[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fU_QlC64IkzTN2QD_DWOvXZjNvRIU6UPdxupa9dcg5WQ":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":15,"tags":18,"homepage":24,"download_link":25,"security_score":13,"vuln_count":26,"unpatched_count":26,"last_vuln_date":27,"fetched_at":28,"vulnerabilities":29,"developer":30,"crawl_stats":27,"alternatives":38,"analysis":126,"fingerprints":213},"bp-group-members-data","BuddyPress Elevator Pitch – Enhanced Member Cards","1.3","SK","https:\u002F\u002Fprofiles.wordpress.org\u002Fsooskriszta\u002F","\u003Cp>Without the plugin, if you go to a Group and click on Members you see the following info about each member on the member’s respective “card”:\u003Cbr \u002F>\n– username\u003Cbr \u002F>\n– profile image\u003Cbr \u002F>\n– join time\u002Ffreshness\u003C\u002Fp>\n\u003Cp>This plugin enables the Admin to choose which X-Profile fields shall be displayed on these cards, thereby allowing you to make your BuddyPress community truly yours!\u003C\u002Fp>\n\u003Cp>Hence, it enables the members to make their elevator pitch – a quick glance at the member list is all that’s needed to check which members may or may not be relevant, useful, or needed for or interested in a particular task, event, or group, etc.\u003C\u002Fp>\n","Choose which fields appear on the \"member cards\" on member list pages, such as Groups.",20,2785,100,1,"","4.9.29","4.8",[19,20,21,22,23],"bp","buddypress","community","social-network","social-networking","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fbp-group-members-data\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbp-group-members-data.zip",0,null,"2026-03-15T10:48:56.248Z",[],{"slug":31,"display_name":7,"profile_url":8,"plugin_count":32,"total_installs":33,"avg_security_score":34,"avg_patch_time_days":35,"trust_score":36,"computed_at":37},"sooskriszta",3,80,90,30,87,"2026-04-04T01:09:05.576Z",[39,57,76,96,113],{"slug":40,"name":41,"version":42,"author":43,"author_profile":44,"description":45,"short_description":46,"active_installs":13,"downloaded":47,"rating":13,"num_ratings":14,"last_updated":48,"tested_up_to":16,"requires_at_least":49,"requires_php":50,"tags":51,"homepage":53,"download_link":54,"security_score":55,"vuln_count":26,"unpatched_count":26,"last_vuln_date":27,"fetched_at":56},"buddykit","BuddyKit – Additional features for BuddyPress","0.0.4","Joseph G.","https:\u002F\u002Fprofiles.wordpress.org\u002Fdunhakdis\u002F","\u003Cp>BuddyKit adds several features like Live Notifications and Media Activities to your BuddyPress sites. More social media related features are coming soon!\u003C\u002Fp>\n","BuddyKit adds several features like Live Notifications and Media Activities to your BuddyPress powered websites.",12833,"2019-09-08T10:15:00.000Z","4.5","5.4",[52,20,21,23],"activity-streams","https:\u002F\u002Fbuddykit.io\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbuddykit.0.0.4.zip",85,"2026-03-15T15:16:48.613Z",{"slug":58,"name":59,"version":60,"author":61,"author_profile":62,"description":63,"short_description":64,"active_installs":65,"downloaded":66,"rating":13,"num_ratings":67,"last_updated":68,"tested_up_to":69,"requires_at_least":70,"requires_php":15,"tags":71,"homepage":74,"download_link":75,"security_score":55,"vuln_count":26,"unpatched_count":26,"last_vuln_date":27,"fetched_at":56},"bp-whats-hot","What's Hot Activity Tab for BuddyPress","0.2","edwardtownend","https:\u002F\u002Fprofiles.wordpress.org\u002Fedwardtownend\u002F","\u003Cp>Adds a What’s Hot tab to the BuddyPress activity stream.\u003C\u002Fp>\n\u003Cp>What’s Hot is defined by items that have received comments, ordered by recency of comments and posts.\u003C\u002Fp>\n","Adds a What's Hot tab to the BuddyPress activity stream.",10,4649,2,"2015-08-26T10:54:00.000Z","4.3.34","3.6",[72,19,20,23,73],"activity","whats-hot","http:\u002F\u002Fdmsqd.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbp-whats-hot.zip",{"slug":77,"name":78,"version":79,"author":80,"author_profile":81,"description":82,"short_description":83,"active_installs":84,"downloaded":85,"rating":86,"num_ratings":87,"last_updated":88,"tested_up_to":89,"requires_at_least":90,"requires_php":15,"tags":91,"homepage":94,"download_link":95,"security_score":55,"vuln_count":26,"unpatched_count":26,"last_vuln_date":27,"fetched_at":56},"buddypress-edit-activity","BuddyPress Edit Activity","1.1.1","Syed Balkhi","https:\u002F\u002Fprofiles.wordpress.org\u002Fsmub\u002F","\u003Cp>Let your BuddyPress members edit their activity posts and replies on the front-end of the site. You can even set a time limit for how long activity posts should remain editable.\u003C\u002Fp>\n\u003Cp>Just activate the plugin, and every activity post and reply will become editable, styled automatically by BuddyPress to fit with your theme.\u003C\u002Fp>\n","BuddyPress Edit Activity allows your members to edit their activity posts on the front-end of your BuddyPress-powered site.",900,75058,92,17,"2020-04-23T13:56:00.000Z","5.4.19","3.8",[72,20,92,93,23],"messaging","profiles","https:\u002F\u002Fwww.buddyboss.com\u002Fproduct\u002Fbuddypress-edit-activity\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbuddypress-edit-activity.1.1.1.zip",{"slug":97,"name":98,"version":99,"author":100,"author_profile":101,"description":102,"short_description":103,"active_installs":11,"downloaded":104,"rating":26,"num_ratings":26,"last_updated":105,"tested_up_to":106,"requires_at_least":107,"requires_php":15,"tags":108,"homepage":111,"download_link":112,"security_score":55,"vuln_count":26,"unpatched_count":26,"last_vuln_date":27,"fetched_at":56},"buddypress-sidebar","Buddypress Sidebar","1.2","Adam Nowak","https:\u002F\u002Fprofiles.wordpress.org\u002Fadam320\u002F","\u003Cp>Create multiple sidebars, just name your new sidebar the same name as the Buddypress Component and it will show up when that component is displayed.  So you can have separate sidebars for ‘Activity’, ‘Members’, ‘Groups’, etc.  You can also name a sidebar the same name as any page and that sidebar will automatically show up on that page.  Prefabricated sidebars include Home and Blog.  The Blog sidebar will appear on single and archive blog pages.\u003C\u002Fp>\n","This plugin enables you to have multiple sidebars for Buddypress. Create new sidebars that are unique to each page.",20329,"2011-03-24T19:00:00.000Z","3.1.4","2.9",[20,109,110,23],"custom-sidebar","sidebar","http:\u002F\u002Fhyperspatial.com\u002Fwordpress-development\u002Fplugins\u002Fbuddypress-sidebar","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbuddypress-sidebar.1.2.zip",{"slug":114,"name":115,"version":99,"author":100,"author_profile":101,"description":116,"short_description":117,"active_installs":65,"downloaded":118,"rating":26,"num_ratings":26,"last_updated":119,"tested_up_to":120,"requires_at_least":107,"requires_php":15,"tags":121,"homepage":124,"download_link":125,"security_score":55,"vuln_count":26,"unpatched_count":26,"last_vuln_date":27,"fetched_at":56},"buddypress-friends","Buddypress Friends","\u003Cp>This plugin adds a widget to Buddypress that displays the friends for the current user that is logged in.  They are displayed as Avatar images or as a list of your friends.  You can easily resize the avatar images and control how many of your friends display in the widget.  This plugin will be expanding to include a lot more features including sorting friends in different manners.\u003C\u002Fp>\n","This plugin adds a widget to Buddypress that displays the friends for the current user that is logged in.",16303,"2011-12-10T21:25:00.000Z","3.2.1",[122,20,114,123,23],"avatars","friends","http:\u002F\u002Fhyperspatial.com\u002Fwordpress-development\u002Fplugins\u002Fbuddypress-friends","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbuddypress-friends.1.2.zip",{"attackSurface":127,"codeSignals":174,"taintFlows":205,"riskAssessment":206,"analyzedAt":212},{"hooks":128,"ajaxHandlers":170,"restRoutes":171,"shortcodes":172,"cronEvents":173,"entryPointCount":26,"unprotectedCount":26},[129,135,137,140,143,147,151,155,158,163,167],{"type":130,"name":131,"callback":132,"file":133,"line":134},"action","admin_enqueue_scripts","bp_show_profile_data_admin_scripts","bp-show-profile-data.php",9,{"type":130,"name":131,"callback":136,"file":133,"line":65},"bp_show_profile_data_admin_styles",{"type":130,"name":138,"callback":139,"file":133,"line":87},"wp_enqueue_scripts","bp_show_profile_data_styles",{"type":130,"name":141,"callback":142,"file":133,"line":11},"bp_init","bp_show_profile_data_init",{"type":130,"name":144,"callback":145,"file":133,"line":146},"xprofile_field_after_sidebarbox","select_profile_field_metabox",53,{"type":130,"name":148,"callback":149,"file":133,"line":150},"xprofile_fields_saved_field","profile_field_save",54,{"type":130,"name":152,"callback":153,"file":133,"line":154},"bp_group_members_list_item","bp_show_profile_data_display",371,{"type":130,"name":156,"callback":153,"file":133,"line":157},"bp_directory_members_item",372,{"type":130,"name":159,"callback":160,"file":161,"line":162},"bp_include","bp_show_profile_data_include","loader.php",18,{"type":130,"name":164,"callback":165,"file":161,"line":166},"admin_init","closure",23,{"type":130,"name":168,"callback":165,"file":161,"line":169},"admin_notices",27,[],[],[],[],{"dangerousFunctions":175,"sqlUsage":176,"outputEscaping":178,"fileOperations":26,"externalRequests":26,"nonceChecks":67,"capabilityChecks":26,"bundledLibraries":204},[],{"prepared":67,"raw":26,"locations":177},[],{"escaped":26,"rawEcho":179,"locations":180},16,[181,184,186,187,188,189,190,192,194,195,196,197,199,200,201,202],{"file":133,"line":182,"context":183},159,"raw output",{"file":133,"line":185,"context":183},179,{"file":133,"line":185,"context":183},{"file":133,"line":185,"context":183},{"file":133,"line":185,"context":183},{"file":133,"line":185,"context":183},{"file":133,"line":191,"context":183},194,{"file":133,"line":193,"context":183},218,{"file":133,"line":193,"context":183},{"file":133,"line":193,"context":183},{"file":133,"line":193,"context":183},{"file":133,"line":198,"context":183},227,{"file":133,"line":198,"context":183},{"file":133,"line":198,"context":183},{"file":133,"line":198,"context":183},{"file":133,"line":203,"context":183},362,[],[],{"summary":207,"deductions":208},"The \"bp-group-members-data\" plugin v1.3 exhibits a generally strong security posture regarding its attack surface, with no apparent entry points for direct exploitation like AJAX handlers, REST API routes, or shortcodes. The absence of external HTTP requests and file operations further reduces potential vectors. Furthermore, the presence of nonce checks and the use of prepared statements for all SQL queries are positive security practices. However, a significant concern arises from the complete lack of output escaping. This means that any data rendered by the plugin could be vulnerable to Cross-Site Scripting (XSS) attacks if that data originates from untrusted sources or is manipulated by an attacker. The plugin also has no recorded vulnerability history, which, coupled with the lack of critical code signals and taint flows, suggests a relatively secure codebase to date. Despite the strong foundation, the unescaped output presents a clear and present danger that needs immediate attention to prevent potential XSS vulnerabilities.",[209],{"reason":210,"points":211},"0% of outputs properly escaped",8,"2026-03-16T22:41:18.668Z",{"wat":214,"direct":228},{"assetPaths":215,"generatorPatterns":219,"scriptPaths":220,"versionParams":224},[216,217,218],"\u002Fwp-content\u002Fplugins\u002Fbp-group-members-data\u002Fadmin\u002Fjs\u002Fbuddy-profile-admin-scripts.js","\u002Fwp-content\u002Fplugins\u002Fbp-group-members-data\u002Fadmin\u002Fcss\u002Fbuddy-profile-admin-styles.css","\u002Fwp-content\u002Fplugins\u002Fbp-group-members-data\u002Fcss\u002Fbuddy-profile-data.css",[],[221,222,223],"admin\u002Fjs\u002Fbuddy-profile-admin-scripts.js","admin\u002Fcss\u002Fbuddy-profile-admin-styles.css","css\u002Fbuddy-profile-data.css",[225,226,227],"bp-group-members-data\u002Fadmin\u002Fjs\u002Fbuddy-profile-admin-scripts.js?ver=","bp-group-members-data\u002Fadmin\u002Fcss\u002Fbuddy-profile-admin-styles.css?ver=","bp-group-members-data\u002Fcss\u002Fbuddy-profile-data.css?ver=",{"cssClasses":229,"htmlComments":231,"htmlAttributes":232,"restEndpoints":243,"jsGlobals":244,"shortcodeOutput":245},[230],"pp-profile-data-pages-list",[],[233,234,235,236,237,238,239,240,241,242],"name=\"card-visibility\"","id=\"card-visibility\"","name=\"profile-data-pages-form\"","id=\"profile-data-pages-form\"","id=\"pp-profile-data-pages-list\"","name=\"pages[]\"","id=\"pp-allowed-pages-groups\"","id=\"pp-allowed-pages-members\"","name=\"profile-data-pages-access\"","name=\"submit\"",[],[],[]]