WordPress Importer

Explore WordPress Importer vulnerabilities across all versions. Currently tracking 1 known vulnerabilities, including severity, impact, and patch status.

Strategic Overview

Avg CVSSHigh
7.2/ 10
Patch Coverage100%
Open

0

Fixed

1

Get automatic notifications for all WordPress Importer vulnerabilities before they are exploited.

Vulnerability Records

1 records
WordPress Importer banner
Latestv0.9.5

WordPress Importer

WordPress.org

Author

WordPress.org

3.1(327)
62/100
Last Updated
2025-11-05 (9mo ago)
Active Installs
2,000,000+
Downloads
69,615,784
Requires WP
5.2+
Requires PHP
7.2+
Tested up to
WP 6.8.6
Created
2010-05-20 (16y ago)

The WordPress Importer will import the following content from a WordPress export file: Posts, pages and other custom post types Comments and comment meta Custom fields and post meta Categories, tags and terms from custom taxonomies and term meta Authors For further information and instructions please see the documention on Importing Content. Filters The importer has a couple of filters to allow you to completely enable/block certain features: import_allow_create_users: return false if you only want to allow mapping to existing users import_allow_fetch_attachments: return false if you do not wish to allow importing and downloading of attachments import_attachment_size_limit: return an integer value for the maximum file size in bytes to save (default is 0, which is unlimited) There are also a few actions available to hook into: import_start: occurs after the export file has been uploaded and author import settings have been chosen import_end: called after the last output from the importer

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C