[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f4vbQYo1hHtBDMUUcc9j2BcuYOGxfbfbCOCmJqp2tWEA":3,"$fNmdRh_X_rpSgm6nzpKbwCeqG04cYfP44xCyLs6eHSh4":283,"$fQi9IoRiv4tfF7UKclxJNboDnJQTgq2dYuQ5vVXhrm78":287},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":11,"num_ratings":11,"last_updated":13,"tested_up_to":14,"requires_at_least":15,"requires_php":16,"tags":17,"homepage":23,"download_link":24,"security_score":25,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27,"discovery_status":28,"vulnerabilities":29,"developer":30,"crawl_stats":26,"alternatives":37,"analysis":117,"fingerprints":258},"bayarcash-for-easy-digital-downloads","Bayarcash For Easy Digital Downloads","1.1.0","Bayarcash","https:\u002F\u002Fprofiles.wordpress.org\u002Fbayarcash\u002F","\u003Cp>The Bayarcash For Easy Digital Downloads plugin allows you to seamlessly integrate Bayarcash payment solutions into your Easy Digital Downloads powered WordPress store. This plugin provides a secure and efficient way for your customers to make payments using Bayarcash services.\u003C\u002Fp>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Easy integration with Easy Digital Downloads\u003C\u002Fli>\n\u003Cli>Secure payment processing\u003C\u002Fli>\n\u003Cli>Support for sandbox testing\u003C\u002Fli>\n\u003Cli>Automatic transaction requery\u003C\u002Fli>\n\u003Cli>Customizable gateway settings\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Third-party Libraries\u003C\u002Fh3>\n\u003Cp>This plugin uses the following third-party libraries:\u003C\u002Fp>\n\u003Col>\n\u003Cli>\n\u003Cp>Axios\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Version: 0.26.1\u003C\u002Fli>\n\u003Cli>Source: https:\u002F\u002Fgithub.com\u002Faxios\u002Faxios\u003C\u002Fli>\n\u003Cli>License: MIT\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Vue.js\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Version: 3.2.31\u003C\u002Fli>\n\u003Cli>Source: https:\u002F\u002Fgithub.com\u002Fvuejs\u002Fvue\u003C\u002Fli>\n\u003Cli>License: MIT\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Bayarcash PHP SDK\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Version: 1.2.3\u003C\u002Fli>\n\u003Cli>Source: https:\u002F\u002Fgithub.com\u002Fwebimpian\u002Fbayarcash-php-sdk\u003C\u002Fli>\n\u003Cli>License: MIT\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Cp>The minified versions of Axios and Vue.js are included in the plugin’s \u003Ccode>assets\u002Fjs\u002F\u003C\u002Fcode> directory for performance reasons. You can find the uncompressed, developer versions at the GitHub repositories linked above.\u003C\u002Fp>\n\u003Cp>The Bayarcash PHP SDK is used for server-side integration with the Bayarcash API.\u003C\u002Fp>\n\u003Ch3>External Services\u003C\u002Fh3>\n\u003Cp>This plugin communicates with the Bayarcash API to process payments and verify transactions. Specifically:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>The plugin uses https:\u002F\u002Fconsole.bayar.cash\u002Fapi\u002Fv2\u002Fportals to verify PAT Tokens and retrieve the list of available payment portals.\u003C\u002Fli>\n\u003Cli>User payment data is transmitted securely to Bayarcash for transaction handling.\u003C\u002Fli>\n\u003Cli>The plugin utilizes the Bayarcash PHP SDK for server-side integration with the Bayarcash API.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>For more information about Bayarcash’s services, please visit:\u003Cbr \u002F>\n* Bayarcash website: https:\u002F\u002Fbayarcash.com\u003Cbr \u002F>\n* Bayarcash API documentation: https:\u002F\u002Fapi.webimpian.support\u002Fbayarcash\u003Cbr \u002F>\n* Bayarcash PHP SDK: https:\u002F\u002Fgithub.com\u002Fwebimpian\u002Fbayarcash-php-sdk\u003Cbr \u002F>\n* Bayarcash Terms of Service: https:\u002F\u002Fbayarcash.com\u002Fterms-conditions\u002F\u003Cbr \u002F>\n* Bayarcash Privacy Policy: https:\u002F\u002Fbayarcash.com\u002Fprivacy-policy\u002F\u003C\u002Fp>\n\u003Cp>By using this plugin, you agree to comply with Bayarcash’s terms of service and privacy policy regarding data transmission and processing.\u003C\u002Fp>\n\u003Ch3>Additional Info\u003C\u002Fh3>\n\u003Cp>For more information about Bayarcash, please visit \u003Ca href=\"https:\u002F\u002Fwww.bayarcash.com\" rel=\"nofollow ugc\">https:\u002F\u002Fwww.bayarcash.com\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>This plugin is developed and maintained by Web Impian Sdn Bhd.\u003C\u002Fp>\n","Integrate Bayarcash payment solutions with your Easy Digital Downloads store.",0,1440,"2025-12-03T15:30:00.000Z","6.7.5","6.5","7.4",[18,19,20,21,22],"bayarcash","easy-digital-downloads","ecommerce","edd","payment-gateway","https:\u002F\u002Fbayarcash.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbayarcash-for-easy-digital-downloads.1.1.0.zip",100,null,"2026-04-06T09:54:40.288Z","no_bundle",[],{"slug":18,"display_name":7,"profile_url":8,"plugin_count":31,"total_installs":32,"avg_security_score":33,"avg_patch_time_days":34,"trust_score":35,"computed_at":36},4,60,98,30,93,"2026-05-19T22:44:47.558Z",[38,60,75,87,104],{"slug":39,"name":40,"version":41,"author":42,"author_profile":43,"description":44,"short_description":45,"active_installs":46,"downloaded":47,"rating":25,"num_ratings":48,"last_updated":49,"tested_up_to":50,"requires_at_least":51,"requires_php":52,"tags":53,"homepage":56,"download_link":57,"security_score":58,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":59},"easy-digital-downloads-empty-cart","Easy Digital Downloads – Empty Cart","1.0.2","Sean Davis","https:\u002F\u002Fprofiles.wordpress.org\u002Fsdavis2702\u002F","\u003Cp>Built for use with the Easy Digital Downloads plugin, this extension provides settings for the display of the [download_checkout] shortcode when no items are in the cart.\u003C\u002Fp>\n\u003Cp>Follow EDD Empty Cart’s development on \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fsdavismedia\u002Fedd-empty-cart\" rel=\"nofollow ugc\">Github\u003C\u002Fa>.\u003C\u002Fp>\n","Easily add content to the empty cart display in Easy Digital Downloads.",80,4192,2,"2016-06-25T20:40:00.000Z","4.6.30","3.9.2","",[54,19,20,21,55],"checkout","shopping-cart","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Feasy-digital-downloads-empty-cart\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Feasy-digital-downloads-empty-cart.1.0.2.zip",85,"2026-04-16T10:56:18.058Z",{"slug":61,"name":62,"version":63,"author":64,"author_profile":65,"description":66,"short_description":67,"active_installs":68,"downloaded":69,"rating":25,"num_ratings":48,"last_updated":70,"tested_up_to":71,"requires_at_least":51,"requires_php":52,"tags":72,"homepage":73,"download_link":74,"security_score":58,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":59},"easy-digital-downloads-continue-shopping","Easy Digital Downloads – Continue Shopping","1.0.4","Syed Balkhi","https:\u002F\u002Fprofiles.wordpress.org\u002Fsmub\u002F","\u003Cp>Built for use with the Easy Digital Downloads plugin, this extension displays a Continue Shopping link in the checkout cart and allows you to specify what page users will be sent to when they click the link.\u003C\u002Fp>\n\u003Cp>Follow EDD Continue Shopping’s development on \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Feasydigitaldownloads\u002Fedd-continue-shopping\" rel=\"nofollow ugc\">Github\u003C\u002Fa>.\u003C\u002Fp>\n","Adds a Continue Shopping link to the Easy Digital Downloads checkout cart.",70,4783,"2021-03-25T15:37:00.000Z","5.7.15",[54,19,20,21,55],"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Feasy-digital-downloads-continue-shopping\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Feasy-digital-downloads-continue-shopping.1.0.4.zip",{"slug":76,"name":77,"version":78,"author":42,"author_profile":43,"description":79,"short_description":80,"active_installs":81,"downloaded":82,"rating":11,"num_ratings":11,"last_updated":83,"tested_up_to":50,"requires_at_least":51,"requires_php":52,"tags":84,"homepage":85,"download_link":86,"security_score":58,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":59},"easy-digital-downloads-clear-cart","Easy Digital Downloads – Clear Cart","1.0.1","\u003Cp>Built for use with the Easy Digital Downloads plugin, this extension displays a Clear Cart link in the checkout cart and allows you to remove all items from the shopping cart with a single click. You can also choose a page to redirect to once the cart is cleared.\u003C\u002Fp>\n\u003Cp>Follow EDD Clear Cart’s development on \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fsdavismedia\u002Fedd-clear-cart\" rel=\"nofollow ugc\">Github\u003C\u002Fa>.\u003C\u002Fp>\n","Adds a Clear Cart link to the Easy Digital Downloads checkout cart.",20,2526,"2016-06-25T20:57:00.000Z",[54,19,20,21,55],"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Feasy-digital-downloads-clear-cart\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Feasy-digital-downloads-clear-cart.1.0.1.zip",{"slug":88,"name":89,"version":78,"author":90,"author_profile":91,"description":92,"short_description":93,"active_installs":94,"downloaded":95,"rating":11,"num_ratings":11,"last_updated":96,"tested_up_to":97,"requires_at_least":98,"requires_php":52,"tags":99,"homepage":102,"download_link":103,"security_score":25,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":59},"easy-digital-downloads-coinpayments-gateway","Easy Digital Downloads – CoinPayments Gateway","DigitalME","https:\u002F\u002Fprofiles.wordpress.org\u002Fdigitalmeactivecampaign\u002F","\u003Cp>Add support for CoinPayments to Easy Digital Downloads. This plugin is almost entirely based on code provided by \u003Ca href=\"https:\u002F\u002Fwww.coinpayments.net\u002Findex.php?cmd=merchant_tools&sub=plugins\" rel=\"nofollow ugc\">CoinPayments\u003C\u002Fa>.\u003C\u002Fp>\n","Add support for CoinPayments to Easy Digital Downloads.",10,2270,"2026-02-03T19:45:00.000Z","6.9.4","3.0.1",[100,19,20,21,101],"digital-downloads","gateway","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Feasy-digital-downloads-coinpayments-gateway\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Feasy-digital-downloads-coinpayments-gateway.1.0.1.zip",{"slug":105,"name":106,"version":78,"author":90,"author_profile":91,"description":107,"short_description":108,"active_installs":94,"downloaded":109,"rating":11,"num_ratings":11,"last_updated":110,"tested_up_to":97,"requires_at_least":111,"requires_php":52,"tags":112,"homepage":115,"download_link":116,"security_score":25,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":59},"easy-digital-downloads-payment-icons-widget","Easy Digital Downloads – Payment Icons Widget","\u003Cp>Displays the accepted EDD payment method icons in the WordPress sidebar, along with custom text above and\u002For below the icons.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Follow this plugin on \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Feasydigitaldownloads\u002FEDD-Payment-Icons-Widget\" rel=\"nofollow ugc\">GitHub\u003C\u002Fa>\u003C\u002Fstrong>\u003C\u002Fp>\n","Displays the accepted EDD payment method icons in the WordPress sidebar.",2090,"2026-02-03T20:51:00.000Z","3.7",[19,20,21,113,114],"payment-icons","widget","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Feasy-digital-downloads-payment-icons-widget\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Feasy-digital-downloads-payment-icons-widget.1.0.1.zip",{"attackSurface":118,"codeSignals":181,"taintFlows":196,"riskAssessment":249,"analyzedAt":257},{"hooks":119,"ajaxHandlers":171,"restRoutes":178,"shortcodes":179,"cronEvents":180,"entryPointCount":140,"unprotectedCount":11},[120,126,129,134,137,141,145,149,154,159,164,168],{"type":121,"name":122,"callback":123,"file":124,"line":125},"action","plugins_loaded","load_plugin_textdomain","bayarcash-for-easy-digital-downloads.php",64,{"type":121,"name":122,"callback":127,"file":124,"line":128},"init_payment_processor",65,{"type":130,"name":131,"callback":132,"file":124,"line":133},"filter","edd_payment_gateways","register_gateway",66,{"type":121,"name":135,"callback":135,"file":124,"line":136},"admin_notices",68,{"type":121,"name":138,"callback":139,"priority":140,"file":124,"line":68},"edd_pre_process_purchase","check_config",1,{"type":121,"name":142,"callback":143,"file":124,"line":144},"wp_enqueue_scripts","enqueue_frontend_styles",73,{"type":121,"name":146,"callback":147,"file":124,"line":148},"admin_enqueue_scripts","enqueue_admin_scripts",76,{"type":130,"name":150,"callback":151,"file":152,"line":153},"cron_schedules","add_cron_interval","includes\\bayarcash-edd-cron-requery.php",31,{"type":121,"name":155,"callback":156,"file":157,"line":158},"init","verifyPayment","includes\\class-bayarcash-edd-payment-processor.php",34,{"type":130,"name":160,"callback":161,"priority":140,"file":162,"line":163},"edd_settings_sections_gateways","register_gateway_section","includes\\class-bayarcash-edd-settings.php",21,{"type":130,"name":165,"callback":166,"priority":140,"file":162,"line":167},"edd_settings_gateways","register_gateway_settings",22,{"type":121,"name":142,"callback":169,"file":162,"line":170},"enqueue_scripts",24,[172],{"action":173,"nopriv":174,"callback":175,"hasNonce":176,"hasCapCheck":174,"file":124,"line":177},"get_bayarcash_edd_settings",false,"ajax_get_bayarcash_settings",true,77,[],[],[],{"dangerousFunctions":182,"sqlUsage":183,"outputEscaping":185,"fileOperations":11,"externalRequests":48,"nonceChecks":191,"capabilityChecks":11,"bundledLibraries":192},[],{"prepared":11,"raw":11,"locations":184},[],{"escaped":186,"rawEcho":140,"locations":187},32,[188],{"file":162,"line":189,"context":190},118,"raw output",5,[193],{"name":194,"version":26,"knownCves":195},"Guzzle",[],[197,220],{"entryPoint":198,"graph":199,"unsanitizedCount":140,"severity":219},"handleTransactionReceipt (includes\\class-bayarcash-edd-payment-processor.php:154)",{"nodes":200,"edges":216},[201,206,210],{"id":202,"type":203,"label":204,"file":157,"line":205},"n0","source","$_POST",170,{"id":207,"type":208,"label":209,"file":157,"line":205},"n1","transform","→ requeryTransaction()",{"id":211,"type":212,"label":213,"file":214,"line":186,"wp_function":215},"n2","sink","wp_remote_get() [SSRF]","includes\\bayarcash-transaction-requery.php","wp_remote_get",[217,218],{"from":202,"to":207,"sanitized":174},{"from":207,"to":211,"sanitized":174},"medium",{"entryPoint":221,"graph":222,"unsanitizedCount":48,"severity":219},"\u003Cclass-bayarcash-edd-payment-processor> (includes\\class-bayarcash-edd-payment-processor.php:0)",{"nodes":223,"edges":243},[224,226,230,231,233,235,238,241],{"id":202,"type":203,"label":204,"file":157,"line":225},101,{"id":207,"type":212,"label":227,"file":157,"line":228,"wp_function":229},"wp_redirect() [Open Redirect]",200,"wp_redirect",{"id":211,"type":203,"label":204,"file":157,"line":205},{"id":232,"type":208,"label":209,"file":157,"line":205},"n3",{"id":234,"type":212,"label":213,"file":214,"line":186,"wp_function":215},"n4",{"id":236,"type":203,"label":204,"file":157,"line":237},"n5",178,{"id":239,"type":208,"label":240,"file":157,"line":237},"n6","→ processValidTransaction()",{"id":242,"type":212,"label":227,"file":157,"line":228,"wp_function":229},"n7",[244,245,246,247,248],{"from":202,"to":207,"sanitized":176},{"from":211,"to":232,"sanitized":174},{"from":232,"to":234,"sanitized":174},{"from":236,"to":239,"sanitized":174},{"from":239,"to":242,"sanitized":174},{"summary":250,"deductions":251},"The \"bayarcash-for-easy-digital-downloads\" plugin v1.1.0 exhibits a generally strong security posture, with most security best practices being followed. The static analysis shows a minimal attack surface, with only one AJAX handler and no shortcodes, cron events, or REST API routes. Crucially, the single AJAX handler appears to be protected, as there are no unprotected entry points identified. The code demonstrates good practices regarding SQL queries, with 100% utilizing prepared statements, and a high rate of output escaping (97%).  The absence of known CVEs and a clean vulnerability history further bolster its security reputation. However, the presence of two \"flows with unsanitized paths\" in the taint analysis, even if not classified as critical or high severity, warrants attention. These indicate potential vectors where user-supplied data might not be adequately cleaned before being used in a sensitive operation, although the analysis did not find exploitable critical or high severity issues in this version.\n\nWhile the plugin is strong in preventing common vulnerabilities like SQL injection and cross-site scripting due to prepared statements and proper escaping, the un-sanitized path flows represent a latent risk.  The plugin also includes the Guzzle HTTP client library, which, if bundled and outdated, could introduce vulnerabilities. Without further information on the specific Guzzle version or the nature of the un-sanitized paths, a definitive risk level is difficult to ascertain.  Overall, the plugin is well-engineered from a security perspective, with minimal identified weaknesses, but vigilance is advised regarding the un-sanitized path flows and the potential for bundled library issues.",[252,254],{"reason":253,"points":191},"Flows with unsanitized paths",{"reason":255,"points":256},"Bundled Guzzle library (potential version risk)",3,"2026-03-17T07:04:34.017Z",{"wat":259,"direct":274},{"assetPaths":260,"generatorPatterns":266,"scriptPaths":267,"versionParams":268},[261,262,263,264,265],"\u002Fwp-content\u002Fplugins\u002Fbayarcash-for-easy-digital-downloads\u002Fassets\u002Fjs\u002Fvue.global.prod.min.js","\u002Fwp-content\u002Fplugins\u002Fbayarcash-for-easy-digital-downloads\u002Fassets\u002Fjs\u002Faxios.min.js","\u002Fwp-content\u002Fplugins\u002Fbayarcash-for-easy-digital-downloads\u002Fassets\u002Fjs\u002Fbayarcash-edd.js","\u002Fwp-content\u002Fplugins\u002Fbayarcash-for-easy-digital-downloads\u002Fassets\u002Fcss\u002Fbayarcash-edd-admin.css","\u002Fwp-content\u002Fplugins\u002Fbayarcash-for-easy-digital-downloads\u002Fassets\u002Fcss\u002Fbayarcash-edd-frontend.css",[],[261,262,263],[269,270,271,272,273],"bayarcash-for-easy-digital-downloads\u002Fassets\u002Fjs\u002Fvue.global.prod.min.js?ver=","bayarcash-for-easy-digital-downloads\u002Fassets\u002Fjs\u002Faxios.min.js?ver=","bayarcash-for-easy-digital-downloads\u002Fassets\u002Fjs\u002Fbayarcash-edd.js?ver=","bayarcash-for-easy-digital-downloads\u002Fassets\u002Fcss\u002Fbayarcash-edd-admin.css?ver=","bayarcash-for-easy-digital-downloads\u002Fassets\u002Fcss\u002Fbayarcash-edd-frontend.css?ver=",{"cssClasses":275,"htmlComments":276,"htmlAttributes":277,"restEndpoints":278,"jsGlobals":280,"shortcodeOutput":282},[],[],[],[279],"\u002Fwp-json\u002Fbayarcash-edd\u002Fv1\u002Fsettings",[281],"bayarcashEddAdminData",[],{"error":176,"url":284,"statusCode":285,"statusMessage":286,"message":286},"http:\u002F\u002Flocalhost\u002Fapi\u002Fplugins\u002Fbayarcash-for-easy-digital-downloads\u002Fbundle",404,"no bundle for this plugin yet",{"slug":4,"current_version":6,"total_versions":48,"versions":288},[289,294],{"version":6,"download_url":24,"svn_tag_url":290,"released_at":26,"has_diff":174,"diff_files_changed":291,"diff_lines":26,"trac_diff_url":292,"vulnerabilities":293,"is_current":176},"https:\u002F\u002Fplugins.svn.wordpress.org\u002Fbayarcash-for-easy-digital-downloads\u002Ftags\u002F1.1.0\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Fbayarcash-for-easy-digital-downloads%2Ftags%2F1.0.1&new_path=%2Fbayarcash-for-easy-digital-downloads%2Ftags%2F1.1.0",[],{"version":78,"download_url":295,"svn_tag_url":296,"released_at":26,"has_diff":174,"diff_files_changed":297,"diff_lines":26,"trac_diff_url":26,"vulnerabilities":298,"is_current":174},"https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbayarcash-for-easy-digital-downloads.1.0.1.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fbayarcash-for-easy-digital-downloads\u002Ftags\u002F1.0.1\u002F",[],[]]