
Import Your Post Security & Risk Analysis
wordpress.org/plugins/importyourpostImport Your Post can import and auto traduct single post from an other site (Worpress, Joomla,...). Very usefull to autotraduct post in multisite.
Is Import Your Post Safe to Use in 2026?
Generally Safe
Score 85/100Import Your Post has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "importyourpost" plugin v1.0 exhibits a mixed security posture. On one hand, it demonstrates good practices by having no recorded CVEs, a low number of file operations and external HTTP requests, and a high percentage of SQL queries using prepared statements. The absence of AJAX handlers, REST API routes, shortcodes, and cron events significantly limits its direct attack surface. However, several concerning signals emerge from the static analysis.
The most significant concern is the complete lack of nonce checks, which is a fundamental WordPress security mechanism for preventing CSRF attacks. Additionally, 100% of outputs are not properly escaped, presenting a clear risk of cross-site scripting (XSS) vulnerabilities across all its output points. The taint analysis reveals one high-severity flow, indicating a potential for serious security issues that needs further investigation within the codebase.
Given the lack of historical vulnerabilities, it's difficult to draw conclusions about past patterns. However, the current static analysis points to a critical oversight in output sanitization and a complete absence of nonce protection. While the plugin appears to have a small attack surface and uses prepared statements for most SQL queries, these specific weaknesses in output escaping and nonce checks are significant security flaws that require immediate attention. Addressing these issues is crucial for improving the plugin's overall security.
Key Concerns
- 100% of outputs are not properly escaped
- No nonce checks found
- 1 high severity taint flow found
Import Your Post Security Vulnerabilities
Import Your Post Release Timeline
Import Your Post Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Import Your Post Attack Surface
WordPress Hooks 4
Maintenance & Trust
Import Your Post Maintenance & Trust
Maintenance Signals
Community Trust
Import Your Post Alternatives
Add From Server
add-from-server
Add From Server is designed to help ease the pain of bad web hosts, allowing you to upload files via FTP or SSH and later import them into WordPress.
Post Export Import with Media
post-export-import-with-media
Easily export and import WP posts, pages, media, widgets, menus, themes, plugins & settings with their media files- secure, fast, and with real-ti …
Liveinternet Importer
liveinternet-importer
Import posts for users from a Liveinternet blog.
SM Easy Post Migrator
sm-easy-post-migrator
Migrate posts, pages, media, and internal links between WordPress sites without breaking links or losing images.
Kotia Content Integration
kotia-content-integration
Secure REST API content importer for WordPress.
Import Your Post Developer Profile
1 plugin · 10 total installs
How We Detect Import Your Post
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/importyourpost/css/style.css/wp-content/plugins/importyourpost/js/custom.js/wp-content/plugins/importyourpost/js/jquery.js/wp-content/plugins/importyourpost/js/custom.js/wp-content/plugins/importyourpost/js/jquery.jsimportyourpost/css/style.css?ver=importyourpost/js/custom.js?ver=importyourpost/js/jquery.js?ver=HTML / DOM Fingerprints
nav-tabnav-tab-active<![CDATA[//]]>data-id="import-post"data-id="translate_section"data-id="translate_options"data-id="div_addPost"data-id="div_updatePost"data-id="tab_addPost"+1 morejQueryIYP Import new Post