Migration Drupal to WordPress Security & Risk Analysis

wordpress.org/plugins/migration-drupal-to-wp

Migration Drupal to Wordpress is a tool to move the basic data from databases drupal to wordpress.

10 active installs v0.0 PHP + WP 4.0.1+ Updated May 17, 2016
bddrupalmigration
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Migration Drupal to WordPress Safe to Use in 2026?

Generally Safe

Score 85/100

Migration Drupal to WordPress has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 10yr ago
Risk Assessment

The 'migration-drupal-to-wp' plugin version 0.0 exhibits a generally strong security posture based on the provided static analysis. The absence of identified dangerous functions, SQL injection risks due to prepared statements, and file operations is commendable. Furthermore, the plugin demonstrates a good practice of proper output escaping for a significant portion of its outputs, and the lack of external HTTP requests reduces its attack surface.

However, the analysis highlights a significant concern regarding the complete absence of nonce checks across all identified entry points. While there is one capability check present, the lack of nonce validation on potentially sensitive operations presents a considerable risk for Cross-Site Request Forgery (CSRF) vulnerabilities. The zero taint flows analyzed are positive, but this could also indicate a lack of comprehensive taint analysis or a very limited codebase. The plugin's vulnerability history being empty is a strength, suggesting a lack of publicly disclosed issues, but it's important to remember that a low version number like 0.0 might indicate an early stage of development where extensive testing and public scrutiny haven't occurred.

In conclusion, the plugin has implemented several good security practices, particularly concerning data handling and SQL queries. The primary weakness lies in the absence of nonce checks, which should be a priority to address to mitigate CSRF risks. The limited attack surface reported is also a positive indicator, but the plugin's early version number warrants continued vigilance and thorough security testing.

Key Concerns

  • Missing nonce checks on all entry points
  • Only one capability check found
  • Low version number (0.0) may indicate insufficient testing
Vulnerabilities
None known

Migration Drupal to WordPress Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Migration Drupal to WordPress Release Timeline

No version history available.
Code Analysis
Analyzed Mar 16, 2026

Migration Drupal to WordPress Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
28 prepared
Unescaped Output
13
41 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared28 total queries

Output Escaping

76% escaped54 total outputs
Attack Surface

Migration Drupal to WordPress Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 3
actionadmin_menuapp.php:44
actionadmin_enqueue_scriptsapp.php:57
actionadmin_enqueue_scriptsapp.php:69
Maintenance & Trust

Migration Drupal to WordPress Maintenance & Trust

Maintenance Signals

WordPress version tested4.4.34
Last updatedMay 17, 2016
PHP min version
Downloads2K

Community Trust

Rating20/100
Number of ratings1
Active installs10
Developer Profile

Migration Drupal to WordPress Developer Profile

hereticbear

1 plugin · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Migration Drupal to WordPress

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/migration-drupal-to-wp/app/script.js/wp-content/plugins/migration-drupal-to-wp/app/bootstrap/js/bootstrap.min.js/wp-content/plugins/migration-drupal-to-wp/app/bootstrap/css/bootstrap.min.css
Script Paths
/wp-content/plugins/migration-drupal-to-wp/app/script.js/wp-content/plugins/migration-drupal-to-wp/app/bootstrap/js/bootstrap.min.js

HTML / DOM Fingerprints

CSS Classes
mdtw_mensaje_datos_introducidosmdtw_mensaje_conectionmdtw_mensaje_tabla_usersmdtw_mensaje_tabla_usermetamdtw_mensaje_new_usermdtw_mensaje_tabla_postsmdtw_mensaje_tabla_postmetamdtw_mensaje_tabla_comments+6 more
JS Globals
migration_drupal_to_wp
FAQ

Frequently Asked Questions about Migration Drupal to WordPress