
WP All Import – Property Import for WP Residence Security & Risk Analysis
wordpress.org/plugins/wp-residence-add-on-for-wp-all-importDrag & drop to import real estate listings from any CSV, XML, Excel, or Google Sheets file of any size or format. Supports images, floor plans, am …
Is WP All Import – Property Import for WP Residence Safe to Use in 2026?
Generally Safe
Score 100/100WP All Import – Property Import for WP Residence has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "wp-residence-add-on-for-wp-all-import" plugin v1.3.2 presents a mixed security posture. On the positive side, there are no recorded CVEs, indicating a history of stable security or limited public scrutiny. The plugin also demonstrates good practices with all its SQL queries using prepared statements, which mitigates SQL injection risks. However, several concerning findings from the static analysis warrant attention. The presence of the `unserialize` function is a significant risk, as it can lead to Remote Code Execution vulnerabilities if used with untrusted input. Furthermore, the taint analysis reveals two high-severity flows with unsanitized paths, suggesting potential for arbitrary file access or manipulation. The lack of any nonce checks or capability checks on entry points, despite having zero entry points identified, is a theoretical concern that could become a practical risk if the attack surface grows or if the analysis missed potential entry points. The relatively low number of identified entry points is a strength, but the existence of dangerous functions and unsanitized paths overrides this positive aspect.
Key Concerns
- Dangerous function: unserialize found
- High severity taint flow with unsanitized path (2 instances)
- No nonce checks on entry points
- No capability checks on entry points
- File operations performed
- External HTTP requests made
- Output escaping not fully implemented (63% proper)
WP All Import – Property Import for WP Residence Security Vulnerabilities
WP All Import – Property Import for WP Residence Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Data Flow Analysis
WP All Import – Property Import for WP Residence Attack Surface
WordPress Hooks 21
Maintenance & Trust
WP All Import – Property Import for WP Residence Maintenance & Trust
Maintenance Signals
Community Trust
WP All Import – Property Import for WP Residence Alternatives
WP All Import – Property Import for RealHomes
realhomes-xml-csv-property-listings-import
Drag & drop to import real estate listings from any CSV, XML, Excel, or Google Sheets file of any size or format. Supports images, floor plans, am …
WP All Import – Property Import for Pro Real Estate 7
wp-pro-real-estate-7-xml-csv-property-listings-import
Drag & drop to import real estate listings from any CSV, XML, Excel, or Google Sheets file of any size or format. Supports images, floor plans, am …
WP All Import – Property Import for Reales WP
reales-wp-xml-csv-property-listings-import
Drag & drop to import real estate listings from any CSV, XML, Excel, or Google Sheets file of any size or format. Supports images, floor plans, am …
WP All Import – Property Import for Real Places
realplaces-xml-csv-property-listings-import
Drag & drop to import real estate listings from any CSV, XML, Excel, or Google Sheets file of any size or format. Supports images, floor plans, am …
WP All Import – Property Import for Realia
realia-xml-csv-property-listings-import
Drag & drop to import real estate listings from any CSV, XML, Excel, or Google Sheets file of any size or format. Supports images, floor plans, am …
WP All Import – Property Import for WP Residence Developer Profile
22 plugins · 207K total installs
How We Detect WP All Import – Property Import for WP Residence
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-residence-add-on-for-wp-all-import/rapid-addon.php/wp-content/plugins/wp-residence-add-on-for-wp-all-import/classes/class-field-factory-agents.php/wp-content/plugins/wp-residence-add-on-for-wp-all-import/classes/class-field-factory-properties.php/wp-content/plugins/wp-residence-add-on-for-wp-all-import/classes/class-helper.php/wp-content/plugins/wp-residence-add-on-for-wp-all-import/classes/class-importer.php/wp-content/plugins/wp-residence-add-on-for-wp-all-import/classes/class-importer-properties.php/wp-content/plugins/wp-residence-add-on-for-wp-all-import/classes/class-importer-agents.php/wp-content/plugins/wp-residence-add-on-for-wp-all-import/classes/class-importer-location.phpwp-residence-add-on-for-wp-all-import/rapid-addon.php?ver=wp-residence-add-on-for-wp-all-import/classes/class-field-factory-agents.php?ver=wp-residence-add-on-for-wp-all-import/classes/class-field-factory-properties.php?ver=wp-residence-add-on-for-wp-all-import/classes/class-helper.php?ver=wp-residence-add-on-for-wp-all-import/classes/class-importer.php?ver=wp-residence-add-on-for-wp-all-import/classes/class-importer-properties.php?ver=wp-residence-add-on-for-wp-all-import/classes/class-importer-agents.php?ver=wp-residence-add-on-for-wp-all-import/classes/class-importer-location.php?ver=