Wpallimport

    Dashboard / Vendors

    Products: 4
    Vulnerabilities: 6
    Known Exploited: 0
    0
    Critical Level Threats
    4
    High Level Threats
    2
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-57628

    WordPress WP All Import plugin <= 4.0.1 - SQL Injection vulnerability

    Last Modified: Jun 29, 2026
    Published: Jun 26, 2026

    CVE-2026-2830

    WP All Import <= 4.0.0 - Reflected Cross-Site Scripting via 'filepath'

    Last Modified: Apr 22, 2026
    Published: Mar 06, 2026

    CVE-2025-12733

    Import any XML, CSV or Excel File to WordPress (WP All Import) <= 3.9.6 - Authenticated (Administrator+) Remote Code Execution via Conditional Logic

    Last Modified: Apr 21, 2026
    Published: Nov 13, 2025

    CVE-2025-10001

    Import any XML, CSV or Excel File to WordPress <= 3.9.3 - Authenticated (Admin+) Limited Unsafe File Upload

    Last Modified: Apr 21, 2026
    Published: Sep 10, 2025

    CVE-2024-32431

    WordPress Import Users from CSV plugin <= 1.2 - PHP Object Injection

    Last Modified: Apr 28, 2026
    Published: Apr 15, 2024
    Items Per Page
    Wpallimport Vulnerabilities & Security CVEs | CVE-DB