[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fFbR3jN2I8oorYtaIz6gH2YvKRdJwlT1de3Axl2uxoc4":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":25,"download_link":26,"security_score":27,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30,"vulnerabilities":31,"developer":32,"crawl_stats":29,"alternatives":38,"analysis":140,"fingerprints":202},"bp-favorite-notifications","Bp Favorite Notifications","1.0","aghajoon","https:\u002F\u002Fprofiles.wordpress.org\u002Faghajoon\u002F","\u003Cp>show BuddyPress user notification when users mark as favorite activity\u003C\u002Fp>\n","Notifiction Favorite Activity.",10,2333,80,1,"2014-12-11T11:36:00.000Z","4.0.38","4.0","",[20,21,22,23,24],"activity","bp","buddypress","favorite","notification","http:\u002F\u002Fwebcaffe.ir","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbp-favorite-notifications.zip",85,0,null,"2026-03-15T15:16:48.613Z",[],{"slug":7,"display_name":7,"profile_url":8,"plugin_count":33,"total_installs":34,"avg_security_score":27,"avg_patch_time_days":35,"trust_score":36,"computed_at":37},4,60,30,84,"2026-04-04T11:21:01.892Z",[39,58,79,103,123],{"slug":40,"name":41,"version":42,"author":43,"author_profile":44,"description":45,"short_description":46,"active_installs":11,"downloaded":47,"rating":36,"num_ratings":48,"last_updated":18,"tested_up_to":49,"requires_at_least":50,"requires_php":18,"tags":51,"homepage":54,"download_link":55,"security_score":56,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":57},"bp-show-activity-liked-avatars","BP Favorite Plus","2.2","mahdiar","https:\u002F\u002Fprofiles.wordpress.org\u002Fmahdiar\u002F","\u003Cul>\n\u003Cli>Tested up to BuddyPress 6.0\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>This plugin allows you to show user avatars below every activity who likeds that activity before. you have just need to install it and nothing more to do!\u003C\u002Fp>\n\u003Ch4>Main Features :\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>It uses Buddypress favorite system.\u003C\u002Fli>\n\u003Cli>Change the settings in dashboard.\u003C\u002Fli>\n\u003Cli>You can customize the avatar size.\u003C\u002Fli>\n\u003Cli>You can set how many avatars to show.\u003C\u002Fli>\n\u003Cli>You can use your custom CSS style.\u003C\u002Fli>\n\u003Cli>You can change the title for the avatars.\u003C\u002Fli>\n\u003Cli>A button for showing all avatars.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Languages :\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>English\u003C\u002Fli>\n\u003Cli>Persian\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Roadmap :\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Adding widget for showing top users(Users have higher likes !)\u003C\u002Fli>\n\u003Cli>And your nice opinions ! please contact us .\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Further Information\u003C\u002Fh3>\n\u003Cp>More information, the latest updates can be found at\u003C\u002Fp>\n\u003Cp>http:\u002F\u002Fpaaz.ir\u002F\u003C\u002Fp>\n\u003Cp>or contact me if you have any question\u003C\u002Fp>\n\u003Cp>http:\u002F\u002Fpaaz.ir\u002Fcontactus\u003C\u002Fp>\n","This plugin allows you to show user avatars below activity who liked that activity before",4537,6,"5.4.19","3.0",[40,22,23,52,53],"like","paaz","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fbp-show-activity-liked-avatars\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbp-show-activity-liked-avatars.zip",100,"2026-03-15T10:48:56.248Z",{"slug":59,"name":60,"version":61,"author":62,"author_profile":63,"description":64,"short_description":65,"active_installs":66,"downloaded":67,"rating":13,"num_ratings":68,"last_updated":69,"tested_up_to":70,"requires_at_least":71,"requires_php":72,"tags":73,"homepage":76,"download_link":77,"security_score":78,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"buddypress-group-email-subscription","BuddyPress Group Email Subscription","4.2.4","Boone Gorges","https:\u002F\u002Fprofiles.wordpress.org\u002Fboonebgorges\u002F","\u003Cp>This powerful plugin allows users to receive email notifications of group activity. Weekly or daily digests are available. Each user can choose how they want to subscribe to their groups.\u003C\u002Fp>\n\u003Cp>Please note that this plugin requires BuddyPress, as well as the BuddyPress Groups and Activity components.\u003C\u002Fp>\n\u003Cp>EMAIL SUBSCRIPTION LEVELS\u003Cbr \u002F>\nThere are 5 levels of email subscription options:\u003C\u002Fp>\n\u003Col>\n\u003Cli>No Email – Read this group on the web\u003C\u002Fli>\n\u003Cli>Weekly Summary Email – A summary of new topics each week\u003C\u002Fli>\n\u003Cli>Daily Digest Email – All the day’s activity bundled into a single email\u003C\u002Fli>\n\u003Cli>New Topics Email – Send new topics as they arrive (but don’t send replies)\u003C\u002Fli>\n\u003Cli>All Email – Send all group activity as it arrives\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Cp>DEFAULT SUBSCRIPTION STATUS\u003Cbr \u002F>\nGroup admins can choose one of the 5 subscription levels as a default that gets applied when new members join.\u003C\u002Fp>\n\u003Cp>DIGEST AND SUMMARY EMAILS\u003Cbr \u002F>\nThe daily digest email is sent every morning and contains all the emails from all the groups a user is subscribed to. The digest begins with a helpful topic summary. The weekly summary email contains the topic titles from the past week by default. Summary and digest timing can be configured in the back end. (The admin can view a sample of the digests and summaries in the queue by going adding this to your url: mydomain.com\u002Fsum=1. This won’t send emails just show what will be sent)\u003C\u002Fp>\n\u003Cp>HTML EMAILS\u003Cbr \u002F>\nThe digest and summary emails are sent out in multipart HTML and plain text email format. This makes the digest much more readable with better links. The email is multipart so users who need only plain text will get plain text.\u003C\u002Fp>\n\u003Cp>EMAILS FOR TOPICS I’VE STARTED OR COMMENTED ON (only available with BuddyPress legacy discussion forums)\u003Cbr \u002F>\nUsers receive email notifications when someone replies to a topic they create or comment on (similar to Facebook). This happens whether they are subscribed or not. Users can control this behaviour in their notifications page.\u003C\u002Fp>\n\u003Cp>TOPIC FOLLOW AND MUTE (only available with BuddyPress legacy discussion forums)\u003Cbr \u002F>\nUsers who are not fully subscribed to a group (ie. maybe they are on digest) can choose to get immediate email updates for specific topic threads. Any subsequent replies to that thread will be emailed to them. In an opposite way, users who are fully subscribed to a group but want to stop getting emails from a specific (perhaps annoying) thread can choose to mute that topic.  bbPress plugin users can utilize the “Subscribe” \u002F “Notify me of follow-up replies via email” option.\u003C\u002Fp>\n\u003Cp>ADMIN NOTIFICATION\u003Cbr \u002F>\nGroup admins can send out an email to all group members from the group’s admin section. This feature is helpful to quickly communicate to the whole group, but it should be used with caution.\u003C\u002Fp>\n\u003Cp>GROUP ADMINS CAN SET SUBSCRIPTION LEVEL\u003Cbr \u002F>\nGroup admins can set the subscription level for existing users on the group’s “Admin > Manage Members” page – either one by one or all at once.\u003C\u002Fp>\n\u003Cp>SPAM PROTECTION\u003Cbr \u002F>\nTo protect against spam, you can set a minimum number of days users need to be registered before their group activity will be emailed to other users. This feature is off by default, but can be enabled in the admin.\u003C\u002Fp>\n\u003Cp>TRANSLATORS\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Brazilian Portuguese – www.about.me\u002Fdennisaltermann (or www.congregacao.net)\u003C\u002Fli>\n\u003Cli>Catalan – Sara Arjona Téllez\u003C\u002Fli>\n\u003Cli>Danish – Morten Nalholm\u003C\u002Fli>\n\u003Cli>Dutch – Anja werkgroepen.net\u002Fwordpress, Tim de Hoog\u003C\u002Fli>\n\u003Cli>Farsi – Vahid Masoomi http:\u002F\u002Fwww.AzUni.ir\u003C\u002Fli>\n\u003Cli>French – http:\u002F\u002Fwww.claudegagne-photo.com, Sylvain Ghysens\u003C\u002Fli>\n\u003Cli>German – Peter Peterson, Thorsten Wollenhöfer, Jörg Lohrer\u003C\u002Fli>\n\u003Cli>Hebrew – Iggy Pritzker\u003C\u002Fli>\n\u003Cli>Italian – Stefano Russo\u003C\u002Fli>\n\u003Cli>Japanese – https:\u002F\u002Fbuddypress.org\u002Fcommunity\u002Fmembers\u002Fchestnut_jp\u002F\u003C\u002Fli>\n\u003Cli>Lithuanian – Vincent G http:\u002F\u002Fwww.Host1Free.com\u003C\u002Fli>\n\u003Cli>Russian – http:\u002F\u002Fwww.viaestvita.net\u002Fgroups\u002F\u003C\u002Fli>\n\u003Cli>Spanish – Williams Castillo, Gregor Gimmy\u003C\u002Fli>\n\u003Cli>Swedish – Thomas Schneider, Joakim Hising\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>NOTE TO PLUGIN AUTHORS\u003Cbr \u002F>\nIf your plugin posts updates to the standard BuddyPress activity stream, then group members who are subscribed via 3. Daily Digest and 5. All Email will get your updates automatically. However people subscribed as 2. Weekly Summary and 4. New Topic will not. If you feel some of your plugin’s updates are very important and want to make sure all subscribed members receive them, you can filter ‘ass_this_activity_is_important’ and return TRUE when $type matches your activity. See the ass_this_activity_is_important() function in bp-activity-subscription-functions.phpfor more info.\u003C\u002Fp>\n\u003Cp>PLUGIN SUPPORTERS:\u003Cbr \u002F>\nMajor supporters: shambhalanetwork.org & commons.gc.cuny.edu\u003Cbr \u002F>\nOther supporters: bluedotproductions.com\u003C\u002Fp>\n\u003Cp>PLUGIN DEVELOPMENT\u003Cbr \u002F>\nFor bug reports or to add patches or translation files, please visit the \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fboonebgorges\u002Fbuddypress-group-email-subscription\u002F\" rel=\"nofollow ugc\">GES Github page\u003C\u002Fa>.  Contributions are definitely welcome!\u003C\u002Fp>\n","This powerful plugin allows users to receive email notifications of group activity. Weekly or daily digests are available.",1000,230356,32,"2024-10-04T14:35:00.000Z","6.6.5","3.2","5.3",[74,20,21,22,75],"activities","groups","http:\u002F\u002Fwordpress.org\u002Fextend\u002Fplugins\u002Fbuddypress-group-email-subscription\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbuddypress-group-email-subscription.4.2.4.zip",92,{"slug":80,"name":81,"version":82,"author":83,"author_profile":84,"description":85,"short_description":86,"active_installs":87,"downloaded":88,"rating":89,"num_ratings":90,"last_updated":91,"tested_up_to":92,"requires_at_least":17,"requires_php":93,"tags":94,"homepage":99,"download_link":100,"security_score":101,"vuln_count":14,"unpatched_count":28,"last_vuln_date":102,"fetched_at":30},"wp-notification-bell","WP Notification Bell","1.4.7","wpdever","https:\u002F\u002Fprofiles.wordpress.org\u002Fwpdever\u002F","\u003Cp>Bell notifications for your website users. Display an on-site notification feed with notifications created manually or through triggers (new posts\u002Fcpts, WooCommerce, new comment replies, bbPress…).\u003Cbr \u002F>\nWP Notification Bell is a custom notification and bell alert plugin for WordPress. (not push notifications and no emails)\u003Cbr \u002F>\nThis plugin lets you show real-time notifications to either logged-in users, or guests, or both.\u003C\u002Fp>\n\u003Cp>Send on-site notification campaigns and let users know about news, promotions, events, product launches…\u003Cbr \u002F>\nOr automatically notify users when you publish a new post or cpt (or when frontend users create a custom post type), or about comment replies, WooCommerce order updates…\u003C\u002Fp>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Flexible notifications :\u003C\u002Fstrong> Create any type of notification with as many fields as you need. \u003C\u002Fli>\n\u003Cli>\u003Cstrong>Target notifications :\u003C\u002Fstrong> Broadcast notifications to everyone or send to a specific user role or specific usernames.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>New posts notifications :\u003C\u002Fstrong> Send notifications to users every time you publish a new post. \u003Cstrong>Custom post types\u003C\u002Fstrong> included.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>New comments notifications :\u003C\u002Fstrong> Facebook-like notifications to let logged-in users receive notifications for approved comment replies to their own comment, and let post authors receive notifications for approved comments on their post.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>bbPress notifications :\u003C\u002Fstrong> New reply notification in subscribed topics for bbPress.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>BuddyPress notifications :\u003C\u002Fstrong> Display BuddyPress notifications to logged-in users.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>WooCommerce notifications :\u003C\u002Fstrong> Notify customers about each order status update.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Unseen notification count :\u003C\u002Fstrong> Display the count of unseen notifications.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Documentation\u003C\u002Fh4>\n\u003Cp>For guides and tutorials, start from \u003Ca href=\"https:\u002F\u002Fwpsimpleplugins.wordpress.com\u002Fdocumentation\u002F\" rel=\"nofollow ugc\">WP Notification Bell documentation\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch4>Pro Features Available\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>New notification sound\u003C\u002Fli>\n\u003Cli>New comments notifications for guest users\u003C\u002Fli>\n\u003Cli>Display date on comment, buddypress and bbpress notifications\u003C\u002Fli>\n\u003Cli>Custom edit WooCommerce notifications (modify content, add date…)\u003C\u002Fli>\n\u003Cli>Restrict the bell display to specific user roles\u003C\u002Fli>\n\u003Cli>Target notifications to logged-out guests only\u003C\u002Fli>\n\u003Cli>Multiple custom post types new posts notifications\u003C\u002Fli>\n\u003Cli>Move post or cpt notifications to trash automatically \u003C\u002Fli>\n\u003Cli>Notification page redirection instead of drop-down box option\u003C\u002Fli>\n\u003Cli>AJAX powered recent notification feed widget in real-time\u003C\u002Fli>\n\u003Cli>Advanced Custom Fields placeholders (add ACF fields as default value)\u003C\u002Fli>\n\u003Cli>Polylang integration\u003C\u002Fli>\n\u003Cli>Display all notifications shortcode\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Add-ons Available\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>WooCommerce back in stock notifications :\u003C\u002Fstrong> Let your customers subscribe for wishlist to know when products are back in stock.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Dokan Multivendor Marketplace integration:\u003C\u002Fstrong> Notifications for Dokan vendors (new orders, order status completed, new product reviews).\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Asgaros Forum integration :\u003C\u002Fstrong> Let users be notified on-site when they’re mentioned in a post, or when there’s a new reply in a topic they’re subscribed to.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>WooCommerce new order notification :\u003C\u002Fstrong> New order notifications for administrators and shop managers on the admin bar menu.\u003C\u002Fli>\n\u003C\u002Ful>\n","On-site bell notifications. Display notifications custom or triggered (new posts\u002Fcpts, WooCommerce order updates, new comment replies, bbPress...)",800,26362,98,12,"2026-03-02T14:05:00.000Z","6.9.4","5.6",[95,96,22,97,98],"alert","bbpress","notifications","woocommerce","https:\u002F\u002Fwpsimpleplugins.wordpress.com\u002Fdocumentation\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-notification-bell.zip",99,"2025-09-05 00:00:00",{"slug":104,"name":105,"version":106,"author":107,"author_profile":108,"description":109,"short_description":110,"active_installs":111,"downloaded":112,"rating":56,"num_ratings":113,"last_updated":114,"tested_up_to":115,"requires_at_least":116,"requires_php":18,"tags":117,"homepage":121,"download_link":122,"security_score":78,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"bp-favorite-notification","BuddyPress Favorite Notification","1.2.3","Varun Dubey","https:\u002F\u002Fprofiles.wordpress.org\u002Fvapvarun\u002F","\u003Cp>BuddyPress Favorite Notification  adds a notification for BuddyPress activity.\u003C\u002Fp>\n\u003Ch4>How it works:-\u003C\u002Fh4>\n\u003Cp>Live notifications of BuddyPress activities notify the user of likes and favorites.\u003C\u002Fp>\n","BuddyPress Favorite Notification  adds a notification for BuddyPress activity.",200,24248,5,"2024-12-31T05:43:00.000Z","6.7.5","3.5",[22,118,119,120,24],"buddypress-favorite-notification","buddypress-like","buddypress-notification","http:\u002F\u002Fwww.wbcomdesigns.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbp-favorite-notification.1.2.3.zip",{"slug":124,"name":125,"version":126,"author":127,"author_profile":128,"description":129,"short_description":130,"active_installs":131,"downloaded":132,"rating":13,"num_ratings":133,"last_updated":134,"tested_up_to":18,"requires_at_least":18,"requires_php":18,"tags":135,"homepage":138,"download_link":139,"security_score":27,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"bp-activity-comment-notifier","BuddyPress Activity Comment Notifier","1.2.0","Brajesh Singh","https:\u002F\u002Fprofiles.wordpress.org\u002Fsbrajesh\u002F","\u003Cp>BuddyPress Activity Comment Notifier plugin emulates the facebook style notification for the comments made on user activity. It will show the notification to a user in following scenario\u003C\u002Fp>\n\u003Cul>\n\u003Cli>When a user has an update and someone else comments on it(It is handled by BuddyPress Now)\u003C\u002Fli>\n\u003Cli>When a user comments on someone’s update and other users also comment on that update, all the users are notified\u003C\u002Fli>\n\u003Cli>When a user favorites your activity\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>For more details, please visit \u003Ca href=\"http:\u002F\u002Fbuddydev.com\u002Fplugins\u002Fbuddypress-activity-comment-notifier\u002F\" title=\"Plugin page\" rel=\"nofollow ugc\">BuddyPress Activity Comment Notifier plugin page\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>Free & paid supports are available via \u003Ca href=\"http:\u002F\u002Fbuddydev.com\u002Fsupport\u002Fforums\u002F\" title=\"BuddyDev support forums\" rel=\"nofollow ugc\">BuddyDev Support Forum\u003C\u002Fa>\u003C\u002Fp>\n","BuddyPress Activity Comment Notifier plugin emulates the facebook style notification for the comments made on user activity.",70,12214,3,"2017-12-06T07:37:00.000Z",[20,136,137,22,24],"activity-comment","activity-comment-notification","https:\u002F\u002Fbuddydev.com\u002Fplugins\u002Fbuddypress-activity-comment-notifier\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbp-activity-comment-notifier.1.2.0.zip",{"attackSurface":141,"codeSignals":183,"taintFlows":190,"riskAssessment":191,"analyzedAt":201},{"hooks":142,"ajaxHandlers":175,"restRoutes":180,"shortcodes":181,"cronEvents":182,"entryPointCount":14,"unprotectedCount":14},[143,149,153,156,160,163,167,171],{"type":144,"name":145,"callback":146,"file":147,"line":148},"action","init","bp_favorite_load_textdomain","bp-favorite.php",18,{"type":144,"name":150,"callback":151,"file":147,"line":152},"wp_print_styles","load_styles_favorite",26,{"type":144,"name":154,"callback":151,"file":147,"line":155},"admin_print_styles",27,{"type":144,"name":157,"callback":158,"file":147,"line":159},"wp_print_scripts","load_js_favorite",33,{"type":144,"name":161,"callback":158,"file":147,"line":162},"admin_enqueue_scripts",34,{"type":144,"name":164,"callback":165,"file":147,"line":166},"bp_setup_globals","bp_favorite_setup_globals",47,{"type":144,"name":168,"callback":169,"priority":11,"file":147,"line":170},"bp_activity_screen_single_activity_permalink","favorite_notifier_remove_notification",157,{"type":144,"name":172,"callback":173,"priority":11,"file":147,"line":174},"bp_activity_add_user_favorite","favorite_notification",181,[176],{"action":177,"nopriv":178,"callback":177,"hasNonce":178,"hasCapCheck":178,"file":147,"line":179},"deleteFavoriteNotification",false,193,[],[],[],{"dangerousFunctions":184,"sqlUsage":185,"outputEscaping":187,"fileOperations":28,"externalRequests":28,"nonceChecks":28,"capabilityChecks":28,"bundledLibraries":189},[],{"prepared":33,"raw":28,"locations":186},[],{"escaped":28,"rawEcho":28,"locations":188},[],[],[],{"summary":192,"deductions":193},"The \"bp-favorite-notifications\" plugin v1.0 exhibits a concerning security posture primarily due to its unprotected AJAX handler. While the plugin demonstrates good practices in other areas, such as using prepared statements for all SQL queries and proper output escaping, the single unprotected entry point presents a significant risk. The static analysis reveals one AJAX handler that lacks authentication checks, creating a potential avenue for unauthorized actions if this handler performs any sensitive operations.\n\nThe absence of taint analysis findings and a clean vulnerability history are positive indicators, suggesting the code is generally well-written and has not been a target of known exploits. However, the presence of an unprotected AJAX endpoint overshadows these strengths. It's crucial to understand what actions this AJAX handler performs. If it handles user data, modifies settings, or triggers any functionality that should be restricted, it could lead to vulnerabilities like unauthorized access, data manipulation, or privilege escalation.\n\nIn conclusion, the plugin has a strong foundation in secure coding practices like prepared SQL statements and output escaping. The lack of historical vulnerabilities is also a good sign. Nevertheless, the single unprotected AJAX entry point is a critical weakness that requires immediate attention. The overall risk is elevated due to this oversight, despite the otherwise secure coding patterns observed.",[194,197,199],{"reason":195,"points":196},"Unprotected AJAX handler",7,{"reason":198,"points":196},"Missing nonce checks on AJAX",{"reason":200,"points":113},"Missing capability checks","2026-03-17T00:47:00.912Z",{"wat":203,"direct":214},{"assetPaths":204,"generatorPatterns":207,"scriptPaths":208,"versionParams":209},[205,206],"\u002Fwp-content\u002Fplugins\u002Fbp-favorite-notifications\u002Fcss\u002Fbp-fav.css","\u002Fwp-content\u002Fplugins\u002Fbp-favorite-notifications\u002Fjs\u002Fbp-fav.js",[],[206],[210,211,212,213],"bp-fav?ver=20141113","bp-fav-js?ver=","bp-favorite-notifications\u002Fcss\u002Fbp-fav.css?ver=","bp-favorite-notifications\u002Fjs\u002Fbp-fav.js?ver=",{"cssClasses":215,"htmlComments":224,"htmlAttributes":225,"restEndpoints":235,"jsGlobals":236,"shortcodeOutput":237},[216,217,218,219,220,221,222,223],"noti-fav","delete-fav","loader-del","bp-favorite","fav-avatar","fav-block","fav-message","deta-fav",[],[226,227,228,229,230,231,232,233,234],"onclick=\"deleteFavoriteNotification('","id=\"action\"class=\"noti-fav\"","class=\"delete-fav\"","class=\"loader-del\"","class=\"bp-favorite\"","class=\"fav-avatar\"","class=\"fav-block\"","class=\"fav-message\"","class=\"deta-fav\"",[],[177],[]]