[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fgsIG3JXpOzZc0MIzg-SMv_3CBceQiTURcSMUqo_TJ0Y":3,"$fKMp7D-2XnoXp_cv-VKAcAajI72aJ6MJt7cD3TsV01Ko":248,"$fr7ar0FW2NLFcQr9UUMFc5RRgUwaKpx9eOErQlBjS4Ak":252},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":24,"download_link":25,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28,"discovery_status":29,"vulnerabilities":30,"developer":31,"crawl_stats":27,"alternatives":38,"analysis":132,"fingerprints":229},"camptix-automatic-gravatar-fetch-and-export","Camptix – Gravatar Fetch and Export","0.1","Deven Bansod","https:\u002F\u002Fprofiles.wordpress.org\u002Fbansod_deven\u002F","\u003Cul>\n\u003Cli>This is an independent plugin which is an addon to Camptix Plugin for event ticketing. \u003C\u002Fli>\n\u003Cli>Requires latest version of Camptix Plugin by Automattic – \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fcamptix\" title=\"Camptix Plugin\" rel=\"ugc\">Camptix\u003C\u002Fa> to be installed and activated\u003C\u002Fli>\n\u003Cli>This addon helps to automate the cumbersome process of getting the Gravatars of all the Attendees.\u003C\u002Fli>\n\u003Cli>Also, tries to solve #262 Meta.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Usage\u003C\u002Fh3>\n\u003Col>\n\u003Cli>Go to Tickets > Tools > Export Selected Columns\u003C\u002Fli>\n\u003Cli>Select Columns to Export from all Columns\u003C\u002Fli>\n\u003Cli>Select Questions to Export from all Questions (Blank if the ticket does not have that question)\u003Cbr \u002F>\n(Here, the fields needed in InDesign Badge making (i.e. Columns ‘first_name’, ‘last_name’, ’email’, ‘twitter’) are checked by default. )\u003C\u002Fli>\n\u003Cli>If you want to fetch the Gravatars of the attendees too, then check the Checkbox.(checked by Default) \u003C\u002Fli>\n\u003Cli>Select the Folder where Temporarily ZIP file contents can be stored on the server. (Should have adequate permissions.)\u003C\u002Fli>\n\u003Cli>Click Generate CSV\u002F ZIP. This generates a CSV if the Gravtars checkbox is not checked. Or else generates a ZIP containing the CSV for InDesign and the Gravatar Images that were pulled using the Email IDs.\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch3>Support\u003C\u002Fh3>\n\u003Cp>Post any Query in the Support Section.\u003Cbr \u002F>\nI would be more than Happy to answer them.\u003C\u002Fp>\n","This is an independent plugin which is an addon to Camptix Plugin and helps to automate fetch and export of Attendees' Gravatars.",10,1803,0,"2015-01-24T04:24:00.000Z","4.1.42","4","",[19,20,21,22,23],"camptix","camptix-addon","fetch","gravatar","gravatars","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fcamptix-automatic-gravatar-fetch-and-export\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcamptix-automatic-gravatar-fetch-and-export.zip",85,null,"2026-07-22T17:31:50.256Z","no_bundle",[],{"slug":32,"display_name":7,"profile_url":8,"plugin_count":33,"total_installs":34,"avg_security_score":26,"avg_patch_time_days":35,"trust_score":36,"computed_at":37},"bansod_deven",2,20,30,84,"2026-08-29T11:08:24.182Z",[39,59,76,92,110],{"slug":40,"name":41,"version":42,"author":43,"author_profile":44,"description":45,"short_description":46,"active_installs":47,"downloaded":48,"rating":47,"num_ratings":49,"last_updated":50,"tested_up_to":51,"requires_at_least":52,"requires_php":17,"tags":53,"homepage":57,"download_link":58,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"easygravatars","Easy Gravatars","1.3","Dougal Campbell","https:\u002F\u002Fprofiles.wordpress.org\u002Fdougal\u002F","\u003Cp>This plugin allows you to automatically add Gravatars for commenters to your\u003Cbr \u002F>\ntheme, if your theme does not already support them.\u003C\u002Fp>\n\u003Cp>According to the Gravatar.com website, Gravatars are Globally Recognized\u003Cbr \u002F>\nAvatars, or an “avatar image that follows you from weblog to weblog\u003Cbr \u002F>\nappearing beside your name when you comment on gravatar enabled sites.”\u003Cbr \u002F>\nYou register with the Gravatar server, and upload an image which you will\u003Cbr \u002F>\nuse as your avatar. The gravatar image is keyed to your email address, so\u003Cbr \u002F>\nthat it is unique to you.\u003C\u002Fp>\n\u003Cp>This plugin will display gravatars for the people who comment on your posts.\u003Cbr \u002F>\nYou do not need to modify any of your template files — just activate the\u003Cbr \u002F>\nplugin, and it will add gravatars to your comments template automatically.\u003C\u002Fp>\n\u003Ch3>Credits\u003C\u002Fh3>\n\u003Cp>Based on a code snippet from Matt Mullenweg:\u003Cbr \u002F>\n  http:\u002F\u002Fphotomatt.net\u002F2007\u002F10\u002F20\u002Fgravatar-enabled\u002F\u003Cbr \u002F>\n  http:\u002F\u002Fpastebin.ca\u002F743979\u003C\u002Fp>\n\u003Cp>Props to David Potter for pointing out that Gravatar normalizes email\u003Cbr \u002F>\naddresses to lowercase before hashing with MD5:\u003Cbr \u002F>\n  http:\u002F\u002Fdpotter.net\u002FTechnical\u002Findex.php\u002F2007\u002F10\u002F22\u002Fintegrating-gravatar-support\u002F\u003C\u002Fp>\n","Add Gravatars to your comments without modifying any template files. Just activate, and you're done!",100,64843,1,"2010-01-14T15:36:00.000Z","3.0.5","2.0.4",[54,55,56,22,23],"avatar","avatars","comments","http:\u002F\u002Fdougal.gunters.org\u002Fplugins\u002Feasy-gravatars","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Feasygravatars.1.3.zip",{"slug":60,"name":61,"version":62,"author":63,"author_profile":64,"description":65,"short_description":66,"active_installs":67,"downloaded":68,"rating":69,"num_ratings":33,"last_updated":70,"tested_up_to":71,"requires_at_least":72,"requires_php":17,"tags":73,"homepage":74,"download_link":75,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"gravatar-signup-encouragement","Gravatar Signup Encouragement","3.1","Milan Dinić","https:\u002F\u002Fprofiles.wordpress.org\u002Fdimadin\u002F","\u003Cp>\u003Ca href=\"http:\u002F\u002Fblog.milandinic.com\u002Fwordpress\u002Fplugins\u002Fgravatar-signup-encouragement\u002F\" rel=\"nofollow ugc\">Plugin homepage\u003C\u002Fa> | \u003Ca href=\"http:\u002F\u002Fblog.milandinic.com\u002F\" rel=\"nofollow ugc\">Plugin author\u003C\u002Fa> | \u003Ca href=\"http:\u002F\u002Fblog.milandinic.com\u002Fdonate\u002F\" rel=\"nofollow ugc\">Donate\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>This plugin shows a message with link to signup page of Gravatar (pre-filled with e-mail address) to commenters and\u002For users who don’t have gravatar.\u003C\u002Fp>\n\u003Cp>Message can be shown to:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>unregistered commenters when they leave text input field for e-mail address\u003C\u002Fli>\n\u003Cli>registered commenters to whom their registered e-mail address is checked\u003C\u002Fli>\n\u003Cli>unregistered commenters after they post a comment in a dialog, to whom their entered e-mail address is checked\u003C\u002Fli>\n\u003Cli>registered commenters after they post a comment in a dialog, to whom their registered e-mail address is checked\u003C\u002Fli>\n\u003Cli>registered users in administration notices, to whom their registered e-mail address is checked\u003C\u002Fli>\n\u003Cli>registered users in admin bar, to whom their registered e-mail address is checked\u003C\u002Fli>\n\u003Cli>registered users on their profile page, to whom their registered e-mail address is checked\u003C\u002Fli>\n\u003Cli>users who fill registration form when they leave text input field for e-mail address\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Options are fully customizable. See FAQ for more information.\u003C\u002Fp>\n\u003Cp>This plugin is lightweight, it adds only one field in database which is deleted if you uninstall plugin using WordPress’ built-in feature for deletion of plugins. Also it will only load jQuery file to head of your page if it wasn’t already loaded by theme or other plugin(s). Checks for gravatar are done via simple AJAX.\u003Cbr \u002F>\nIf you want to speed up your web site and save on bandwidth and server resources, it is recommended that you also install plugin \u003Ca href=\"http:\u002F\u002Fjasonpenney.net\u002Fwordpress-plugins\u002Fuse-google-libraries\u002F\" rel=\"nofollow ugc\">Use Google Libraries\u003C\u002Fa> which will load jQuery file from \u003Ca href=\"http:\u002F\u002Fcode.google.com\u002Fapis\u002Fajaxlibs\u002F\" rel=\"nofollow ugc\">Google AJAX Libraries\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>In order to plugin works, it needs to be on server with PHP 5 and on WordPress 2.8 or above.\u003C\u002Fp>\n\u003Cp>\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002FeIvm4rBkxPk?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&cc_load_policy=1&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\u003C\u002Fp>\n","Shows a message with link to Gravatar's signup page to commenters and\u002For users without gravatar.",50,15358,90,"2012-07-11T15:42:00.000Z","3.4.2","2.8",[54,55,22,23],"http:\u002F\u002Fblog.milandinic.com\u002Fwordpress\u002Fplugins\u002Fgravatar-signup-encouragement\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fgravatar-signup-encouragement.3.1.zip",{"slug":77,"name":78,"version":79,"author":80,"author_profile":81,"description":82,"short_description":83,"active_installs":67,"downloaded":84,"rating":47,"num_ratings":33,"last_updated":85,"tested_up_to":86,"requires_at_least":62,"requires_php":17,"tags":87,"homepage":90,"download_link":91,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"hidpi-gravatars","HiDPI Gravatars","1.5.1","Robert Chapin","https:\u002F\u002Fprofiles.wordpress.org\u002Fmiqrogroove\u002F","\u003Cp>Automatically replaces the standard resolution Gravatars with HiDPI (Retina) Gravatars using HTML (when supported) or Javascript (as needed).\u003C\u002Fp>\n\u003Cp>You need this plugin if you want blog comments to look crisp and clear on Retina, HD, and similar devices!\u003C\u002Fp>\n\u003Cp>You need this plugin if you want compatibility with all web browsers.  The HiDPI features added in WordPress 4.2 are not compatible with older browsers, unless you have this plugin activated.  The included Javascript helps make your website look the same in new and old browsers.\u003C\u002Fp>\n\u003Ch3>Theme Requirements\u003C\u002Fh3>\n\u003Cp>You may not omit the \u003Ca href=\"https:\u002F\u002Fcodex.wordpress.org\u002FFunction_Reference\u002Fwp_head\" rel=\"nofollow ugc\">wp_head\u003C\u002Fa> and \u003Ca href=\"https:\u002F\u002Fcodex.wordpress.org\u002FFunction_Reference\u002Fwp_footer\" rel=\"nofollow ugc\">wp_footer\u003C\u002Fa> template tags for this plugin to work correctly.\u003C\u002Fp>\n\u003Ch3>Cache Compatibility\u003C\u002Fh3>\n\u003Cp>HiDPI Gravatars is designed to be fully compatible with page caching plugins such as WP Super Cache.\u003C\u002Fp>\n\u003Cp>Pages that were cached prior to activating HiDPI Gravatars will need to be refreshed.  Empty the cache to make sure the new Gravatars will appear.\u003C\u002Fp>\n\u003Cp>HiDPI Gravatars is \u003Cem>not\u003C\u002Fem> compatible with any Gravatar caching plugins.\u003C\u002Fp>\n\u003Ch3>Other Gravatar Plugins\u003C\u002Fh3>\n\u003Cp>HiDPI Gravatars might not detect customized Gravatar functions in other plugins.  As of version 1.4, HiDPI Gravatars relies on the WordPress \u003Ca href=\"https:\u002F\u002Fcodex.wordpress.org\u002FFunction_Reference\u002Fget_avatar\" rel=\"nofollow ugc\">get_avatar\u003C\u002Fa> filter.  Custom avatar generators that avoid or disable this filter will be ignored by HiDPI Gravatars.\u003C\u002Fp>\n","Enables high resolution Gravatar images on any browser that supports them.",13692,"2015-08-08T16:24:00.000Z","4.3.34",[54,22,23,88,89],"hidpi","retina","http:\u002F\u002Fwww.miqrogroove.com\u002Fpro\u002Fsoftware\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fhidpi-gravatars.1.5.1.zip",{"slug":93,"name":94,"version":95,"author":96,"author_profile":97,"description":98,"short_description":99,"active_installs":34,"downloaded":100,"rating":47,"num_ratings":49,"last_updated":101,"tested_up_to":102,"requires_at_least":72,"requires_php":17,"tags":103,"homepage":108,"download_link":109,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"top-contributors","Top Contributors","1.4.1","blueinstyle","https:\u002F\u002Fprofiles.wordpress.org\u002Fblueinstyle\u002F","\u003Cp>Display your top commenters or authors in a widget, or you can display anywhere on your blog by pasting this code into your theme: \u003Ccode>\u003C?php if(function_exists('jme_top_contributors')) { jme_top_contributors(); } ?>\u003C\u002Fcode>\u003C\u002Fp>\n\u003Cp>Version 1.4 includes many user requested features. Check \u003Ca href=\"http:\u002F\u002Fjustmyecho.com\u002F2010\u002F07\u002Ftop-contributors-plugin-wordpress\u002F\" rel=\"nofollow ugc\">plugin webpage\u003C\u002Fa> for details on the update.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>List your top commenters or authors with the option to display their Gravatar, and several other options.\u003C\u002Fli>\n\u003Cli>Choose from 2 formats of the widget, with complete control of styles via css.\u003C\u002Fli>\n\u003Cli>Exclude users from the list by email address.\u003C\u002Fli>\n\u003Cli>The list uses a cache system for improved performance. List updates only when a post or comment is added, or options updated.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Extra Feature\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Add a special Icon next to each of your Top Commenter’s name in their comments to give them a little special recognition for being a regular contributor.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Support and Feature request forum at http:\u002F\u002Fjustmyecho.com\u002Fforums\u002F\u003C\u002Fp>\n","Display your top commenters or authors in a widget.",11651,"2011-04-10T16:46:00.000Z","3.1.4",[104,23,105,106,107],"commenters","plugins","top-commenters","widgets","http:\u002F\u002Fjustmyecho.com\u002F2010\u002F07\u002Ftop-contributors-plugin-wordpress\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Ftop-contributors.1.4.1.zip",{"slug":111,"name":112,"version":113,"author":114,"author_profile":115,"description":116,"short_description":117,"active_installs":11,"downloaded":118,"rating":13,"num_ratings":13,"last_updated":119,"tested_up_to":120,"requires_at_least":121,"requires_php":17,"tags":122,"homepage":127,"download_link":128,"security_score":129,"vuln_count":49,"unpatched_count":49,"last_vuln_date":130,"fetched_at":131},"faces-of-users","Faces of Users","0.0.3","Matt McInvale","https:\u002F\u002Fprofiles.wordpress.org\u002Fmcinvale\u002F","\u003Cp>\u003Cstrong>Faces of Users\u003C\u002Fstrong> gives you a shortcode to display all of your registered users Gravatars. Current options include; sizing, displaying user names and default Gravatar.\u003C\u002Fp>\n\u003Col>\n\u003Cli>Install plugin\u003C\u002Fli>\n\u003Cli>Add [facesofusers] shortcode to your content\u003C\u002Fli>\n\u003Cli>Done!\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Cp>\u003Ca href=\"http:\u002F\u002Fbinarym.com\u002F2010\u002Ffaces-of-users-plugin\u002F\" rel=\"nofollow ugc\">Some examples and feature requests for Faces of Users on BinaryM.com\u003C\u002Fa>\u003C\u002Fp>\n","Display registered users Gravatars on a single page with shortcode.",2954,"2010-05-25T00:45:00.000Z","2.9.2","2.7",[123,23,124,125,126],"fun","shortcode","tacos","users","http:\u002F\u002Fbinarym.com\u002F2010\u002Ffaces-of-users-plugin\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Ffaces-of-users.zip",63,"2026-05-19 12:03:15","2026-04-16T10:56:18.058Z",{"attackSurface":133,"codeSignals":161,"taintFlows":187,"riskAssessment":217,"analyzedAt":228},{"hooks":134,"ajaxHandlers":157,"restRoutes":158,"shortcodes":159,"cronEvents":160,"entryPointCount":13,"unprotectedCount":13},[135,141,147,150,154],{"type":136,"name":137,"callback":138,"file":139,"line":140},"action","camptix_load_addons","camptix_gravatar_fetch_and_export_method","camptix.php",18,{"type":142,"name":143,"callback":144,"file":145,"line":146},"filter","camptix_menu_tools_tabs","menu_tools_fetch_gravatars","classes\u002Ffetch-export-gravatars.php",17,{"type":142,"name":148,"callback":149,"file":145,"line":140},"camptix_default_addons","add_to_default_addon",{"type":136,"name":151,"callback":152,"priority":11,"file":145,"line":153},"camptix_menu_tools_fetch-export-gravatars","menu_tools_fetch_export_gravatars",19,{"type":136,"name":155,"callback":156,"file":145,"line":34},"load-tix_ticket_page_camptix_tools","export_admin_init",[],[],[],[],{"dangerousFunctions":162,"sqlUsage":163,"outputEscaping":165,"fileOperations":185,"externalRequests":49,"nonceChecks":13,"capabilityChecks":49,"bundledLibraries":186},[],{"prepared":13,"raw":13,"locations":164},[],{"escaped":166,"rawEcho":167,"locations":168},5,8,[169,172,173,175,177,179,181,183],{"file":145,"line":170,"context":171},92,"raw output",{"file":145,"line":47,"context":171},{"file":145,"line":174,"context":171},109,{"file":145,"line":176,"context":171},116,{"file":145,"line":178,"context":171},143,{"file":145,"line":180,"context":171},147,{"file":145,"line":182,"context":171},155,{"file":145,"line":184,"context":171},161,7,[],[188,207],{"entryPoint":189,"graph":190,"unsanitizedCount":33,"severity":206},"generate_attendee_report_with_gravatars (classes\u002Ffetch-export-gravatars.php:240)",{"nodes":191,"edges":203},[192,197],{"id":193,"type":194,"label":195,"file":145,"line":196},"n0","source","$_POST (x2)",244,{"id":198,"type":199,"label":200,"file":145,"line":201,"wp_function":202},"n1","sink","fopen() [File Access]",288,"fopen",[204],{"from":193,"to":198,"sanitized":205},false,"medium",{"entryPoint":208,"graph":209,"unsanitizedCount":13,"severity":216},"\u003Cfetch-export-gravatars> (classes\u002Ffetch-export-gravatars.php:0)",{"nodes":210,"edges":213},[211,212],{"id":193,"type":194,"label":195,"file":145,"line":196},{"id":198,"type":199,"label":200,"file":145,"line":201,"wp_function":202},[214],{"from":193,"to":198,"sanitized":215},true,"low",{"summary":218,"deductions":219},"The \"camptix-automatic-gravatar-fetch-and-export\" plugin v0.1 presents a mixed security posture.  While the static analysis indicates no directly exploitable entry points like AJAX handlers or REST API routes without authentication, and all SQL queries utilize prepared statements, there are significant concerns regarding output escaping and file operations. The low percentage of properly escaped output (38%) suggests a high risk of cross-site scripting (XSS) vulnerabilities. Furthermore, the presence of unsanitized paths in taint analysis, although not classified as critical or high severity, warrants attention as it could lead to path traversal or other file system-related vulnerabilities. The plugin also lacks nonce checks on its operations, which is a fundamental security practice for preventing CSRF attacks.  The complete absence of known vulnerabilities in its history is a positive indicator, but it does not negate the risks identified in the static code analysis. In conclusion, while the plugin avoids common pitfalls like unpatched CVEs and raw SQL, the identified weaknesses in output sanitization and file handling, coupled with the lack of nonce checks, represent a notable security risk.",[220,222,224,226],{"reason":221,"points":167},"Low percentage of properly escaped output",{"reason":223,"points":185},"Unsanitized paths in taint analysis",{"reason":225,"points":166},"Lack of nonce checks",{"reason":227,"points":33},"File operations present","2026-04-16T11:40:48.052Z",{"wat":230,"direct":236},{"assetPaths":231,"generatorPatterns":233,"scriptPaths":234,"versionParams":235},[232],"\u002Fwp-content\u002Fplugins\u002Fcamptix-automatic-gravatar-fetch-and-export\u002Fclasses\u002Ffetch-export-gravatars.php",[],[],[],{"cssClasses":237,"htmlComments":238,"htmlAttributes":239,"restEndpoints":245,"jsGlobals":246,"shortcodeOutput":247},[],[],[240,241,242,243,244],"name=\"tix_export_cols[","name=\"tix_export_questions[","name=\"tix_export_include_gravatars\"","name=\"tix_export_path_to_zip\"","name=\"tix_export_submit\"",[],[],[],{"error":215,"url":249,"statusCode":250,"statusMessage":251,"message":251},"http:\u002F\u002Flocalhost\u002Fapi\u002Fplugins\u002Fcamptix-automatic-gravatar-fetch-and-export\u002Fbundle",404,"no bundle for this plugin yet",{"slug":4,"current_version":6,"total_versions":13,"versions":253},[]]