrag & drop to import from any CSV, Excel, XML, or Google Sheets file into Rank Math SEO's titles, meta descriptions, focus keywords, schema …
Is WP All Import – Import SEO Settings for Rank Math SEO Safe to Use in 2026?
Generally Safe
Score 100/100WP All Import – Import SEO Settings for Rank Math SEO has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "import-xml-csv-settings-to-rank-math-seo" v1.1 exhibits a mixed security posture. While it has a remarkably small attack surface with no identifiable entry points like AJAX handlers, REST API routes, or shortcodes, and a low number of file operations and external HTTP requests, significant concerns arise from the static code analysis. The presence of the `unserialize` function without clear sanitization or authentication checks presents a high risk, as it can be exploited to deserialize untrusted data, potentially leading to remote code execution or denial-of-service attacks. This is further amplified by the taint analysis, which reveals three flows with unsanitized paths, all classified as high severity. These unsanitized flows likely leverage the `unserialize` function or other input handling mechanisms without proper validation.
The plugin's vulnerability history is notably clean, with no recorded CVEs. This absence of known vulnerabilities might indicate diligent maintenance or a relatively low profile, but it does not negate the risks identified in the static analysis. The lack of nonce and capability checks on potential entry points (though none are explicitly listed as exposed) is also a concern, as it suggests a general oversight in input validation and authorization. Overall, while the plugin's limited attack surface is a strength, the identified `unserialize` usage and high-severity unsanitized taint flows are critical weaknesses that require immediate attention.
Key Concerns
- Dangerous function 'unserialize' used
- High severity unsanitized taint flows (3)
- No nonce checks
- No capability checks
- Output escaping not fully implemented (40% unescaped)
WP All Import – Import SEO Settings for Rank Math SEO Security Vulnerabilities
WP All Import – Import SEO Settings for Rank Math SEO Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Data Flow Analysis
WP All Import – Import SEO Settings for Rank Math SEO Attack Surface
WordPress Hooks 24
Maintenance & Trust
WP All Import – Import SEO Settings for Rank Math SEO Maintenance & Trust
Maintenance Signals
Community Trust
WP All Import – Import SEO Settings for Rank Math SEO Alternatives
WP All Import – Import SEO Settings for Yoast SEO
yoast-seo-settings-xml-csv-import
Drag & drop to import from any CSV, Excel, XML, or Google Sheets file into Yoast SEO's titles, meta descriptions, focus keywords, schema sett …
WP All Import – Import SEO Settings for All In One SEO
import-xml-csv-settings-to-all-in-one-seo-pack
Drag & drop to import from any CSV, Excel, XML, or Google Sheets file into All In One SEO's titles, meta descriptions, focus keywords, schema …
Import into Schema.org by WordLift
wordlift-add-on-for-wp-all-import
Easily import structured data and schema.org settings from any XML or CSV file to WordLift knowledge graph.
BoldGrid Easy SEO – Simple and Effective SEO
boldgrid-easy-seo
Easy SEO helps you easily create keyword rich content and rank higher in the search engines.
Internal Links Manager
seo-automated-link-building
Boost your SEO and get better rankings with our automated link building plugin. With this plugin you can link any keyword to any URL - internal or ext …
WP All Import – Import SEO Settings for Rank Math SEO Developer Profile
22 plugins · 207K total installs
How We Detect WP All Import – Import SEO Settings for Rank Math SEO
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/import-xml-csv-settings-to-rank-math-seo/static/js/admin.js/wp-content/plugins/import-xml-csv-settings-to-rank-math-seo/static/js/admin.jsimport-xml-csv-settings-to-rank-math-seo/static/js/admin.js?ver=HTML / DOM Fingerprints
name="is_update_rank_math_schema"id="is_update_rank_math_schema_<input type="hidden" name="is_update_rank_math_schema" value="0" /><input type="checkbox" id="is_update_rank_math_schema_<label for="is_update_rank_math_schema_