[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fWD-JMGiOuj54kNY8Xj90zjPfdGyDCou2GRKjmqVpvSU":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":25,"download_link":26,"security_score":27,"vuln_count":28,"unpatched_count":29,"last_vuln_date":30,"fetched_at":31,"vulnerabilities":32,"developer":75,"crawl_stats":38,"alternatives":82,"analysis":182,"fingerprints":418},"advanced-google-recaptcha","Advanced Google reCAPTCHA","1.31","WebFactory","https:\u002F\u002Fprofiles.wordpress.org\u002Fwebfactory\u002F","\u003Cp>\u003Ca href=\"https:\u002F\u002Fgetwpcaptcha.com\u002F\" rel=\"nofollow ugc\">Advanced Google reCAPTCHA\u003C\u002Fa> protects your WordPress site from spam comments & brute force login attacks using captcha. This captcha plugin, quickly adds Google reCAPTCHA and other captcha tests to WordPress comment form, login form, and other forms.\u003C\u002Fp>\n\u003Cp>Using Advanced Google reCAPTCHA (most popular captcha on the market), you’ll be safe from spam comments and protect user accounts, WooCommerce, Easy Digital Downloads, BuddyPress and other forms from brute-force login attacks.\u003C\u002Fp>\n\u003Cp>reCaptcha works for:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Login Form\u003C\u002Fli>\n\u003Cli>Registration Form\u003C\u002Fli>\n\u003Cli>Reset Password Form\u003C\u002Fli>\n\u003Cli>Comment Form\u003C\u002Fli>\n\u003Cli>BuddyPress Form\u003C\u002Fli>\n\u003Cli>WooCommerce Form\u003C\u002Fli>\n\u003Cli>Easy Digital Downloads (EDD) Login Form\u003C\u002Fli>\n\u003Cli>Easy Digital Downloads (EDD) Registration Form\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Captcha uses these 3rd party libs:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Chart.js, 2017 Nick Downie, MIT\u003C\u002Fli>\n\u003Cli>DataTables, 2008-2017 SpryMedia Ltd, MIT\u003C\u002Fli>\n\u003Cli>moment.js, Tim Wood, Iskren Chernev, MIT\u003C\u002Fli>\n\u003Cli>SweetAlert 2, github.com\u002FSweetalert2\u002FSweetalert2, MIT\u003C\u002Fli>\n\u003Cli>tooltipster, www.heteroclito.fr\u002Fmodules\u002Ftooltipster\u002F, MIT\u003C\u002Fli>\n\u003C\u002Ful>\n","Captcha protection against spam comments & brute force login attacks using Google reCAPTCHA.",200000,2435450,96,428,"2025-12-02T20:29:00.000Z","6.9.4","4.9","5.2",[20,21,22,23,24],"captcha","comment-recaptcha","google-recaptcha","login-recaptcha","recaptcha","https:\u002F\u002Fgetwpcaptcha.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fadvanced-google-recaptcha.1.31.zip",98,3,0,"2025-03-27 19:32:14","2026-03-15T15:16:48.613Z",[33,49,63],{"id":34,"url_slug":35,"title":36,"description":37,"plugin_slug":4,"theme_slug":38,"affected_versions":39,"patched_in_version":40,"severity":41,"cvss_score":42,"cvss_vector":43,"vuln_type":44,"published_date":30,"updated_date":45,"references":46,"days_to_patch":48},"CVE-2025-2074","advanced-google-recaptcha-authenticated-subscriber-limited-sql-injection-via-ssearch-parameter","Advanced Google reCAPTCHA \u003C= 1.29 - Authenticated (Subscriber+) Limited SQL Injection via 'sSearch' Parameter","The Advanced Google reCAPTCHA plugin for WordPress is vulnerable to generic SQL Injection via the ‘sSearch’ parameter in all versions up to, and including, 1.29 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query.  This makes it possible for authenticated attackers, with Subscriber-level access and above, to append additional SQL queries into already existing queries, particularly when the plugin’s settings page hasn’t been visited and its welcome message has not been dismissed. This issue can be used to extract sensitive information from the database.",null,"\u003C=1.29","1.30","medium",5.3,"CVSS:3.1\u002FAV:N\u002FAC:H\u002FPR:L\u002FUI:N\u002FS:U\u002FC:H\u002FI:N\u002FA:N","Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')","2025-03-28 07:33:05",[47],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002F963a9b30-9194-4abc-aa69-eb333cbddef3?source=api-prod",1,{"id":50,"url_slug":51,"title":52,"description":53,"plugin_slug":4,"theme_slug":38,"affected_versions":54,"patched_in_version":55,"severity":41,"cvss_score":42,"cvss_vector":56,"vuln_type":57,"published_date":58,"updated_date":59,"references":60,"days_to_patch":62},"CVE-2025-1262","advanced-google-recaptcha-built-in-math-captcha-bypass","Advanced Google reCaptcha \u003C= 1.27 - Built-in Math CAPTCHA Bypass","The Advanced Google reCaptcha plugin for WordPress is vulnerable to CAPTCHA Bypass in versions up to, and including, 1.27 . This makes it possible for unauthenticated attackers to bypass the Built-in Math Captcha Verification.","\u003C=1.27","1.28","CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:N\u002FUI:N\u002FS:U\u002FC:N\u002FI:L\u002FA:N","Guessable CAPTCHA","2025-02-24 00:00:00","2025-02-25 12:41:29",[61],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002Fd553aab2-d441-46d6-9c01-5dcfdc48674f?source=api-prod",2,{"id":64,"url_slug":65,"title":66,"description":67,"plugin_slug":4,"theme_slug":38,"affected_versions":68,"patched_in_version":69,"severity":41,"cvss_score":42,"cvss_vector":56,"vuln_type":70,"published_date":71,"updated_date":72,"references":73,"days_to_patch":48},"CVE-2024-12034","advanced-google-recaptcha-brute-force-protection-ip-unblock","Advanced Google reCAPTCHA \u003C= 1.25 - Brute Force Protection IP Unblock","The Advanced Google reCAPTCHA plugin for WordPress is vulnerable to IP unblocking in all versions up to, and including, 1.25. This is due to the plugin not utilizing a strong unique key when generating an unblock request. This makes it possible for unauthenticated attackers to unblock their IP after being locked out due to too many bad password attempts","\u003C=1.25","1.26","Generation of Predictable Numbers or Identifiers","2024-12-23 00:00:00","2024-12-24 05:23:44",[74],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002F0fa7e6f6-92b2-494b-8c7a-76ba8213b610?source=api-prod",{"slug":76,"display_name":7,"profile_url":8,"plugin_count":77,"total_installs":78,"avg_security_score":27,"avg_patch_time_days":79,"trust_score":80,"computed_at":81},"webfactory",28,3492000,699,78,"2026-04-03T23:32:50.364Z",[83,103,122,140,163],{"slug":84,"name":85,"version":86,"author":87,"author_profile":88,"description":89,"short_description":90,"active_installs":91,"downloaded":92,"rating":93,"num_ratings":28,"last_updated":94,"tested_up_to":95,"requires_at_least":96,"requires_php":97,"tags":98,"homepage":101,"download_link":102,"security_score":93,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"advanced-google-recaptcha-for-woocommerce","reCaptcha for WooCommerce","1.0.7","Tanvirul Haque","https:\u002F\u002Fprofiles.wordpress.org\u002Ftanvirul\u002F","\u003Cp>Enable Google reCaptcha for WooCommerce Checkout, Login, Registration, and Reset Password Forms to protect your store against spam.\u003C\u002Fp>\n","Enable Google reCaptcha for WooCommerce Checkout, Login, Registration, and Reset Password Forms to protect your store against spam.",300,4313,100,"2025-09-13T05:24:00.000Z","6.8.5","4.8","7.4",[22,23,24,99,100],"recaptcha-checkout","woocommerce-recaptcha","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fadvanced-google-recaptcha-for-woocommerce\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fadvanced-google-recaptcha-for-woocommerce.1.0.7.zip",{"slug":104,"name":105,"version":106,"author":107,"author_profile":108,"description":109,"short_description":110,"active_installs":111,"downloaded":112,"rating":29,"num_ratings":29,"last_updated":113,"tested_up_to":95,"requires_at_least":114,"requires_php":115,"tags":116,"homepage":119,"download_link":120,"security_score":121,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"addonify-recaptcha-for-edd","Addonify – reCaptcha For EDD","1.0.14","Addonify","https:\u002F\u002Fprofiles.wordpress.org\u002Faddonify\u002F","\u003Cp>\u003Ca href=\"https:\u002F\u002Faddonify.com\u002F\" rel=\"nofollow ugc\">Addonify reCAPTCHA For EDD\u003C\u002Fa> is a simple plugin that adds Google reCaptcha in Easy Digital Downloads login and registration forms. Enable reCaptcha from Dashboard > EDD Setting > reCaptcha.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>FEATURES:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>✅ Add Google reCaptcha v2 in EDD login forms.\u003Cbr \u002F>\n✅ Add Google reCaptcha v2 in EDD register forms.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>KNOWN LIMITATIONS:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>❌ We have not tested this plugin in WP Multisite.\u003Cbr \u002F>\n❌ EDD login submit button is clickable even without passing reCaptcha validation.\u003Cbr \u002F>\n❌ EDD registration submit button is clickable even without passing reCaptcha validation.\u003Cbr \u002F>\n❌ Only supports Google reCaptcha v2 no-robot checkbox.\u003C\u002Fp>\n","Addonify reCAPTCHA for EDD is a simple plugin that adds Google reCaptcha in Easy Digital Downloads login and registration forms.",70,4468,"2025-03-25T05:31:00.000Z","5.0","7.4.0",[117,22,23,24,118],"edd-recaptcha","register-recaptcha","https:\u002F\u002Faddonify.com\u002Fdownloads\u002Frecaptcha-for-edd","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Faddonify-recaptcha-for-edd.1.0.14.zip",92,{"slug":123,"name":124,"version":125,"author":126,"author_profile":127,"description":128,"short_description":129,"active_installs":130,"downloaded":131,"rating":29,"num_ratings":29,"last_updated":132,"tested_up_to":133,"requires_at_least":114,"requires_php":134,"tags":135,"homepage":138,"download_link":139,"security_score":121,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"jkm-checkout-captcha-for-woo","Checkout Captcha for WooCommerce","1.0.1","Mohammed Jamsheed KM","https:\u002F\u002Fprofiles.wordpress.org\u002Fjamsheedkm\u002F","\u003Cp>\u003Cstrong>Checkout Captcha for WooCommerce\u003C\u002Fstrong> enhances your WooCommerce checkout, WordPress login, registration, and password reset forms by integrating reCAPTCHA verification, helping to prevent spam and bot transactions.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Multi-Form Support:\u003C\u002Fstrong> Seamlessly integrates reCAPTCHA in WooCommerce checkout, as well as WordPress login, registration, and password reset forms.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Guest Checkout Compatibility:\u003C\u002Fstrong> Offers the option to enable or disable reCAPTCHA for guest checkouts, enhancing user experience while maintaining security.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Payment Method Flexibility:\u003C\u002Fstrong> Skip reCAPTCHA verification for specific payment methods, enhancing the checkout experience and improving conversion rates (ideal for compatibility with \u003Ccode>Express Checkout\u003C\u002Fcode> plugin).\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Customizable Positioning:\u003C\u002Fstrong> Users can select different positions for displaying the reCAPTCHA on the checkout page, offering flexibility to suit various store layouts.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Additional Filters for Customization:\u003C\u002Fstrong> Provides hooks and filters to allow users to customize the positioning and functionality of the reCAPTCHA in their checkout process.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Google reCAPTCHA Configuration:\u003C\u002Fstrong> Easily configure reCAPTCHA using Google’s v2 by providing both the site key and secret key.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Test Functionality:\u003C\u002Fstrong> Test the reCAPTCHA setup directly from the admin panel after entering your API keys, ensuring everything works correctly before going live.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Key Features\u003C\u002Fh4>\n\u003Cp>\u003Cstrong>1. Multi-Form Integration:\u003C\u002Fstrong>\u003Cbr \u002F>\n– Add reCAPTCHA to WooCommerce checkout, WordPress login, registration, and password reset forms to enhance security.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>2. Guest Checkout Option:\u003C\u002Fstrong>\u003Cbr \u002F>\n– Configure reCAPTCHA to be optional for guest checkouts, balancing security and convenience.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>3. Payment Method Customization:\u003C\u002Fstrong>\u003Cbr \u002F>\n– Skip reCAPTCHA for selected payment methods, streamlining the checkout process for quicker transactions.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>4. Flexible Positioning:\u003C\u002Fstrong>\u003Cbr \u002F>\n– Choose the display position of reCAPTCHA on the checkout page, ensuring it fits seamlessly into your store’s layout.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>5. Advanced Filters and Hooks:\u003C\u002Fstrong>\u003Cbr \u002F>\n– Utilize additional hooks and filters for advanced customization, allowing developers to extend functionality easily.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>6. Google reCAPTCHA Setup:\u003C\u002Fstrong>\u003Cbr \u002F>\n– Configure reCAPTCHA using Google’s API by entering the site key and secret key, and validate the setup from the admin dashboard.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>7. Admin Testing Feature:\u003C\u002Fstrong>\u003Cbr \u002F>\n– Test reCAPTCHA functionality in the admin area to confirm proper integration before your customers encounter it.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>8. Dynamic Theme Compatibility:\u003C\u002Fstrong>\u003Cbr \u002F>\n– reCAPTCHA will be displayed in both light and dark themes as users select, providing an adaptive visual experience.\u003Cbr \u002F>\n– Users can choose the captcha theme (dark or light) to match their preferences.\u003C\u002Fp>\n\u003Ch3>External services\u003C\u002Fh3>\n\u003Cp>\u003Cstrong>Google reCAPTCHA\u003C\u002Fstrong>\u003Cbr \u002F>\nThis plugin integrates with Google reCAPTCHA to provide CAPTCHA verification during the checkout process, enhancing security and reducing spam.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\n\u003Cp>\u003Cstrong>What the service is used for:\u003C\u002Fstrong>\u003Cbr \u002F>\nGoogle reCAPTCHA is used to verify human users and prevent automated bots from completing the checkout process.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>What data is sent and when:\u003C\u002Fstrong>\u003Cbr \u002F>\nWhen the CAPTCHA verification is triggered (e.g., during form submission or checkout), the plugin sends the following data to Google reCAPTCHA’s servers:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>The CAPTCHA response token generated by the user’s interaction with the CAPTCHA widget (\u003Ccode>response\u003C\u002Fcode>).\u003C\u002Fli>\n\u003Cli>The secret key associated with your Google reCAPTCHA account (\u003Ccode>secret\u003C\u002Fcode>).\u003C\u002Fli>\n\u003Cli>Additional details such as locale settings may be included in the API call for displaying the CAPTCHA in the user’s preferred language.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Service Provider Details:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Google reCAPTCHA API: \u003Ca href=\"https:\u002F\u002Fpolicies.google.com\u002Fterms\" rel=\"nofollow ugc\">Terms of Service\u003C\u002Fa> | \u003Ca href=\"https:\u002F\u002Fpolicies.google.com\u002Fprivacy\" rel=\"nofollow ugc\">Privacy Policy\u003C\u002Fa>.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Domains involved:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ccode>https:\u002F\u002Fwww.google.com\u002Frecaptcha\u002Fapi\u002Fsiteverify\u003C\u002Fcode>\u003C\u002Fli>\n\u003Cli>\u003Ccode>https:\u002F\u002Fwww.google.com\u002Frecaptcha\u002Fapi.js\u003C\u002Fcode>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>By using this plugin, you agree to the terms and policies outlined by Google reCAPTCHA.\u003C\u002Fp>\n","Adds reCAPTCHA verification to WooCommerce checkout, login, registration, and password reset forms to prevent spam and bot transactions.",40,1050,"2025-01-25T17:44:00.000Z","6.7.5","5.6",[20,136,137,22,23],"checkout-captcha","checkout-security","https:\u002F\u002Fgithub.com\u002Fkmjamsheed0\u002Fjkm-checkout-captcha-for-woo","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fjkm-checkout-captcha-for-woo.1.0.1.zip",{"slug":141,"name":142,"version":143,"author":144,"author_profile":145,"description":146,"short_description":147,"active_installs":148,"downloaded":149,"rating":150,"num_ratings":151,"last_updated":152,"tested_up_to":153,"requires_at_least":154,"requires_php":155,"tags":156,"homepage":155,"download_link":161,"security_score":162,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"cf7-google-captcha-load-after-page","CF7 Google Captcha Load After Page","3.0.1","Amit bhalani","https:\u002F\u002Fprofiles.wordpress.org\u002Famit648\u002F","\u003Cp>This plugins use for your website speed improvement and decrease your page request. When you have used contact form 7 and insert you Google Captcha( v3 ) after this plugin active. When a user scrolls the page, then loading google captcha code.\u003C\u002Fp>\n\u003Cp>How to use this plugin?\u003C\u002Fp>\n\u003Col>\n\u003Cli>Download this Free CF7 Google Captcha Load After Page WordPress Plugin from above link.\u003C\u002Fli>\n\u003Cli>Connect to your WordPress dashboard (wp-admin) and navigate to Plugins >> Add New Plugin >> Upload Plugin >> Now upload the downloaded (CF7 Google Captcha Load After Page.zip) file >> Click on  Install Now.\u003C\u002Fli>\n\u003Cli>Once you install this plugin successfully, click on  Activate Plugin .\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Cp>Now you visit your site and scroll your site.\u003C\u002Fp>\n","This plugins use for your website speed improvement and decrease your page request. When you have used contact form 7 and insert you Google Captcha( v &hellip;",2000,21234,86,6,"2021-08-09T06:01:00.000Z","5.8.13","3.5","",[157,158,159,22,160],"cf7","cf7-google-captcha","google-captcha","google-recaptcha-v3","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcf7-google-captcha-load-after-page.zip",85,{"slug":164,"name":165,"version":166,"author":167,"author_profile":168,"description":169,"short_description":170,"active_installs":171,"downloaded":172,"rating":93,"num_ratings":28,"last_updated":173,"tested_up_to":174,"requires_at_least":114,"requires_php":175,"tags":176,"homepage":180,"download_link":181,"security_score":121,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"power-captcha-recaptcha","Power Captcha reCAPTCHA","1.1.0","Denis Alemán","https:\u002F\u002Fprofiles.wordpress.org\u002Fdenisaleman\u002F","\u003Cp>Protect your WordPress, WooCommerce, and Contact Form 7 forms from spam, brute-force attacks, and fake accounts using Google reCAPTCHA.\u003C\u002Fp>\n\u003Cp>Power Captcha reCAPTCHA supports 3 Google reCAPTCHA types integrated into 6 common WordPress forms, including login and comment forms, 7 WooCommerce forms, and Contact Form 7.\u003C\u002Fp>\n\u003Ch3>3 CAPTCHA Types\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>Score-based (v3) CAPTCHA.\u003C\u002Fstrong> Seamless detection.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>“I’m not a robot” CAPTCHA checkbox.\u003C\u002Fstrong> Verification requests with a challenge.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Invisible reCAPTCHA.\u003C\u002Fstrong> Improved, challenge-based CAPTCHA without a checkbox.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>6 WordPress Forms\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>Login form\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Register form\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Comment form\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Lost password form\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Reset password form\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Register form\u003C\u002Fstrong>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>7 WooCommerce Forms\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>Login form\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Register form\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Checkout form\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Review form\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Reset password form\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Lost password form\u003C\u002Fstrong>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Contact Form 7\u003C\u002Fh3>\n\u003Cp>As of version 1.0.7, Power Captcha reCAPTCHA integrates with Contact Form 7. You can easily add the Power Captcha reCAPTCHA field to your Contact Form 7 forms.\u003C\u002Fp>\n\u003Ch3>Activity Report\u003C\u002Fh3>\n\u003Cp>The Activity Report feature for the plugin provides users with a detailed overview of captcha interactions. It tracks and displays the number of solved, failed, and empty captchas, offering a daily breakdown to monitor performance trends. Stay informed with clear insights into your captcha performance.\u003C\u002Fp>\n","Protect WordPress\u002FWooCommerce\u002FContact Form 7 forms from spam, brute-force attacks, fake comments, accounts, or registrations with Google reCAPTCHA.",1000,6098,"2025-03-09T01:27:00.000Z","6.8.0","5.5",[177,20,178,22,179],"anti-spam-security","comment-form","login-security","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fpower-captcha-recaptcha\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fpower-captcha-recaptcha.1.1.0.zip",{"attackSurface":183,"codeSignals":365,"taintFlows":376,"riskAssessment":402,"analyzedAt":417},{"hooks":184,"ajaxHandlers":356,"restRoutes":362,"shortcodes":363,"cronEvents":364,"entryPointCount":48,"unprotectedCount":48},[185,189,194,197,200,203,206,210,214,218,222,225,228,231,234,237,239,242,246,249,252,255,258,261,263,265,269,272,275,277,281,284,286,290,293,295,299,302,304,308,311,313,317,321,325,327,330,334,338,342,345,348,350,353],{"type":186,"name":187,"callback":187,"file":188,"line":121},"action","admin_menu","advanced-google-recaptcha.php",{"type":190,"name":191,"callback":192,"priority":193,"file":188,"line":13},"filter","plugin_row_meta","plugin_meta_links",10,{"type":190,"name":195,"callback":195,"file":188,"line":196},"admin_footer_text",97,{"type":186,"name":198,"callback":199,"file":188,"line":93},"admin_init","register_settings",{"type":186,"name":201,"callback":201,"file":188,"line":202},"admin_notices",101,{"type":186,"name":204,"callback":204,"file":188,"line":205},"admin_enqueue_scripts",104,{"type":186,"name":207,"callback":208,"file":188,"line":209},"admin_action_wpcaptcha_install_template","install_template",107,{"type":186,"name":211,"callback":212,"file":188,"line":213},"admin_action_wpcaptcha_install_wp301","install_wp301",108,{"type":190,"name":215,"callback":216,"file":188,"line":217},"login_form","captcha_fields_print",115,{"type":190,"name":219,"callback":220,"file":188,"line":221},"login_form_middle","captcha_fields",116,{"type":190,"name":219,"callback":223,"file":188,"line":224},"login_scripts",117,{"type":186,"name":226,"callback":216,"file":188,"line":227},"woocommerce_login_form",118,{"type":186,"name":226,"callback":229,"file":188,"line":230},"login_form_fields",119,{"type":186,"name":226,"callback":232,"file":188,"line":233},"login_scripts_print",120,{"type":190,"name":235,"callback":220,"file":188,"line":236},"edd_login_fields_after",121,{"type":190,"name":235,"callback":232,"file":188,"line":238},122,{"type":186,"name":240,"callback":240,"file":188,"line":241},"login_enqueue_scripts",123,{"type":190,"name":243,"callback":244,"priority":193,"file":188,"line":245},"registration_errors","handle_captcha_wp_registration",128,{"type":186,"name":247,"callback":216,"file":188,"line":248},"register_form",129,{"type":186,"name":250,"callback":216,"file":188,"line":251},"lostpassword_form",134,{"type":186,"name":253,"callback":216,"file":188,"line":254},"resetpass_form",135,{"type":186,"name":256,"callback":216,"file":188,"line":257},"woocommerce_lostpassword_form",136,{"type":186,"name":259,"callback":216,"file":188,"line":260},"woocommerce_resetpassword_form",137,{"type":186,"name":256,"callback":232,"file":188,"line":262},138,{"type":186,"name":259,"callback":232,"file":188,"line":264},139,{"type":186,"name":266,"callback":267,"priority":193,"file":188,"line":268},"lostpassword_post","process_lost_password_form",140,{"type":186,"name":270,"callback":267,"priority":193,"file":188,"line":271},"validate_password_reset",141,{"type":186,"name":273,"callback":216,"file":188,"line":274},"comment_form_after_fields",146,{"type":186,"name":273,"callback":232,"file":188,"line":276},147,{"type":190,"name":278,"callback":279,"priority":193,"file":188,"line":280},"preprocess_comment","process_comment_form",148,{"type":186,"name":282,"callback":216,"file":188,"line":283},"woocommerce_register_form",153,{"type":186,"name":282,"callback":232,"file":188,"line":285},154,{"type":190,"name":287,"callback":288,"file":188,"line":289},"woocommerce_process_registration_errors","check_woo_register_form_validation",155,{"type":186,"name":291,"callback":216,"file":188,"line":292},"woocommerce_review_order_before_submit",160,{"type":186,"name":291,"callback":232,"file":188,"line":294},161,{"type":186,"name":296,"callback":297,"file":188,"line":298},"woocommerce_checkout_process","check_woo_checkout_form",162,{"type":190,"name":300,"callback":216,"file":188,"line":301},"edd_register_form_fields_before_submit",167,{"type":190,"name":300,"callback":232,"file":188,"line":303},168,{"type":186,"name":305,"callback":306,"file":188,"line":307},"edd_process_register_form","check_edd_register_form",169,{"type":186,"name":309,"callback":216,"file":188,"line":310},"bp_after_signup_profile_fields",174,{"type":186,"name":309,"callback":232,"file":188,"line":312},175,{"type":186,"name":314,"callback":315,"file":188,"line":316},"bp_signup_validate","process_buddypress_signup_form",176,{"type":186,"name":318,"callback":318,"priority":319,"file":188,"line":320},"login_head",9999,179,{"type":190,"name":322,"callback":323,"priority":319,"file":188,"line":324},"authenticate","wp_authenticate_username_password",182,{"type":186,"name":215,"callback":229,"file":188,"line":326},185,{"type":190,"name":328,"callback":229,"file":188,"line":329},"login_form_bottom",186,{"type":186,"name":331,"callback":332,"priority":193,"file":188,"line":333},"wp_login_failed","loginFailed",187,{"type":190,"name":335,"callback":336,"file":188,"line":337},"login_errors","login_error_message",188,{"type":186,"name":339,"callback":340,"file":188,"line":341},"plugins_loaded","run",236,{"type":186,"name":343,"callback":343,"file":188,"line":344},"init",237,{"type":186,"name":198,"callback":343,"file":346,"line":347},"wf-flyout\\wf-flyout.php",27,{"type":186,"name":204,"callback":204,"file":346,"line":349},73,{"type":186,"name":351,"callback":351,"file":346,"line":352},"admin_head",74,{"type":186,"name":354,"callback":354,"file":346,"line":355},"admin_footer",75,[357],{"action":358,"nopriv":359,"callback":360,"hasNonce":359,"hasCapCheck":359,"file":188,"line":361},"wpcaptcha_run_tool",false,"ajax_run_tool",111,[],[],[],{"dangerousFunctions":366,"sqlUsage":367,"outputEscaping":369,"fileOperations":29,"externalRequests":29,"nonceChecks":29,"capabilityChecks":29,"bundledLibraries":372},[],{"prepared":29,"raw":29,"locations":368},[],{"escaped":370,"rawEcho":29,"locations":371},72,[],[373],{"name":374,"version":38,"knownCves":375},"DataTables",[],[377,393],{"entryPoint":378,"graph":379,"unsanitizedCount":48,"severity":41},"tab_basic (interface\\tab_login_form.php:36)",{"nodes":380,"edges":391},[381,386],{"id":382,"type":383,"label":384,"file":385,"line":221},"n0","source","$_SERVER","interface\\tab_login_form.php",{"id":387,"type":388,"label":389,"file":385,"line":236,"wp_function":390},"n1","sink","echo() [XSS]","echo",[392],{"from":382,"to":387,"sanitized":359},{"entryPoint":394,"graph":395,"unsanitizedCount":48,"severity":401},"\u003Ctab_login_form> (interface\\tab_login_form.php:0)",{"nodes":396,"edges":399},[397,398],{"id":382,"type":383,"label":384,"file":385,"line":221},{"id":387,"type":388,"label":389,"file":385,"line":236,"wp_function":390},[400],{"from":382,"to":387,"sanitized":359},"low",{"summary":403,"deductions":404},"The \"advanced-google-recaptcha\" v1.31 plugin exhibits a mixed security posture. On the positive side, its code analysis reveals robust practices in handling SQL queries and output escaping, with 100% of both utilizing prepared statements and proper escaping respectively.  There are no identified file operations or external HTTP requests, and no bundled libraries appear to be flagged as dangerous.  However, significant concerns arise from its attack surface and vulnerability history. The presence of one unprotected AJAX handler represents a direct entry point for potential malicious activity.  Furthermore, the plugin has a history of three medium-severity vulnerabilities, including SQL Injection, Guessable CAPTCHA, and Generation of Predictable Numbers or Identifiers. While currently unpatched CVEs are zero, the recurring nature of these vulnerability types suggests potential underlying weaknesses that might resurface in future versions if not adequately addressed. The taint analysis, while not indicating critical or high severity flows, did identify two flows with unsanitized paths, which is a cause for concern.",[405,408,411,414],{"reason":406,"points":407},"Unprotected AJAX handler",8,{"reason":409,"points":410},"Multiple medium severity CVEs in history",15,{"reason":412,"points":413},"Taint analysis shows unsanitized paths",5,{"reason":415,"points":416},"Missing nonce checks on AJAX",7,"2026-03-16T17:03:15.759Z",{"wat":419,"direct":434},{"assetPaths":420,"generatorPatterns":426,"scriptPaths":427,"versionParams":428},[421,422,423,424,425],"\u002Fwp-content\u002Fplugins\u002Fadvanced-google-recaptcha\u002Fwf-flyout\u002Fcss\u002Fwf-flyout.css","\u002Fwp-content\u002Fplugins\u002Fadvanced-google-recaptcha\u002Fwf-flyout\u002Fjs\u002Fwf-flyout.js","\u002Fwp-content\u002Fplugins\u002Fadvanced-google-recaptcha\u002Fassets\u002Fcss\u002Fadmin-style.css","\u002Fwp-content\u002Fplugins\u002Fadvanced-google-recaptcha\u002Fassets\u002Fjs\u002Fadmin-script.js","\u002Fwp-content\u002Fplugins\u002Fadvanced-google-recaptcha\u002Fassets\u002Fjs\u002Ffrontend-script.js",[],[422,424,425],[429,430,431,432,433],"advanced-google-recaptcha\u002Fwf-flyout\u002Fcss\u002Fwf-flyout.css?ver=","advanced-google-recaptcha\u002Fwf-flyout\u002Fjs\u002Fwf-flyout.js?ver=","advanced-google-recaptcha\u002Fassets\u002Fcss\u002Fadmin-style.css?ver=","advanced-google-recaptcha\u002Fassets\u002Fjs\u002Fadmin-script.js?ver=","advanced-google-recaptcha\u002Fassets\u002Fjs\u002Ffrontend-script.js?ver=",{"cssClasses":435,"htmlComments":443,"htmlAttributes":446,"restEndpoints":450,"jsGlobals":452,"shortcodeOutput":454},[436,437,438,439,440,441,442],"wpcaptcha-login-form","wpcaptcha-register-form","wpcaptcha-comment-form","wpcaptcha-lostpassword-form","wpcaptcha-resetpass-form","wpcaptcha-checkout-form","wf-flyout-container",[444,445],"\u003C!-- Added by Advanced Google reCAPTCHA plugin -->","\u003C!-- Added by WebFactory Ltd -->",[447,448,449],"data-wpcaptcha-sitekey","data-wpcaptcha-theme","data-wpcaptcha-size",[451],"\u002Fwp-json\u002Fwpcaptcha\u002Fv1\u002Fget_settings",[453],"wpcaptcha_vars",[]]