[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fH6Vf2OlQYp1bLJJ_u24ifMyhouPIz-UZFYZ2EzR7wU4":3,"$fFW7oadtHCBGsDMvRW5HTn2Bpyfz7I8UODfKwr2XLuOw":602},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":25,"download_link":26,"security_score":27,"vuln_count":28,"unpatched_count":29,"last_vuln_date":30,"fetched_at":31,"vulnerabilities":32,"developer":50,"crawl_stats":38,"alternatives":53,"analysis":143,"fingerprints":576},"affiliate-ads-builder-for-clickbank-products","Affiliate Ads for Clickbank Products","2.2","dactum","https:\u002F\u002Fprofiles.wordpress.org\u002Fdactum\u002F","\u003Cp>At last, a fully featured RESPONSIVE Clickbank Affiliate Ad widget that comes in different formats.\u003C\u002Fp>\n\u003Cp>Different formats to choose from:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>TEXT Ads \u003C\u002Fli>\n\u003Cli>Product Cover (Image) Ads\u003C\u002Fli>\n\u003Cli>Banner Ads\u003C\u002Fli>\n\u003Cli>Carousel (Scrolling) Ads\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Please check the DEMO in our website\u003Cbr \u002F>\n\u003Ca href=\"http:\u002F\u002FMyCBGenie.com\u002Fclickbank-ads\u002F\" title=\"DEMO\" rel=\"nofollow ugc\">MyCBGenie\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch3>Arbitrary section\u003C\u002Fh3>\n","Display highly profitable affiliate ads for Clickbank products. Simply drag MCG: Affiiate Ads widget on to your desired widget!",30,15353,74,3,"2022-06-23T16:12:00.000Z","6.0.11","3.0.1","",[20,21,22,23,24],"click-bank","clickbank","clickbank-ads","clickbank-products","clickbank-script","http:\u002F\u002Fmycbgenie.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Faffiliate-ads-builder-for-clickbank-products.2.2.zip",85,1,0,"2017-11-14 00:00:00","2026-04-06T09:54:40.288Z",[33],{"id":34,"url_slug":35,"title":36,"description":37,"plugin_slug":4,"theme_slug":38,"affected_versions":39,"patched_in_version":40,"severity":41,"cvss_score":42,"cvss_vector":43,"vuln_type":44,"published_date":30,"updated_date":45,"references":46,"days_to_patch":48,"patch_diff_files":49,"patch_trac_url":38},"CVE-2017-18011","affiliate-ads-for-clickbank-products-stored-cross-site-scripting","Affiliate Ads for Clickbank Products \u003C 1.7 - Stored Cross-Site Scripting","The Affiliate Ads for Clickbank Products plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'border_color' parameter found in the text_ads_ajax.php file in versions up to to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.",null,"\u003C=1.6","1.7","medium",6.4,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:L\u002FUI:N\u002FS:C\u002FC:L\u002FI:L\u002FA:N","Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","2024-01-22 19:56:02",[47],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002F2f66f2ae-af54-4dfa-9cd2-c7ff3a3e865e?source=api-prod",2261,[],{"slug":7,"display_name":7,"profile_url":8,"plugin_count":28,"total_installs":11,"avg_security_score":27,"avg_patch_time_days":48,"trust_score":51,"computed_at":52},69,"2026-04-06T12:57:03.892Z",[54,74,91,106,123],{"slug":55,"name":56,"version":57,"author":58,"author_profile":59,"description":60,"short_description":61,"active_installs":62,"downloaded":63,"rating":64,"num_ratings":28,"last_updated":65,"tested_up_to":66,"requires_at_least":17,"requires_php":18,"tags":67,"homepage":72,"download_link":73,"security_score":64,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"cb-order-save-wc","Save ClickBank Order Details for WooCommerce","1.0.0","Webytude","https:\u002F\u002Fprofiles.wordpress.org\u002Frarthemes\u002F","\u003Cp>This plugin was developed to solve the issue of connecting ClickBank order details with WooCommerce efficiently and accurately because this is a feature that ClickBank does not provide.\u003C\u002Fp>\n\u003Cp>This plugin was created to bridge the gap between ClickBank and WooCommerce, eliminating the need for manual synchronization of order details. This seamless integration is highly accurate, saving you both time and energy.\u003C\u002Fp>\n\u003Cp>Synchronizing ClickBank orders and customer information with WooCommerce is made easy for ClickBank vendors by using “Save ClickBank Order Details for WooCommerce” plugin.\u003C\u002Fp>\n\u003Cp>WooCommerce can be utilized by ClickBank vendors to keep their ClickBank orders and customer information in sync.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>How It Works:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>Once the integration is done, When placing any order by the customer on ClickBank then the ClickBank API sent a request to the “Save ClickBank Order Details for WooCommerce” plugin and gets a notification to update order details.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>How It Help:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>If you are running your physical store on ClickBank then you need to manage your shipping and delivery. Using “Save ClickBank Order Details for WooCommerce” and WordPress WooCommers help you to manage your shipping and delivery to your important customer.\u003C\u002Fp>\n","This plugin allows you to synchronize ClickBank orders and customers information with WooCommerce orders and customers information.",10,1445,100,"2025-07-29T10:05:00.000Z","6.8.5",[21,68,69,70,71],"clickbank-marketplace","clickbank-wordpress-plugin","marketplace-plugin","woocommerce","https:\u002F\u002Fgithub.com\u002Fwebytude\u002Fcb-order-save-wc","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcb-order-save-wc.1.0.0.zip",{"slug":75,"name":76,"version":77,"author":78,"author_profile":79,"description":80,"short_description":81,"active_installs":62,"downloaded":82,"rating":83,"num_ratings":84,"last_updated":18,"tested_up_to":18,"requires_at_least":18,"requires_php":18,"tags":85,"homepage":88,"download_link":89,"security_score":64,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":90},"cbearnings","Plugin: CBEARNING","1.0","prakash.m","https:\u002F\u002Fprofiles.wordpress.org\u002Fprakashm-1\u002F","\u003Cp>CBEARNING allows you to import the ENTIRE ClickBank Marketplace into your WordPress blog in seconds while\u003Cbr \u002F>\nother ClickBank plugins require you to manually enter ClickBank products one by one. want professional version check \u003Ca href=\"http:\u002F\u002Fmagento.ifyouknowit.com\" rel=\"nofollow ugc\">Go pro\u003C\u002Fa>\u003C\u002Fp>\n","CBEARNING allows you to import the ENTIRE ClickBank Marketplace into your WordPress blog in seconds while",1698,60,2,[86,87],"cbearning","clickbank-affiliate","http:\u002F\u002Fwww.ifyouknowit.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcbearnings.zip","2026-03-15T10:48:56.248Z",{"slug":92,"name":93,"version":94,"author":95,"author_profile":96,"description":18,"short_description":97,"active_installs":62,"downloaded":98,"rating":13,"num_ratings":14,"last_updated":99,"tested_up_to":100,"requires_at_least":101,"requires_php":18,"tags":102,"homepage":104,"download_link":105,"security_score":27,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"clickbank-sale-notification","ClickBank Sale Notification","0.120508","poer","https:\u002F\u002Fprofiles.wordpress.org\u002Fpoer\u002F","ClickBank Sale Notification plugin will automatically send you an email notification every time there is a transaction in your ClickBank account.",5403,"2012-05-09T06:15:00.000Z","3.3.2","2.5",[21,103],"sale-notification","http:\u002F\u002Fexclusivewp.com\u002Fclickbank-sale-notification","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fclickbank-sale-notification.zip",{"slug":107,"name":108,"version":77,"author":109,"author_profile":110,"description":111,"short_description":112,"active_installs":62,"downloaded":113,"rating":83,"num_ratings":84,"last_updated":114,"tested_up_to":115,"requires_at_least":116,"requires_php":18,"tags":117,"homepage":18,"download_link":122,"security_score":27,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"html-landing-page","HTML Landing Page","fatkitty","https:\u002F\u002Fprofiles.wordpress.org\u002Ffatkitty\u002F","\u003Cp>Allows you to upload customized HTML files to display as a landing page. Ideal for internet marketers promoting multiple products from the same site. Ideal for landing pages from themeforest, etc.\u003C\u002Fp>\n","Allows you to upload customized HTML files to display as a landing page. Ideal for internet marketers promoting multiple products from the same site.",8764,"2012-12-07T20:16:00.000Z","3.4.2","3.3",[118,119,21,120,121],"affiliate-marketing","cj","commisison-junction","landing-page","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fhtml-landing-page.zip",{"slug":124,"name":125,"version":77,"author":126,"author_profile":127,"description":128,"short_description":129,"active_installs":62,"downloaded":130,"rating":64,"num_ratings":28,"last_updated":131,"tested_up_to":132,"requires_at_least":17,"requires_php":18,"tags":133,"homepage":141,"download_link":142,"security_score":27,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"istokmedia","istOK MEdia Plugin","jaroslawistok","https:\u002F\u002Fprofiles.wordpress.org\u002Fjaroslawistok\u002F","\u003Cp>Warum Cent Beträge auf die Klicks verdienen wenn man bei diesem Modell, direkt anteilmässig von den hohen Clickbank Ausschüttungen profitieren kann, Testen Sie es 2-3 Monate und sehen selbst. Sie müssen sich nicht um die Wasserzeichen versehenen und auffindbaren Banner kümmern, auch nicht um die Programm Aktualisierungen, Starts und Endungen. Über 500 Werbe Banner werden jetzt im System rotiert.\u003C\u002Fp>\n\u003Cp>Sie werden automatisch über Einblendungen, Klicks und Verkäufe informiert.\u003C\u002Fp>\n\u003Cp>Bitte als Partner (Publisher) bei istOK MEdia registrieren.\u003C\u002Fp>\n\u003Cp>Danach Einlogen und unter: Integrations Tools den Code erstellen (Auch Mischvarianten möglich bei gleicher Bannergrösse – z.B. Grafik und Textgrafik). Momentan sind 468×60, 728×90 und 250×250 Grafik Banner und Text oder Text+Bild in Allen Formaten vorhanden.\u003C\u002Fp>\n\u003Cp>Den erstellten Code Bitte unter Design\u002FWidgets z.B. Im Seitenmenü platzieren oder sonstwo auf der Seite. Um die Werbung mittig zu zentrieren setzen Sie  vor und  nachdem Code ein.\u003C\u002Fp>\n\u003Cp>Um die Werbeblocker der Seiten Betrachter zu kontrollieren schauen Sie unter: http:\u002F\u002Fantiblock.org\u002F\u003C\u002Fp>\n\u003Cp>Auf die angegebene Paypal Email Adresse werden Verkäufe vergütet und zwar im 3 Phasen Modell:\u003C\u002Fp>\n\u003Cp>-Anlauf mit Ratio 60% zu 40% -danach 70% zu 30% -Schliesslich 80% zu 20%\u003C\u002Fp>\n\u003Cp>Immer zu Ihrem Günsten. Phasen werden im Mailing angekündigt.\u003C\u002Fp>\n\u003Cp>Testen Sie es, es lohnt sich :o)\u003C\u002Fp>\n\u003Cp>See also http:\u002F\u002Fwww.istok.de\u002F\u003C\u002Fp>\n","istOK MEdia Bannerwerbung für Deutsches ClickBank zum Geld Verdienen (wie früher Digibux)",1424,"2015-08-28T14:40:00.000Z","4.2.39",[134,21,135,136,137,138,139,140],"banner","deutsch","digibux","geld-verdienen","german","monetarisierung","werbung","http:\u002F\u002Fwww.istok.de\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fistokmedia.zip",{"attackSurface":144,"codeSignals":217,"taintFlows":480,"riskAssessment":560,"analyzedAt":575},{"hooks":145,"ajaxHandlers":196,"restRoutes":197,"shortcodes":198,"cronEvents":215,"entryPointCount":216,"unprotectedCount":29},[146,152,158,162,166,169,172,175,177,180,184,188,192],{"type":147,"name":148,"callback":149,"file":150,"line":151},"action","widgets_init","fn_mycbgenie_ads_widget_plugin","mycbgenie_ad_widget.inc.php",601,{"type":153,"name":154,"callback":155,"file":156,"line":157},"filter","the_content","mycbgenie_ads_single_post_content_filter","mycbgenie_clickbank_affiliate_ads.php",38,{"type":147,"name":159,"callback":160,"priority":62,"file":156,"line":161},"woocommerce_before_single_product","mycbgenie_ads_woo_single_product_content_top_filter",51,{"type":147,"name":163,"callback":164,"priority":64,"file":156,"line":165},"woocommerce_after_single_product_summary","mycbgenie_ads_woo_single_product_content_bottom_filter",52,{"type":147,"name":167,"callback":160,"priority":28,"file":156,"line":168},"woocommerce_before_shop_loop",57,{"type":147,"name":170,"callback":160,"priority":28,"file":156,"line":171},"woocommerce_archive_description",62,{"type":147,"name":173,"callback":160,"priority":28,"file":156,"line":174},"woocommerce_before_main_content",66,{"type":147,"name":176,"callback":164,"priority":64,"file":156,"line":13},"woocommerce_after_main_content",{"type":147,"name":178,"callback":164,"priority":64,"file":156,"line":179},"woocommerce_after_shop_loop",79,{"type":147,"name":181,"callback":182,"file":156,"line":183},"admin_enqueue_scripts","mycbgenie_admin_settings_script",107,{"type":147,"name":185,"callback":186,"file":156,"line":187},"admin_menu","mycbgenie_ads_sidebar_menu",118,{"type":147,"name":189,"callback":190,"file":156,"line":191},"admin_init","mycbgenie_ads_version_update",122,{"type":153,"name":193,"callback":194,"file":156,"line":195},"widget_text","do_shortcode",129,[],[],[199,203,207,211],{"tag":200,"callback":201,"file":156,"line":202},"mycbgenie_text_ad","mycbgenie_text_ad_shortcode",124,{"tag":204,"callback":205,"file":156,"line":206},"mycbgenie_carousel_ad","mycbgenie_carousel_ad_shortcode",125,{"tag":208,"callback":209,"file":156,"line":210},"mycbgenie_image_ad","mycbgenie_image_ad_shortcode",126,{"tag":212,"callback":213,"file":156,"line":214},"mycbgenie_banner_ad","mycbgenie_banner_ad_shortcode",127,[],4,{"dangerousFunctions":218,"sqlUsage":219,"outputEscaping":221,"fileOperations":28,"externalRequests":28,"nonceChecks":29,"capabilityChecks":84,"bundledLibraries":476},[],{"prepared":29,"raw":29,"locations":220},[],{"escaped":222,"rawEcho":223,"locations":224},68,145,[225,229,231,232,233,234,235,237,240,242,245,246,247,248,250,252,254,256,258,260,263,265,266,268,270,272,274,276,277,279,281,283,285,287,289,290,291,293,295,296,297,298,299,301,303,305,306,308,310,312,313,315,316,318,319,321,323,325,326,327,329,331,333,334,336,338,340,342,343,345,347,348,350,352,353,355,357,358,360,362,363,365,367,369,371,373,375,376,378,380,381,383,385,387,388,390,392,394,396,397,399,401,402,404,406,408,409,411,413,415,416,418,420,422,423,425,427,428,430,432,434,435,437,439,441,442,443,445,447,449,451,453,456,458,460,461,462,464,467,468,470,471,472,473,475],{"file":226,"line":227,"context":228},"banner_ads_ajax.php",55,"raw output",{"file":226,"line":230,"context":228},56,{"file":226,"line":168,"context":228},{"file":226,"line":168,"context":228},{"file":226,"line":174,"context":228},{"file":226,"line":222,"context":228},{"file":236,"line":216,"context":228},"footer_mcg.inc.php",{"file":238,"line":239,"context":228},"general.inc.php",525,{"file":238,"line":241,"context":228},536,{"file":243,"line":244,"context":228},"image_ads.inc.php",28,{"file":243,"line":195,"context":228},{"file":243,"line":195,"context":228},{"file":243,"line":195,"context":228},{"file":243,"line":249,"context":228},132,{"file":243,"line":251,"context":228},133,{"file":243,"line":253,"context":228},134,{"file":243,"line":255,"context":228},136,{"file":243,"line":257,"context":228},137,{"file":243,"line":259,"context":228},148,{"file":261,"line":262,"context":228},"image_ad_ajax.php",46,{"file":261,"line":264,"context":228},184,{"file":261,"line":264,"context":228},{"file":261,"line":267,"context":228},187,{"file":261,"line":269,"context":228},188,{"file":261,"line":271,"context":228},189,{"file":261,"line":273,"context":228},192,{"file":261,"line":275,"context":228},194,{"file":261,"line":275,"context":228},{"file":261,"line":278,"context":228},195,{"file":261,"line":280,"context":228},212,{"file":261,"line":282,"context":228},213,{"file":150,"line":284,"context":228},99,{"file":150,"line":286,"context":228},102,{"file":150,"line":288,"context":228},103,{"file":150,"line":288,"context":228},{"file":150,"line":288,"context":228},{"file":150,"line":292,"context":228},108,{"file":150,"line":294,"context":228},109,{"file":150,"line":294,"context":228},{"file":150,"line":202,"context":228},{"file":150,"line":206,"context":228},{"file":150,"line":206,"context":228},{"file":150,"line":300,"context":228},138,{"file":150,"line":302,"context":228},141,{"file":150,"line":304,"context":228},142,{"file":150,"line":304,"context":228},{"file":150,"line":307,"context":228},153,{"file":150,"line":309,"context":228},156,{"file":150,"line":311,"context":228},161,{"file":150,"line":311,"context":228},{"file":150,"line":314,"context":228},164,{"file":150,"line":314,"context":228},{"file":150,"line":317,"context":228},171,{"file":150,"line":317,"context":228},{"file":150,"line":320,"context":228},172,{"file":150,"line":322,"context":228},180,{"file":150,"line":324,"context":228},183,{"file":150,"line":264,"context":228},{"file":150,"line":264,"context":228},{"file":150,"line":328,"context":228},205,{"file":150,"line":330,"context":228},208,{"file":150,"line":332,"context":228},209,{"file":150,"line":332,"context":228},{"file":150,"line":335,"context":228},210,{"file":150,"line":337,"context":228},216,{"file":150,"line":339,"context":228},219,{"file":150,"line":341,"context":228},220,{"file":150,"line":341,"context":228},{"file":150,"line":344,"context":228},241,{"file":150,"line":346,"context":228},242,{"file":150,"line":346,"context":228},{"file":150,"line":349,"context":228},257,{"file":150,"line":351,"context":228},258,{"file":150,"line":351,"context":228},{"file":150,"line":354,"context":228},269,{"file":150,"line":356,"context":228},270,{"file":150,"line":356,"context":228},{"file":150,"line":359,"context":228},286,{"file":150,"line":361,"context":228},287,{"file":150,"line":361,"context":228},{"file":150,"line":364,"context":228},300,{"file":150,"line":366,"context":228},301,{"file":150,"line":368,"context":228},302,{"file":150,"line":370,"context":228},316,{"file":150,"line":372,"context":228},319,{"file":150,"line":374,"context":228},320,{"file":150,"line":374,"context":228},{"file":150,"line":377,"context":228},329,{"file":150,"line":379,"context":228},334,{"file":150,"line":379,"context":228},{"file":150,"line":382,"context":228},343,{"file":150,"line":384,"context":228},349,{"file":150,"line":386,"context":228},353,{"file":150,"line":386,"context":228},{"file":150,"line":389,"context":228},355,{"file":150,"line":391,"context":228},362,{"file":150,"line":393,"context":228},367,{"file":150,"line":395,"context":228},368,{"file":150,"line":395,"context":228},{"file":150,"line":398,"context":228},369,{"file":150,"line":400,"context":228},377,{"file":150,"line":400,"context":228},{"file":150,"line":403,"context":228},378,{"file":150,"line":405,"context":228},379,{"file":150,"line":407,"context":228},385,{"file":150,"line":407,"context":228},{"file":150,"line":410,"context":228},386,{"file":150,"line":412,"context":228},387,{"file":150,"line":414,"context":228},393,{"file":150,"line":414,"context":228},{"file":150,"line":417,"context":228},394,{"file":150,"line":419,"context":228},395,{"file":150,"line":421,"context":228},403,{"file":150,"line":421,"context":228},{"file":150,"line":424,"context":228},405,{"file":150,"line":426,"context":228},413,{"file":150,"line":426,"context":228},{"file":150,"line":429,"context":228},414,{"file":150,"line":431,"context":228},415,{"file":150,"line":433,"context":228},421,{"file":150,"line":433,"context":228},{"file":150,"line":436,"context":228},423,{"file":150,"line":438,"context":228},432,{"file":150,"line":440,"context":228},433,{"file":150,"line":440,"context":228},{"file":150,"line":440,"context":228},{"file":150,"line":444,"context":228},530,{"file":150,"line":446,"context":228},551,{"file":150,"line":448,"context":228},564,{"file":150,"line":450,"context":228},573,{"file":150,"line":452,"context":228},580,{"file":454,"line":455,"context":228},"settings.inc.php",65,{"file":454,"line":457,"context":228},67,{"file":454,"line":459,"context":228},345,{"file":454,"line":384,"context":228},{"file":454,"line":389,"context":228},{"file":454,"line":463,"context":228},419,{"file":465,"line":466,"context":228},"text_ads_ajax.php",128,{"file":465,"line":466,"context":228},{"file":465,"line":469,"context":228},131,{"file":465,"line":251,"context":228},{"file":465,"line":255,"context":228},{"file":465,"line":304,"context":228},{"file":465,"line":474,"context":228},170,{"file":465,"line":317,"context":228},[477],{"name":478,"version":38,"knownCves":479},"jQuery",[],[481,500,514,523,536,551],{"entryPoint":482,"graph":483,"unsanitizedCount":28,"severity":41},"\u003Credirect.inc> (redirect.inc.php:0)",{"nodes":484,"edges":497},[485,491],{"id":486,"type":487,"label":488,"file":489,"line":490},"n0","source","$_GET","redirect.inc.php",27,{"id":492,"type":493,"label":494,"file":489,"line":495,"wp_function":496},"n1","sink","wp_redirect() [Open Redirect]",39,"wp_redirect",[498],{"from":486,"to":492,"sanitized":499},false,{"entryPoint":501,"graph":502,"unsanitizedCount":512,"severity":513},"\u003Cbanner_ads_ajax> (banner_ads_ajax.php:0)",{"nodes":503,"edges":510},[504,507],{"id":486,"type":487,"label":505,"file":226,"line":506},"$_POST (x5)",9,{"id":492,"type":493,"label":508,"file":226,"line":227,"wp_function":509},"echo() [XSS]","echo",[511],{"from":486,"to":492,"sanitized":499},5,"low",{"entryPoint":515,"graph":516,"unsanitizedCount":506,"severity":513},"\u003Cimage_ad_ajax> (image_ad_ajax.php:0)",{"nodes":517,"edges":521},[518,520],{"id":486,"type":487,"label":519,"file":261,"line":490},"$_POST (x9)",{"id":492,"type":493,"label":508,"file":261,"line":264,"wp_function":509},[522],{"from":486,"to":492,"sanitized":499},{"entryPoint":524,"graph":525,"unsanitizedCount":535,"severity":513},"mycbgenie_show_ad_tabs (settings.inc.php:79)",{"nodes":526,"edges":533},[527,530],{"id":486,"type":487,"label":528,"file":454,"line":529},"$_POST (x15)",89,{"id":492,"type":493,"label":531,"file":454,"line":187,"wp_function":532},"update_option() [Settings Manipulation]","update_option",[534],{"from":486,"to":492,"sanitized":499},15,{"entryPoint":537,"graph":538,"unsanitizedCount":29,"severity":513},"\u003Csettings.inc> (settings.inc.php:0)",{"nodes":539,"edges":547},[540,541,542,545],{"id":486,"type":487,"label":528,"file":454,"line":529},{"id":492,"type":493,"label":531,"file":454,"line":187,"wp_function":532},{"id":543,"type":487,"label":544,"file":454,"line":529},"n2","$_POST (x10)",{"id":546,"type":493,"label":508,"file":454,"line":459,"wp_function":509},"n3",[548,550],{"from":486,"to":492,"sanitized":549},true,{"from":543,"to":546,"sanitized":549},{"entryPoint":552,"graph":553,"unsanitizedCount":512,"severity":513},"\u003Ctext_ads_ajax> (text_ads_ajax.php:0)",{"nodes":554,"edges":558},[555,557],{"id":486,"type":487,"label":505,"file":465,"line":556},34,{"id":492,"type":493,"label":508,"file":465,"line":466,"wp_function":509},[559],{"from":486,"to":492,"sanitized":499},{"summary":561,"deductions":562},"The plugin 'affiliate-ads-builder-for-clickbank-products' v2.2 exhibits a mixed security posture. While it demonstrates good practices by using prepared statements for all SQL queries and has no known currently unpatched vulnerabilities, several areas raise concerns. The static analysis reveals a significant portion of output is not properly escaped (32%), increasing the risk of Cross-Site Scripting (XSS) vulnerabilities. Furthermore, the presence of 5 unsanitized paths in the taint analysis, although not flagged as critical or high severity, indicates potential for input manipulation or injection flaws. The lack of nonce checks, combined with only two capability checks across all entry points, suggests that many actions might not be adequately protected against unauthorized access or privilege escalation.",[563,565,568,570,573],{"reason":564,"points":535},"Low output escaping percentage",{"reason":566,"points":567},"Unsanitized paths in taint analysis",8,{"reason":569,"points":62},"No nonce checks on entry points",{"reason":571,"points":572},"Few capability checks on entry points",7,{"reason":574,"points":512},"Historical XSS vulnerability type","2026-03-16T22:26:51.194Z",{"wat":577,"direct":588},{"assetPaths":578,"generatorPatterns":581,"scriptPaths":582,"versionParams":585},[579,580],"\u002Fwp-content\u002Fplugins\u002Faffiliate-ads-builder-for-clickbank-products\u002Fjs\u002Fdashboard_settings.js","\u002Fwp-content\u002Fplugins\u002Faffiliate-ads-builder-for-clickbank-products\u002Fjs\u002Fbanner_ads.js",[],[583,584],"js\u002Fdashboard_settings.js","js\u002Fbanner_ads.js",[586,587],"affiliate-ads-builder-for-clickbank-products\u002Fjs\u002Fdashboard_settings.js?ver=","affiliate-ads-builder-for-clickbank-products\u002Fjs\u002Fbanner_ads.js?ver=",{"cssClasses":589,"htmlComments":591,"htmlAttributes":592,"restEndpoints":593,"jsGlobals":594,"shortcodeOutput":597},[590],"mcg_banner_div_",[],[],[],[595,596],"mycbgenie_image_ads_vars","load_banner_ad_script",[598,599,600,601],"[mycbgenie_text_ad]","[mycbgenie_carousel_ad]","[mycbgenie_image_ad]","[mycbgenie_banner_ad]",{"slug":4,"current_version":6,"total_versions":603,"versions":604},11,[605,610,617,624,631,638,644,652,660,668,676],{"version":6,"download_url":26,"svn_tag_url":606,"released_at":38,"has_diff":499,"diff_files_changed":607,"diff_lines":38,"trac_diff_url":608,"vulnerabilities":609,"is_current":549},"https:\u002F\u002Fplugins.svn.wordpress.org\u002Faffiliate-ads-builder-for-clickbank-products\u002Ftags\u002F2.2\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Faffiliate-ads-builder-for-clickbank-products%2Ftags%2F2.1&new_path=%2Faffiliate-ads-builder-for-clickbank-products%2Ftags%2F2.2",[],{"version":611,"download_url":612,"svn_tag_url":613,"released_at":38,"has_diff":499,"diff_files_changed":614,"diff_lines":38,"trac_diff_url":615,"vulnerabilities":616,"is_current":499},"2.1","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Faffiliate-ads-builder-for-clickbank-products.2.1.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Faffiliate-ads-builder-for-clickbank-products\u002Ftags\u002F2.1\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Faffiliate-ads-builder-for-clickbank-products%2Ftags%2F2.0&new_path=%2Faffiliate-ads-builder-for-clickbank-products%2Ftags%2F2.1",[],{"version":618,"download_url":619,"svn_tag_url":620,"released_at":38,"has_diff":499,"diff_files_changed":621,"diff_lines":38,"trac_diff_url":622,"vulnerabilities":623,"is_current":499},"2.0","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Faffiliate-ads-builder-for-clickbank-products.2.0.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Faffiliate-ads-builder-for-clickbank-products\u002Ftags\u002F2.0\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Faffiliate-ads-builder-for-clickbank-products%2Ftags%2F1.9&new_path=%2Faffiliate-ads-builder-for-clickbank-products%2Ftags%2F2.0",[],{"version":625,"download_url":626,"svn_tag_url":627,"released_at":38,"has_diff":499,"diff_files_changed":628,"diff_lines":38,"trac_diff_url":629,"vulnerabilities":630,"is_current":499},"1.9","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Faffiliate-ads-builder-for-clickbank-products.1.9.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Faffiliate-ads-builder-for-clickbank-products\u002Ftags\u002F1.9\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Faffiliate-ads-builder-for-clickbank-products%2Ftags%2F1.8&new_path=%2Faffiliate-ads-builder-for-clickbank-products%2Ftags%2F1.9",[],{"version":632,"download_url":633,"svn_tag_url":634,"released_at":38,"has_diff":499,"diff_files_changed":635,"diff_lines":38,"trac_diff_url":636,"vulnerabilities":637,"is_current":499},"1.8","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Faffiliate-ads-builder-for-clickbank-products.1.8.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Faffiliate-ads-builder-for-clickbank-products\u002Ftags\u002F1.8\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Faffiliate-ads-builder-for-clickbank-products%2Ftags%2F1.7&new_path=%2Faffiliate-ads-builder-for-clickbank-products%2Ftags%2F1.8",[],{"version":40,"download_url":639,"svn_tag_url":640,"released_at":38,"has_diff":499,"diff_files_changed":641,"diff_lines":38,"trac_diff_url":642,"vulnerabilities":643,"is_current":499},"https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Faffiliate-ads-builder-for-clickbank-products.1.7.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Faffiliate-ads-builder-for-clickbank-products\u002Ftags\u002F1.7\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Faffiliate-ads-builder-for-clickbank-products%2Ftags%2F1.6&new_path=%2Faffiliate-ads-builder-for-clickbank-products%2Ftags%2F1.7",[],{"version":645,"download_url":646,"svn_tag_url":647,"released_at":38,"has_diff":499,"diff_files_changed":648,"diff_lines":38,"trac_diff_url":649,"vulnerabilities":650,"is_current":499},"1.6","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Faffiliate-ads-builder-for-clickbank-products.1.6.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Faffiliate-ads-builder-for-clickbank-products\u002Ftags\u002F1.6\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Faffiliate-ads-builder-for-clickbank-products%2Ftags%2F1.5&new_path=%2Faffiliate-ads-builder-for-clickbank-products%2Ftags%2F1.6",[651],{"id":34,"url_slug":35,"title":36,"severity":41,"cvss_score":42,"vuln_type":44,"patched_in_version":40},{"version":653,"download_url":654,"svn_tag_url":655,"released_at":38,"has_diff":499,"diff_files_changed":656,"diff_lines":38,"trac_diff_url":657,"vulnerabilities":658,"is_current":499},"1.5","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Faffiliate-ads-builder-for-clickbank-products.1.5.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Faffiliate-ads-builder-for-clickbank-products\u002Ftags\u002F1.5\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Faffiliate-ads-builder-for-clickbank-products%2Ftags%2F1.4&new_path=%2Faffiliate-ads-builder-for-clickbank-products%2Ftags%2F1.5",[659],{"id":34,"url_slug":35,"title":36,"severity":41,"cvss_score":42,"vuln_type":44,"patched_in_version":40},{"version":661,"download_url":662,"svn_tag_url":663,"released_at":38,"has_diff":499,"diff_files_changed":664,"diff_lines":38,"trac_diff_url":665,"vulnerabilities":666,"is_current":499},"1.4","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Faffiliate-ads-builder-for-clickbank-products.1.4.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Faffiliate-ads-builder-for-clickbank-products\u002Ftags\u002F1.4\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Faffiliate-ads-builder-for-clickbank-products%2Ftags%2F1.3&new_path=%2Faffiliate-ads-builder-for-clickbank-products%2Ftags%2F1.4",[667],{"id":34,"url_slug":35,"title":36,"severity":41,"cvss_score":42,"vuln_type":44,"patched_in_version":40},{"version":669,"download_url":670,"svn_tag_url":671,"released_at":38,"has_diff":499,"diff_files_changed":672,"diff_lines":38,"trac_diff_url":673,"vulnerabilities":674,"is_current":499},"1.3","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Faffiliate-ads-builder-for-clickbank-products.1.3.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Faffiliate-ads-builder-for-clickbank-products\u002Ftags\u002F1.3\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Faffiliate-ads-builder-for-clickbank-products%2Ftags%2F1.0&new_path=%2Faffiliate-ads-builder-for-clickbank-products%2Ftags%2F1.3",[675],{"id":34,"url_slug":35,"title":36,"severity":41,"cvss_score":42,"vuln_type":44,"patched_in_version":40},{"version":77,"download_url":677,"svn_tag_url":678,"released_at":38,"has_diff":499,"diff_files_changed":679,"diff_lines":38,"trac_diff_url":38,"vulnerabilities":680,"is_current":499},"https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Faffiliate-ads-builder-for-clickbank-products.1.0.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Faffiliate-ads-builder-for-clickbank-products\u002Ftags\u002F1.0\u002F",[],[681],{"id":34,"url_slug":35,"title":36,"severity":41,"cvss_score":42,"vuln_type":44,"patched_in_version":40}]