
WP All Import – Import SEO Settings for Yoast SEO Security & Risk Analysis
wordpress.org/plugins/yoast-seo-settings-xml-csv-importDrag & drop to import from any CSV, Excel, XML, or Google Sheets file into Yoast SEO's titles, meta descriptions, focus keywords, schema sett …
Is WP All Import – Import SEO Settings for Yoast SEO Safe to Use in 2026?
Generally Safe
Score 100/100WP All Import – Import SEO Settings for Yoast SEO has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "yoast-seo-settings-xml-csv-import" plugin v1.1.8 exhibits a mixed security posture. While it boasts a clean vulnerability history with no known CVEs and a small attack surface with no publicly exposed entry points like AJAX handlers, REST API routes, or shortcodes, significant concerns arise from its static code analysis. The presence of the `unserialize` function, especially without any explicit nonce or capability checks on the code paths utilizing it, presents a critical risk. Taint analysis confirms this by revealing two high-severity flows with unsanitized paths, strongly suggesting a potential for deserialization vulnerabilities if user-controlled data can reach these functions.
Despite the absence of known vulnerabilities, the static analysis findings indicate a critical oversight in secure coding practices. The reliance on `unserialize` without proper validation and sanitization is a well-known vector for remote code execution. The fact that the plugin performs file operations and has some outputs that are not properly escaped further compounds these risks, although the taint analysis points are the most concerning. The plugin's strengths lie in its lack of external dependencies and prepared SQL statements, but these are overshadowed by the potential for severe deserialization vulnerabilities.
Key Concerns
- Dangerous function 'unserialize' used
- High severity taint flows with unsanitized paths
- Missing nonce checks
- Missing capability checks
- Unescaped output detected
- File operations performed
WP All Import – Import SEO Settings for Yoast SEO Security Vulnerabilities
WP All Import – Import SEO Settings for Yoast SEO Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Data Flow Analysis
WP All Import – Import SEO Settings for Yoast SEO Attack Surface
WordPress Hooks 17
Maintenance & Trust
WP All Import – Import SEO Settings for Yoast SEO Maintenance & Trust
Maintenance Signals
Community Trust
WP All Import – Import SEO Settings for Yoast SEO Alternatives
WP All Import – Import SEO Settings for Rank Math SEO
import-xml-csv-settings-to-rank-math-seo
Drag & drop to import from any CSV, Excel, XML, or Google Sheets file into Rank Math SEO's titles, meta descriptions, focus keywords, schema …
WP All Import – Import SEO Settings for All In One SEO
import-xml-csv-settings-to-all-in-one-seo-pack
Drag & drop to import from any CSV, Excel, XML, or Google Sheets file into All In One SEO's titles, meta descriptions, focus keywords, schema …
Super Sitemap for SEO
super-sitemap-for-seo
Generate sitemaps by grouping category posts, tags and custom taxonomies for better SEO analysis. Yoast SEO or Rank Math SEO must be active.
Import into Schema.org by WordLift
wordlift-add-on-for-wp-all-import
Easily import structured data and schema.org settings from any XML or CSV file to WordLift knowledge graph.
ACF Content Analysis for Yoast SEO
acf-content-analysis-for-yoast-seo
WordPress plugin that adds the content of all ACF fields to the Yoast SEO score analysis.
WP All Import – Import SEO Settings for Yoast SEO Developer Profile
22 plugins · 207K total installs
How We Detect WP All Import – Import SEO Settings for Yoast SEO
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
data-yoast-seo-settings-xml-csv-import-focuskwdata-yoast-seo-settings-xml-csv-import-seo-titledata-yoast-seo-settings-xml-csv-import-meta-descriptiondata-yoast-seo-settings-xml-csv-import-facebook-titledata-yoast-seo-settings-xml-csv-import-facebook-descriptiondata-yoast-seo-settings-xml-csv-import-facebook-image+18 moreyoast_addon