[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fkCZ8YWs9GCqyitHxVBOOSDg1OYsCtjGiMuaYseFsj2s":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":25,"download_link":26,"security_score":27,"vuln_count":28,"unpatched_count":29,"last_vuln_date":30,"fetched_at":31,"vulnerabilities":32,"developer":64,"crawl_stats":38,"alternatives":70,"analysis":169,"fingerprints":780},"bread-butter","Bread & Butter: Content Gating for Verified Leads","8.5.0.100","Bread & Butter","https:\u002F\u002Fprofiles.wordpress.org\u002Fbreadbutter\u002F","\u003Cp>\u003Cstrong>Turn anonymous traffic into revenue. Get verified leads from your existing forms – no changes required. Automatically enrich user profiles with real job titles and company details.\u003C\u002Fstrong>\u003Cbr \u002F>\nBread & Butter instantly upgrades your existing forms to capture high-quality, verified leads. Stop settling for generic clicks & start tracking actual people.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Boost Conversions:\u003C\u002Fstrong> Get more sales and leads using the forms you already have.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Enrich Automatically:\u003C\u002Fstrong> AI agents scour the web and find all available information on your new subscribers.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Track People, Not Clicks:\u003C\u002Fstrong> See exactly who is converting and where they come from.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Verify Instantly:\u003C\u002Fstrong> Add social login and verification tools to clean up your sales pipeline.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>AI-Crafted Follow-Ups:\u003C\u002Fstrong> AI agents write unique, hyper-personalized email content based on the deep profile data collected.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Track People, Not Clicks:\u003C\u002Fstrong> See exactly who is converting and where they come from.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Personalize & Scale:\u003C\u002Fstrong> Use rich first-party data to send hyper-personalized email follow-ups.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cblockquote>\n\u003Cp>\u003Cem>“The quality of leads in our CRM changed overnight. We didn’t have to slog through pages of incomplete forms, or fake email addresses. Bread & Butter started converting overnight for us.”\u003C\u002Fem>\u003Cbr \u002F>\n  \u003Cstrong>@Andrew D – Managing Director, MGI Research\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cem>“In our first 30 days of implementing Bread & Butter into our Marketing Tech Stack, we saw an incredible 126% increase in our lead conversions. It’s so good, it should be illegal.”\u003C\u002Fem>\u003Cbr \u002F>\n  \u003Cstrong>@Aaron Seminiano – Head of Marketing, Twister Technologies\u003C\u002Fstrong>\u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Ch4>HIGHLIGHTS\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\n\u003Cp>\u003Cstrong>Turn Anonymous Visitors into Revenue\u003C\u002Fstrong>\u003Cbr \u002F>\nStop filling your CRM with fake emails. Use one-click \u003Cstrong>Social Login\u003C\u002Fstrong> (Google, Apple, LinkedIn, Microsoft, Facebook) to instantly verify user identity and capture accurate first-party data.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>AI-Powered Lead Enrichment\u003C\u002Fstrong>\u003Cbr \u002F>\nTurn simple form submissions into complete user profiles. Our AI agents automatically scour the web to find and aggregate all public information about your subscribers—including job titles, company details, and social links—the moment they hit submit on your existing forms.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>AI-Generated Hyper-Personalized Emails\u003C\u002Fstrong>\u003Cbr \u002F>\nStop sending generic drip campaigns. Our specialized AI agents analyze the enriched data of every new lead to craft and send unique, highly relevant follow-up emails that drive engagement.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Smart Content Gating (SEO-Friendly)\u003C\u002Fstrong>\u003Cbr \u002F>\nLock specific articles, categories, or pages behind a registration wall without hurting your search rankings. Includes flexible triggers like \u003Cstrong>scroll-depth\u003C\u002Fstrong>, \u003Cstrong>time-delay\u003C\u002Fstrong>, or immediate lock.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Tailored Gating for Every Asset\u003C\u002Fstrong>\u003Cbr \u002F>\nDesign the perfect gateway for any content type. Whether it’s a \u003Cstrong>White Paper, Video, E-Book, PDF, Annual Report,\u003C\u002Fstrong> or \u003Cstrong>Email Newsletter\u003C\u002Fstrong>, you can customize the lock to match your buyer’s journey.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Works with Your Existing Forms\u003C\u002Fstrong>\u003Cbr \u002F>\nNo need to rebuild your site. Bread & Butter AI integrates with your current forms (Gravity Forms, Contact Form 7, etc.) to verify leads and enrich user profiles automatically.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Track the “Invisible Middle”\u003C\u002Fstrong>\u003Cbr \u002F>\nGo beyond basic analytics. See the full user journey—from the first anonymous click to the final conversion—so you know exactly which content drives revenue.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Sync with Your Favorite Tools\u003C\u002Fstrong>\u003Cbr \u002F>\nAutomatically push verified leads and user activity data to \u003Cstrong>HubSpot, Salesforce, Mailchimp, Pipedrive, Slack\u003C\u002Fstrong>, and more.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Zero-Code Setup\u003C\u002Fstrong>\u003Cbr \u002F>\nGet up and running in under 2 minutes. Our lightweight plugin requires no developer time and won’t slow down your site.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Privacy-First & GDPR Ready\u003C\u002Fstrong>\u003Cbr \u002F>\nBuilt with privacy in mind. Features include customizable terms of service acceptance and “de-identification” options to keep your data compliant.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>BENEFITS\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\n\u003Cp>\u003Cstrong>Eliminate Fake Leads Forever\u003C\u002Fstrong>\u003Cbr \u002F>\nSay goodbye to “mickey.mouse@gmail.com.” By relying on verified social identities rather than manual typing, you ensure your CRM and email lists are filled with real, reachable people.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Boost Conversion Rates by Removing Friction\u003C\u002Fstrong>\u003Cbr \u002F>\nLong forms kill conversions. By offering one-click \u003Cstrong>Social Login\u003C\u002Fstrong>, you remove the barrier to entry, making it effortless for visitors to sign up, subscribe, or download your content.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>True Campaign Attribution\u003C\u002Fstrong>\u003Cbr \u002F>\nStop guessing where your best leads come from. Get granular campaign-level attribution to see exactly which traffic sources are driving the most conversions, allowing you to optimize your marketing spend with confidence.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Monetize Your Content Strategy\u003C\u002Fstrong>\u003Cbr \u002F>\nStop giving away your most valuable assets for free. Whether it’s a high-value white paper or an exclusive video, turn that engagement into tangible \u003Cstrong>First-Party Data\u003C\u002Fstrong> that your sales team can actually use.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Save Developer Time & Budget\u003C\u002Fstrong>\u003Cbr \u002F>\nBread & Butter is designed to layer on top of your existing website stack. You don’t need to hire a dev team or rebuild your forms—just install, configure, and go live in minutes.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Make Data-Driven Marketing Decisions\u003C\u002Fstrong>\u003Cbr \u002F>\nIdentify your top-performing assets. Our detailed dashboard shows you exactly which content is driving verified signups, allowing you to double down on what generates revenue.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Own Your Audience (First-Party Data)\u003C\u002Fstrong>\u003Cbr \u002F>\nAs third-party cookies disappear, owning your customer data is critical. We help you build a direct, verified relationship with your audience that no algorithm change can take away.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>CONVERSION TOOLS\u003C\u002Fh4>\n\u003Cblockquote>\n\u003Cp>\u003Cem>“Create gated content, just like The Wall Street Journal where you get asked to enter your details before reading an article”\u003C\u002Fem>\u003Cbr \u002F>\n  \u003Cstrong>@Dan, Marketing Director, aither.com.au\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cem>“When Bread & Butter converts a visitor it researches that prospect (website, social, recent news, activity on our website) and crafts a hyper-personalized email. Normally it would take me hours to research a contact, now it’s done in seconds.”\u003C\u002Fem>\u003Cbr \u002F>\n  \u003Cstrong>@Arlene Panganiban, Publisher, vancouvermom.ca\u003C\u002Fstrong>\u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Ch4>INCLUDED TOOLS AND FEATURES\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\n\u003Cp>\u003Cstrong>Instant Lead Capture\u003C\u002Fstrong>\u003Cbr \u002F>\n\u003Cstrong>Capture leads in one click—no coding needed.\u003C\u002Fstrong>\u003Cbr \u002F>\nA smart floating widget that uses AI to offer the right visitor a one-click opt-in at the perfect moment.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>2x the conversions of legacy forms\u003C\u002Fli>\n\u003Cli>Collapses on scroll to respect the user experience\u003C\u002Fli>\n\u003Cli>Real-time sync to your CRM via Bread & Butter automation\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Form Booster (Social Autofill)\u003C\u002Fstrong>\u003Cbr \u002F>\n\u003Cstrong>Stop guessing if your leads are real.\u003C\u002Fstrong>\u003Cbr \u002F>\nUpgrade your existing Gravity, Ninja, or HubSpot forms with one-click social login. Visitors verify with Google or LinkedIn, and the form autofills instantly.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Auto-fills First Name, Last Name, and Email with verified data\u003C\u002Fli>\n\u003Cli>Works with your current forms—nothing to rebuild\u003C\u002Fli>\n\u003Cli>Built-in anti-spam (No CAPTCHA needed)\u003C\u002Fli>\n\u003Cli>Compatible with WPForms, Gravity Forms, HubSpot, Elementor, and more\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Content Gate Classic (SEO Friendly)\u003C\u002Fstrong>\u003Cbr \u002F>\n\u003Cstrong>Gate content without hiding it from Google.\u003C\u002Fstrong>\u003Cbr \u002F>\nLock specific pages or articles behind a registration wall while keeping them fully indexed by search engines and AI tools.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Converts up to 55% of visitors\u003C\u002Fli>\n\u003Cli>AI automatically selects the best login option for each user\u003C\u002Fli>\n\u003Cli>GDPR ready with built-in Terms of Service handling\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Content Gate Preview\u003C\u002Fstrong>\u003Cbr \u002F>\n\u003Cstrong>The “New York Times” Model.\u003C\u002Fstrong>\u003Cbr \u002F>\nShow a teaser of your content to hook the reader, then gate the rest to drive subscriptions.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Maximum SEO value: search engines see the full page\u003C\u002Fli>\n\u003Cli>Trigger by time delay or scroll depth\u003C\u002Fli>\n\u003Cli>One login unlocks all gated content site-wide\u003C\u002Fli>\n\u003Cli>Eliminates “burner emails” by encouraging social verification\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Content Gate Secure\u003C\u002Fstrong>\u003Cbr \u002F>\n\u003Cstrong>Maximum protection for premium assets.\u003C\u002Fstrong>\u003Cbr \u002F>\nPerfect for whitepapers, PDFs, and market reports. Users must verify their identity \u003Cem>before\u003C\u002Fem> they can access or download the file.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Ideal for high-value assets you don’t want indexed\u003C\u002Fli>\n\u003Cli>Redirects users to the secure file after login\u003C\u002Fli>\n\u003Cli>Customizable messaging for a seamless experience\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Calendar Booster (Calendly Integration)\u003C\u002Fstrong>\u003Cbr \u002F>\n\u003Cstrong>Know your prospect \u003Cem>before\u003C\u002Fem> the meeting.\u003C\u002Fstrong>\u003Cbr \u002F>\nSecure your embedded Calendly booking page. Require verification to book a slot, ensuring every meeting request comes from a real, qualified human.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Nurture AI builds a full prospect profile (Role, Company, LinkedIn)\u003C\u002Fli>\n\u003Cli>Eliminates spam bookings and “no-shows”\u003C\u002Fli>\n\u003Cli>You walk into every meeting prepared with background intel\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Subscription Booster\u003C\u002Fstrong>\u003Cbr \u002F>\n\u003Cstrong>Grow your list without rebuilding your site.\u003C\u002Fstrong>\u003Cbr \u002F>\nA high-performance pop-up that syncs real-time with Mailchimp, Salesforce, HubSpot, and more via Zapier.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Up to 80% more verified subscribers\u003C\u002Fli>\n\u003Cli>Social login options make your site look premium\u003C\u002Fli>\n\u003Cli>Fully customizable imagery and branding\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Contact Intelligence\u003C\u002Fstrong>\u003Cbr \u002F>\n\u003Cstrong>Turn your “Contact Us” form into a sales engine.\u003C\u002Fstrong>\u003Cbr \u002F>\nReplace your black-hole contact form. Require verification for inbound messages so your sales team knows exactly who is reaching out.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Nurture AI researches the sender automatically (Company, Role, History)\u003C\u002Fli>\n\u003Cli>Sales reps can “claim” messages and own the follow-up\u003C\u002Fli>\n\u003Cli>Eliminates spam bots without annoying CAPTCHAs\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Incentive Campaigns (LeadScore AI)\u003C\u002Fstrong>\u003Cbr \u002F>\n\u003Cstrong>The right offer, to the right person, at the right time.\u003C\u002Fstrong>\u003Cbr \u002F>\nUse AI to spot high-intent visitors and trigger personalized incentives (like gift cards or special offers) to close the deal.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Targets behavior patterns, not just random visitors\u003C\u002Fli>\n\u003Cli>Great for contests, sweepstakes, and special promotions\u003C\u002Fli>\n\u003Cli>Captures full visitor profiles, not just emails\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Hyper-Personalization\u003C\u002Fstrong>\u003Cbr \u002F>\n\u003Cstrong>Greet your visitors by name.\u003C\u002Fstrong>\u003Cbr \u002F>\nOnce a user verifies, inject their first name into headlines, CTAs, and page content to boost conversion rates by up to 202%.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Works automatically with verified profiles\u003C\u002Fli>\n\u003Cli>No developer needed—inject names into any text block\u003C\u002Fli>\n\u003Cli>Creates a VIP experience for returning users\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Account Widget\u003C\u002Fstrong>\u003Cbr \u002F>\n\u003Cstrong>Keep users logged in.\u003C\u002Fstrong>\u003Cbr \u002F>\nA simple, customizable “Sign In \u002F Sign Out” button for your navigation menu that remembers the user’s preferred login method.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Persistent login recognition across sessions\u003C\u002Fli>\n\u003Cli>Fully customizable positioning\u003C\u002Fli>\n\u003Cli>One-click access for returning users\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Privacy Manager (GDPR\u002FCCPA)\u003C\u002Fstrong>\u003Cbr \u002F>\n\u003Cstrong>Compliance made simple.\u003C\u002Fstrong>\u003Cbr \u002F>\nGive users the power to “pseudo-anonymize” their data after conversion, keeping you compliant with strict data privacy laws.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Secure PIN verification for data management\u003C\u002Fli>\n\u003Cli>API available to sync anonymization across your tech stack\u003C\u002Fli>\n\u003Cli>Built-in peace of mind for global traffic\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Authentication as a Service\u003C\u002Fstrong>\u003Cbr \u002F>\n\u003Cstrong>Enterprise-grade login for Apps & Intranets.\u003C\u002Fstrong>\u003Cbr \u002F>\nA complete sign-in solution that supports Enterprise SSO (Okta, Microsoft) and restricts access to specific corporate domains.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>AI-driven discovery for the best login option\u003C\u002Fli>\n\u003Cli>Restrict sign-in to specific email domains (e.g., @yourcompany.com)\u003C\u002Fli>\n\u003Cli>Supports Google, Facebook, LinkedIn, Microsoft, Apple, GitHub, and more\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>MARKETING AUTOMATION\u003C\u002Fh4>\n\u003Cp>Smart automation. Zero coding experience required. Design custom workflows quickly. Keep data synchronized across multiple platforms and save serious time and money. Work on your business, not in your business.\u003C\u002Fp>\n\u003Cp>Platform Integrations:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Google Analytics (GA4)\u003C\u002Fli>\n\u003Cli>Google sheets\u003C\u002Fli>\n\u003Cli>WordPress\u003C\u002Fli>\n\u003Cli>WooCommerce\u003C\u002Fli>\n\u003Cli>MemberPress\u003C\u002Fli>\n\u003Cli>Mailchimp\u003C\u002Fli>\n\u003Cli>Pipedrive\u003C\u002Fli>\n\u003Cli>Slack\u003C\u002Fli>\n\u003Cli>Zapier\u003C\u002Fli>\n\u003Cli>Segment\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Web Forms support:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>WPForms\u003C\u002Fli>\n\u003Cli>Ninja Forms\u003C\u002Fli>\n\u003Cli>Gravity Forms\u003C\u002Fli>\n\u003Cli>Formidable\u003C\u002Fli>\n\u003Cli>HubSpot\u003C\u002Fli>\n\u003Cli>Salesforce\u003C\u002Fli>\n\u003Cli>UnBounce\u003C\u002Fli>\n\u003Cli>Calendly\u003C\u002Fli>\n\u003Cli>Contact Form 7\u003C\u002Fli>\n\u003Cli>Elementor\u003C\u002Fli>\n\u003C\u002Ful>\n","Turn anonymous traffic into revenue. Get verified leads from your existing forms - no changes required. Automatically enrich user profiles with real j &hellip;",40,5719,94,7,"2026-03-10T15:26:00.000Z","6.9.4","1.0","7.0.0",[20,21,22,23,24],"ai-marketing","content-gating","lead-capture","lead-enrichment","lead-generation","https:\u002F\u002Fbreadbutter.io","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbread-butter.zip",98,2,0,"2025-12-04 16:31:43","2026-03-15T15:16:48.613Z",[33,49],{"id":34,"url_slug":35,"title":36,"description":37,"plugin_slug":4,"theme_slug":38,"affected_versions":39,"patched_in_version":40,"severity":41,"cvss_score":42,"cvss_vector":43,"vuln_type":44,"published_date":30,"updated_date":45,"references":46,"days_to_patch":48},"CVE-2025-12189","bread-butter-gate-content-capture-leads-collect-first-party-data-nurture-with-ai-agents-cross-site-request-forgery-to-ar","Bread & Butter: Gate content + Capture leads + Collect first-party data + Nurture with Ai agents \u003C= 7.11.1374 - Cross-Site Request Forgery to Arbitrary File Upload","The Bread & Butter: Gate content + Capture leads + Collect first-party data + Nurture with Ai agents plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 7.11.1374. This is due to missing or incorrect nonce validation on the uploadImage() function. This makes it possible for unauthenticated attackers to upload arbitrary files that make remote code execution possible via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.",null,"\u003C=7.11.1374","8.0.1398","medium",4.3,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:N\u002FUI:R\u002FS:U\u002FC:N\u002FI:L\u002FA:N","Cross-Site Request Forgery (CSRF)","2025-12-09 17:02:27",[47],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002Fbb280004-e0ba-44c8-a205-8fec30900d86?source=api-prod",5,{"id":50,"url_slug":51,"title":52,"description":53,"plugin_slug":4,"theme_slug":38,"affected_versions":54,"patched_in_version":55,"severity":41,"cvss_score":56,"cvss_vector":57,"vuln_type":58,"published_date":59,"updated_date":60,"references":61,"days_to_patch":63},"CVE-2024-51802","lead-capture-gated-content-newsletter-opt-ins-authenticated-contributor-stored-cross-site-scripting","Lead capture, gated content & newsletter opt-ins \u003C= 7.4.857 - Authenticated (Contributor+) Stored Cross-Site Scripting","The Lead capture, gated content & newsletter opt-ins plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 7.4.857 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","\u003C=7.4.857","7.5.880",6.4,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:L\u002FUI:N\u002FS:C\u002FC:L\u002FI:L\u002FA:N","Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","2024-11-08 00:00:00","2024-12-06 12:43:19",[62],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002Fc7a2be64-18e5-4e79-a5a2-3bf3cf949a67?source=api-prod",29,{"slug":65,"display_name":7,"profile_url":8,"plugin_count":66,"total_installs":11,"avg_security_score":27,"avg_patch_time_days":67,"trust_score":68,"computed_at":69},"breadbutter",1,17,93,"2026-04-04T17:26:33.048Z",[71,90,108,131,149],{"slug":72,"name":73,"version":74,"author":72,"author_profile":75,"description":76,"short_description":77,"active_installs":78,"downloaded":79,"rating":29,"num_ratings":29,"last_updated":80,"tested_up_to":81,"requires_at_least":82,"requires_php":83,"tags":84,"homepage":87,"download_link":88,"security_score":89,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"happierleads","Happierleads – Identify your B2B website visitors even if they work remotely","3.0.1","https:\u002F\u002Fprofiles.wordpress.org\u002Fhappierleads\u002F","\u003Cp>View and reach out to the companies that show high buying intent, but aren’t converting. We are the only solution that can accurately track website visitors when they work from home or while they are using their personal devices\u003C\u002Fp>\n\u003Cp>You can create behavioral and demographic filters to segment the leads and we score them automatically based on their web activity.\u003C\u002Fp>\n\u003Cp>For a small portion of our results we can show you the exact visitor and when we can’t we show you the decision-makers in a robust global database with job role filtering and real-time email verification. Reveal and export email addresses, phone numbers and linkedin profiles.\u003C\u002Fp>\n","Identify your B2B website visitors that work remotely Generate 3X more leads than your competition by using your existing web traffic",600,3518,"2023-11-14T22:02:00.000Z","6.3.0","2.7","7.2",[85,72,22,24,86],"find-who-visited-my-website","reverse-ip-lookup","https:\u002F\u002Fwww.happierleads.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fhappierleads.zip",85,{"slug":91,"name":92,"version":93,"author":94,"author_profile":95,"description":96,"short_description":97,"active_installs":78,"downloaded":98,"rating":29,"num_ratings":29,"last_updated":99,"tested_up_to":16,"requires_at_least":100,"requires_php":100,"tags":101,"homepage":105,"download_link":106,"security_score":107,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"lead-generation-form","Lead Generation Form","1.0.9","FARAZFRANK","https:\u002F\u002Fprofiles.wordpress.org\u002Ffarazfrank\u002F","\u003Cp>Lead Generation Form helps you create and manage lead forms on your WordPress website without writing any code. The drag-and-drop form builder makes it simple to design forms that match your needs, whether you’re collecting customer inquiries, booking requests, or registration details.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>View Pro Demo:\u003C\u002Fstrong> \u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwpfrank.com\u002Fdemo\u002Flead-generation-form-pro\u002F\" rel=\"nofollow ugc\">Lead Generation Form Pro\u003C\u002Fa>\u003C\u002Fstrong>\u003Cbr \u002F>\n\u003Cstrong>More About Pro:\u003C\u002Fstrong> \u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwpfrank.com\u002Fwordpress-plugins\u002Flead-generation-form-pro\u002F\" rel=\"nofollow ugc\">Lead Generation Form Pro Details\u003C\u002Fa>\u003C\u002Fstrong>\u003Cbr \u002F>\n\u003Cstrong>Where To Buy:\u003C\u002Fstrong> \u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwpfrank.com\u002Faccount\u002Fsignup\u002Flead-generation-form-pro\" rel=\"nofollow ugc\">Buy Lead Generation Form Pro\u003C\u002Fa>\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Video Tutorial\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002FEdWXAceCmPw?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\u003C\u002Fp>\n\u003Ch4>Why Use This Lead Form Builder?\u003C\u002Fh4>\n\u003Cp>Building effective lead forms shouldn’t require technical knowledge. This form builder gives you a straightforward way to create forms, manage captured leads, and get notified when someone submits an inquiry. Everything works from your WordPress dashboard with no external dependencies.\u003C\u002Fp>\n\u003Ch4>What Can You Build?\u003C\u002Fh4>\n\u003Cp>The flexible lead form generator supports various use cases:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Contact and inquiry forms\u003C\u002Fli>\n\u003Cli>Booking and reservation forms\u003C\u002Fli>\n\u003Cli>Registration forms for events, classes or courses\u003C\u002Fli>\n\u003Cli>Appointment scheduling forms\u003C\u002Fli>\n\u003Cli>Feedback and survey forms\u003C\u002Fli>\n\u003Cli>Document upload forms\u003C\u002Fli>\n\u003Cli>Customer interest forms\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Supported Form Fields\u003C\u002Fh4>\n\u003Cp>Build your lead forms using these field types:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Text fields (single line, password, email, phone, URL)\u003C\u002Fli>\n\u003Cli>Date and number inputs\u003C\u002Fli>\n\u003Cli>Textarea for longer responses\u003C\u002Fli>\n\u003Cli>Dropdown select menus\u003C\u002Fli>\n\u003Cli>Radio buttons and checkboxes\u003C\u002Fli>\n\u003Cli>File upload fields\u003C\u002Fli>\n\u003Cli>Heading tags (H1-H6) and paragraph text\u003C\u002Fli>\n\u003Cli>Color picker and range slider\u003C\u002Fli>\n\u003Cli>Submit button with custom styling\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>How The Lead Form Builder Works\u003C\u002Fh4>\n\u003Col>\n\u003Cli>Go to the plugin dashboard and click ‘Create New Form’\u003C\u002Fli>\n\u003Cli>Enter a name for your lead form\u003C\u002Fli>\n\u003Cli>Drag and drop the fields you need from the right sidebar\u003C\u002Fli>\n\u003Cli>Configure each field’s settings (label, placeholder, required, etc.)\u003C\u002Fli>\n\u003Cli>Add a Submit button to your form\u003C\u002Fli>\n\u003Cli>Click “Save Form” to generate a shortcode\u003C\u002Fli>\n\u003Cli>Paste the shortcode like [WLFG id=’1′] into any page or post\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch3>Free Version Features\u003C\u002Fh3>\n\u003Ch4>Form Building\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Drag-and-Drop Builder\u003C\u002Fstrong> – Create lead forms visually without coding\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Unlimited Forms\u003C\u002Fstrong> – No restrictions on how many forms you create\u003C\u002Fli>\n\u003Cli>\u003Cstrong>16+ Field Types\u003C\u002Fstrong> – Text, email, date, select, checkbox, file upload, and more\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Clone Forms\u003C\u002Fstrong> – Duplicate existing forms with one click\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Form Import\u002FExport\u003C\u002Fstrong> – Move forms between sites or create backups\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Combine Forms\u003C\u002Fstrong> – Merge two forms into one\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Lead Management\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Analytics Dashboard\u003C\u002Fstrong> – View submission stats and track form performance\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Query Management\u003C\u002Fstrong> – Organize and search through all captured leads\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Search and Sort\u003C\u002Fstrong> – Find specific submissions quickly\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Export to Excel\u002FCSV\u003C\u002Fstrong> – Download lead data for external use (100 leads limit)\u003C\u002Fli>\n\u003Cli>\u003Cstrong>100 Leads Display\u003C\u002Fstrong> – View recent submissions in dashboard\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Notifications & Security\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Email Notifications\u003C\u002Fstrong> – Get alerts when new leads are submitted\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Admin Notifications\u003C\u002Fstrong> – Automatic alerts for form submissions\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Honeypot Protection\u003C\u002Fstrong> – Block spam bots without affecting real users\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Blacklist Emails\u002FDomains\u003C\u002Fstrong> – Block specific addresses from submitting\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Google reCAPTCHA v3\u003C\u002Fstrong> – Coming soon for additional spam protection\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Design & Compatibility\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Responsive Forms\u003C\u002Fstrong> – Works on all screen sizes and devices\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Theme Adaptive\u003C\u002Fstrong> – Forms match your active theme styling automatically\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Widget Support\u003C\u002Fstrong> – Add lead forms to sidebars and widget areas\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Works with Page Builders\u003C\u002Fstrong> – Compatible with Elementor, Gutenberg, and others\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Custom Shortcode Parameters\u003C\u002Fstrong> – Configure form behavior per instance\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Custom Submit Messages\u003C\u002Fstrong> – Show personalized confirmation after submission\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Pro Version Features\u003C\u002Fh3>\n\u003Cp>Upgrade to \u003Cstrong>Lead Generation Form Pro\u003C\u002Fstrong> for additional capabilities:\u003C\u002Fp>\n\u003Ch4>Unlimited Everything\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Unlimited Lead Capture\u003C\u002Fstrong> – No cap on number of leads stored\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Unlimited Export\u003C\u002Fstrong> – Download all leads without restrictions\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Prebuilt Form Templates\u003C\u002Fstrong> – Start with ready-made form designs\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Advanced Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>CC Email Support\u003C\u002Fstrong> – Send form submissions to multiple email addresses\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Automated Spam Protection\u003C\u002Fstrong> – Enhanced bot detection and blocking\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Priority Support\u003C\u002Fstrong> – Faster response through dedicated helpdesk\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Lifetime Updates\u003C\u002Fstrong> – Receive all future updates at no extra cost\u003C\u002Fli>\n\u003Cli>\u003Cstrong>SMTP Email\u003C\u002Fstrong> – Configure custom email delivery settings\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>3rd Party Services\u003C\u002Fh3>\n\u003Ch4>Google reCAPTCHA v3\u003C\u002Fh4>\n\u003Cp>This plugin integrates Google reCAPTCHA v3 to protect forms from spam submissions. Users can configure reCAPTCHA using their own API credentials in the plugin settings.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.google.com\u002Frecaptcha\u002F\" rel=\"nofollow ugc\">Google reCAPTCHA\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fpolicies.google.com\u002Fprivacy\" rel=\"nofollow ugc\">Google Privacy Policy\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>License\u003C\u002Fh3>\n\u003Cp>This file is part of the plugin.\u003C\u002Fp>\n\u003Cp>Lead Generation Form is free software: you can redistribute it and\u002For modify it under the terms of the GNU General Public License as published by the Free Software Foundation, either version 3 of the License, or (at your option) any later version.\u003C\u002Fp>\n\u003Cp>Lead Generation Form is distributed in the hope that it will be useful, but WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License for more details.\u003C\u002Fp>\n\u003Cp>Get a copy of the GNU General Public License at \u003Ca href=\"http:\u002F\u002Fwww.gnu.org\u002Flicenses\u002F\" rel=\"nofollow ugc\">http:\u002F\u002Fwww.gnu.org\u002Flicenses\u002F\u003C\u002Fa>.\u003C\u002Fp>\n","Create lead forms with drag-and-drop builder, capture leads, and export data easily.",4742,"2025-12-17T10:06:00.000Z","4.0",[102,103,22,104,24],"contact-form","form-builder","lead-form","https:\u002F\u002Fwebenvo.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Flead-generation-form.1.0.9.zip",100,{"slug":109,"name":110,"version":111,"author":112,"author_profile":113,"description":114,"short_description":115,"active_installs":116,"downloaded":117,"rating":118,"num_ratings":119,"last_updated":120,"tested_up_to":121,"requires_at_least":100,"requires_php":122,"tags":123,"homepage":127,"download_link":128,"security_score":129,"vuln_count":66,"unpatched_count":29,"last_vuln_date":130,"fetched_at":31},"wprequal","WPrequal","8.4.1","Kevin Brent","https:\u002F\u002Fprofiles.wordpress.org\u002Fkevin-brent\u002F","\u003Cp>Would it be great to generate and capture pre-qualified leads right on your website? Now you can!\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwprequal.com\u002F?affid=marketing&ref=wordpress\" title=\"WPrequal Home Page\" rel=\"nofollow ugc\">WPrequal\u003C\u002Fa> is the only WordPress plugin that delivers a complete lead generation system directly to your WordPress website or landing page. It’s perfect for any business that depends on identifying strong leads:\u003C\u002Fp>\n\u003Cp>☑ Mortgage Lenders\u003Cbr \u002F>\n☑ Realtors\u003Cbr \u002F>\n☑ Home Builders\u003Cbr \u002F>\n☑ Any Industry . . .\u003C\u002Fp>\n\u003Cp>With WPrequal, you can easily build lead generating survey forms using our template or customize one yourself. Use our survey, developed by an industry professional with 20+ years experience, or create your own, using as many fields as you need.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>WPrequal does not sell your leads.\u003C\u002Fstrong> The leads are yours and yours only!\u003C\u002Fp>\n\u003Cdiv class=\"embed-vimeo\" style=\"text-align: center;\">\u003Ciframe loading=\"lazy\" src=\"https:\u002F\u002Fplayer.vimeo.com\u002Fvideo\u002F365333065\" width=\"750\" height=\"422\" frameborder=\"0\" webkitallowfullscreen mozallowfullscreen allowfullscreen>\u003C\u002Fiframe>\u003C\u002Fdiv>\n\u003Cp>Plus, as a WordPress plugin, you don’t have to leave your website to use WPrequal. The tool easily loads to your WordPress site and can be used on any page, with different designs if you wish.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>FREE License\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>Best of all, there’s a free version of WPrequal to try out! It delivers:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Basic Survey form\u003C\u002Fli>\n\u003Cli>Basic Contact form builder\u003C\u002Fli>\n\u003Cli>Registration form builder\u003C\u002Fli>\n\u003Cli>Mortgage and amortization calculators\u003C\u002Fli>\n\u003Cli>Lead Manager tool with email notification\u003C\u002Fli>\n\u003Cli>Plugin updates\u003C\u002Fli>\n\u003Cli>Product support\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>Premium License\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>Need more flexibility? Try WPrequal’s Affordable Pro or Premium Features\u003C\u002Fp>\n\u003Cp>Once you’ve used the WPrequal plug-in, you’ll probably wish you could do more with it.  Pro and Premium versions include the features in the free version, plus customization tools:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Fully customizable Survey forms, contact forms, and registration forms with custom colors, and the FontAwesome Icon Library\u003C\u002Fli>\n\u003Cli>Access to all lead fields\u003C\u002Fli>\n\u003Cli>Font Awesome Pro integration\u003C\u002Fli>\n\u003Cli>Product and technical support\u003C\u002Fli>\n\u003Cli>Notifications via text\u002FSMS, email, or the Lead Manager tool\u003C\u002Fli>\n\u003Cli>Confirmation redirects\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwprequal.com\u002Fproduct\u002Fpremium-license\u002F?affid=marketing&ref=wordpress\" title=\"Premium License\" rel=\"nofollow ugc\">Go Premium\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Pro License\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>The WPrequal Pro license delivers access to time-saving CRMs via the Connect API. In addition to Pro tools, you’ll get:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Enhanced calculator\u003C\u002Fli>\n\u003Cli>Pop-up messaging\u003C\u002Fli>\n\u003Cli>Support and integration with CRM tools:\u003C\u002Fli>\n\u003Cli>Advanced support\u003C\u002Fli>\n\u003Cli>Access to Connect API\n\u003Cul>\n\u003Cli>Active Campaign\u003C\u002Fli>\n\u003Cli>Agile CRM\u003C\u002Fli>\n\u003Cli>Capsule\u003C\u002Fli>\n\u003Cli>ConstantContact\u003C\u002Fli>\n\u003Cli>iMax CRM\u003C\u002Fli>\n\u003Cli>LionDesk\u003C\u002Fli>\n\u003Cli>MailChimp\u003C\u002Fli>\n\u003Cli>Zapier Webhooks\u003C\u002Fli>\n\u003Cli>Zoho CRM\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwprequal.com\u002Fproduct\u002Fpro-license\u002F?affid=marketing&ref=wordpress\" title=\"Pro License\" rel=\"nofollow ugc\">Go Pro\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Landing Pages\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>We also offer a license to support landing pages. It includes everything in Pro plus:\u003C\u002Fp>\n\u003Cp>☑ Secure hosting\u003Cbr \u002F>\n☑ Page maintenance\u003Cbr \u002F>\n☑ Social media\u003Cbr \u002F>\n☑ Image Library\u003Cbr \u002F>\n☑ Structured data\u003Cbr \u002F>\n☑ Priority support\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwprequal.com\u002Fproduct\u002Flandingpage-license\u002F?affid=marketing&ref=wordpress\" title=\"WPrequal Landing Pages\" rel=\"nofollow ugc\">Get Landing Page\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Helpful Resources\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwprequal.com\u002Fsupport\u002F?affid=marketing&ref=wordpress\" title=\"WPrequal Support\" rel=\"nofollow ugc\">WPrequal Support\u003C\u002Fa>\u003Cbr \u002F>\n\u003Ca href=\"https:\u002F\u002Fwprequal.com\u002Fcategory\u002Fhow-to\u002F?affid=marketing&ref=wordpress\" title=\"How-to Guides\" rel=\"nofollow ugc\">How-to Guides\u003C\u002Fa>\u003Cbr \u002F>\n\u003Ca href=\"https:\u002F\u002Fwprequal.com\u002Fwhat-short-codes-does-wprequal-offer\u002F?affid=marketing&ref=wordpress\" title=\"Shortcode Examples\" rel=\"nofollow ugc\">Shortcode Examples\u003C\u002Fa>\u003Cbr \u002F>\n\u003Ca href=\"https:\u002F\u002Fwprequal.com\u002Fdocumentation-type\u002Fdevelopers\u002F?affid=marketing&ref=wordpress\" title=\"Developer Documentation\" rel=\"nofollow ugc\">Developer Documentation\u003C\u002Fa>\u003Cbr \u002F>\n\u003Ca href=\"https:\u002F\u002Fwprequal.com\u002Fconnect-api\u002F?affid=marketing&ref=wordpress\" title=\"Connect API\" rel=\"nofollow ugc\">Connect API\u003C\u002Fa>\u003C\u002Fp>\n","Easy-to-use lead generation, lead capture, lead manager, and form builders. No advanced setup required; works well and looks great out-of-the-box.",80,26007,86,4,"2025-08-13T17:47:00.000Z","6.8.5","7.4",[22,24,124,125,126],"mortgage","mortgage-calculator","real-estate","https:\u002F\u002Fwprequal.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwprequal.8.4.1.zip",99,"2025-02-17 15:45:09",{"slug":132,"name":133,"version":134,"author":135,"author_profile":136,"description":137,"short_description":138,"active_installs":139,"downloaded":140,"rating":29,"num_ratings":29,"last_updated":141,"tested_up_to":121,"requires_at_least":142,"requires_php":83,"tags":143,"homepage":147,"download_link":148,"security_score":107,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"easy-email-integration","Easy Email Integration by WPPOOL","2.1.12","WPPOOL","https:\u002F\u002Fprofiles.wordpress.org\u002Fwppool\u002F","\u003Cp>\u003Cstrong>WORDPRESS EMAIL INTEGRATION PLUGIN\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Collect subscribers through WordPress forms and grow your email list with ease.\u003C\u002Fstrong> Experience CONVENIENT and POWERFUL integration with popular email marketing services, including MailChimp and MailPoet. Enjoy our built-in form templates and choose the one you like with a single click. Take advantage of the fantastic lead generation plugin for WordPress.\u003C\u002Fp>\n\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002FSP1m-7uMOAk?version=3&rel=0&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\n\u003Cp>Generally, contact form plugins help WordPress website builders to connect with website visitors. Nowadays, most WordPress form plugins collect leads and store them in your local database, which you can export and manually insert into the email list. But have you ever wondered how cool it would be if your WordPress form could send contacts directly to your preferred mail marketing plugins? Now you actually can do that with this lead collection plugin! 🎉\u003C\u002Fp>\n\u003Cp>With \u003Cstrong>Easy Email Integration\u003C\u002Fstrong>, you can display a clean-looking contact form on your website. Thanks to its integration with popular block editors and page builders like \u003Cstrong>Gutenberg\u003C\u002Fstrong> and \u003Cstrong>Elementor\u003C\u002Fstrong>, you can insert the custom form anywhere you want with our handcrafted personalization options. Lead capture on a WordPress website is now easier!\u003C\u002Fp>\n\u003Ch3>😍 ATTRACTIVE UI AND SIMPLE TO USE\u003C\u002Fh3>\n\u003Cp>While creating Easy Email Integration, our priority was to create a plugin that can be used by anyone, even someone who is new to creating WordPress site. We can promise you that the clean UI of this WordPress form plugin will provide you with a convenient lead generation experience you can ask for from an email integration plugin. The user interface is not cluttered with redundant settings, it shows exactly the options you need to grow your subscriber list.\u003C\u002Fp>\n\u003Ch3>😀 NO RIGOROUS SETUP, GET STARTED WITHIN A FEW MINUTES!\u003C\u002Fh3>\n\u003Cp>Once you activate the plugin, all you have to do is connect to your preferred email marketing platform. Then, take advantage of the WordPress Page Builder (Gutenberg) or Elementor support and add the contact form within any post or page you want. That’s it. Or Elementor support and add the contact form within any post or page you want. That’s it. Lead generation will start immediately. \u003Cstrong>The whole setup won’t take any longer than a minute!\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>WordPress forms created with Easy Email Integration form builder are 100% mobile responsive and will always look slick on any device regardless of their resolution or operating system (iOS, Android, macOS, or Windows 10\u002F11). In addition, the plugin is also highly optimized to ensure better speed and SEO performance.\u003C\u002Fp>\n\u003Ch3>🚀 INTEGRATION WITH POPULAR APPS AND EMAIL MARKETING SERVICES\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>MailChimp\u003C\u002Fstrong> – automatically send your contact list to MailChimp and grow your email list. Set up once and enjoy an unbelievable growth of your subscriber list.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>MailPoet\u003C\u002Fstrong> – similar to MailChimp, MailPoet is considered one of the popular email marketing options for WordPress. Our plugin allows you to create signup forms for MailPoet and add contacts to MailPoet subscriber lists.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>GetResponse\u003C\u002Fstrong> – take advantage of the integration with GetResponse for WordPress to grow your contact list and collect eCommerce data for launching successful campaigns.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>FluentCRM\u003C\u002Fstrong> – connect your FluentCRM list and tags; continue to receive valuable contact information and organically grow your email list.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>ActiveCampaign\u003C\u002Fstrong> – automatically send contacts to your ActiveCampaign account and take advantage of its 870+ integrations that include Microsoft, Shopify, and Facebook.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>ConvertKit\u003C\u002Fstrong> – with our ConvertKit integration send form leads to ConvertKit. Run successful email campaigns and grow your business.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>MailerLite\u003C\u002Fstrong> – grow your subscription list by sending custom form leads to MailerLite.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>SendinBlue\u003C\u002Fstrong> – enjoy powerful integration with SendinBlue, a powerful email marketing for WordPress.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>SendFox\u003C\u002Fstrong> – send your website leads to email marketing tools like SendFox.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Also many more exciting integrations are coming very soon!\u003C\u002Fstrong>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>🔝 EMAIL INTEGRATION FEATURES\u003C\u002Fh3>\n\u003Col>\n\u003Cli>\u003Cstrong>Gutenberg block support\u003C\u002Fstrong> – You can place the custom form into any page\u002Fpost by using the Easy Email Integration Gutenberg block.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Elementor widget support\u003C\u002Fstrong> – enjoy effortless customization with our Elementor widget support. You can edit the form on any page or post with the custom Elementor widget.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Integration with popular email marketing plugins and apps\u003C\u002Fstrong> – enjoy flawless integration with popular email marketing solutions and apps, including MailChimp, MailPoet, FluentCRM, GetResponse, ActiveCampaign, and many more.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Unlimited subscriber sync\u003C\u002Fstrong> – You can sync as many subscribers as you want with your desired email marketing client.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>5 pre-built form templates\u003C\u002Fstrong> – choose any of our tailor-made form templates to ensure a fantastic experience for your website visitors. More cool templates are currently under development.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Form customization options\u003C\u002Fstrong> – each of our pre-built forms offers plenty of customization options, including form name, header, form tag, width, name, and email placeholder, etc. You can also select your preferred mail integration (i.e. MailChimp, FluentCRM) from here.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Form background customization\u003C\u002Fstrong> – choose your preferred background color and image to offer a unique experience for your visitors.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Automatic lead collection on the local database\u003C\u002Fstrong> – once you activate the plugin and place the WordPress form, it will automatically save the form contacts on the local database.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Detailed subscriber list with search and filter options\u003C\u002Fstrong> – get subscriber information, including their name, and email through the detailed subscriber list. You can also search subscribers and filter using tags.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Subscriber list export in CSV format\u003C\u002Fstrong> – export the subscriber list in CSV format anytime you want with a single click from the Email List.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Attractive user interface with weekly subscriber trend view\u003C\u002Fstrong> – keep track of your subscriber growth with a weekly subscriber trend view.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Performance trend view\u003C\u002Fstrong> – track the performance of your contact form with the weekly visitors vs subscriptions graph.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Theme compatibility\u003C\u002Fstrong> – Easy Email Integration is compatible with the popular WordPress themes.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Custom CSS\u003C\u002Fstrong> – unleash the power of CSS to customize the form as you want (Upcoming).\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch3>😍 IS THIS PLUGIN FREE TO USE?\u003C\u002Fh3>\n\u003Cp>Easy Email Integration is a free email integration plugin and all of its features are \u003Cstrong>100%  free to use\u003C\u002Fstrong>. Sync unlimited subscribers with your favorite email marketing apps.\u003C\u002Fp>\n\u003Ch3>💪 USE OF THIRD-PARTY SERVICES\u003C\u002Fh3>\n\u003Cp>When you choose to use other 3rd party email integrations (SaaS services or plugins) – the data you collect would be sent to those 3rd party services. The services you integrate will receive those subscribers’ information.\u003C\u002Fp>\n\u003Cp>Easy Email Integration itself \u003Cstrong>does not gather any of the data you collect from your audience\u003C\u002Fstrong>. The data only leaves your WordPress site when you integrate 3rd party services and enable the integrations. Currently, our plugin will send your consent to the following platforms:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>IP API\u003C\u002Fstrong> – We are collecting visitor location information from \u003Ca href=\"http:\u002F\u002Fip-api.com\u002Fjson\u002F\" rel=\"nofollow ugc\">IP API\u003C\u002Fa> by their public IP. You can read more on IP API’s \u003Ca href=\"https:\u002F\u002Fip-api.com\u002Fdocs\u002Flegal\" rel=\"nofollow ugc\">Terms and Policies\u003C\u002Fa>.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>MailChimp\u003C\u002Fstrong> – we are using \u003Ca href=\"https:\u002F\u002Fmailchimp.com\u002Fdeveloper\u002Fmarketing\u002F\" rel=\"nofollow ugc\">PHP SDK\u003C\u002Fa> to send subscriber information to MailChimp. The process begins when you enable MailChimp from the integration option. You can read more on \u003Ca href=\"https:\u002F\u002Fwww.intuit.com\u002Fprivacy\u002Fstatement\u002F\" rel=\"nofollow ugc\">Mailchimp’s privacy statement\u003C\u002Fa>.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>MailPoet\u003C\u002Fstrong> – data are sent to MailPoet’s \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fmailpoet\u002F\" rel=\"ugc\">WordPress plugin\u003C\u002Fa> after you enable the integration. You can read more about their privacy policy \u003Ca href=\"https:\u002F\u002Fautomattic.com\u002Fprivacy\u002F\" rel=\"nofollow ugc\">here\u003C\u002Fa>.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>GetResponse\u003C\u002Fstrong> – We are using \u003Ca href=\"https:\u002F\u002Fapidocs.getresponse.com\u002Fv3\" rel=\"nofollow ugc\">GetResponse API\u003C\u002Fa> to send contact form data to their email client. Learn how GetResponse processes your data \u003Ca href=\"https:\u002F\u002Fwww.getresponse.com\u002Flegal\u002Fprivacy\" rel=\"nofollow ugc\">here\u003C\u002Fa>.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>FluentCRM\u003C\u002Fstrong> – subscribers’ data are sent to their \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Ffluent-crm\u002F\" rel=\"ugc\">WordPress plugin\u003C\u002Fa>. Read more about their \u003Ca href=\"https:\u002F\u002Fwpmanageninja.com\u002Fprivacy\u002F?\" rel=\"nofollow ugc\">privacy policy\u003C\u002Fa>.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>ActiveCampaign\u003C\u002Fstrong> – \u003Ca href=\"https:\u002F\u002Fdevelopers.activecampaign.com\u002Freference\u002Foverview\" rel=\"nofollow ugc\">ActiveCampaign API\u003C\u002Fa> was used for the integration. Learn about their \u003Ca href=\"https:\u002F\u002Fwww.activecampaign.com\u002Flegal\u002Fprivacy-policy\" rel=\"nofollow ugc\">privacy policy\u003C\u002Fa>.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>ConvertKit\u003C\u002Fstrong> – we used \u003Ca href=\"https:\u002F\u002Fdevelopers.convertkit.com\u002F\" rel=\"nofollow ugc\">ConverKit\u003C\u002Fa> API for the integration. Learn more about \u003Ca href=\"https:\u002F\u002Fconvertkit.com\u002Fprivacy\" rel=\"nofollow ugc\">ConverKit’s\u003C\u002Fa> privacy policy.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>MailerLite\u003C\u002Fstrong> – \u003Ca href=\"https:\u002F\u002Fdevelopers.mailerlite.com\u002Fdocs\u002F#mailerlite-api\" rel=\"nofollow ugc\">MailerLite API\u003C\u002Fa> was used to send email leads to your MailerLite account. Learn about \u003Ca href=\"https:\u002F\u002Fwww.mailerlite.com\u002Flegal\u002Fprivacy-policy\" rel=\"nofollow ugc\">how MailerLite processe0s your data\u003C\u002Fa>.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>SendinBlue\u003C\u002Fstrong> – we used \u003Ca href=\"https:\u002F\u002Fdevelopers.sendinblue.com\u002F\" rel=\"nofollow ugc\">SendinBlue API\u003C\u002Fa> for our integration. Read about their \u003Ca href=\"https:\u002F\u002Fwww.sendinblue.com\u002Flegal\u002Fprivacypolicy\u002F\" rel=\"nofollow ugc\">privacy policy\u003C\u002Fa>.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>SendFox\u003C\u002Fstrong> – \u003Ca href=\"https:\u002F\u002Fhelp.sendfox.com\u002Fcategory\u002F270-api-integrations\" rel=\"nofollow ugc\">SendFox\u003C\u002Fa> API was used for flawless integration between WordPress and your SendFox account. Learn about their \u003Ca href=\"https:\u002F\u002Fsendfox.com\u002Fprivacy\" rel=\"nofollow ugc\">privacy policy\u003C\u002Fa>.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>When you choose only the local database, your data is only saved on your WordPress site and \u003Cstrong>we don’t collect or share them with any third-party services\u003C\u002Fstrong>.\u003C\u002Fp>\n\u003Ch3>🔥 More Awesome Plugins\u003C\u002Fh3>\n\u003Cp>If you like Easy Email Integration, then consider checking out our other awesome projects:\u003C\u002Fp>\n\u003Cp>🌓 \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fwp-dark-mode\u002F\" rel=\"ugc\">WP Dark Mode\u003C\u002Fa> – Use the WP Dark Mode plugin to create a stunning dark version of your WordPress website. WP Dark Mode works automatically without going into any complicated settings.\u003C\u002Fp>\n\u003Cp>📄 \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fsheets-to-wp-table-live-sync\u002F\" rel=\"ugc\">Sheets To WP Table Live Sync\u003C\u002Fa> – Google Sheets allows you to input data on your Google sheet and show the same data on WordPress as a table effortlessly.\u003C\u002Fp>\n\u003Cp>📽️ \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fwebinar-and-video-conference-with-jitsi-meet\u002F\" rel=\"ugc\">Webinar & Video Conference with Jitsi Meet\u003C\u002Fa> – Experience the video conference plugin and live video chat solution. Get shortcode support with WooCommerce and BuddyPress integration.\u003C\u002Fp>\n\u003Cp>🔄 \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fsheets-to-wp-table-live-sync\u002F\" rel=\"ugc\">Stock Sync with Google Sheet for WooCommerce\u003C\u002Fa> – Auto-sync WooCommerce products from Google Sheets. An easy, powerful, and simple inventory management system to handle your WooCommerce products.\u003C\u002Fp>\n\u003Cp>🎥 \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Feasy-video-reviews\u002F\" rel=\"ugc\">Easy Video Reviews\u003C\u002Fa> – Easy Video Reviews is the suitable video review plugin for WordPress. Your customers can record and send video testimonials right from their browser, and you can manage and showcase them anywhere on your WordPress website.\u003C\u002Fp>\n","Collect leads & emails for Mailchimp, MailPoet, FluentCRM, Brevo & more. Create stunning opt-in forms with Block Editor & Elementor.",10,2282,"2025-09-23T11:47:00.000Z","5.0",[144,22,24,145,146],"email","opt-in","subscription-form","http:\u002F\u002Fwppool.dev\u002Feasy-email-integration","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Feasy-email-integration.2.1.12.zip",{"slug":150,"name":151,"version":152,"author":153,"author_profile":154,"description":155,"short_description":156,"active_installs":157,"downloaded":158,"rating":107,"num_ratings":28,"last_updated":159,"tested_up_to":16,"requires_at_least":160,"requires_php":161,"tags":162,"homepage":167,"download_link":168,"security_score":107,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"hostinger-reach","Hostinger Reach – AI-Powered Email Marketing for WordPress","1.4.0","Hostinger","https:\u002F\u002Fprofiles.wordpress.org\u002Fhostinger\u002F","\u003Cp>Hostinger Reach is your all-in-one email marketing plugin, built for creators, small businesses, and website owners. It helps you grow your audience and stay connected through eye-catching, on-brand emails powered by AI and seamlessly integrated with your site.\u003C\u002Fp>\n\u003Ch4>🚀 Key Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>AI-powered email templates:\u003C\u002Fstrong> Describe your idea and let AI generate a ready-to-send email for you in seconds. Effortlessly tailor your templates and content to your brand look and voice.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Subscriber collection:\u003C\u002Fstrong> Create subscriber capture forms or connect popular plugins like Contact Form 7 or WPForms to start collecting contacts.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Automatic contact sync:\u003C\u002Fstrong> Reach syncs all subscribers to your dashboard in real time – no manual exports or spreadsheets needed.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Email sending:\u003C\u002Fstrong> Use your domain and custom sender address for professional, trusted communication.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Email campaigns:\u003C\u002Fstrong> Launch targeted email campaigns to engage your audience.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Real-time analytics:\u003C\u002Fstrong> Monitor opens, clicks, and other key metrics as they happen to fine-tune performance with every send.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Built-in deliverability:\u003C\u002Fstrong> Count on Hostinger’s proven infrastructure to ensure your emails land in inboxes, not spam folders.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>🔌 Seamless Integration\u003C\u002Fh4>\n\u003Cp>Reach lets you create forms directly within the native WordPress Block Editor – no extra plugins required.\u003C\u002Fp>\n\u003Cp>Reach is also fully compatible with these popular form builders and plugins:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>WPForms\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Contact Form 7\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>WooCommerce\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Elementor\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>WS Form\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Sure Forms\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Ninja Forms\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Forminator\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Thrive Leads\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>OptinMonster\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Brave Popup Builder\u003C\u002Fstrong>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>More integrations are coming soon.\u003C\u002Fp>\n\u003Ch4>📬 Deliverability & Compliance: Handled for You\u003C\u002Fh4>\n\u003Cp>Reach takes care of the technical setup, ensuring your emails land in inboxes, not spam folders.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Automatic SPF, DKIM, & DMARC setup\u003C\u002Fstrong> – Reach configures industry-standard email authentication protocols for you, so you don’t have to worry about deliverability issues.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Trusted infrastructure\u003C\u002Fstrong> – Reach sends your campaigns through reliable, high-reputation servers to keep your emails landing in inboxes.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>100% compliant templates\u003C\u002Fstrong> – Our AI generates templates that fully comply with CAN-SPAM and GDPR, including sender information and unsubscribe options.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Auto-managed unsubscribes\u003C\u002Fstrong> – Every email includes an unsubscribe link that Reach handles automatically. When contacts unsubscribe, Reach removes them from future campaigns without any effort from you.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>💸 Plans & Pricing: Start Free, Grow Without Limits\u003C\u002Fh4>\n\u003Cp>Reach supports creators and businesses at every stage. Start for free, scale as your audience grows, and pay only when you need to.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Reach offers a free plan for one year – perfect for getting started.\u003C\u002Fli>\n\u003Cli>Paid plans provide higher sending limits based on your contact list size and monthly email volume.\u003C\u002Fli>\n\u003Cli>Every paid plan removes the Reach logo from your emails and includes five free AI-generated messages each month.\u003C\u002Fli>\n\u003Cli>New customers get 20 free AI messages and can purchase more anytime – no subscriptions or bundles required.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>🆓 What’s Included in the Free Plan?\u003C\u002Fh4>\n\u003Cp>Start your email marketing journey with our feature-rich free plan designed for beginners and small audiences:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Email up to 100 unique subscribers\u002Fmonth\u003C\u002Fstrong> – Perfect for building your first list or staying in touch with your early subscribers. Your unique recipients limit resets on the 1st of every month.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Send up to 200 emails\u002Fmonth\u003C\u002Fstrong> – Enough to reach your audience and learn what works best. Your total email limit resets on the 1st of every month.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>AI content editor & visual builder\u003C\u002Fstrong> – Easily customize your emails’ content, images, and branding.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Unlimited contact storage\u003C\u002Fstrong> – Reach does not limit your contact list, so you can consistently grow your audience without worrying about lost data.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>WordPress contact sync\u003C\u002Fstrong> – Seamlessly import subscribers from your site to your Reach mailing list.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>24\u002F7 customer support\u003C\u002Fstrong> – Get help anytime, even on the free plan.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Our free plan gives you everything you need to launch your first campaign, grow your audience, and see real results – no credit card required.\u003C\u002Fp>\n\u003Ch4>💡 Why Reach?\u003C\u002Fh4>\n\u003Cp>With over 20 years of experience helping people succeed online, Hostinger created Reach to make professional email marketing simple, fast, and effective – especially for beginners.\u003C\u002Fp>\n\u003Ch4>External services\u003C\u002Fh4>\n\u003Cp>This plugin connects to Hostinger Reach API service to collect and share the next information:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Collect your Reach account overview stats and show them in the wp-admin dashboard\u003C\u002Fli>\n\u003Cli>Automatically sync new subscribers from your site to Reach\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Authentication with Hostinger Reach to share ecrypted keys, secure, and protect the communication channel\u003C\u002Fp>\n\u003Cp>Hostinger Reach plugin goal is to offer a seamless integration within Hostinger Reach service. Hence, a communication\u003Cbr \u002F>\nbetween the plugin and Hostinger Reach service is a core functionality.\u003C\u002Fp>\n\u003Cp>For more information about Hostinger Reach and our terms and conditions visit:\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.hostinger.com\u002Femail-marketing\" rel=\"nofollow ugc\">Hostinger Reach\u003C\u002Fa>\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.hostinger.com\u002Flegal\u002Funiversal-terms-of-service-agreement\" rel=\"nofollow ugc\">Hostinger Terms of Service\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Compiled code\u003C\u002Fh4>\n\u003Cp>In order to optimize the plugin and reduce the size of the bundle we minify and compile our JavaScript files.\u003C\u002Fp>\n\u003Cp>For transparency and following the community guidelines you can find the source code inside the \u003Ccode>frontend\u003C\u002Fcode> folder.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ccode>frontend\u002Fvue\u003C\u002Fcode>: Code for the Admin UI\u003C\u002Fli>\n\u003Cli>\u003Ccode>frontend\u002Fblocks\u003C\u002Fcode>: Code for Reach block\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ccode>dist\u003C\u002Fcode>: compiled code\u003C\u002Fp>\n\u003Cp>We include also \u003Ccode>composer.json\u003C\u002Fcode> and \u003Ccode>package.json\u003C\u002Fcode> file showing the dependencies we use in the project.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Ful>\n","Launch and grow your email marketing effortlessly with Hostinger Reach. Collect contacts, sync subscribers, and send emails – all in one, AI powered.",1000000,232704,"2026-03-10T08:48:00.000Z","6.0","8.1",[163,24,164,165,166],"email-marketing","marketing","newsletter","subscription","https:\u002F\u002Fhostinger.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fhostinger-reach.1.4.0.zip",{"attackSurface":170,"codeSignals":298,"taintFlows":438,"riskAssessment":768,"analyzedAt":779},{"hooks":171,"ajaxHandlers":294,"restRoutes":295,"shortcodes":296,"cronEvents":297,"entryPointCount":29,"unprotectedCount":29},[172,178,183,187,190,194,197,201,206,211,215,218,222,226,230,233,237,240,244,248,252,257,260,262,265,269,272,276,280,284,289,291,293],{"type":173,"name":174,"callback":175,"file":176,"line":177},"action","init","closure","breadbutter-connect.php",34,{"type":173,"name":179,"callback":180,"file":181,"line":182},"admin_menu","addAdminMenu","src\\Api\\SettingsApi.php",23,{"type":173,"name":184,"callback":185,"file":181,"line":186},"admin_init","registerCustomFields",27,{"type":173,"name":174,"callback":188,"priority":139,"file":181,"line":189},"createMeta",39,{"type":173,"name":191,"callback":192,"file":181,"line":193},"updated_option","updateCallbackAndDestinationURL",42,{"type":173,"name":195,"callback":175,"file":181,"line":196},"rest_api_init",151,{"type":173,"name":174,"callback":198,"priority":66,"file":199,"line":200},"initAjax","src\\Base\\Ajax.php",79,{"type":173,"name":202,"callback":203,"file":204,"line":205},"wp_enqueue_scripts","contactusHead","src\\Base\\ContactUs.php",13,{"type":207,"name":208,"callback":209,"priority":139,"file":210,"line":67},"filter","script_loader_tag","addModuleToScript","src\\Base\\Enqueue.php",{"type":173,"name":212,"callback":213,"file":210,"line":214},"wp_head","wordpressHead",18,{"type":173,"name":202,"callback":216,"file":210,"line":217},"wordpressEnqueue",19,{"type":173,"name":202,"callback":219,"priority":220,"file":210,"line":221},"cssEnqueue",1000,20,{"type":173,"name":223,"callback":224,"file":210,"line":225},"admin_enqueue_scripts","adminEnqueue",21,{"type":173,"name":227,"callback":228,"file":210,"line":229},"login_enqueue_scripts","loginEnqueue",22,{"type":207,"name":231,"callback":232,"file":210,"line":182},"wp_nav_menu_objects","searchContinueWith",{"type":173,"name":234,"callback":235,"priority":220,"file":210,"line":236},"after_setup_theme","remove_admin_bar",24,{"type":173,"name":184,"callback":238,"file":210,"line":239},"activation_redirect",25,{"type":173,"name":241,"callback":242,"file":210,"line":243},"admin_notices","add_admin_notice",26,{"type":207,"name":245,"callback":246,"priority":220,"file":210,"line":247},"show_admin_bar","__return_false",46,{"type":173,"name":249,"callback":175,"priority":250,"file":210,"line":251},"wp_footer",999,69,{"type":207,"name":253,"callback":254,"file":255,"line":256},"the_content","filterContent","src\\Base\\GatingContent.php",16,{"type":207,"name":258,"callback":259,"file":255,"line":67},"pre_get_posts","limitSearch",{"type":173,"name":202,"callback":261,"file":255,"line":214},"gatingHead",{"type":173,"name":202,"callback":263,"file":264,"line":205},"newsletterHead","src\\Base\\Newsletter.php",{"type":173,"name":174,"callback":266,"priority":66,"file":267,"line":268},"initSession","src\\Base\\Session.php",12,{"type":173,"name":270,"callback":271,"priority":66,"file":267,"line":205},"wp_logout","endSession",{"type":173,"name":174,"callback":273,"priority":66,"file":274,"line":275},"initShortcode","src\\Base\\Shortcode.php",43,{"type":173,"name":184,"callback":277,"file":278,"line":279},"setSettings","src\\Pages\\Admin.php",75,{"type":173,"name":281,"callback":282,"file":283,"line":63},"enqueue_block_editor_assets","enqueueBlockEditorAssets","src\\Pages\\Block.php",{"type":173,"name":285,"callback":286,"file":287,"line":288},"login_form","addLoginFormButtons","src\\Pages\\LoginForm.php",15,{"type":173,"name":290,"callback":286,"file":287,"line":256},"register_form",{"type":173,"name":285,"callback":292,"file":287,"line":67},"addLogonScripts",{"type":173,"name":290,"callback":292,"file":287,"line":214},[],[],[],[],{"dangerousFunctions":299,"sqlUsage":300,"outputEscaping":302,"fileOperations":433,"externalRequests":28,"nonceChecks":119,"capabilityChecks":119,"bundledLibraries":434},[],{"prepared":66,"raw":29,"locations":301},[],{"escaped":303,"rawEcho":304,"locations":305},762,62,[306,310,312,315,317,319,321,323,325,327,329,331,333,335,337,339,341,343,345,347,349,351,353,355,357,359,361,363,365,367,369,371,373,375,377,379,381,383,385,387,389,391,393,395,397,399,401,403,405,407,409,411,413,415,417,419,421,423,425,427,429,432],{"file":307,"line":308,"context":309},"blocks\\calendly-form-gate\\render.php",51,"raw output",{"file":311,"line":268,"context":309},"blocks\\page-load-event\\render.php",{"file":313,"line":314,"context":309},"src\\Api\\Callbacks\\AdminCallbacks.php",1051,{"file":313,"line":316,"context":309},1868,{"file":313,"line":318,"context":309},1869,{"file":313,"line":320,"context":309},1870,{"file":313,"line":322,"context":309},1871,{"file":313,"line":324,"context":309},1872,{"file":313,"line":326,"context":309},1873,{"file":313,"line":328,"context":309},1874,{"file":199,"line":330,"context":309},265,{"file":199,"line":332,"context":309},278,{"file":199,"line":334,"context":309},291,{"file":199,"line":336,"context":309},309,{"file":199,"line":338,"context":309},321,{"file":199,"line":340,"context":309},342,{"file":199,"line":342,"context":309},369,{"file":199,"line":344,"context":309},384,{"file":199,"line":346,"context":309},417,{"file":199,"line":348,"context":309},427,{"file":199,"line":350,"context":309},446,{"file":199,"line":352,"context":309},468,{"file":199,"line":354,"context":309},539,{"file":199,"line":356,"context":309},549,{"file":199,"line":358,"context":309},560,{"file":199,"line":360,"context":309},569,{"file":199,"line":362,"context":309},582,{"file":199,"line":364,"context":309},592,{"file":199,"line":366,"context":309},603,{"file":199,"line":368,"context":309},613,{"file":199,"line":370,"context":309},622,{"file":199,"line":372,"context":309},635,{"file":199,"line":374,"context":309},652,{"file":199,"line":376,"context":309},670,{"file":199,"line":378,"context":309},681,{"file":199,"line":380,"context":309},693,{"file":199,"line":382,"context":309},704,{"file":199,"line":384,"context":309},716,{"file":199,"line":386,"context":309},728,{"file":199,"line":388,"context":309},740,{"file":199,"line":390,"context":309},756,{"file":199,"line":392,"context":309},787,{"file":199,"line":394,"context":309},797,{"file":199,"line":396,"context":309},828,{"file":199,"line":398,"context":309},847,{"file":199,"line":400,"context":309},860,{"file":199,"line":402,"context":309},881,{"file":199,"line":404,"context":309},902,{"file":199,"line":406,"context":309},922,{"file":199,"line":408,"context":309},933,{"file":199,"line":410,"context":309},944,{"file":204,"line":412,"context":309},139,{"file":204,"line":414,"context":309},236,{"file":210,"line":416,"context":309},72,{"file":210,"line":418,"context":309},112,{"file":255,"line":420,"context":309},279,{"file":255,"line":422,"context":309},512,{"file":255,"line":424,"context":309},557,{"file":264,"line":426,"context":309},177,{"file":264,"line":428,"context":309},220,{"file":430,"line":431,"context":309},"templates\\dashboard\\nurture_dashboard.php",37,{"file":430,"line":431,"context":309},14,[435],{"name":436,"version":38,"knownCves":437},"Select2",[],[439,456,465,474,483,492,501,510,519,528,537,545,554,563,572,581,590,599,608,617,626,635,644,653,662,671,680,691,704,712,740,760],{"entryPoint":440,"graph":441,"unsanitizedCount":66,"severity":41},"createAdminUser (src\\Base\\Ajax.php:257)",{"nodes":442,"edges":453},[443,448],{"id":444,"type":445,"label":446,"file":199,"line":447},"n0","source","$_POST",261,{"id":449,"type":450,"label":451,"file":199,"line":330,"wp_function":452},"n1","sink","echo() [XSS]","echo",[454],{"from":444,"to":449,"sanitized":455},false,{"entryPoint":457,"graph":458,"unsanitizedCount":66,"severity":41},"addAppAdminUser (src\\Base\\Ajax.php:269)",{"nodes":459,"edges":463},[460,462],{"id":444,"type":445,"label":446,"file":199,"line":461},273,{"id":449,"type":450,"label":451,"file":199,"line":332,"wp_function":452},[464],{"from":444,"to":449,"sanitized":455},{"entryPoint":466,"graph":467,"unsanitizedCount":66,"severity":41},"createAppEventDefinition (src\\Base\\Ajax.php:282)",{"nodes":468,"edges":472},[469,471],{"id":444,"type":445,"label":446,"file":199,"line":470},285,{"id":449,"type":450,"label":451,"file":199,"line":334,"wp_function":452},[473],{"from":444,"to":449,"sanitized":455},{"entryPoint":475,"graph":476,"unsanitizedCount":66,"severity":41},"createAppIntegration (src\\Base\\Ajax.php:295)",{"nodes":477,"edges":481},[478,480],{"id":444,"type":445,"label":446,"file":199,"line":479},298,{"id":449,"type":450,"label":451,"file":199,"line":336,"wp_function":452},[482],{"from":444,"to":449,"sanitized":455},{"entryPoint":484,"graph":485,"unsanitizedCount":66,"severity":41},"createAppTrigger (src\\Base\\Ajax.php:313)",{"nodes":486,"edges":490},[487,489],{"id":444,"type":445,"label":446,"file":199,"line":488},317,{"id":449,"type":450,"label":451,"file":199,"line":338,"wp_function":452},[491],{"from":444,"to":449,"sanitized":455},{"entryPoint":493,"graph":494,"unsanitizedCount":66,"severity":41},"createAppTriggerAction (src\\Base\\Ajax.php:325)",{"nodes":495,"edges":499},[496,498],{"id":444,"type":445,"label":446,"file":199,"line":497},328,{"id":449,"type":450,"label":451,"file":199,"line":340,"wp_function":452},[500],{"from":444,"to":449,"sanitized":455},{"entryPoint":502,"graph":503,"unsanitizedCount":66,"severity":41},"updateAppEventDefinition (src\\Base\\Ajax.php:408)",{"nodes":504,"edges":508},[505,507],{"id":444,"type":445,"label":446,"file":199,"line":506},411,{"id":449,"type":450,"label":451,"file":199,"line":346,"wp_function":452},[509],{"from":444,"to":449,"sanitized":455},{"entryPoint":511,"graph":512,"unsanitizedCount":66,"severity":41},"updateAppIntegration (src\\Base\\Ajax.php:431)",{"nodes":513,"edges":517},[514,516],{"id":444,"type":445,"label":446,"file":199,"line":515},434,{"id":449,"type":450,"label":451,"file":199,"line":350,"wp_function":452},[518],{"from":444,"to":449,"sanitized":455},{"entryPoint":520,"graph":521,"unsanitizedCount":66,"severity":41},"updateAppTriggerAction (src\\Base\\Ajax.php:450)",{"nodes":522,"edges":526},[523,525],{"id":444,"type":445,"label":446,"file":199,"line":524},453,{"id":449,"type":450,"label":451,"file":199,"line":352,"wp_function":452},[527],{"from":444,"to":449,"sanitized":455},{"entryPoint":529,"graph":530,"unsanitizedCount":66,"severity":41},"testAppIntegration (src\\Base\\Ajax.php:532)",{"nodes":531,"edges":535},[532,534],{"id":444,"type":445,"label":446,"file":199,"line":533},535,{"id":449,"type":450,"label":451,"file":199,"line":354,"wp_function":452},[536],{"from":444,"to":449,"sanitized":455},{"entryPoint":538,"graph":539,"unsanitizedCount":66,"severity":41},"manageGetApp (src\\Base\\Ajax.php:553)",{"nodes":540,"edges":543},[541,542],{"id":444,"type":445,"label":446,"file":199,"line":424},{"id":449,"type":450,"label":451,"file":199,"line":358,"wp_function":452},[544],{"from":444,"to":449,"sanitized":455},{"entryPoint":546,"graph":547,"unsanitizedCount":66,"severity":41},"manageCreateEvent (src\\Base\\Ajax.php:573)",{"nodes":548,"edges":552},[549,551],{"id":444,"type":445,"label":446,"file":199,"line":550},576,{"id":449,"type":450,"label":451,"file":199,"line":362,"wp_function":452},[553],{"from":444,"to":449,"sanitized":455},{"entryPoint":555,"graph":556,"unsanitizedCount":66,"severity":41},"updateApp (src\\Base\\Ajax.php:596)",{"nodes":557,"edges":561},[558,560],{"id":444,"type":445,"label":446,"file":199,"line":559},601,{"id":449,"type":450,"label":451,"file":199,"line":366,"wp_function":452},[562],{"from":444,"to":449,"sanitized":455},{"entryPoint":564,"graph":565,"unsanitizedCount":66,"severity":41},"createWebsiteDomain (src\\Base\\Ajax.php:607)",{"nodes":566,"edges":570},[567,569],{"id":444,"type":445,"label":446,"file":199,"line":568},611,{"id":449,"type":450,"label":451,"file":199,"line":368,"wp_function":452},[571],{"from":444,"to":449,"sanitized":455},{"entryPoint":573,"graph":574,"unsanitizedCount":66,"severity":41},"getAppWebsiteDomains (src\\Base\\Ajax.php:617)",{"nodes":575,"edges":579},[576,578],{"id":444,"type":445,"label":446,"file":199,"line":577},620,{"id":449,"type":450,"label":451,"file":199,"line":370,"wp_function":452},[580],{"from":444,"to":449,"sanitized":455},{"entryPoint":582,"graph":583,"unsanitizedCount":66,"severity":41},"manageUpdateApp (src\\Base\\Ajax.php:626)",{"nodes":584,"edges":588},[585,587],{"id":444,"type":445,"label":446,"file":199,"line":586},631,{"id":449,"type":450,"label":451,"file":199,"line":372,"wp_function":452},[589],{"from":444,"to":449,"sanitized":455},{"entryPoint":591,"graph":592,"unsanitizedCount":66,"severity":41},"assignAppOrganization (src\\Base\\Ajax.php:656)",{"nodes":593,"edges":597},[594,596],{"id":444,"type":445,"label":446,"file":199,"line":595},661,{"id":449,"type":450,"label":451,"file":199,"line":376,"wp_function":452},[598],{"from":444,"to":449,"sanitized":455},{"entryPoint":600,"graph":601,"unsanitizedCount":66,"severity":41},"manageGetWebsiteDomains (src\\Base\\Ajax.php:674)",{"nodes":602,"edges":606},[603,605],{"id":444,"type":445,"label":446,"file":199,"line":604},678,{"id":449,"type":450,"label":451,"file":199,"line":378,"wp_function":452},[607],{"from":444,"to":449,"sanitized":455},{"entryPoint":609,"graph":610,"unsanitizedCount":66,"severity":41},"manageCreateWebsiteDomain (src\\Base\\Ajax.php:685)",{"nodes":611,"edges":615},[612,614],{"id":444,"type":445,"label":446,"file":199,"line":613},689,{"id":449,"type":450,"label":451,"file":199,"line":380,"wp_function":452},[616],{"from":444,"to":449,"sanitized":455},{"entryPoint":618,"graph":619,"unsanitizedCount":66,"severity":41},"manageGetAppProviders (src\\Base\\Ajax.php:697)",{"nodes":620,"edges":624},[621,623],{"id":444,"type":445,"label":446,"file":199,"line":622},701,{"id":449,"type":450,"label":451,"file":199,"line":382,"wp_function":452},[625],{"from":444,"to":449,"sanitized":455},{"entryPoint":627,"graph":628,"unsanitizedCount":66,"severity":41},"manageEnableProvider (src\\Base\\Ajax.php:708)",{"nodes":629,"edges":633},[630,632],{"id":444,"type":445,"label":446,"file":199,"line":631},712,{"id":449,"type":450,"label":451,"file":199,"line":384,"wp_function":452},[634],{"from":444,"to":449,"sanitized":455},{"entryPoint":636,"graph":637,"unsanitizedCount":66,"severity":41},"manageCreateAppSecret (src\\Base\\Ajax.php:720)",{"nodes":638,"edges":642},[639,641],{"id":444,"type":445,"label":446,"file":199,"line":640},724,{"id":449,"type":450,"label":451,"file":199,"line":386,"wp_function":452},[643],{"from":444,"to":449,"sanitized":455},{"entryPoint":645,"graph":646,"unsanitizedCount":66,"severity":41},"manageSetPrimaryAppWebsiteDomain (src\\Base\\Ajax.php:732)",{"nodes":647,"edges":651},[648,650],{"id":444,"type":445,"label":446,"file":199,"line":649},736,{"id":449,"type":450,"label":451,"file":199,"line":388,"wp_function":452},[652],{"from":444,"to":449,"sanitized":455},{"entryPoint":654,"graph":655,"unsanitizedCount":66,"severity":41},"manageCreateApp (src\\Base\\Ajax.php:744)",{"nodes":656,"edges":660},[657,659],{"id":444,"type":445,"label":446,"file":199,"line":658},748,{"id":449,"type":450,"label":451,"file":199,"line":390,"wp_function":452},[661],{"from":444,"to":449,"sanitized":455},{"entryPoint":663,"graph":664,"unsanitizedCount":66,"severity":41},"manageCreateInitialAppLeadStatusTrigger (src\\Base\\Ajax.php:760)",{"nodes":665,"edges":669},[666,668],{"id":444,"type":445,"label":446,"file":199,"line":667},764,{"id":449,"type":450,"label":451,"file":199,"line":392,"wp_function":452},[670],{"from":444,"to":449,"sanitized":455},{"entryPoint":672,"graph":673,"unsanitizedCount":66,"severity":41},"manageGetUserNurtureEmails (src\\Base\\Ajax.php:938)",{"nodes":674,"edges":678},[675,677],{"id":444,"type":445,"label":446,"file":199,"line":676},942,{"id":449,"type":450,"label":451,"file":199,"line":410,"wp_function":452},[679],{"from":444,"to":449,"sanitized":455},{"entryPoint":681,"graph":682,"unsanitizedCount":66,"severity":41},"adminEnqueue (src\\Base\\Enqueue.php:441)",{"nodes":683,"edges":689},[684,687],{"id":444,"type":445,"label":685,"file":210,"line":686},"$_GET",447,{"id":449,"type":450,"label":451,"file":210,"line":688,"wp_function":452},456,[690],{"from":444,"to":449,"sanitized":455},{"entryPoint":692,"graph":693,"unsanitizedCount":29,"severity":703},"handleThemeCssForm (src\\Api\\Callbacks\\AdminCallbacks.php:28)",{"nodes":694,"edges":700},[695,697],{"id":444,"type":445,"label":446,"file":313,"line":696},41,{"id":449,"type":450,"label":698,"file":313,"line":193,"wp_function":699},"update_option() [Settings Manipulation]","update_option",[701],{"from":444,"to":449,"sanitized":702},true,"low",{"entryPoint":705,"graph":706,"unsanitizedCount":29,"severity":703},"\u003CAdminCallbacks> (src\\Api\\Callbacks\\AdminCallbacks.php:0)",{"nodes":707,"edges":710},[708,709],{"id":444,"type":445,"label":446,"file":313,"line":696},{"id":449,"type":450,"label":698,"file":313,"line":193,"wp_function":699},[711],{"from":444,"to":449,"sanitized":702},{"entryPoint":713,"graph":714,"unsanitizedCount":29,"severity":703},"uploadImage (src\\Base\\Ajax.php:472)",{"nodes":715,"edges":736},[716,719,723,726,731,733],{"id":444,"type":445,"label":717,"file":199,"line":718},"$_FILES",477,{"id":449,"type":450,"label":720,"file":199,"line":721,"wp_function":722},"file_get_contents() [SSRF\u002FLFI]",485,"file_get_contents",{"id":724,"type":445,"label":725,"file":199,"line":718},"n2","$_FILES (x2)",{"id":727,"type":450,"label":728,"file":199,"line":729,"wp_function":730},"n3","file_put_contents() [File Write]",495,"file_put_contents",{"id":732,"type":445,"label":717,"file":199,"line":718},"n4",{"id":734,"type":450,"label":451,"file":199,"line":735,"wp_function":452},"n5",528,[737,738,739],{"from":444,"to":449,"sanitized":702},{"from":724,"to":727,"sanitized":702},{"from":732,"to":734,"sanitized":702},{"entryPoint":741,"graph":742,"unsanitizedCount":29,"severity":703},"\u003CAjax> (src\\Base\\Ajax.php:0)",{"nodes":743,"edges":755},[744,746,747,748,749,750,751,753],{"id":444,"type":445,"label":745,"file":199,"line":447},"$_POST (x41)",{"id":449,"type":450,"label":451,"file":199,"line":330,"wp_function":452},{"id":724,"type":445,"label":717,"file":199,"line":718},{"id":727,"type":450,"label":720,"file":199,"line":721,"wp_function":722},{"id":732,"type":445,"label":725,"file":199,"line":718},{"id":734,"type":450,"label":728,"file":199,"line":729,"wp_function":730},{"id":752,"type":445,"label":717,"file":199,"line":718},"n6",{"id":754,"type":450,"label":451,"file":199,"line":735,"wp_function":452},"n7",[756,757,758,759],{"from":444,"to":449,"sanitized":702},{"from":724,"to":727,"sanitized":702},{"from":732,"to":734,"sanitized":702},{"from":752,"to":754,"sanitized":702},{"entryPoint":761,"graph":762,"unsanitizedCount":66,"severity":703},"\u003CEnqueue> (src\\Base\\Enqueue.php:0)",{"nodes":763,"edges":766},[764,765],{"id":444,"type":445,"label":685,"file":210,"line":686},{"id":449,"type":450,"label":451,"file":210,"line":688,"wp_function":452},[767],{"from":444,"to":449,"sanitized":455},{"summary":769,"deductions":770},"The 'bread-butter' plugin version 8.5.0.100 exhibits a generally good security posture based on the static analysis. The absence of any unprotected entry points, such as AJAX handlers, REST API routes, shortcodes, or cron events, significantly limits the direct attack surface. The plugin also demonstrates good practices in SQL query handling, with 100% of queries using prepared statements, and a high percentage (92%) of output being properly escaped, which mitigates common cross-site scripting vulnerabilities. The presence of nonce and capability checks further strengthens its defenses. However, the static analysis did reveal a concerning number of flows with unsanitized paths (28 out of 32), although thankfully none were classified as critical or high severity. This indicates a potential for vulnerabilities if user input is not rigorously validated before being used in file operations or other sensitive functions.\n\nThe vulnerability history of the plugin is a significant concern. With two known medium-severity CVEs, specifically Cross-Site Request Forgery and Cross-site Scripting, it suggests a recurring pattern of insecure coding practices that have previously led to exploitable vulnerabilities. While there are currently no unpatched CVEs, the existence of past vulnerabilities of these types, coupled with the unsanitized path flows in the static analysis, warrants caution. The plugin's strengths lie in its controlled entry points and proper SQL\u002Foutput handling, but the past vulnerability record and the identified unsanitized path flows are weaknesses that cannot be overlooked, suggesting a need for more comprehensive input sanitization and ongoing security audits.",[771,773,776],{"reason":772,"points":139},"2 known medium CVEs",{"reason":774,"points":775},"28 flows with unsanitized paths",8,{"reason":777,"points":778},"Bundled library (Select2) may be outdated",3,"2026-03-16T22:18:34.464Z",{"wat":781,"direct":790},{"assetPaths":782,"generatorPatterns":785,"scriptPaths":786,"versionParams":787},[783,784],"\u002Fwp-content\u002Fplugins\u002Fbread-butter\u002Fsrc\u002Fassets\u002Fcss\u002Fbreadbutter-contactus.css","\u002Fwp-content\u002Fplugins\u002Fbread-butter\u002Fsrc\u002Fassets\u002Fjs\u002Fbreadbutter-contactus.js",[],[784],[788,789],"breadbutter-contactus.css?ver=","breadbutter-contactus.js?ver=",{"cssClasses":791,"htmlComments":792,"htmlAttributes":793,"restEndpoints":794,"jsGlobals":795,"shortcodeOutput":799},[],[],[],[],[796,797,798],"BB_POST_CONTACTUS","BB_CONTACTUS_OVERRIDE_REG_DESTINATION_URL","BB_POST_CONTACTUS_DATA",[]]