
Post Export Import with Media Security & Risk Analysis
wordpress.org/plugins/post-export-import-with-mediaEasily export and import WP posts, pages, media, widgets, menus, themes, plugins & settings with their media files- secure, fast, and with real-ti …
Is Post Export Import with Media Safe to Use in 2026?
Generally Safe
Score 100/100Post Export Import with Media has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "post-export-import-with-media" plugin v1.3.0 exhibits a mixed security posture. While it demonstrates good practices by utilizing prepared statements for all SQL queries and implementing a significant number of nonce and capability checks, several areas raise concerns. The presence of four AJAX handlers without authentication checks represents a direct attack vector that could be exploited by unauthenticated users. Additionally, the taint analysis revealed two high-severity flows with unsanitized paths, indicating potential risks related to file system manipulation or command injection if these flows are triggered with user-controlled input.
The plugin's vulnerability history is a positive indicator, showing zero known CVEs. This suggests that the plugin has historically been well-maintained and has not been a target for widespread exploitation. However, the absence of historical vulnerabilities does not negate the risks identified in the static analysis. The combination of an unprotected attack surface and high-severity taint flows warrants caution. Overall, the plugin has strengths in its SQL handling and general authorization checks, but the identified vulnerabilities in AJAX handlers and taint flows are significant and should be addressed to improve its security.
Key Concerns
- Unprotected AJAX handlers
- High severity taint flows found
- Unsanitized paths in taint flows
- Output escaping is only 60% proper
Post Export Import with Media Security Vulnerabilities
Post Export Import with Media Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
Post Export Import with Media Attack Surface
AJAX Handlers 53
WordPress Hooks 44
Scheduled Events 1
Maintenance & Trust
Post Export Import with Media Maintenance & Trust
Maintenance Signals
Community Trust
Post Export Import with Media Alternatives
FG Joomla to WordPress
fg-joomla-to-wordpress
A plugin to migrate categories, posts, tags, images and other medias from Joomla to WordPress
S2W – Import Shopify to WooCommerce
import-shopify-to-woocommerce
Easily migrate all Shopify products and their collections(categories) to WooCommerce after several clicks
Export Single Post Page
single-post-page-export
Export (an XML file) a single post or page using WordPress' eXtended RSS (WXR). There's no need to export your entire database anymore!
FG Drupal to WordPress
fg-drupal-to-wp
A plugin to migrate articles, stories, pages, categories, tags, images from Drupal to WordPress
Export/Import Media
calliope-media-import-export
The ultimate tool to migrate your media library. Export to CSV with Advanced Filters and Import securely with Drag & Drop (images, videos, audio a …
Post Export Import with Media Developer Profile
5 plugins · 580 total installs
How We Detect Post Export Import with Media
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/post-export-import-with-media/assets/js/admin-download-buttons.js/wp-content/plugins/post-export-import-with-media/assets/js/admin-download-buttons.jspost-export-import-with-media/assets/js/admin-download-buttons.js?ver=HTML / DOM Fingerprints
peiwm-download-theme-btndata-themepeiwm_download