[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fYdGQsDyxA1Ubw5pfmYsTXV5brbKU4aUyjg_BoAFioB4":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":25,"download_link":26,"security_score":27,"vuln_count":28,"unpatched_count":29,"last_vuln_date":30,"fetched_at":31,"vulnerabilities":32,"developer":102,"crawl_stats":38,"alternatives":107,"analysis":211,"fingerprints":665},"aio-time-clock-lite","All in One Time Clock Lite – Tracking Employee Time Has Never Been Easier","2.0.4","Codebangers","https:\u002F\u002Fprofiles.wordpress.org\u002Fcodebangers\u002F","\u003Cp>Employees can easily clock in and out.  Managers can run reports, keep track of employees\u002Fvolunteers\u002Fcontractors and their time.\u003C\u002Fp>\n\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002FOS8zy4PQtlY?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\n\u003Cp>Need Support? We can help:\u003Cbr \u002F>\n\u003Ca href=\"https:\u002F\u002Fcodebangers.com\u002Fsupport\u002F\" rel=\"nofollow ugc\">Portal\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Col>\n\u003Cli>Keep track of employee, contractor and volunteer shifts\u003C\u002Fli>\n\u003Cli>Generate custom reports\u003C\u002Fli>\n\u003Cli>Manage employee departments and wages\u003C\u002Fli>\n\u003Cli>Easily create and edit shifts\u003C\u002Fli>\n\u003Cli>Supports all timezones\u003C\u002Fli>\n\u003Cli>View employee activity in real time\u003C\u002Fli>\n\u003Cli>Includes handy dandy time clock widget\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch4>Pro Features\u003C\u002Fh4>\n\u003Col>\n\u003Cli>Use the Live Time Clock or Have Employees Select From Predefined Shifts to Clock in\u002Fout\u003C\u002Fli>\n\u003Cli>Employee and Mangers Profile\u003C\u002Fli>\n\u003Cli>Multiple Time Clock Layouts\u003C\u002Fli>\n\u003Cli>Add your own custom roles for time clock access\u003C\u002Fli>\n\u003Cli>Simple\u002FAdvanced Shift Reports\u003C\u002Fli>\n\u003Cli>Includes Manager\u002FEmployee\u002FVolunteer\u002FContractor profiles\u003C\u002Fli>\n\u003Cli>Automatically clear out shifts\u003C\u002Fli>\n\u003Cli>Export Shifts to Spreadsheet\u002FCSV\u003C\u002Fli>\n\u003Cli>Manage Wages\u003C\u002Fli>\n\u003Cli>Supports Shift History\u003C\u002Fli>\n\u003Cli>Supports Dynamic and Static Time Zones\u003C\u002Fli>\n\u003Cli>Monthly\u002FYearly Charts\u003C\u002Fli>\n\u003Cli>Compatible with Quickbooks\u003C\u002Fli>\n\u003Cli>Supports Unlimited Clock in Locations\u003C\u002Fli>\n\u003Cli>Supports Google Analytics\u003C\u002Fli>\n\u003Cli>Supports Employee IP Address and GPS Tracking (includes tracking map)\u003C\u002Fli>\n\u003Cli>Imports\u002FExport Shifts, Locations, and more for backups and migration\u003C\u002Fli>\n\u003Cli>Includes Time Clock Widget\u003C\u002Fli>\n\u003Cli>Custom Error Log\u003C\u002Fli>\n\u003Cli>Supports Multi Site\u003C\u002Fli>\n\u003Cli>Extensions that allow you do even more\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fcodebangers.com\u002Fproduct\u002Fall-in-one-time-clock\u002F\" rel=\"nofollow ugc\">Learn More About All in Time Clock Pro\u003C\u002Fa>\u003Cbr \u002F>\nUse coupon code “timeclockpro”\u003C\u002Fp>\n","Employees can easily clock in and out.  Managers can run reports, keep track of employees\u002Fvolunteers\u002Fcontractors and their time.",700,32674,92,8,"2025-11-01T23:53:00.000Z","6.8.5","3.0","5.6",[20,21,22,23,24],"clock","employee","punch-clock","time","volunteer","https:\u002F\u002Fcodebangers.com\u002Fproduct\u002Fall-in-one-time-clock-lite\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Faio-time-clock-lite.2.0.4.zip",95,5,0,"2025-11-03 16:00:57","2026-03-15T15:16:48.613Z",[33,48,62,74,88],{"id":34,"url_slug":35,"title":36,"description":37,"plugin_slug":4,"theme_slug":38,"affected_versions":39,"patched_in_version":6,"severity":40,"cvss_score":41,"cvss_vector":42,"vuln_type":43,"published_date":30,"updated_date":44,"references":45,"days_to_patch":47},"CVE-2025-11758","all-in-one-time-clock-lite-tracking-employee-time-has-never-been-easier-missing-authorization-to-page-creation-and-infor","All in One Time Clock Lite – Tracking Employee Time Has Never Been Easier \u003C= 2.0.3 - Missing Authorization to Page Creation and Information Exposure","The All in One Time Clock Lite plugin for WordPress is vulnerable to unauthorized access due to a missing authorization check in all versions up to, and including, 2.0.3. This is due  to the plugin exposing admin-level AJAX actions to unauthenticated users via wp_ajax_nopriv_ hooks, while relying only on a nonce check without capability checks. This makes it possible for  unauthenticated attackers to create published pages, create shift records with integrity issues, and download time reports containing PII (employee names and work schedules).",null,"\u003C=2.0.3","medium",6.5,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:N\u002FUI:N\u002FS:U\u002FC:L\u002FI:L\u002FA:N","Missing Authorization","2025-11-04 14:21:42",[46],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002F28246279-ecd8-4731-a4cc-64a3a4167323?source=api-prod",1,{"id":49,"url_slug":50,"title":51,"description":52,"plugin_slug":4,"theme_slug":38,"affected_versions":53,"patched_in_version":54,"severity":40,"cvss_score":55,"cvss_vector":56,"vuln_type":57,"published_date":58,"updated_date":59,"references":60,"days_to_patch":47},"CVE-2025-6833","all-in-one-time-clock-lite-tracking-employee-time-has-never-been-easier-insecure-direct-object-reference-to-authenticate","All in One Time Clock Lite – Tracking Employee Time Has Never Been Easier \u003C= 2.0 - Insecure Direct Object Reference to Authenticated (Subscriber+) Arbitrary Clocking In\u002FOut","The All in One Time Clock Lite – Tracking Employee Time Has Never Been Easier plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 2.0 via the 'aio_time_clock_lite_js' AJAX action due to missing validation on a user controlled key. This makes it possible for authenticated attackers, with subscriber access and above, to clock other users in and out.","\u003C=2.0","2.0.1",4.3,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:L\u002FUI:N\u002FS:U\u002FC:N\u002FI:L\u002FA:N","Authorization Bypass Through User-Controlled Key","2025-10-21 21:09:38","2025-10-22 09:24:38",[61],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002Fc6c48173-ffe3-40f8-a2fa-cee66869e343?source=api-prod",{"id":63,"url_slug":64,"title":65,"description":66,"plugin_slug":4,"theme_slug":38,"affected_versions":53,"patched_in_version":54,"severity":40,"cvss_score":67,"cvss_vector":68,"vuln_type":69,"published_date":70,"updated_date":71,"references":72,"days_to_patch":47},"CVE-2025-6832","all-in-one-time-clock-lite-tracking-employee-time-has-never-been-easier-reflected-cross-site-scripting","All in One Time Clock Lite – Tracking Employee Time Has Never Been Easier \u003C= 2.0 - Reflected Cross-Site Scripting","The All in One Time Clock Lite – Tracking Employee Time Has Never Been Easier plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'nonce' parameter in all versions up to, and including, 2.0 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.",6.1,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:N\u002FUI:R\u002FS:C\u002FC:L\u002FI:L\u002FA:N","Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","2025-08-01 19:33:30","2025-08-02 08:24:48",[73],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002F844b7471-3adf-45fd-9906-f0c817d6565c?source=api-prod",{"id":75,"url_slug":76,"title":77,"description":78,"plugin_slug":4,"theme_slug":38,"affected_versions":79,"patched_in_version":80,"severity":40,"cvss_score":55,"cvss_vector":81,"vuln_type":82,"published_date":83,"updated_date":84,"references":85,"days_to_patch":87},"CVE-2025-46513","all-in-one-time-clock-lite-cross-site-request-forgery","All in One Time Clock Lite \u003C= 1.3.325 - Cross-Site Request Forgery","The All in One Time Clock Lite – Tracking Employee Time Has Never Been Easier plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.3.325. This is due to missing or incorrect nonce validation on a function. This makes it possible for unauthenticated attackers to perform an unauthorized action granted they can trick a site administrator into performing an action such as clicking on a link.","\u003C=1.3.325","1.3.326","CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:N\u002FUI:R\u002FS:U\u002FC:N\u002FI:L\u002FA:N","Cross-Site Request Forgery (CSRF)","2025-04-24 00:00:00","2025-05-05 18:30:36",[86],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002F211b8b76-d770-443b-ba95-84b30adc5d48?source=api-prod",12,{"id":89,"url_slug":90,"title":91,"description":92,"plugin_slug":4,"theme_slug":38,"affected_versions":93,"patched_in_version":94,"severity":40,"cvss_score":95,"cvss_vector":96,"vuln_type":69,"published_date":97,"updated_date":98,"references":99,"days_to_patch":101},"CVE-2022-44594","all-in-one-time-clok-lite-authenticated-admin-stored-cross-site-scripting","All in One Time Clok Lite \u003C= 1.3.320 - Authenticated (Admin+) Stored Cross-Site Scripting","The All in One Time Clok Lite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's settings in versions up to, and including, 1.3.320 due to insufficient input sanitization and output escaping. This makes it possible for administrator-level attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. ","\u003C=1.3.320","1.3.321",5.5,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:H\u002FUI:N\u002FS:C\u002FC:L\u002FI:L\u002FA:N","2022-11-30 00:00:00","2024-01-22 19:56:02",[100],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002F8e5c0282-6d13-4c83-8d1f-c49430f714d6?source=api-prod",419,{"slug":103,"display_name":7,"profile_url":8,"plugin_count":47,"total_installs":11,"avg_security_score":27,"avg_patch_time_days":104,"trust_score":105,"computed_at":106},"codebangers",87,85,"2026-04-04T13:43:52.605Z",[108,128,146,165,187],{"slug":109,"name":110,"version":111,"author":112,"author_profile":113,"description":114,"short_description":115,"active_installs":116,"downloaded":117,"rating":118,"num_ratings":14,"last_updated":119,"tested_up_to":120,"requires_at_least":121,"requires_php":18,"tags":122,"homepage":124,"download_link":125,"security_score":27,"vuln_count":126,"unpatched_count":29,"last_vuln_date":127,"fetched_at":31},"time-clock","Time Clock – A WordPress Employee & Volunteer Time Clock Plugin","1.3.2","Scott Paterson","https:\u002F\u002Fprofiles.wordpress.org\u002Fscottpaterson\u002F","\u003Ch4>Overview\u003C\u002Fh4>\n\u003Cp>This plugin allows employees or volunteers to clock in and out for their work shifts.\u003C\u002Fp>\n\u003Cp>From the Developer: I built this plugin because I’ve frequently volunteered at bicycle and computer repair non-profits, and each one was using a buggy, custom-made time clock to track hours. It caused the non-profit extra work and was a headache. So I built this plugin to help out other organizations in the same situation.\u003C\u002Fp>\n\u003Cp>If you have a non-profit or a business, this plugin will help you track hours.\u003C\u002Fp>\n\u003Ch4>Having Problems?\u003C\u002Fh4>\n\u003Cp>If you are having problems or see a bug, please create a support thread \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fsupport\u002Fplugin\u002Ftime-clock\" rel=\"ugc\">here\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>Watch this 2 minute video of how the plugin works:\u003C\u002Fp>\n\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002FW1669tqn3WU?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\n\u003Ch4>Time Clock Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Users can clock in and out from shifts\u003C\u002Fli>\n\u003Cli>Users can clock in and out from lunch breaks\u003C\u002Fli>\n\u003Cli>Admins can easily make new user accounts\u003C\u002Fli>\n\u003Cli>Admins can view the number of hours worked for each day\u003C\u002Fli>\n\u003Cli>Admins can change the color and text of the time clock\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cblockquote>\n\u003Ch4>Time Clock Pro\u003C\u002Fh4>\n\u003Cp>We offer a Pro version of this plugin for business owners who need more features.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Export Activity to CSV File\u003C\u002Fli>\n\u003Cli>Time Clock can be used as a widget\u003C\u002Fli>\n\u003Cli>Admin Metrics\u003C\u002Fli>\n\u003Cli>See how many users are currently working\u003C\u002Fli>\n\u003Cli>Link a WordPress account to a Time Clock Account so users don’t have to login\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwpplugin.org\u002Fdownloads\u002Ftime-clock-pro\u002F\" rel=\"nofollow ugc\">You can learn more about Time Clock Pro here\u003C\u002Fa>\u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Ch4>About the Plugin Developer\u003C\u002Fh4>\n\u003Cp>This plugin was created by \u003Ca href=\"https:\u002F\u002Fwpplugin.org\" rel=\"nofollow ugc\">WP Plugin\u003C\u002Fa>.\u003C\u002Fp>\n","An employee \u002F volunteer time clock for WordPress",600,17882,98,"2025-12-04T02:46:00.000Z","6.9.4","4.0",[20,21,23,123,24],"timeclock","https:\u002F\u002Fwpplugin.org\u002Fdownloads\u002Ftime-clock-pro\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Ftime-clock.1.3.2.zip",3,"2025-10-23 19:44:27",{"slug":129,"name":130,"version":131,"author":132,"author_profile":133,"description":134,"short_description":135,"active_installs":136,"downloaded":137,"rating":29,"num_ratings":29,"last_updated":138,"tested_up_to":16,"requires_at_least":139,"requires_php":140,"tags":141,"homepage":143,"download_link":144,"security_score":145,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"plaintracker","Plain Tracker","3.1.1","plainware","https:\u002F\u002Fprofiles.wordpress.org\u002Fplainware\u002F","\u003Cp>\u003Cstrong>Plain Tracker\u003C\u002Fstrong> is a lightweight \u003Ca href=\"https:\u002F\u002Fwww.plaintracker.net\u002F\" rel=\"nofollow ugc\">time clock plugin\u003C\u002Fa> designed to help your organization keep track of hours worked by employees or volunteers. Users can quickly clock in and clock out. Managers can easily keep track of employees and their time with time clock logs and reports.\u003C\u002Fp>\n\u003Cp>Features:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Employees can clock in and clock out from shifts.\u003C\u002Fli>\n\u003Cli>Admins can easily create new worker accounts for existing WordPress users.\u003C\u002Fli>\n\u003Cli>Admins can create and edit time log records.\u003C\u002Fli>\n\u003Cli>Admins can view who is currently working in real time.\u003C\u002Fli>\n\u003Cli>Admins can filter and group the list of time clock entries to analyze their users attendance.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Pro features:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Admins can export activity to CSV file.\u003C\u002Fli>\n\u003Cli>Admins can view the total number of time records and work duration within the selected date period with breakdown by worker.\u003C\u002Fli>\n\u003Cli>Admins can filter the time records list by one or more workers.\u003C\u002Fli>\n\u003Cli>More features to come very soon.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.plaintracker.net\u002Forder\u002F\" rel=\"nofollow ugc\">Learn more about Plain Tracker Pro\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch3>Support\u003C\u002Fh3>\n\u003Cp>Please contact us at https:\u002F\u002Fwww.plaintracker.net\u002F\u003C\u002Fp>\n\u003Cp>Author: Plainware\u003Cbr \u002F>\nAuthor URI: https:\u002F\u002Fwww.plainware.com\u003C\u002Fp>\n","A time clock plugin to track and analyze time of employees, workers or volunteers.",10,3209,"2025-12-01T18:00:00.000Z","4.8","7.0",[142,20,21,123,24],"attendance","https:\u002F\u002Fwww.plaintracker.net\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fplaintracker.zip",100,{"slug":147,"name":148,"version":149,"author":150,"author_profile":151,"description":152,"short_description":153,"active_installs":154,"downloaded":155,"rating":156,"num_ratings":28,"last_updated":157,"tested_up_to":158,"requires_at_least":17,"requires_php":159,"tags":160,"homepage":163,"download_link":164,"security_score":105,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"hrm-work-tracking","HRM Work Tracking","1.5","theode","https:\u002F\u002Fprofiles.wordpress.org\u002Ftheode\u002F","\u003Cp>Do you work primarily with WordPress? Do you have several employees who are engaged in the blog? Do you have developers who anyway have to log into WordPress, because they work with it? Did you ever need a time recording of working hours?\u003Cbr \u002F>\nHRM work tracking plugin is a complete employee time tracking in the WordPress backend. The working time recording also works for WordPress users that are classified only as a Subscriber.\u003C\u002Fp>\n\u003Cp>The plugin is simple: the user logs in and starts his working hours. However, the system has a function to capture the time also when he logs out or computer \u002F browser crashes. You can choose if time tracking stops on logout.\u003C\u002Fp>\n\u003Cp>Users can capture\u003Cbr \u002F>\n* the breaks over the surface,\u003Cbr \u002F>\n* knock,\u003Cbr \u002F>\n* sign ill.\u003Cbr \u002F>\n* time he spend on posts\u003C\u002Fp>\n\u003Cp>The security measures of the plugin are also impressive. The user activated the plugin, is the only one who may edit the plugin in the backend and also the only one who sees the additional staff lists. Should he not be the only one, he can set additional user IDs which also belong to the human resources department.\u003C\u002Fp>\n\u003Cp>Everyone in the HR Department can change employee profiles and set the desired hours of the employees, even if this WordPress is user not an administrator.\u003C\u002Fp>\n\u003Cp>The plugin is currently in German, English and Polish (translation could be better), also .po files will be supplied to transfer to other languages.\u003C\u002Fp>\n\u003Cp>Installation Note: After activating the plugin, once log out and log back in. You must pull the dashboard widget with time and attendance even in the field of view. There is also a little widget that displays the guy who activated the plugin, assuming he is Human Resource Manager. This little widget displays also the phone number if it is stored in the metadata “tel”.\u003C\u002Fp>\n","HRM Work Tracking plugin is a complete employee or user time tracking in the WordPress backend.",30,13423,68,"2021-02-05T21:15:00.000Z","5.6.17","",[161,20,21,23,162],"backend","work","http:\u002F\u002Fwordpress.org\u002Fplugins\u002Fhrm-work-tracking\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fhrm-work-tracking.zip",{"slug":166,"name":167,"version":168,"author":169,"author_profile":170,"description":171,"short_description":172,"active_installs":173,"downloaded":174,"rating":175,"num_ratings":176,"last_updated":177,"tested_up_to":120,"requires_at_least":178,"requires_php":159,"tags":179,"homepage":185,"download_link":186,"security_score":145,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"countdown-timer-ultimate","Countdown Timer Ultimate","2.6.9","Essential Plugin","https:\u002F\u002Fprofiles.wordpress.org\u002Fessentialplugin\u002F","\u003Cp>It is proven that \u003Cstrong>Countdown Timer\u003C\u002Fstrong> can increase the \u003Cstrong>conversion up to 400%\u003C\u002Fstrong> & \u003Cstrong>business revenue up to 9%\u003C\u002Fstrong>. (note- based on facts and stats.)\u003C\u002Fp>\n\u003Ch3>✅ Then what’s stopping you from benefiting your business?\u003C\u002Fh3>\n\u003Cp>✅ \u003Cstrong>Checkout demo for better understanding\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fdemo.essentialplugin.com\u002Fcountdown-timer-ultimate-demo\u002F?utm_source=WP&utm_medium=Countdown-Timer&utm_campaign=Read-Me\" rel=\"nofollow ugc\">FREE DEMO\u003C\u002Fa> | \u003Ca href=\"https:\u002F\u002Fdemo.essentialplugin.com\u002Fprodemo\u002Fcountdown-timer-ultimate-pro\u002F?utm_source=WP&utm_medium=Countdown-Timer&utm_campaign=Read-Me\" rel=\"nofollow ugc\">PRO DEMO\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Download Now\u003C\u002Fstrong> the countdown timer ultimate now and enjoy the benefits.\u003C\u002Fp>\n\u003Cp>You have to make customers believe that you are running out of stock\u002F products or services and that they are running out of time. There we use the \u003Cstrong>countdown timer ultimate\u003C\u002Fstrong> to make your product more desirable among your customers.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Download Now\u003C\u002Fstrong> Countdown Timer Ultimate this tool can be used to create scarcity and urgency of your product. To create and represent this in order to convey that you have limited offers and deals and your customer has to grab them as fast as possible, you put a \u003Cstrong>Countdown Timer\u003C\u002Fstrong> on your website\u002F landing page.\u003C\u002Fp>\n\u003Cp>On the back end, \u003Cstrong>Countdown Timer Ultimate\u003C\u002Fstrong>  offers a complete WordPress countdown timer management system with the ability to:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Create unlimited timer\u003C\u002Fli>\n\u003Cli>Expiry Date & Time\u003C\u002Fli>\n\u003Cli>Timer Label\u003C\u002Fli>\n\u003Cli>Timer content and designing\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>✅ It Benefits in:\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Driving more clicks\u003C\u002Fli>\n\u003Cli>Boosting the sales\u003C\u002Fli>\n\u003Cli>Making customer take fast & positive decision\u003C\u002Fli>\n\u003Cli>Generating high revenue\u003C\u002Fli>\n\u003Cli>Scheduling the time\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>Download Now\u003C\u002Fstrong> Countdown Timer Ultimate  which is the easier and the simpler way to attract more customers and persuade them to make a quick positive response about your product.\u003C\u002Fp>\n\u003Cp>We got your back here! We serve both free and pro \u003Cstrong>Countdown Timer Ultimate\u003C\u002Fstrong> which you can easily install and use for your business.\u003C\u002Fp>\n\u003Ch3>✅ Overview\u003C\u002Fh3>\n\u003Cp>A very simple plugin to add countdown timer to your website. Countdown timer allow you to create nice and functional Countdown timer just in a few minutes. This is the best way to create beautiful Countdown for your users. You can use our Countdown timer in your posts\u002Fpages.\u003C\u002Fp>\n\u003Cp>Also work with Gutenberg shortcode block.\u003C\u002Fp>\n\u003Cp>You can create multiplate countdown timer and display them with shortcode. The easiest way to place your full customizable HTML5 Countdown Timer.\u003C\u002Fp>\n\u003Ch4>✅ Complete shortcode with all parameters:\u003C\u002Fh4>\n\u003Cpre>\u003Ccode>[wpcdt-countdown id=\"1\"]\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Cul>\n\u003Cli>\u003Cstrong>ID:\u003C\u002Fstrong> [wpcdt-countdown id=”1″] (timer id for which you want to display timer. This parameter is required.)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>✅ Template code is\u003C\u002Fh4>\n\u003Cpre>\u003Ccode>\u003C?php echo do_shortcode('[wpcdt-countdown id=\"1\"]'); ?>\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Cp>You must be thinking, why us?\u003C\u002Fp>\n\u003Ch4>Checkout these features to know your answer-\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Fully Responsive WordPress Countdown timer.\u003C\u002Fli>\n\u003Cli>Ability to create unlimited Countdowns timer.\u003C\u002Fli>\n\u003Cli>Ability to create Countdown in pages\u002Fposts.\u003C\u002Fli>\n\u003Cli>Also work with Gutenberg shortcode block.\u003C\u002Fli>\n\u003Cli>Ability to change background color and width.\u003C\u002Fli>\n\u003Cli>Ability to change rotating circle background color and width.\u003C\u002Fli>\n\u003Cli>Option change the text of Days, hours, minutes and seconds OR show\u002Fhide Days, hours, minutes and seconds.\u003C\u002Fli>\n\u003Cli>Option to set difftent background colors for Days, hours, minutes and seconds.\u003C\u002Fli>\n\u003Cli>Elementor, Bevear and SiteOrigin, Divi, Fusion Page Builder Native Support.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Then why wait to put a \u003Cstrong>Countdown Timer Ultimate\u003C\u002Fstrong> on your website to generate high sales and revenue.\u003C\u002Fp>\n\u003Cp>And your time starts now… \u003Cstrong>Download Now\u003C\u002Fstrong>.\u003C\u002Fp>\n\u003Ch4>PRO Features Include\u003C\u002Fh4>\n\u003Cblockquote>\n\u003Cul>\n\u003Cli>12+ stunning cool designs for clock and timer.\u003C\u002Fli>\n\u003Cli>Fully customized clock.\u003C\u002Fli>\n\u003Cli>Custom css\u003C\u002Fli>\n\u003Cli>Fully Responsive WordPress Countdown timer.\u003C\u002Fli>\n\u003Cli>Ability to create unlimited Countdowns timer.\u003C\u002Fli>\n\u003Cli>Ability to create Countdown in pages\u002Fposts.\u003C\u002Fli>\n\u003Cli>Template code.\u003C\u002Fli>\n\u003Cli>Schedule Timer\u003C\u002Fli>\n\u003Cli>Recurring Timer\u003C\u002Fli>\n\u003Cli>Timer works perfectly when any cache plugin is active.\u003C\u002Fli>\n\u003Cli>Ability to change background color and width.\u003C\u002Fli>\n\u003Cli>Ability to change rotating circle background color and width.\u003C\u002Fli>\n\u003Cli>Option to show\u002Fhide Days, hours, minutes and seconds.\u003C\u002Fli>\n\u003Cli>Option to set difftent background colors for Days, hours, minutes and seconds.\u003C\u002Fli>\n\u003Cli>Easy to integrate with e-commerce coupons like WooCommerce and Easy Digital Downloads.\u003C\u002Fli>\n\u003Cli>Gutenberg Block Supports.\u003C\u002Fli>\n\u003Cli>WPBakery Page Builder Support\u003C\u002Fli>\n\u003Cli>Elementor, Beaver and SiteOrigin Page Builder Support (New).\u003C\u002Fli>\n\u003Cli>Divi Page Builder Native Support (New).\u003C\u002Fli>\n\u003Cli>Various parameters for clock like background color, text color and etc.\u003C\u002Fli>\n\u003Cli>Clock expiration event. Display your desired text on complition of timer.\u003C\u002Fli>\n\u003Cli>Light weight and fast.\u003C\u002Fli>\n\u003Cli>Fully responsive\u003C\u002Fli>\n\u003Cli>100% Multi language\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fblockquote>\n\u003Cp>✅ \u003Cstrong>Checkout demo for better understanding\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fdemo.essentialplugin.com\u002Fcountdown-timer-ultimate-demo\u002F?utm_source=WP&utm_medium=Countdown-Timer&utm_campaign=Read-Me\" rel=\"nofollow ugc\">FREE DEMO\u003C\u002Fa> | \u003Ca href=\"https:\u002F\u002Fdemo.essentialplugin.com\u002Fprodemo\u002Fcountdown-timer-ultimate-pro\u002F?utm_source=WP&utm_medium=Countdown-Timer&utm_campaign=Read-Me\" rel=\"nofollow ugc\">PRO DEMO\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>✅ \u003Cstrong>Essential Plugin Bundle Deal\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.essentialplugin.com\u002Fpricing\u002F?utm_source=WP&utm_medium=Countdown-Timer&utm_campaign=Read-Me\" rel=\"nofollow ugc\">Annual or Lifetime Bundle Deal\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch4>Privacy & Policy\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>We have also opt-in e-mail selection , once you download the plugin , so that we can inform you and nurture you about products and its features.\u003C\u002Fli>\n\u003C\u002Ful>\n","A quick, easy way to add and display responsive Countdown timer on your website. Also work with Gutenberg shortcode block.",20000,717325,80,36,"2026-02-19T18:30:00.000Z","5.2",[180,181,182,183,184],"animated-countdown-timer","countdown-clock","countdown-timer","date-countdown-form","event-countdown-timer","https:\u002F\u002Fessentialplugin.com\u002Fwordpress-plugin\u002Fcountdown-timer-ultimate\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcountdown-timer-ultimate.2.6.9.zip",{"slug":188,"name":189,"version":190,"author":191,"author_profile":192,"description":193,"short_description":194,"active_installs":195,"downloaded":196,"rating":197,"num_ratings":198,"last_updated":199,"tested_up_to":200,"requires_at_least":201,"requires_php":159,"tags":202,"homepage":206,"download_link":207,"security_score":208,"vuln_count":126,"unpatched_count":209,"last_vuln_date":210,"fetched_at":31},"mx-time-zone-clocks","MX Time Zone Clocks","5.1.1","Maksym Marko","https:\u002F\u002Fprofiles.wordpress.org\u002Fmarkomaksym\u002F","\u003Cp>\n    \u003Cstrong>MX Time Zone Clocks\u003C\u002Fstrong> – the ultimate solution for displaying multiple time zone clocks on your WordPress website effortlessly! With our plugin, you can now provide your users with the convenience of viewing time zone differences instantly, making scheduling and collaboration across different regions a breeze.\n\u003C\u002Fp>\n\u003Cp>\n    How does it work?\n\u003C\u002Fp>\n\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"600\" height=\"320\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002FHoHkyK8kAdk?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\n\u003Cp>        I want to thank Harish Premkumar for his jQuery plugin \u003Ca href=\"http:\u002F\u002Fwww.dhtmlgoodies.com\u002Ftutorials\u002Fcanvas-clock\u002F\" rel=\"nofollow ugc\">Canvas Clock\u003C\u002Fa> \u003C\u002Fp>\n","Add time zone clocks to your website.",1000,28779,94,15,"2024-04-17T08:11:00.000Z","6.5.8","4.9",[20,203,204,205],"clock-on-the-website","%d0%b3%d0%be%d0%b4%d0%b8%d0%bd%d0%bd%d0%b8%d0%ba","time-zone","https:\u002F\u002Fgithub.com\u002FMaksym-Marko\u002Fmx-time-zone-clock","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fmx-time-zone-clocks.5.1.1.zip",46,2,"2025-12-31 00:00:00",{"attackSurface":212,"codeSignals":343,"taintFlows":604,"riskAssessment":653,"analyzedAt":664},{"hooks":213,"ajaxHandlers":325,"restRoutes":333,"shortcodes":334,"cronEvents":341,"entryPointCount":342,"unprotectedCount":209},[214,220,223,227,231,234,237,241,244,247,252,255,259,262,266,270,274,277,281,284,287,291,294,297,299,303,307,311,315,319,323],{"type":215,"name":216,"callback":217,"file":218,"line":219},"action","admin_menu","addMenuItem","aio-time-clock-lite-actions.php",14,{"type":215,"name":221,"callback":222,"file":218,"line":198},"wp_enqueue_scripts","frontEndScripts",{"type":215,"name":224,"callback":225,"file":218,"line":226},"admin_enqueue_scripts","adminScripts",16,{"type":215,"name":228,"callback":229,"file":218,"line":230},"admin_init","aio_timeclock_lite_plugin_redirect",17,{"type":215,"name":228,"callback":232,"file":218,"line":233},"aio_tc_custom_post_shift_lite",22,{"type":215,"name":228,"callback":235,"file":218,"line":236},"aio_timeclock_admin_init_lite",23,{"type":215,"name":238,"callback":239,"file":218,"line":240},"add_meta_boxes","aio_shift_info_box_meta_lite",24,{"type":215,"name":216,"callback":242,"file":218,"line":243},"removeMetaBoxes",25,{"type":215,"name":228,"callback":245,"file":218,"line":246},"register_aio_timeclock_lite_settings",26,{"type":248,"name":249,"callback":250,"file":218,"line":251},"filter","user_contactmethods","modifyWageLite",27,{"type":215,"name":216,"callback":253,"file":218,"line":254},"remove_my_post_metaboxes_aio_lite",28,{"type":215,"name":256,"callback":257,"file":218,"line":258},"admin_notices","adminNoticesLite",29,{"type":215,"name":260,"callback":261,"file":218,"line":154},"plugins_loaded","pluginInitLite",{"type":215,"name":263,"callback":264,"file":218,"line":265},"save_post","aio_save_shift_meta_lite",33,{"type":215,"name":267,"callback":268,"priority":136,"file":218,"line":269},"login_redirect","memberLoginRedirect",37,{"type":248,"name":271,"callback":272,"priority":136,"file":218,"line":273},"post_row_actions","aio_remove_row_actions",40,{"type":215,"name":275,"callback":276,"file":218,"line":208},"init","aio_lite_register_user_taxonomy",{"type":215,"name":278,"callback":279,"file":218,"line":280},"personal_options_update","aio_tc_lite_save_user_department_terms",47,{"type":215,"name":282,"callback":279,"file":218,"line":283},"edit_user_profile_update",48,{"type":215,"name":216,"callback":285,"file":218,"line":286},"aio_lite_add_department_admin_page",49,{"type":215,"name":288,"callback":289,"file":218,"line":290},"show_user_profile","aio_lite_edit_user_department_section",50,{"type":215,"name":292,"callback":289,"file":218,"line":293},"edit_user_profile",51,{"type":215,"name":278,"callback":295,"file":218,"line":296},"aio_lite_save_user_department_terms",52,{"type":215,"name":282,"callback":295,"file":218,"line":298},53,{"type":215,"name":300,"callback":301,"file":218,"line":302},"manage_department_custom_column","anonymous",54,{"type":248,"name":304,"callback":305,"file":218,"line":306},"manage_edit-departments_columns","aio_lite_manage_department_user_column",56,{"type":248,"name":308,"callback":309,"file":218,"line":310},"sanitize_user","aio_lite_disable_username",57,{"type":215,"name":312,"callback":313,"file":218,"line":314},"widgets_init","loadWidgets",63,{"type":248,"name":316,"callback":317,"priority":136,"file":218,"line":318},"manage_edit-shift_columns","shiftColumnsFilter",650,{"type":215,"name":320,"callback":321,"priority":136,"file":218,"line":322},"manage_shift_posts_custom_column","shiftColumn",651,{"type":215,"name":263,"callback":264,"file":218,"line":324},803,[326,330],{"action":327,"nopriv":328,"callback":327,"hasNonce":328,"hasCapCheck":328,"file":218,"line":329},"aio_time_clock_lite_js",false,42,{"action":331,"nopriv":328,"callback":331,"hasNonce":328,"hasCapCheck":328,"file":218,"line":332},"aio_time_clock_lite_admin_js",43,[],[335,338],{"tag":336,"callback":336,"file":218,"line":337},"show_aio_time_clock_lite",19,{"tag":339,"callback":339,"file":218,"line":340},"show_aio_employee_profile_lite",20,[],4,{"dangerousFunctions":344,"sqlUsage":345,"outputEscaping":347,"fileOperations":29,"externalRequests":29,"nonceChecks":47,"capabilityChecks":372,"bundledLibraries":603},[],{"prepared":209,"raw":29,"locations":346},[],{"escaped":348,"rawEcho":349,"locations":350},256,156,[351,354,355,356,357,358,360,362,364,366,368,371,373,374,376,377,378,379,380,382,383,384,386,388,390,391,393,394,396,397,398,399,400,401,402,403,404,405,406,408,410,412,414,415,417,418,419,420,421,422,423,424,425,426,427,428,430,431,433,434,435,437,438,439,440,442,443,444,445,447,449,451,453,455,457,458,459,461,463,465,467,469,471,473,475,477,479,481,483,485,487,489,491,493,495,497,499,501,503,505,507,509,511,513,515,517,519,521,523,525,527,529,531,533,535,537,539,541,543,545,546,547,548,549,550,551,553,554,555,556,558,560,562,564,565,566,568,569,571,573,575,577,579,581,583,585,587,590,591,592,593,594,596,598,599,601],{"file":352,"line":198,"context":353},"aio-employee-profile.php","raw output",{"file":352,"line":233,"context":353},{"file":352,"line":236,"context":353},{"file":352,"line":240,"context":353},{"file":352,"line":243,"context":353},{"file":352,"line":359,"context":353},44,{"file":352,"line":361,"context":353},55,{"file":352,"line":363,"context":353},72,{"file":352,"line":365,"context":353},77,{"file":352,"line":367,"context":353},112,{"file":369,"line":370,"context":353},"aio-employees.php",6,{"file":369,"line":372,"context":353},9,{"file":369,"line":136,"context":353},{"file":369,"line":375,"context":353},18,{"file":369,"line":337,"context":353},{"file":369,"line":233,"context":353},{"file":369,"line":254,"context":353},{"file":369,"line":265,"context":353},{"file":369,"line":381,"context":353},34,{"file":369,"line":269,"context":353},{"file":369,"line":332,"context":353},{"file":369,"line":385,"context":353},82,{"file":369,"line":387,"context":353},93,{"file":389,"line":14,"context":353},"aio-get-pro.php",{"file":389,"line":136,"context":353},{"file":392,"line":370,"context":353},"aio-monitoring.php",{"file":392,"line":87,"context":353},{"file":392,"line":395,"context":353},13,{"file":392,"line":219,"context":353},{"file":392,"line":198,"context":353},{"file":392,"line":230,"context":353},{"file":392,"line":375,"context":353},{"file":392,"line":236,"context":353},{"file":392,"line":240,"context":353},{"file":392,"line":243,"context":353},{"file":392,"line":246,"context":353},{"file":392,"line":254,"context":353},{"file":392,"line":258,"context":353},{"file":392,"line":407,"context":353},70,{"file":392,"line":409,"context":353},73,{"file":392,"line":411,"context":353},86,{"file":413,"line":209,"context":353},"aio-news.php",{"file":413,"line":28,"context":353},{"file":413,"line":416,"context":353},7,{"file":413,"line":14,"context":353},{"file":413,"line":136,"context":353},{"file":413,"line":87,"context":353},{"file":413,"line":395,"context":353},{"file":413,"line":226,"context":353},{"file":413,"line":375,"context":353},{"file":413,"line":340,"context":353},{"file":413,"line":236,"context":353},{"file":413,"line":243,"context":353},{"file":413,"line":246,"context":353},{"file":413,"line":246,"context":353},{"file":429,"line":209,"context":353},"aio-report-wizard.php",{"file":429,"line":126,"context":353},{"file":432,"line":372,"context":353},"aio-reports.php",{"file":432,"line":226,"context":353},{"file":432,"line":340,"context":353},{"file":436,"line":372,"context":353},"aio-settings.php",{"file":436,"line":337,"context":353},{"file":436,"line":236,"context":353},{"file":436,"line":251,"context":353},{"file":436,"line":441,"context":353},31,{"file":436,"line":273,"context":353},{"file":436,"line":332,"context":353},{"file":436,"line":283,"context":353},{"file":436,"line":446,"context":353},58,{"file":436,"line":448,"context":353},60,{"file":436,"line":450,"context":353},62,{"file":436,"line":452,"context":353},67,{"file":436,"line":454,"context":353},79,{"file":436,"line":456,"context":353},90,{"file":436,"line":387,"context":353},{"file":436,"line":118,"context":353},{"file":436,"line":460,"context":353},103,{"file":436,"line":462,"context":353},104,{"file":436,"line":464,"context":353},106,{"file":436,"line":466,"context":353},110,{"file":436,"line":468,"context":353},115,{"file":436,"line":470,"context":353},117,{"file":436,"line":472,"context":353},118,{"file":436,"line":474,"context":353},120,{"file":436,"line":476,"context":353},125,{"file":436,"line":478,"context":353},127,{"file":436,"line":480,"context":353},128,{"file":436,"line":482,"context":353},130,{"file":436,"line":484,"context":353},135,{"file":436,"line":486,"context":353},137,{"file":436,"line":488,"context":353},138,{"file":436,"line":490,"context":353},140,{"file":436,"line":492,"context":353},145,{"file":436,"line":494,"context":353},150,{"file":436,"line":496,"context":353},151,{"file":436,"line":498,"context":353},153,{"file":436,"line":500,"context":353},157,{"file":436,"line":502,"context":353},161,{"file":436,"line":504,"context":353},163,{"file":436,"line":506,"context":353},164,{"file":436,"line":508,"context":353},166,{"file":436,"line":510,"context":353},170,{"file":436,"line":512,"context":353},172,{"file":436,"line":514,"context":353},173,{"file":436,"line":516,"context":353},175,{"file":436,"line":518,"context":353},180,{"file":436,"line":520,"context":353},191,{"file":436,"line":522,"context":353},201,{"file":436,"line":524,"context":353},204,{"file":436,"line":526,"context":353},216,{"file":436,"line":528,"context":353},218,{"file":436,"line":530,"context":353},219,{"file":436,"line":532,"context":353},221,{"file":436,"line":534,"context":353},226,{"file":436,"line":536,"context":353},234,{"file":436,"line":538,"context":353},236,{"file":436,"line":540,"context":353},237,{"file":436,"line":542,"context":353},238,{"file":544,"line":14,"context":353},"aio-simple-report.php",{"file":544,"line":136,"context":353},{"file":544,"line":136,"context":353},{"file":544,"line":395,"context":353},{"file":544,"line":198,"context":353},{"file":544,"line":226,"context":353},{"file":544,"line":375,"context":353},{"file":552,"line":176,"context":353},"aio-time-clock-box-content.php",{"file":552,"line":208,"context":353},{"file":552,"line":361,"context":353},{"file":552,"line":310,"context":353},{"file":552,"line":557,"context":353},64,{"file":552,"line":559,"context":353},75,{"file":552,"line":561,"context":353},84,{"file":552,"line":563,"context":353},89,{"file":552,"line":118,"context":353},{"file":552,"line":460,"context":353},{"file":552,"line":567,"context":353},107,{"file":552,"line":466,"context":353},{"file":218,"line":570,"context":353},338,{"file":218,"line":572,"context":353},378,{"file":218,"line":574,"context":353},391,{"file":218,"line":576,"context":353},411,{"file":218,"line":578,"context":353},424,{"file":218,"line":580,"context":353},432,{"file":218,"line":582,"context":353},612,{"file":218,"line":584,"context":353},921,{"file":218,"line":586,"context":353},936,{"file":588,"line":589,"context":353},"aio-time-clock-lite-widgets.php",38,{"file":588,"line":280,"context":353},{"file":588,"line":290,"context":353},{"file":588,"line":293,"context":353},{"file":588,"line":409,"context":353},{"file":595,"line":14,"context":353},"templates\\department-section.php",{"file":595,"line":597,"context":353},11,{"file":595,"line":240,"context":353},{"file":600,"line":359,"context":353},"templates\\time-clock-style1.php",{"file":602,"line":208,"context":353},"templates\\widget-content.php",[],[605,624,635,643],{"entryPoint":606,"graph":607,"unsanitizedCount":29,"severity":623},"\u003Caio-time-clock-lite-actions> (aio-time-clock-lite-actions.php:0)",{"nodes":608,"edges":620},[609,614],{"id":610,"type":611,"label":612,"file":218,"line":613},"n0","source","$_POST (x5)",305,{"id":615,"type":616,"label":617,"file":218,"line":618,"wp_function":619},"n1","sink","echo() [XSS]",681,"echo",[621],{"from":610,"to":615,"sanitized":622},true,"low",{"entryPoint":625,"graph":626,"unsanitizedCount":47,"severity":623},"update (aio-time-clock-lite-widgets.php:59)",{"nodes":627,"edges":633},[628,630],{"id":610,"type":611,"label":629,"file":588,"line":557},"$_POST['aio_tc_lite_widgettitle']",{"id":615,"type":616,"label":631,"file":588,"line":557,"wp_function":632},"update_option() [Settings Manipulation]","update_option",[634],{"from":610,"to":615,"sanitized":328},{"entryPoint":636,"graph":637,"unsanitizedCount":47,"severity":623},"\u003Caio-time-clock-lite-widgets> (aio-time-clock-lite-widgets.php:0)",{"nodes":638,"edges":641},[639,640],{"id":610,"type":611,"label":629,"file":588,"line":557},{"id":615,"type":616,"label":631,"file":588,"line":557,"wp_function":632},[642],{"from":610,"to":615,"sanitized":328},{"entryPoint":644,"graph":645,"unsanitizedCount":29,"severity":623},"\u003Cerror> (templates\\error.php:0)",{"nodes":646,"edges":651},[647,650],{"id":610,"type":611,"label":648,"file":649,"line":126},"$_GET","templates\\error.php",{"id":615,"type":616,"label":617,"file":649,"line":342,"wp_function":619},[652],{"from":610,"to":615,"sanitized":622},{"summary":654,"deductions":655},"The \"aio-time-clock-lite\" v2.0.4 plugin presents a mixed security posture. While it demonstrates good practices by exclusively using prepared statements for SQL queries and performing a reasonable number of capability checks, significant concerns remain regarding its attack surface and vulnerability history. The presence of two AJAX handlers without authentication checks is a primary weakness, creating potential entry points for unauthorized actions. Taint analysis indicates unsanitized paths, which, although not flagged as critical or high severity in this scan, could potentially lead to vulnerabilities if exploited in conjunction with other weaknesses.\n\nThe plugin's vulnerability history, with 5 known medium-severity CVEs, including common types like Missing Authorization, Authorization Bypass, Cross-Site Scripting (XSS), and Cross-Site Request Forgery (CSRF), is a significant red flag. The fact that all previously disclosed vulnerabilities are patched suggests a commitment to addressing security issues. However, the sheer number and variety of past vulnerabilities indicate a pattern of insecure coding practices that require ongoing vigilance. The most recent vulnerability was disclosed in late 2025, which is a concern for a plugin version that may be older.\n\nIn conclusion, the plugin has strengths in its SQL handling and some security checks. However, the unprotected AJAX endpoints, potential taint flow issues, and a history of multiple medium-severity vulnerabilities across various types necessitate careful consideration. Users should prioritize ensuring the plugin is up-to-date and be aware of the potential risks associated with the exposed AJAX endpoints, even if no critical issues were found in the current static analysis.",[656,658,660,662],{"reason":657,"points":136},"Unprotected AJAX handlers",{"reason":659,"points":28},"Flows with unsanitized paths",{"reason":661,"points":198},"Total known CVEs (5 medium)",{"reason":663,"points":342},"Low percentage of properly escaped output","2026-03-17T05:36:56.192Z",{"wat":666,"direct":687},{"assetPaths":667,"generatorPatterns":676,"scriptPaths":677,"versionParams":678},[668,669,670,671,672,673,674,675],"\u002Fwp-content\u002Fplugins\u002Faio-time-clock-lite\u002Faio-time-clock-lite.js","\u002Fwp-content\u002Fplugins\u002Faio-time-clock-lite\u002Faio-time-clock-lite.css","\u002Fwp-content\u002Fplugins\u002Faio-time-clock-lite\u002Faio-time-clock-lite-admin.js","\u002Fwp-content\u002Fplugins\u002Faio-time-clock-lite\u002Faio-time-clock-lite-admin.css","\u002Fwp-content\u002Fplugins\u002Faio-time-clock-lite\u002Fassets\u002Fcss\u002Faio-time-clock-lite-front.css","\u002Fwp-content\u002Fplugins\u002Faio-time-clock-lite\u002Fassets\u002Fjs\u002Faio-time-clock-lite-front.js","\u002Fwp-content\u002Fplugins\u002Faio-time-clock-lite\u002Fassets\u002Fjs\u002Faio-time-clock-lite-admin.js","\u002Fwp-content\u002Fplugins\u002Faio-time-clock-lite\u002Fassets\u002Fcss\u002Faio-time-clock-lite-admin.css",[],[668,670,673,674],[679,680,681,682,683,684,685,686],"aio-time-clock-lite\u002Faio-time-clock-lite.js?ver=","aio-time-clock-lite\u002Faio-time-clock-lite.css?ver=","aio-time-clock-lite\u002Faio-time-clock-lite-admin.js?ver=","aio-time-clock-lite\u002Faio-time-clock-lite-admin.css?ver=","aio-time-clock-lite\u002Fassets\u002Fcss\u002Faio-time-clock-lite-front.css?ver=","aio-time-clock-lite\u002Fassets\u002Fjs\u002Faio-time-clock-lite-front.js?ver=","aio-time-clock-lite\u002Fassets\u002Fjs\u002Faio-time-clock-lite-admin.js?ver=","aio-time-clock-lite\u002Fassets\u002Fcss\u002Faio-time-clock-lite-admin.css?ver=",{"cssClasses":688,"htmlComments":699,"htmlAttributes":706,"restEndpoints":711,"jsGlobals":717,"shortcodeOutput":721},[689,690,691,692,693,694,695,696,697,698],"aio-tc-lite-clockin","aio-tc-lite-clockout","aio-tc-lite-time-display","aio-tc-lite-reports-table","aio_timeclock_lite_admin_menu","aio_timeclock_lite_settings_page","aio_timeclock_lite_monitoring_page","aio_timeclock_lite_employees_page","aio_timeclock_lite_departments_page","aio_timeclock_lite_shift_meta_box",[700,701,702,703,704,705],"\u003C!-- Start of AIO Time Clock Lite Shortcode -->","\u003C!-- End of AIO Time Clock Lite Shortcode -->","\u003C!-- AIO Time Clock Lite Admin Settings -->","\u003C!-- AIO Time Clock Lite Monitoring -->","\u003C!-- AIO Time Clock Lite Employee Management -->","\u003C!-- AIO Time Clock Lite Department Management -->",[707,708,709,710],"data-aio-tc-lite-action","data-aio-tc-lite-nonce","data-aio-tc-lite-user-id","data-aio-tc-lite-role",[712,713,714,715,716],"\u002Fwp-json\u002Faio-time-clock-lite\u002Fv1\u002Fclock-in","\u002Fwp-json\u002Faio-time-clock-lite\u002Fv1\u002Fclock-out","\u002Fwp-json\u002Faio-time-clock-lite\u002Fv1\u002Fget-time-entries","\u002Fwp-json\u002Faio-time-clock-lite\u002Fv1\u002Fget-employee-data","\u002Fwp-json\u002Faio-time-clock-lite\u002Fv1\u002Fsave-settings",[718,719,720],"aio_time_clock_lite_ajax_object","aio_time_clock_lite_admin_ajax_object","aio_time_clock_lite_vars",[722,723],"[show_aio_time_clock_lite]","[show_aio_employee_profile_lite]"]