Migrate Store: Export and Import WooCommerce Settings Security & Risk Analysis

wordpress.org/plugins/migratestore

Migrate Store is a WooCommerce plugin for hassle-free migration of settings between sites, simplifying and accelerating the setup process.

1K active installs v1.1.9 PHP 7.4+ WP 6.0+ Updated Nov 30, 2025
export-shipping-zoneswoocommercewoocommerce-export
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Migrate Store: Export and Import WooCommerce Settings Safe to Use in 2026?

Generally Safe

Score 100/100

Migrate Store: Export and Import WooCommerce Settings has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4mo ago
Risk Assessment

The "migratestore" plugin version 1.1.9 exhibits a generally strong security posture based on the static analysis and vulnerability history. The absence of any identified CVEs, including currently unpatched ones, is a significant positive indicator, suggesting a history of good security practices. The static analysis further reveals no critical or high severity taint flows, and a limited number of SQL queries, with a notable percentage (40%) utilizing prepared statements, which mitigates the risk of SQL injection vulnerabilities. The high rate of output escaping (82%) also points to good defensive coding in handling user-supplied data.

However, there are areas for improvement. The complete lack of capability checks (0) is a notable concern. While the attack surface appears small (0 entry points without authentication), this doesn't mean there are no risks if even a single sensitive function is exposed without proper authorization. The presence of file operations without explicit detail on their sanitization or authentication also warrants caution. Additionally, while 2 nonce checks are present, it's unclear if they are applied to all relevant entry points, especially if any were to be discovered.

In conclusion, "migratestore" v1.1.9 has a solid foundation, marked by a clean vulnerability history and good output escaping. The primary weaknesses lie in the absence of capability checks and the unknown security of file operations. Addressing these gaps, particularly by ensuring proper authorization for any sensitive backend operations, would further enhance its security.

Key Concerns

  • No capability checks found
  • File operations present without explicit checks
  • Low percentage of prepared statements in SQL
Vulnerabilities
None known

Migrate Store: Export and Import WooCommerce Settings Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Migrate Store: Export and Import WooCommerce Settings Code Analysis

Dangerous Functions
0
Raw SQL Queries
3
2 prepared
Unescaped Output
9
40 escaped
Nonce Checks
2
Capability Checks
0
File Operations
4
External Requests
0
Bundled Libraries
0

SQL Query Safety

40% prepared5 total queries

Output Escaping

82% escaped49 total outputs
Attack Surface

Migrate Store: Export and Import WooCommerce Settings Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 7
actionadmin_menuincludes\MigrateStore.php:16
actionadmin_post_migratestore_export_actionincludes\MigrateStore.php:17
actionadmin_post_migratestore_import_actionincludes\MigrateStore.php:18
actioninitincludes\MigrateStore.php:19
actionadmin_enqueue_scriptsincludes\MigrateStore.php:24
actionadmin_noticesincludes\Plugins_Checker.php:37
actionbefore_woocommerce_initmigratestore.php:49
Maintenance & Trust

Migrate Store: Export and Import WooCommerce Settings Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedNov 30, 2025
PHP min version7.4
Downloads16K

Community Trust

Rating100/100
Number of ratings22
Active installs1K
Developer Profile

Migrate Store: Export and Import WooCommerce Settings Developer Profile

Nagdy

4 plugins · 7K total installs

93
trust score
Avg Security Score
98/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Migrate Store: Export and Import WooCommerce Settings

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/migratestore/assets/css/admin.css/wp-content/plugins/migratestore/assets/js/admin.js
Script Paths
/wp-content/plugins/migratestore/assets/js/admin.js
Version Parameters
migratestore/assets/css/admin.css?ver=migratestore/assets/js/admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
migratestore-admin-pagemigratestore-import-formmigratestore-export-formmigratestore-wrapper
Data Attributes
data-migratestore-action
JS Globals
migratestore_import_vars
FAQ

Frequently Asked Questions about Migrate Store: Export and Import WooCommerce Settings