
Mystery Themes Demo Importer Security & Risk Analysis
wordpress.org/plugins/mysterythemes-demo-importerOne Click Demo Importer For Mystery Themes official themes demo content, customization options, widgets and theme settings.
Is Mystery Themes Demo Importer Safe to Use in 2026?
Generally Safe
Score 100/100Mystery Themes Demo Importer has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "mysterythemes-demo-importer" v1.2.0 plugin presents a moderate security risk primarily due to its unprotected AJAX endpoints. While the plugin demonstrates good practices in SQL query handling, output escaping, nonce checks, and capability checks, the presence of three AJAX handlers without any authentication or permission checks is a significant concern. This direct exposure to unauthenticated users could be exploited for various malicious purposes if these handlers are vulnerable. The static analysis did not reveal any critical or high severity taint flows, which is a positive sign. Furthermore, the lack of any recorded vulnerabilities in its history suggests a potentially stable codebase. However, the unprotected AJAX endpoints, combined with the use of `unserialize` which can be dangerous if used with untrusted input, represent a clear area of weakness that attackers could target. The plugin's strengths lie in its secure database interactions and output sanitization, but the unprotected entry points overshadow these positive aspects, necessitating caution.
Key Concerns
- Unprotected AJAX handlers found
- Use of dangerous 'unserialize' function
Mystery Themes Demo Importer Security Vulnerabilities
Mystery Themes Demo Importer Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Data Flow Analysis
Mystery Themes Demo Importer Attack Surface
AJAX Handlers 3
WordPress Hooks 20
Maintenance & Trust
Mystery Themes Demo Importer Maintenance & Trust
Maintenance Signals
Community Trust
Mystery Themes Demo Importer Alternatives
CV Demo Importer
cv-demo-importer
One Click Demo Importer For CodeVibrant official themes demo content, customization options, widgets and theme settings. This plugin fetches the codev …
Starter Templates & Sites Pack by ThemeGrill
themegrill-demo-importer
Premium starter sites and website templates by ThemeGrill. Import demo content, widgets, and theme settings with one click.
Keon Toolset
keon-toolset
Import dummy data for themes developed by Keon Themes.
Ansar Import – One Click Demo Import for WordPress Themes
ansar-import
Easily import theme demos in one click. Simplifies starter sites setup.
Icyclub
icyclub
Icyclub plugin for Provided a readymade template for all Themeansar Theme
Mystery Themes Demo Importer Developer Profile
56 plugins · 30K total installs
How We Detect Mystery Themes Demo Importer
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/mysterythemes-demo-importer/admin/css/mtdi-admin.css/wp-content/plugins/mysterythemes-demo-importer/admin/js/mtdi-admin.js/wp-content/plugins/mysterythemes-demo-importer/admin/js/mtdi-admin.jsmysterythemes-demo-importer/admin/css/mtdi-admin.css?ver=mysterythemes-demo-importer/admin/js/mtdi-admin.js?ver=HTML / DOM Fingerprints
mtdi-theme-demo-wrap<!-- Admin specific functionality --><!-- The core plugin class that is used to define internationalization --><!-- Begins execution of the plugin --><!-- Currently plugin version -->+11 moredata-theme-slugdata-demo-slugdata-demo-nameMTDI_JSObject