[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fIDGYj9n8gUlDUI6vRGxHgC0oSnnX7Gz6oWwAM6s9EkM":3,"$fAP7tjmZBBPraOEMeBDjnxfXlJfVWbB03kTTDcDsQ_YU":178,"$foAqWBkakioEf--vZAzSrwwvYru9Fs_il0tfjAV_72ys":183},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":24,"download_link":25,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28,"discovery_status":29,"vulnerabilities":30,"developer":31,"crawl_stats":27,"alternatives":37,"analysis":135,"fingerprints":165},"block-scripts-a","Block scripts A","1.0","oleksandr87","https:\u002F\u002Fprofiles.wordpress.org\u002Foleksandr87\u002F","\u003Cp>A simple plugin that blocks external scripts, XSS, RFI, SQL injections\u003C\u002Fp>\n","A simple plugin that blocks external scripts, XSS, RFI, SQL injections",10,1238,0,"2018-09-22T05:30:00.000Z","4.7.33","4.6","",[19,20,21,22,23],"block","injections","rfi","sql","xss","http:\u002F\u002Foleksandrustymenko.net.ua\u002Fproducts","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fblock-scripts-a.zip",85,null,"2026-04-16T10:56:18.058Z","no_bundle",[],{"slug":7,"display_name":7,"profile_url":8,"plugin_count":32,"total_installs":33,"avg_security_score":26,"avg_patch_time_days":34,"trust_score":35,"computed_at":36},8,130,30,84,"2026-05-20T04:46:12.322Z",[38,60,79,98,119],{"slug":39,"name":40,"version":41,"author":42,"author_profile":43,"description":44,"short_description":45,"active_installs":46,"downloaded":47,"rating":48,"num_ratings":49,"last_updated":50,"tested_up_to":51,"requires_at_least":52,"requires_php":17,"tags":53,"homepage":58,"download_link":59,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"shieldfy","Shieldfy Security Firewall and Anti Virus","3.6.0","Shieldfy","https:\u002F\u002Fprofiles.wordpress.org\u002Feslamsalem\u002F","\u003Ch4>Start Protecting Your Website Block attacks targeting your website.\u003C\u002Fh4>\n\u003Cp>Shieldfy works as an external shields loads before your website and filter all requests , passing only trusted non harmful traffic and block other malicious traffic\u003C\u002Fp>\n\u003Cp>Shieldfy Engine can identify and block several attacks including and not limited to\u003Cbr \u002F>\nUnrestricted file uploads , XSS (cross site scripting) , SQLI (SQL Injection) , RCE (Remote Code Execution), LFI\u002FRFI (Local\u002FRemote File Inclution) and many other\u003C\u002Fp>\n\u003Ch4>IP Analysis and Risk Score.\u003C\u002Fh4>\n\u003Cp>Shieldfy identify the persona of your blog visitors via IP , UserAgent , if user connectos through TOR , VPN , Proxy and more Trying to detect if that user wants to do something bad or not.\u003C\u002Fp>\n\u003Ch4>Fast High level support\u003C\u002Fh4>\n\u003Cp>Shieldfy security team is always here for help , our support is here for you anytime 24\u002F7.\u003C\u002Fp>\n","Shieldfy is a cloud-based security shield for your website to protect it from web attacks and malwares.",40,8150,100,3,"2018-11-12T15:04:00.000Z","4.9.29","3.0.1",[54,55,56,57,23],"antimalware","antivirus","security","sql-injection","https:\u002F\u002Fshieldfy.io\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fshieldfy.3.6.zip",{"slug":61,"name":62,"version":63,"author":64,"author_profile":65,"description":66,"short_description":67,"active_installs":11,"downloaded":68,"rating":13,"num_ratings":13,"last_updated":69,"tested_up_to":70,"requires_at_least":71,"requires_php":72,"tags":73,"homepage":76,"download_link":77,"security_score":78,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"cybershield-waf","Cybershield Firewall","0.1.6","SECURAS TECHNOLOGIES","https:\u002F\u002Fprofiles.wordpress.org\u002Fsecuras\u002F","\u003Cp>Experience effective web security with CyberShield, the advanced Web Application Firewall (WAF) from Securas Technologies, designed to actively protect your digital assets from emerging threats and cyberattacks.\u003C\u002Fp>\n\u003Ch4>Key Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Comprehensive Dashboard\u003C\u002Fstrong>: Easily navigate through the firewall features. CyberShield gathers all the data from your security features on one dashboard, enabling a quick check on your website’s security posture.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Advanced Statistics\u003C\u002Fstrong>: Measure and improve your cybersecurity performance with comprehensive statistics.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>PHP Configuration Audit\u003C\u002Fstrong>: Enhances your PHP settings including error reporting, file permissions, session management, and encryption to prevent common vulnerabilities.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>At-risk Visitor Identification\u003C\u002Fstrong>: Prevent cyberattacks with our advanced detection and prevention system that identifies at-risk visitors.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>SQL Injection Protection\u003C\u002Fstrong>: Our AI-powered detection scans and sanitizes every query that reaches your database to prevent SQL injection attacks.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Bot Detection\u003C\u002Fstrong>: Conserve bandwidth and resources by filtering out harmful or irrelevant bots, including scrapers, spammers, and crawlers.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>IP Auto-Ban\u003C\u002Fstrong>: Automatically ban IPs that exhibit suspicious activity, helping to keep your website secure with minimal downtime.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Exposed Services Monitoring\u003C\u002Fstrong>: Identify and report any network services that are publicly accessible and may be vulnerable to exploitation.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Leaked Data Monitoring\u003C\u002Fstrong>: Continuously scan various sources to detect if your credentials have been compromised, ensuring rapid response to secure your accounts.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>More Features\u003C\u002Fstrong>: Explore additional capabilities on our \u003Ca href=\"https:\u002F\u002Fsecuras.fr\u002Fcybershield-security\u002F\" rel=\"nofollow ugc\">CyberShield Official Page\u003C\u002Fa>.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>IP Geolocation\u003C\u002Fstrong>: Identify the location of your visitors and block or allow access based on their location using https:\u002F\u002Fipinfo.io\u002F.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>[0.1.6] – 2024-10-25\u003C\u002Fh3>\n\u003Ch3>Minor Bug Fix\u003C\u002Fh3>\n\u003Ch3>[0.1.5] – 2024-10-25\u003C\u002Fh3>\n\u003Ch3>Minor Bug Fix\u003C\u002Fh3>\n\u003Ch3>[0.1.4] – 2024-10-25\u003C\u002Fh3>\n\u003Ch3>Minor Bug Fix\u003C\u002Fh3>\n\u003Ch3>[0.1.3] – 2024-10-25\u003C\u002Fh3>\n\u003Ch3>Minor Bug Fix\u003C\u002Fh3>\n\u003Ch3>[0.1.2] – 2024-10-25\u003C\u002Fh3>\n\u003Ch3>Minor Bug Fix\u003C\u002Fh3>\n\u003Ch3>[0.1.1] – 2023-08-27\u003C\u002Fh3>\n\u003Ch3>Minor Bug Fix\u003C\u002Fh3>\n\u003Ch3>[0.1.0] – 2023-08-27\u003C\u002Fh3>\n\u003Ch3>Added\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Service Check Module: Enhances monitoring and diagnostics.\u003C\u002Fli>\n\u003Cli>AI Threat Detection Module: Specializes in detecting SQL injection attacks.\u003C\u002Fli>\n\u003Cli>Support Ticketing System: Streamlined helpdesk for better user assistance.\u003C\u002Fli>\n\u003Cli>Multi-Language Support: Now available in French, English, and Arabic.\u003C\u002Fli>\n\u003Cli>Client PHPinfo Fetching Function: Gathers configuration information for support purposes.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Thrid Party Libraries\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fipinfo.io\u002F\" rel=\"nofollow ugc\">IPInfo\u003C\u002Fa>: We use Ipinfo for IP geolocation services. By using this plugin, you agree to the following terms and conditions:\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fipinfo.io\u002Fprivacy-policy\" rel=\"nofollow ugc\">IpInfo’s privacy policy\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fipinfo.io\u002Fterms\" rel=\"nofollow ugc\">IpInfo’s terms of service\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Got more questions? \u003Ca href=\"mailto:contact@securas.fr\" title=\"Securas Contact\" rel=\"nofollow ugc\">Contact us!\u003C\u002Fa>\u003C\u002Fp>\n","CyberShield, Your First Line of Defense Against Web Attacks.",1035,"2024-10-27T15:54:00.000Z","6.6.5","5.4","7.2",[56,57,74,75,23],"waf","web-application-firewall","https:\u002F\u002Fcyber-shield.fr\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcybershield-waf.0.1.6.zip",92,{"slug":80,"name":81,"version":82,"author":83,"author_profile":84,"description":85,"short_description":86,"active_installs":11,"downloaded":87,"rating":13,"num_ratings":13,"last_updated":88,"tested_up_to":51,"requires_at_least":89,"requires_php":17,"tags":90,"homepage":95,"download_link":96,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":97},"pro-adblock","Pro-AdBlock","2.0.0","sergej_k","https:\u002F\u002Fprofiles.wordpress.org\u002Fsergej_k\u002F","\u003Cp>Advertising displayed on webpages can be a security risk. Currently, the advertising consists of embedded third party content. These contents are not under the website’s owner editorial control and add a repeatedly criminally exploited attack vector to the website. An adblocker protects a user’s surfing. This plugin supports the usage of advertisement blockers and shows a warning message to users that have no adblocker enabled.\u003C\u002Fp>\n","This plugin shows a warning message to users that have no adblocker enabled.",1886,"2018-05-18T11:20:00.000Z","4.5",[91,92,93,56,94],"adblock","advertising","modal","web-surfing","https:\u002F\u002Fgithub.com\u002Fnowherecoding\u002Fpro-adblock\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fpro-adblock.zip","2026-04-06T09:54:40.288Z",{"slug":99,"name":100,"version":101,"author":102,"author_profile":103,"description":104,"short_description":105,"active_installs":11,"downloaded":106,"rating":48,"num_ratings":107,"last_updated":108,"tested_up_to":109,"requires_at_least":110,"requires_php":111,"tags":112,"homepage":117,"download_link":118,"security_score":48,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":97},"yasakani-cache","Yasakani Cache","3.9.8","enomoto celtislab","https:\u002F\u002Fprofiles.wordpress.org\u002Fenomoto-celtislab\u002F","\u003Cp>This plug-in stores the Page HTML \u002F REST json data that dynamic WordPress blog has been generated as a output cache by SQLite. After the cache, it can respond to the request to the ultra-high speed by using a cache without starting the WordPress of processing.\u003C\u002Fp>\n\u003Ch4>Simple Setup\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Enable the cache, select the cache expiration.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Cache exclusion condition\u003C\u002Fh4>\n\u003Cp>Pages\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Login user\u003C\u002Fli>\n\u003Cli>Home\u002FFront_page, Fixed Page, Post, Custom Post and WP embedded content card only. Other than this page does not cache.\u003C\u002Fli>\n\u003Cli>Page you want to exclude from the cache, you can specify from the edit screen of the meta box.\u003C\u002Fli>\n\u003Cli>Pages that are protected by a password does not cache.\u003C\u002Fli>\n\u003Cli>PHP error (excluding E_NOTICE, E_STRICT, E_DEPRECATED) occurred page does not cache.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>REST API\u003C\u002Fp>\n\u003Cul>\n\u003Cli>REST method is other than GET or OPTIONS\u003C\u002Fli>\n\u003Cli>REST no data response\u003C\u002Fli>\n\u003Cli>REST route endpoint you want to exclude from the cache, you can specify from the edit screen of the meta box.\u003C\u002Fli>\n\u003Cli>REST error response\u003C\u002Fli>\n\u003Cli>PHP error (excluding E_NOTICE, E_STRICT, E_DEPRECATED) occurred page does not cache.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Cache Clear\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Clear the cache of automatically corresponding post in the articles and editing changes and the like of the comment.\u003C\u002Fli>\n\u003Cli>The cache is a plugins and widgets such as a change is not clear. If you make these configuration changes, etc., should be cleared to use “Cache Clear” button.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Log\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>When you activate the log, you can easily check the behavior and execution time of the cache. (slower only a little)\u003C\u002Fli>\n\u003Cli>SQLite database keeps logs for one week.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>To further speed-up\u003C\u002Fh4>\n\u003Cp>Page cache processing of this plugin is processing in PHP and SQLite.\u003Cbr \u002F>\nYou can also use a faster Expert mode. To use Expert mode you need to edit ‘php.ini’ and add auto_prepend_file.\u003Cbr \u002F>\nOr you can edit the .htaccess file and use mod_deflate and mod_expires or mod_pagespeed etc to make it faster.\u003Cbr \u002F>\nIf you do .htaccess edit, edit from the well studied. Do not forget that you back up your .htaccess file.\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fplugin-load-filter\u002F\" rel=\"ugc\">plugin load filter\u003C\u002Fa> is also recommended for speed you do not use the cache.\u003C\u002Fp>\n\u003Cp>For more detailed information, there is an introduction page.\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fceltislab.net\u002Fen\u002Fwp-yasakani-cache\u002F\" title=\"Documentation\" rel=\"nofollow ugc\">Documentation\u003C\u002Fa>\u003C\u002Fp>\n","Simple ! Easy !! Ultra-high-speed !!!. Definitive edition of the page cache. And Bot and Security Utility.",9052,7,"2026-03-31T02:54:00.000Z","7.0","6.5","8.1",[113,114,115,56,116],"botblock","cache","rest","sqlite","https:\u002F\u002Fceltislab.net\u002Fen\u002Fwp-yasakani-cache\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fyasakani-cache.zip",{"slug":120,"name":121,"version":122,"author":120,"author_profile":123,"description":124,"short_description":125,"active_installs":13,"downloaded":126,"rating":13,"num_ratings":13,"last_updated":127,"tested_up_to":70,"requires_at_least":128,"requires_php":72,"tags":129,"homepage":133,"download_link":134,"security_score":78,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":97},"airfieldhub","AIRFIELDHUB PLUGIN","0.1.3","https:\u002F\u002Fprofiles.wordpress.org\u002Fairfieldhub\u002F","\u003Cp>This WordPress Plugin is to seamlessly integrate AirfieldHub into your website.\u003C\u002Fp>\n\u003Cp>Accept PPR, BOOKOUT, keep a log of all your aircraft movements, and instant online payments for landing fees, parking fees amongst so many other features.\u003C\u002Fp>\n\u003Cp>These custom WordPress dynamic Gutenberg blocks integrate AirfieldHub seamlessly into your wordpress website.\u003C\u002Fp>\n\u003Ch3>Arbitrary section\u003C\u002Fh3>\n\u003Cp>We hope that you like the ease of using the AirfieldHub plugin, we will aim to maintain it to the best standards possible.\u003C\u002Fp>\n\u003Cp>NOTE: you are required to have a FREE AirfieldHub account to be able to see the appropriate forms on your website.\u003C\u002Fp>\n\u003Cp>NOTE: the FREE account does include a “powered by” icon at the bottom of the forms hosted by AirfieldHub – this is explicitely stated on our terms and conditions on AirfieldHub which you agreed to prior to creating your AirfieldHub account.\u003C\u002Fp>\n\u003Ch3>Donations\u003C\u002Fh3>\n\u003Cp>No donations required – this plugin is provided free of charge by AirfieldHub\u003C\u002Fp>\n","AIRFIELDHUB",1514,"2024-08-25T13:53:00.000Z","5.9",[130,120,19,131,132],"airfield","ppr","simple-ppr","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fairfieldhub","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fairfieldhub.0.1.3.zip",{"attackSurface":136,"codeSignals":148,"taintFlows":155,"riskAssessment":156,"analyzedAt":164},{"hooks":137,"ajaxHandlers":144,"restRoutes":145,"shortcodes":146,"cronEvents":147,"entryPointCount":13,"unprotectedCount":13},[138],{"type":139,"name":140,"callback":141,"file":142,"line":143},"filter","mod_rewrite_rules","bsaadd_to_htaccess","index.php",78,[],[],[],[],{"dangerousFunctions":149,"sqlUsage":150,"outputEscaping":152,"fileOperations":13,"externalRequests":13,"nonceChecks":13,"capabilityChecks":13,"bundledLibraries":154},[],{"prepared":13,"raw":13,"locations":151},[],{"escaped":13,"rawEcho":13,"locations":153},[],[],[],{"summary":157,"deductions":158},"The \"block-scripts-a\" v1.0 plugin exhibits an exceptionally strong security posture based on the provided static analysis. The absence of any identified attack surface, dangerous functions, SQL injection vulnerabilities, unescaped output, or external HTTP requests is highly commendable. Furthermore, the complete lack of taint analysis findings and a clean vulnerability history with zero recorded CVEs indicate that the developers have prioritized secure coding practices and have maintained a diligent approach to security throughout the plugin's lifecycle.\n\nWhile the plugin demonstrates excellent security fundamentals, the complete absence of certain security mechanisms, such as nonce and capability checks, coupled with a lack of any entry points for code execution, might suggest a plugin with very limited functionality. This can be a double-edged sword; while it reduces the potential attack surface, it also means that crucial security checks are not implemented, potentially due to their irrelevance for the plugin's purpose. However, given the current data, the overall security risk is assessed as very low, with no immediate threats apparent. The plugin appears to be well-built from a security perspective, assuming its functionality aligns with the minimal attack surface observed.",[159,162],{"reason":160,"points":161},"No Nonce Checks",5,{"reason":163,"points":161},"No Capability Checks","2026-03-17T00:57:15.904Z",{"wat":166,"direct":171},{"assetPaths":167,"generatorPatterns":168,"scriptPaths":169,"versionParams":170},[],[],[],[],{"cssClasses":172,"htmlComments":173,"htmlAttributes":174,"restEndpoints":175,"jsGlobals":176,"shortcodeOutput":177},[],[],[],[],[],[],{"error":179,"url":180,"statusCode":181,"statusMessage":182,"message":182},true,"http:\u002F\u002Flocalhost\u002Fapi\u002Fplugins\u002Fblock-scripts-a\u002Fbundle",404,"no bundle for this plugin yet",{"slug":4,"current_version":6,"total_versions":13,"versions":184},[]]