[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fx2Xvcnaup88Wy6XCeKfrSLLJjq0zQAa3OayNFJwaroM":3,"$f8SJNLZ6TTZwQBjMxz0r7CMLK3pZIVpzFyNrEBv3QDoc":387,"$fVLn70kgsnaoXLqKSvkmobq6kNMgoCzlADIv6VlaNqBg":392},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":17,"download_link":24,"security_score":25,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":27,"discovery_status":28,"vulnerabilities":29,"developer":30,"crawl_stats":26,"alternatives":36,"analysis":140,"fingerprints":355},"agenda-running","Epingle Un Dossard","1.8","iazone","https:\u002F\u002Fprofiles.wordpress.org\u002Fiazone\u002F","\u003Cp>Ce plugin gère votre calendrier de course, les résultats et vos RP.\u003C\u002Fp>\n\u003Ch3>CREDITS\u003C\u002Fh3>\n\u003Col>\n\u003Cli>Ce plugin est développer sur un code original du plugin “Upcoming Events Lists” de \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fupcoming-events-lists\u002F\" rel=\"ugc\">Sayful Islam\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Fol>\n","Ce plugin gère votre calendrier de course, les résultats et vos RP.",10,1708,0,"2016-02-09T16:41:00.000Z","4.4.34","3.0.1","",[19,20,21,22,23],"agenda","chrono","resultats","rp","running","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fagenda-running.zip",85,null,"2026-04-06T09:54:40.288Z","no_bundle",[],{"slug":7,"display_name":7,"profile_url":8,"plugin_count":31,"total_installs":32,"avg_security_score":25,"avg_patch_time_days":33,"trust_score":34,"computed_at":35},2,20,30,84,"2026-05-20T14:13:00.922Z",[37,49,69,89,114],{"slug":38,"name":39,"version":40,"author":7,"author_profile":8,"description":41,"short_description":42,"active_installs":11,"downloaded":43,"rating":13,"num_ratings":13,"last_updated":44,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":45,"homepage":17,"download_link":47,"security_score":25,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":48},"joggin-agenda","Joggin Agenda","1.3.2","\u003Cp>Ce plugin affiche dans un widget la liste des prochaines sessions d’un utilisateur jogg.in. Pour cela, il suffit de saisir votre identifiant sur le widget.\u003C\u002Fp>\n","Ce plugin affiche dans un widget la liste des prochaines sessions d'un utilisateur jogg.in.",1300,"2016-04-28T10:09:00.000Z",[19,46,23],"joggin","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fjoggin-agenda.zip","2026-04-16T10:56:18.058Z",{"slug":50,"name":51,"version":52,"author":53,"author_profile":54,"description":55,"short_description":56,"active_installs":57,"downloaded":58,"rating":59,"num_ratings":60,"last_updated":61,"tested_up_to":62,"requires_at_least":63,"requires_php":17,"tags":64,"homepage":66,"download_link":67,"security_score":68,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":48},"disable-xml-rpc","Disable XML-RPC","1.0.1","Phil Erb","https:\u002F\u002Fprofiles.wordpress.org\u002Fphilerb\u002F","\u003Cp>Pretty simply, this plugin uses the built-in WordPress filter “xmlrpc_enabled” to disable the XML-RPC API on a WordPress site running 3.5 or above.\u003C\u002Fp>\n\u003Cp>Beginning in 3.5, XML-RPC is enabled by default. Additionally, the option to disable\u002Fenable XML-RPC was removed. For various reasons, site owners may wish to disable this functionality. This plugin provides an easy way to do so.\u003C\u002Fp>\n","Disables the XML-RPC API in WordPress 3.5+, which is enabled by default.",200000,616799,86,29,"2025-12-03T01:28:00.000Z","6.9.4","3.5",[65],"xmlrpc","http:\u002F\u002Fwww.philerb.com\u002Fwp-plugins\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fdisable-xml-rpc.1.0.1.zip",100,{"slug":70,"name":71,"version":72,"author":73,"author_profile":74,"description":75,"short_description":76,"active_installs":77,"downloaded":78,"rating":79,"num_ratings":80,"last_updated":81,"tested_up_to":62,"requires_at_least":82,"requires_php":17,"tags":83,"homepage":87,"download_link":88,"security_score":68,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":48},"disable-xml-rpc-api","Disable XML-RPC-API","2.1.7","Amin Nazemi","https:\u002F\u002Fprofiles.wordpress.org\u002Faminnz\u002F","\u003Cp>Protect your website from xmlrpc brute-force attacks,DOS and DDOS attacks, this plugin disables the XML-RPC and trackbacks-pingbacks on your WordPress website.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>PLUGIN FEATURES\u003C\u002Fstrong>\u003Cbr \u002F>\n(These are options you can enable or disable each one)\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Disable access to xmlrpc.php file using .httacess file \u003C\u002Fli>\n\u003Cli>Automatically change htaccess file permission to read-only (0444)\u003C\u002Fli>\n\u003Cli>Disable X-pingback to minimize CPU usage \u003C\u002Fli>\n\u003Cli>Disable selected methods from XML-RPC\u003C\u002Fli>\n\u003Cli>Remove pingback-ping link from header\u003C\u002Fli>\n\u003Cli>Disable trackbacks and pingbacks to avoid spammers and hackers\u003C\u002Fli>\n\u003Cli>Rename XML-RPC slug to whatever you want\u003C\u002Fli>\n\u003Cli>Black list IPs for XML-RPC\u003C\u002Fli>\n\u003Cli>White list IPs for XML-RPC\u003C\u002Fli>\n\u003Cli>Some options to speed-up your wordpress website\u003C\u002Fli>\n\u003Cli>Disable JSON REST API\u003C\u002Fli>\n\u003Cli>Hide WordPress Version\u003C\u002Fli>\n\u003Cli>Disable built-in WordPress file editor\u003C\u002Fli>\n\u003Cli>Disable wlw manifest\u003C\u002Fli>\n\u003Cli>And some other options\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>What is XMLRPC\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>XML-RPC, or XML Remote Procedure Call is a protocol which uses XML to encode its calls and HTTP as a transport mechanism.\u003Cbr \u002F>\nBeginning in WordPress 3.5, XML-RPC is enabled by default. Additionally, the option to disable\u002Fenable XML-RPC was removed. For various reasons, site owners may wish to disable this functionality. This plugin provides an easy way to do so.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Why you should disable XML-RPC\u003C\u002Fstrong>\u003Cbr \u002F>\n\u003Cem>Xmlrpc has two main weaknesses\u003C\u002Fem>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Brute force attacks:\u003Cbr \u002F>\nAttackers try to login to WordPress using xmlrpc.php with as many username\u002Fpassword combinations as they can enter. A method within xmlrpc.php allows the attacker to use a single command (system.multicall) to guess hundreds of passwords. Daniel Cid at Sucuri described it well in October 2015: “With only 3 or 4 HTTP requests, the attackers could try thousands of passwords, bypassing security tools that are designed to look and block brute force attempts.”\u003C\u002Fli>\n\u003Cli>Denial of Service Attacks via Pingback:\u003Cbr \u002F>\nBack in 2013, attackers sent Pingback requests through xmlrpc.php of approximately 2500 WordPress sites to “herd (these sites) into a voluntary botnet,” according to Gur Schatz at Incapsula. “This gives any attacker a virtually limitless set of IP addresses to Distribute a Denial of Service attack across a network of over 100 million WordPress sites, without having to compromise them.”\u003C\u002Fli>\n\u003C\u002Ful>\n","A simple and lightweight plugin to disable XML-RPC API, X-Pingback and pingback-ping in WordPress 3.5+ for a faster and more secure website",100000,798984,82,42,"2026-02-04T06:54:00.000Z","5.0",[50,84,85,86,65],"disable-xmlrpc","pingback","stop-brute-force-attacks","https:\u002F\u002Fneatma.com\u002Fdsxmlrpc-plugin\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fdisable-xml-rpc-api.zip",{"slug":90,"name":91,"version":92,"author":93,"author_profile":94,"description":95,"short_description":96,"active_installs":77,"downloaded":97,"rating":59,"num_ratings":98,"last_updated":99,"tested_up_to":100,"requires_at_least":101,"requires_php":102,"tags":103,"homepage":109,"download_link":110,"security_score":111,"vuln_count":112,"unpatched_count":13,"last_vuln_date":113,"fetched_at":48},"intelly-related-posts","Inline Related Posts","3.9.0","Data443 Risk Mitigation, Inc.","https:\u002F\u002Fprofiles.wordpress.org\u002Fdata443\u002F","\u003Cp>This plugin is a service of \u003Ca href=\"https:\u002F\u002Fwww.data443.com\" rel=\"nofollow ugc\">Data443.com\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>Data443 is a Data Security and Privacy Compliance company that is publicly traded \u003Ca href=\"https:\u002F\u002Ffinance.yahoo.com\u002Fquote\u002FATDS?p=ATD\" rel=\"nofollow ugc\">ATDS\u003C\u002Fa>.  We have been providing leading GDPR compliance products such as \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fgdpr-framework\u002F\" rel=\"nofollow ugc\">WordPress GDPR Framework\u003C\u002Fa> and \u003Ca href=\"https:\u002F\u002Fdata443.com\u002Fproducts\u002Fdata-identification-manager\u002F\" rel=\"nofollow ugc\">Data Identification Manager\u003C\u002Fa>, Blockchain privacy, and enterprise cloud eDiscovery tools.\u003C\u002Fp>\n\u003Cp>Companies like Entrepreneur, The Wall Street Journal, BBC, Business Insider, Financial Times and many others understood this concept and embraced it as you can see in this GIF in \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fintelly-related-posts\u002Fscreenshots\u002F\" rel=\"ugc\">Screenshots\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>In \u003Ca href=\"http:\u002F\u002Fwww.intellywp.com\" rel=\"nofollow ugc\">IntellyWP\u003C\u002Fa> we take care of the marketing aspects of your WordPress site and today we have brought to you the same technology they use, to help you to increase engagement, page views and to reduce the bounce rate.\u003C\u002Fp>\n\u003Cblockquote>\n\u003Cp>\u003Cstrong>Just one week after testing this plugin on a low traffic site, our page views increased by 99%.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Cp>\u003Cstrong>ANOTHER IMPORTANT POINT OF VIEW\u003C\u002Fstrong>\u003Cbr \u002F>\n\u003Cbr \u002F>\nHow many things have you have in the footer post?\u003C\u002Fp>\n\u003Cul>\n\u003Cli>The author box?\u003C\u002Fli>\n\u003Cli>Subscription to your newsletter?\u003C\u002Fli>\n\u003Cli>Maybe you ask users to share the post on social networks?\u003C\u002Fli>\n\u003Cli>You ask them to leave a comment?\u003C\u002Fli>\n\u003Cli>And also… to read related posts?\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Do you know that asking too many things is equal to ask nothing?\u003C\u002Fp>\n\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002FCjdTr14Nd1g?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\n\u003Cp>Inline related posts plugin bring a new experience to your visitors and help you to win the fight of catching readers attention 😉\u003C\u002Fp>\n\u003Cblockquote>\n\u003Cp>With Inline Related Posts Plugin you can:\u003Cbr \u002F>\n  1. Put related posts boxes INSIDE your content (\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fintelly-related-posts\u002Fscreenshots\u002F\" rel=\"ugc\">see Screenshots\u003C\u002Fa>)\u003Cbr \u002F>\n  2. Automatically put multiple boxes in all your posts\u003Cbr \u002F>\n  3. Automatically detect line breaks (without destroy your paragraphs or headlines)\u003Cbr \u002F>\n  4. Choose over 20+ combinations of style (themes, colors, hover)\u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fintelly-related-posts.zip\" rel=\"nofollow ugc\">Download now the Inline Related posts plugin into your WordPress.\u003C\u002Fa>\u003C\u002Fp>\n","Inline Related Posts AUTOMATICALLY inserts related posts INSIDE your content, capturing immediately the reader's attention.",1655439,77,"2025-06-12T14:50:00.000Z","6.8.5","3.6.0","5.6",[104,105,106,107,108],"inline-related-posts","similar-posts","suggestions","yarpp","zemanta","http:\u002F\u002Fintellywp.com\u002Fintelly-related-posts\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fintelly-related-posts.zip",97,7,"2025-05-07 00:00:00",{"slug":115,"name":116,"version":117,"author":118,"author_profile":119,"description":120,"short_description":121,"active_installs":77,"downloaded":122,"rating":123,"num_ratings":124,"last_updated":125,"tested_up_to":62,"requires_at_least":126,"requires_php":127,"tags":128,"homepage":134,"download_link":135,"security_score":136,"vuln_count":137,"unpatched_count":138,"last_vuln_date":139,"fetched_at":48},"woo-razorpay","Razorpay for WooCommerce","4.8.2","Razorpay","https:\u002F\u002Fprofiles.wordpress.org\u002Frazorpay\u002F","\u003Cp>Allows you to accept credit cards, debit cards, netbanking, wallet, and UPI payments in India and FPX, eWallets, Duitnow in Malaysia.\u003C\u002Fp>\n\u003Cp>This is the official Razorpay payment gateway plugin for WooCommerce. A system designed to handle end-to-end payments. Accept payments via 100+ payment modes – domestic & international credit & debit cards, EMIs, paylater, net banking, UPI & mobile wallets  including JioMoney, Mobikwik, Airtel Money, FreeCharge, Ola Money and PayZapp  in India, and FPX, Duitnow and eWallets including GrabPay, Touch N Go, Boost in Malaysia, with the WooCommerce plugin.\u003Cbr \u002F>\nGet a feature-filled and easy to integrate checkout with cards (Visa, MasterCard, American Express, UnionPay etc) saved across businesses so that customers can pay seamlessly everywhere, both domestic and international. This plugin allows for refunds, works across all browsers, and is compatible with the latest WooCommerce. Boost conversions with international customers paying in their local currency. Keep your data safe with robust security that comes with PCI DSS Level 1 compliance.\u003C\u002Fp>\n\u003Cp>This is compatible with WooCommerce>=4.0, including the new 9.0 release. It has been tested up to the 9.1.2 WooCommerce release.\u003C\u002Fp>\n\u003Cp>BENEFITS OF USING RAZORPAY\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\n\u003Cp>Get started in minutes with seamless onboarding – \u003Ca href=\"https:\u002F\u002Feasy.razorpay.com\u002Fonboarding\u002Fl1\u002Fsignup?field=MobileNumber\" rel=\"nofollow ugc\">Razorpay registration link\u003C\u002Fa> via 100% digital KYC for Indian businesses and \u003Ca href=\"https:\u002F\u002Fcurlec.com\u002Fonboarding\u002Fmy\u002F\" rel=\"nofollow ugc\">easy onboarding\u003C\u002Fa> for Malaysia businesses\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Boost customer conversions with superior checkout experience on fast-growing UPI  in India and Duitnow in Malaysia\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Enjoy industry leading success rate & avoid drop offs with seamless payment flow\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Razorpay has no setup fees, no monthly fees, no hidden costs: you only get charged when you earn money! Earnings are transferred to your bank account as per settlement cycle.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Razorpay supports the WooCommerce Subscriptions extension via \u003Ca href=\"https:\u002F\u002Frazorpay.com\u002Fdocs\u002Fpayments\u002Fsubscriptions\u002Fplugins\u002Fwoocommerce\u002F\" rel=\"nofollow ugc\">Razorpay Subscriptions Plugin for WooCommerce\u003C\u002Fa> and When a customer pays for a subscription item, you can accept recurring payments for the same on your WooCommerce-enabled WordPress site.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Razorpay has \u003Ca href=\"https:\u002F\u002Frazorpay.com\u002Fdocs\u002Fpayments\u002Fpayment-gateway\u002Faffordability\u002Fwidget\u002Fwoocommerce\u002F\" rel=\"nofollow ugc\">Affordability Widget\u003C\u002Fa> to spread awareness about the affordability-based payment options before they reach checkout.  You can integrate Razorpay Affordability Widget with your WooCommerce website to influence your customer’s purchase decisions before they reach checkout by displaying various affordable payment options and offers.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>COUNTRIES SUPPORTED\u003Cbr \u002F>\nRazorpay is available for Store Owners and Merchants in\u003Cbr \u002F>\n– India\u003Cbr \u002F>\n– Malaysia\u003C\u002Fp>\n\u003Ch3>Dependencies\u003C\u002Fh3>\n\u003Col>\n\u003Cli>WordPress v3.9.2 and later\u003C\u002Fli>\n\u003Cli>Woocommerce v4.0 and later\u003C\u002Fli>\n\u003Cli>PHP v5.6.0 and later\u003C\u002Fli>\n\u003Cli>php-curl extension\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch3>Configuration\u003C\u002Fh3>\n\u003Col>\n\u003Cli>Visit the WooCommerce settings page, and click on the Checkout\u002FPayment Gateways tab.\u003C\u002Fli>\n\u003Cli>Click on Razorpay to edit the settings. If you do not see Razorpay in the list at the top of the screen make sure you have activated the plugin in the WordPress Plugin Manager.\u003C\u002Fli>\n\u003Cli>Enable the Payment Method, name it Credit Card \u002F Debit Card \u002F Internet Banking (this will show up on the payment page your customer sees), add in your Key id and Key Secret.\u003C\u002Fli>\n\u003Cli>The Payment Action should be set to “Authorize and Capture”. If you want to capture payments manually from the Dashboard after manual verification, set it to “Authorize”.\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch3>Support\u003C\u002Fh3>\n\u003Cp>Visit \u003Ca href=\"https:\u002F\u002Frazorpay.com\u002Fsupport\u002F#request\u002Fmerchant\u002Ftechnical-assistance\" rel=\"nofollow ugc\">razorpay.com\u003C\u002Fa> for support requests.\u003C\u002Fp>\n\u003Ch3>License\u003C\u002Fh3>\n\u003Cp>The Razorpay WooCommerce plugin is released under the GPLv2 license, same as that\u003Cbr \u002F>\nof WordPress. See the LICENSE file for the complete LICENSE text.\u003C\u002Fp>\n","Start accepting payments in minutes with 100% digital onboarding & feature filled Razorpay payment gateway with the WooCommerce plugin.",2268977,50,23,"2026-03-24T09:37:00.000Z","3.9.2","7.0",[129,130,131,132,133],"curlec","india","payments","razorpay","woocommerce","https:\u002F\u002Frazorpay.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwoo-razorpay.4.8.2.zip",72,4,1,"2026-02-18 00:00:00",{"attackSurface":141,"codeSignals":198,"taintFlows":347,"riskAssessment":348,"analyzedAt":354},{"hooks":142,"ajaxHandlers":186,"restRoutes":187,"shortcodes":188,"cronEvents":197,"entryPointCount":31,"unprotectedCount":13},[143,149,153,157,161,165,169,173,177,181],{"type":144,"name":145,"callback":146,"file":147,"line":148},"action","admin_enqueue_scripts","admin_script_style","agenda-running.php",15,{"type":144,"name":150,"callback":151,"priority":13,"file":147,"line":152},"init","event_post_type",16,{"type":144,"name":154,"callback":155,"file":147,"line":156},"add_meta_boxes","event_info_metabox",17,{"type":144,"name":158,"callback":159,"file":147,"line":160},"save_post","save_event_info",18,{"type":162,"name":163,"callback":164,"priority":11,"file":147,"line":32},"filter","manage_edit-agenda-running_columns","custom_columns_head",{"type":144,"name":166,"callback":167,"priority":11,"file":147,"line":168},"manage_agenda-running_posts_custom_column","custom_columns_content",21,{"type":162,"name":170,"callback":171,"file":147,"line":172},"the_content","AgendaRunning_single_content",22,{"type":162,"name":174,"callback":175,"priority":11,"file":147,"line":176},"manage_edit-agenda-running_sortable_columns","agenda_running_sortable_columns",25,{"type":162,"name":178,"callback":179,"priority":11,"file":147,"line":180},"request","event_column_orderby",26,{"type":144,"name":182,"callback":183,"file":184,"line":185},"widgets_init","AgendaRunning_lists_widget","widget-agenda-running.php",461,[],[],[189,193],{"tag":190,"callback":191,"file":147,"line":192},"RESULTATS","show_results",443,{"tag":194,"callback":195,"file":147,"line":196},"AGENDA","show_agenda",444,[],{"dangerousFunctions":199,"sqlUsage":200,"outputEscaping":202,"fileOperations":13,"externalRequests":13,"nonceChecks":138,"capabilityChecks":13,"bundledLibraries":346},[],{"prepared":13,"raw":13,"locations":201},[],{"escaped":168,"rawEcho":203,"locations":204},81,[205,208,210,212,213,215,217,219,221,223,225,227,229,231,233,235,237,239,241,243,244,246,248,249,250,251,253,255,256,257,259,261,262,263,265,267,269,270,272,274,276,278,280,281,283,285,286,288,289,291,293,294,295,297,299,300,301,303,305,307,309,311,313,315,317,319,320,322,324,325,326,328,330,331,332,334,336,338,340,342,344],{"file":147,"line":206,"context":207},123,"raw output",{"file":147,"line":209,"context":207},127,{"file":147,"line":211,"context":207},135,{"file":147,"line":211,"context":207},{"file":147,"line":214,"context":207},141,{"file":147,"line":216,"context":207},145,{"file":147,"line":218,"context":207},149,{"file":147,"line":220,"context":207},153,{"file":147,"line":222,"context":207},259,{"file":147,"line":224,"context":207},264,{"file":147,"line":226,"context":207},269,{"file":147,"line":228,"context":207},274,{"file":147,"line":230,"context":207},279,{"file":147,"line":232,"context":207},284,{"file":147,"line":234,"context":207},289,{"file":147,"line":236,"context":207},397,{"file":147,"line":238,"context":207},439,{"file":184,"line":240,"context":207},43,{"file":184,"line":242,"context":207},44,{"file":184,"line":242,"context":207},{"file":184,"line":245,"context":207},47,{"file":184,"line":247,"context":207},48,{"file":184,"line":247,"context":207},{"file":184,"line":123,"context":207},{"file":184,"line":123,"context":207},{"file":184,"line":252,"context":207},56,{"file":184,"line":254,"context":207},57,{"file":184,"line":254,"context":207},{"file":184,"line":254,"context":207},{"file":184,"line":258,"context":207},61,{"file":184,"line":260,"context":207},62,{"file":184,"line":260,"context":207},{"file":184,"line":260,"context":207},{"file":184,"line":264,"context":207},96,{"file":184,"line":266,"context":207},98,{"file":184,"line":268,"context":207},99,{"file":184,"line":68,"context":207},{"file":184,"line":271,"context":207},104,{"file":184,"line":273,"context":207},144,{"file":184,"line":275,"context":207},152,{"file":184,"line":277,"context":207},194,{"file":184,"line":279,"context":207},195,{"file":184,"line":279,"context":207},{"file":184,"line":282,"context":207},198,{"file":184,"line":284,"context":207},199,{"file":184,"line":284,"context":207},{"file":184,"line":287,"context":207},201,{"file":184,"line":287,"context":207},{"file":184,"line":290,"context":207},207,{"file":184,"line":292,"context":207},208,{"file":184,"line":292,"context":207},{"file":184,"line":292,"context":207},{"file":184,"line":296,"context":207},212,{"file":184,"line":298,"context":207},213,{"file":184,"line":298,"context":207},{"file":184,"line":298,"context":207},{"file":184,"line":302,"context":207},247,{"file":184,"line":304,"context":207},249,{"file":184,"line":306,"context":207},250,{"file":184,"line":308,"context":207},251,{"file":184,"line":310,"context":207},255,{"file":184,"line":312,"context":207},295,{"file":184,"line":314,"context":207},302,{"file":184,"line":316,"context":207},343,{"file":184,"line":318,"context":207},344,{"file":184,"line":318,"context":207},{"file":184,"line":321,"context":207},348,{"file":184,"line":323,"context":207},349,{"file":184,"line":323,"context":207},{"file":184,"line":323,"context":207},{"file":184,"line":327,"context":207},353,{"file":184,"line":329,"context":207},354,{"file":184,"line":329,"context":207},{"file":184,"line":329,"context":207},{"file":184,"line":333,"context":207},387,{"file":184,"line":335,"context":207},389,{"file":184,"line":337,"context":207},390,{"file":184,"line":339,"context":207},391,{"file":184,"line":341,"context":207},395,{"file":184,"line":343,"context":207},442,{"file":184,"line":345,"context":207},450,[],[],{"summary":349,"deductions":350},"The \"agenda-running\" plugin v1.8 exhibits a generally good security posture, with no known vulnerabilities or critical security signals detected in the static analysis. The plugin demonstrates responsible coding practices by using prepared statements for all SQL queries and including at least one nonce check.  Furthermore, the absence of dangerous functions, file operations, and external HTTP requests reduces its attack surface.  However, a significant concern lies in the low percentage of properly escaped output (21%). This indicates a potential for Cross-Site Scripting (XSS) vulnerabilities, where malicious scripts could be injected into the website through improperly handled user-supplied data displayed on the front or back end.  While the taint analysis found no specific issues, the output escaping deficiency represents a tangible risk that should be addressed. The plugin's vulnerability history being clear is a positive sign, suggesting a track record of security, but this should not overshadow the identified output escaping issues.",[351],{"reason":352,"points":353},"Low output escaping percentage",8,"2026-03-17T01:08:12.591Z",{"wat":356,"direct":365},{"assetPaths":357,"generatorPatterns":359,"scriptPaths":360,"versionParams":362},[358],"\u002Fwp-content\u002Fplugins\u002Fagenda-running\u002Fcss\u002Fjquery-ui-1.10.4.custom.min.css",[],[361],"\u002Fwp-content\u002Fplugins\u002Fagenda-running\u002Fjs\u002Fupcoming-script.js",[363,364],"agenda-running\u002Fjs\u002Fupcoming-script.js?ver=","agenda-running\u002Fcss\u002Fjquery-ui-1.10.4.custom.min.css?ver=",{"cssClasses":366,"htmlComments":368,"htmlAttributes":369,"restEndpoints":384,"jsGlobals":385,"shortcodeOutput":386},[367],"event-date-input",[],[370,371,372,373,374,375,376,377,378,379,380,381,382,383],"name=\"event-date\"","id=\"event-date\"","name=\"event-lieu\"","id=\"event-lieu\"","name=\"event-type\"","id=\"event-type\"","name=\"event-distance\"","id=\"event-distance\"","name=\"event-url\"","id=\"event-url\"","name=\"event-chrono\"","id=\"event-chrono\"","name=\"event-place\"","id=\"event-place\"",[],[],[],{"error":388,"url":389,"statusCode":390,"statusMessage":391,"message":391},true,"http:\u002F\u002Flocalhost\u002Fapi\u002Fplugins\u002Fagenda-running\u002Fbundle",404,"no bundle for this plugin yet",{"slug":4,"current_version":6,"total_versions":13,"versions":393},[]]