[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fgB1zbJ5kJyxMsjivc0hAQl7cSoRB0p55ooznDl-zKdM":3,"$fJ-v2PpZGF8wEpZkvEBpsOuHDMMQd3N6CMK9KdLqMFao":201,"$f-z9MHZ5XARhntQDz4f8dt8u3NE-6oll1_a2dLdAY0JI":206},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":24,"download_link":25,"security_score":26,"vuln_count":27,"unpatched_count":27,"last_vuln_date":28,"fetched_at":29,"discovery_status":30,"vulnerabilities":31,"developer":32,"crawl_stats":28,"alternatives":40,"analysis":136,"fingerprints":176},"category-description-widget","Category Description Widget","2.1","Dominik Schwind","https:\u002F\u002Fprofiles.wordpress.org\u002Fdominikschwind-1\u002F","\u003Cp>Enables a widget with the category description. This is useful if the theme you are using is not showing\u003Cbr \u002F>\nthis information.\u003C\u002Fp>\n\u003Cp>Works on tags and other taxonomies as well.\u003C\u002Fp>\n","Enables a widget with the category description.",100,5580,46,3,"2017-11-09T20:30:00.000Z","4.9.29","3.0","",[20,21,22,23],"category","tags","taxonomy","widget","http:\u002F\u002Flostfocus.de","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcategory-description-widget.2.1.zip",85,0,null,"2026-04-16T10:56:18.058Z","no_bundle",[],{"slug":33,"display_name":7,"profile_url":8,"plugin_count":34,"total_installs":35,"avg_security_score":36,"avg_patch_time_days":37,"trust_score":38,"computed_at":39},"dominikschwind-1",2,110,93,30,89,"2026-05-19T21:40:10.915Z",[41,56,80,105,123],{"slug":42,"name":43,"version":44,"author":45,"author_profile":46,"description":47,"short_description":48,"active_installs":49,"downloaded":50,"rating":27,"num_ratings":27,"last_updated":51,"tested_up_to":52,"requires_at_least":17,"requires_php":18,"tags":53,"homepage":54,"download_link":55,"security_score":26,"vuln_count":27,"unpatched_count":27,"last_vuln_date":28,"fetched_at":29},"contextual-category-widget","Contextual Category Widget","0.6.1","Vinnie","https:\u002F\u002Fprofiles.wordpress.org\u002Fnemovrusso\u002F","\u003Cp>A WordPress widget showing the description of the first category in the single post currently being displayed.\u003C\u002Fp>\n","A WordPress widget showing the description of the first category in the single post currently being displayed.",10,1812,"2019-09-06T10:31:00.000Z","5.2.24",[20,21,22,23],"https:\u002F\u002Fgithub.com\u002Fartetecha.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcontextual-category-widget.0.6.1.zip",{"slug":57,"name":58,"version":59,"author":60,"author_profile":61,"description":62,"short_description":63,"active_installs":64,"downloaded":65,"rating":66,"num_ratings":67,"last_updated":68,"tested_up_to":69,"requires_at_least":70,"requires_php":18,"tags":71,"homepage":75,"download_link":76,"security_score":77,"vuln_count":78,"unpatched_count":27,"last_vuln_date":79,"fetched_at":29},"list-custom-taxonomy-widget","List Custom Taxonomy Widget","4.2","Nick Halsey","https:\u002F\u002Fprofiles.wordpress.org\u002Fcelloexpressions\u002F","\u003Cp>The List Custom Taxonomy Widget is a quick and easy way to display custom taxonomies. Simply choose the taxonomy name you want to display from an auto-populated list. You can also set a title to display for the widget. Multiple list custom taxonomy widgets can be added to the same and other sidebars as well. There are several display options (including as a dropdown), and it generally behaves similarly to the built-in categories widget but with the addition of custom taxonomies.\u003C\u002Fp>\n","The List Custom Taxonomy Widget is a quick and easy way to display custom taxonomies. Simply choose the taxonomy name you want to display from an auto &hellip;",9000,119279,94,21,"2024-07-13T01:39:00.000Z","6.6.5","3.3",[20,72,73,74,23],"custom-tax","custom-taxonomy","sidebar","http:\u002F\u002Fcelloexpressions.com\u002Fplugins\u002Flist-custom-taxonomy-widget","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Flist-custom-taxonomy-widget.4.2.zip",92,1,"2024-04-22 00:00:00",{"slug":81,"name":82,"version":83,"author":84,"author_profile":85,"description":86,"short_description":87,"active_installs":88,"downloaded":89,"rating":90,"num_ratings":91,"last_updated":92,"tested_up_to":93,"requires_at_least":94,"requires_php":95,"tags":96,"homepage":102,"download_link":103,"security_score":11,"vuln_count":78,"unpatched_count":27,"last_vuln_date":104,"fetched_at":29},"wp-categories-widget","WP Categories Widget","2.8.1","WP-EXPERTS.IN","https:\u002F\u002Fprofiles.wordpress.org\u002Findia-web-developer\u002F","\u003Cp>The “WP Categories Widget” is a simple plugin to display the list of categories for any taxonomies type (WooCommerce Product Category, Blog Category, Project Category…etc) on your wordpress website. Using WP Categries Widget you can display list of categories anywhere on your website. And also you can disable the widget block editor and enable the classic widget layut to edit the sidebar.\u003C\u002Fp>\n\u003Cp>Note : please don’t forget to leave your valuable feedback and suggestions.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Send your query to \u003Ca href=\"mailto:info@wp-experts.in\" rel=\"nofollow ugc\">AUTHOR\u003C\u002Fa>\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>Video Tutorial :\u003C\u002Fp>\n\u003Cp>\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002FpbsnErpu_8U?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\u003C\u002Fp>\n\u003Ch4>`Features`\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Disable Widget Block Editor \u003C\u002Fli>\n\u003Cli>Display Categories Post Count \u003C\u002Fli>\n\u003Cli>Hide Child Categories\u003C\u002Fli>\n\u003Cli>Hide Widget Title\u003C\u002Fli>\n\u003Cli>Show Categories for Any Taxonomies Type\u003C\u002Fli>\n\u003Cli>Exclude\u002FInclude Categories\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Addon Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Display Category as Drop Down\u003C\u002Fli>\n\u003Cli>Display Category Posts\u003C\u002Fli>\n\u003Cli>Manage WP Widget Style (Background Color, Text Color, Border Style & Color)\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Add Custom CSS for every Widget\u003C\u002Fp>\n\u003Ch3>\u003Ca href=\"https:\u002F\u002Fwww.wp-experts.in\u002Fproducts\u002Fwp-categories-widget-addon\u002F?utm_source=wordpress.org&utm_medium=free-plugin&utm_campaign=wcw-paid\" rel=\"nofollow ugc\">Downalod Add-on\u003C\u002Fa>.\u003C\u002Fh3>\n\u003C\u002Fli>\n\u003C\u002Ful>\n","Display the list of categories for any taxonomies type (WooCommerce Product Category, Blog Category, Project Category...etc) in sidebar",7000,117458,90,27,"2026-02-16T14:20:00.000Z","6.9.4","6.0","8.0",[97,98,99,100,101],"category-widget","custom-widget","posts-widget","product-categories-widget","taxonomy-widget","https:\u002F\u002Fwww.wp-experts.in\u002Fproducts\u002Fwp-categories-widget-addon\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-categories-widget.zip","2023-08-10 00:00:00",{"slug":106,"name":107,"version":108,"author":109,"author_profile":110,"description":111,"short_description":112,"active_installs":113,"downloaded":114,"rating":66,"num_ratings":115,"last_updated":116,"tested_up_to":93,"requires_at_least":117,"requires_php":118,"tags":119,"homepage":121,"download_link":122,"security_score":11,"vuln_count":27,"unpatched_count":27,"last_vuln_date":28,"fetched_at":29},"tag-dropdown-widget","Taxonomy Dropdown Widget","2.3.3","Erick Hitter","https:\u002F\u002Fprofiles.wordpress.org\u002Fethitter\u002F","\u003Cp>Creates dropdown lists of non-hierarchical taxonomies (such as \u003Ccode>post tags\u003C\u002Fcode>) as an alternative to term (tag) clouds. Multiple widgets can be used, each with its own set of options.\u003C\u002Fp>\n\u003Cp>Numerous formatting options are provided, including maximum numbers of terms, term order, truncating of term names, and more.\u003C\u002Fp>\n\u003Cp>Using the \u003Ccode>taxonomy_dropdown_widget()\u003C\u002Fcode> function, users can generate dropdowns for use outside of the included widget.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Only use version 2.2 or higher with WordPress 4.2 and later releases.\u003C\u002Fstrong> WordPress 4.2 changed how taxonomy information is stored in the database, which directly impacts this plugin’s include\u002Fexclude term functionality.\u003C\u002Fp>\n\u003Cp>This plugin was formerly known as the \u003Ccode>Tag Dropdown Widget\u003C\u002Fcode>. It was completely rewritten for version 2.0.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Follow and contribute to development on GitHub at https:\u002F\u002Fgithub.com\u002Fethitter\u002FTaxonomy-Dropdown-Widget.\u003C\u002Fstrong>\u003C\u002Fp>\n","Creates a dropdown list of non-hierarchical taxonomies as an alternative to the term (tag) cloud. Formerly known as Tag Dropdown Widget.",2000,58830,9,"2026-01-19T21:37:00.000Z","2.8","5.6",[74,120,21,22,23],"tag","https:\u002F\u002Fethitter.com\u002Fplugins\u002Ftaxonomy-dropdown-widget\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Ftag-dropdown-widget.2.3.3.zip",{"slug":124,"name":125,"version":126,"author":109,"author_profile":110,"description":127,"short_description":128,"active_installs":113,"downloaded":129,"rating":130,"num_ratings":131,"last_updated":132,"tested_up_to":93,"requires_at_least":117,"requires_php":18,"tags":133,"homepage":134,"download_link":135,"security_score":11,"vuln_count":27,"unpatched_count":27,"last_vuln_date":28,"fetched_at":29},"tag-list-widget","Taxonomy List Widget","1.3.2","\u003Cp>Creates lists of non-hierarchical taxonomies (such as \u003Ccode>post tags\u003C\u002Fcode>) as an alternative to term (tag) clouds. Multiple widgets can be used, each with its own set of options.\u003C\u002Fp>\n\u003Cp>Numerous formatting options are provided, including maximum numbers of terms, term order, truncating of term names, and more. List styles are fully customizable, with built-in support for bulleted lists and numbered lists.\u003C\u002Fp>\n\u003Cp>Using the \u003Ccode>taxonomy_list_widget\u003C\u002Fcode> function, users can generate lists for use outside of the included widget.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Only use version 1.2 or higher with WordPress 4.2 and later releases.\u003C\u002Fstrong> WordPress 4.2 changed how taxonomy information is stored in the database, which directly impacts this plugin’s include\u002Fexclude term functionality.\u003C\u002Fp>\n\u003Cp>This plugin was formerly known as the \u003Ccode>Tag List Widget\u003C\u002Fcode>. It was completely rewritten for version 1.0.\u003C\u002Fp>\n","Creates a list (bulleted, number, or custom) of non-hierarchical taxonomies as an alternative to the term (tag) cloud. Formerly known as Tag List Widg &hellip;",57895,86,12,"2026-01-19T21:46:00.000Z",[74,120,21,22,23],"https:\u002F\u002Fethitter.com\u002Fplugins\u002Ftaxonomy-list-widget\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Ftag-list-widget.1.3.2.zip",{"attackSurface":137,"codeSignals":149,"taintFlows":163,"riskAssessment":164,"analyzedAt":175},{"hooks":138,"ajaxHandlers":145,"restRoutes":146,"shortcodes":147,"cronEvents":148,"entryPointCount":27,"unprotectedCount":27},[139],{"type":140,"name":141,"callback":142,"file":143,"line":144},"action","widgets_init","category_description_widget_init","category-description-widget.php",52,[],[],[],[],{"dangerousFunctions":150,"sqlUsage":151,"outputEscaping":153,"fileOperations":27,"externalRequests":27,"nonceChecks":27,"capabilityChecks":27,"bundledLibraries":162},[],{"prepared":27,"raw":27,"locations":152},[],{"escaped":27,"rawEcho":14,"locations":154},[155,158,160],{"file":143,"line":156,"context":157},41,"raw output",{"file":143,"line":159,"context":157},42,{"file":143,"line":161,"context":157},43,[],[],{"summary":165,"deductions":166},"The \"category-description-widget\" plugin v2.1 exhibits a strong security posture in several areas. Notably, the static analysis reveals a complete absence of identified vulnerabilities in its history, suggesting a history of stable and secure code. The plugin also demonstrates good practices by not utilizing dangerous functions, performing all SQL queries using prepared statements, and avoiding file operations or external HTTP requests.  Furthermore, the attack surface appears to be minimal, with no reported AJAX handlers, REST API routes, shortcodes, or cron events that could be exploited.\n\nHowever, there are significant concerns regarding output escaping. The analysis indicates that 100% of the identified output points are not properly escaped, which represents a critical security weakness. This lack of escaping makes the plugin highly susceptible to Cross-Site Scripting (XSS) attacks, where malicious code could be injected through the widget's output and executed in the user's browser. While the taint analysis shows no flows with unsanitized paths, this is likely due to the limited scope of the analysis or the absence of complex data processing within the widget itself.  The lack of capability checks and nonce checks is also a concern, though less critical in the absence of identified attack vectors in the static analysis.\n\nIn conclusion, while the plugin has a clean vulnerability history and avoids several common pitfalls like raw SQL and dangerous functions, the pervasive issue of unescaped output presents a substantial risk of XSS vulnerabilities. This weakness significantly overshadows the plugin's strengths and requires immediate attention to ensure user security.",[167,170,173],{"reason":168,"points":169},"Unescaped output detected",15,{"reason":171,"points":172},"Missing capability checks",5,{"reason":174,"points":172},"Missing nonce checks","2026-04-16T11:02:50.372Z",{"wat":177,"direct":183},{"assetPaths":178,"generatorPatterns":180,"scriptPaths":181,"versionParams":182},[179],"\u002Fwp-content\u002Fplugins\u002Fcategory-description-widget\u002Fcategory-description-widget.php",[],[],[],{"cssClasses":184,"htmlComments":185,"htmlAttributes":197,"restEndpoints":198,"jsGlobals":199,"shortcodeOutput":200},[],[186,187,188,189,190,191,192,193,194,195,196]," Copyright 2014  Dominik Schwind  (email : dschwind@lostfocus.de)","    This program is free software; you can redistribute it and\u002For modify","    it under the terms of the GNU General Public License, version 2, as","    published by the Free Software Foundation.","    This program is distributed in the hope that it will be useful,","    but WITHOUT ANY WARRANTY; without even the implied warranty of","    MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the","    GNU General Public License for more details.","    You should have received a copy of the GNU General Public License","    along with this program; if not, write to the Free Software","    Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA  02110-1301  USA",[],[],[],[],{"error":202,"url":203,"statusCode":204,"statusMessage":205,"message":205},true,"http:\u002F\u002Flocalhost\u002Fapi\u002Fplugins\u002Fcategory-description-widget\u002Fbundle",404,"no bundle for this plugin yet",{"slug":4,"current_version":6,"total_versions":14,"versions":207},[208,214,221],{"version":6,"download_url":25,"svn_tag_url":209,"released_at":28,"has_diff":210,"diff_files_changed":211,"diff_lines":28,"trac_diff_url":212,"vulnerabilities":213,"is_current":202},"https:\u002F\u002Fplugins.svn.wordpress.org\u002Fcategory-description-widget\u002Ftags\u002F2.1\u002F",false,[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Fcategory-description-widget%2Ftags%2F2&new_path=%2Fcategory-description-widget%2Ftags%2F2.1",[],{"version":215,"download_url":216,"svn_tag_url":217,"released_at":28,"has_diff":210,"diff_files_changed":218,"diff_lines":28,"trac_diff_url":219,"vulnerabilities":220,"is_current":210},"2","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcategory-description-widget.2.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fcategory-description-widget\u002Ftags\u002F2\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Fcategory-description-widget%2Ftags%2F1&new_path=%2Fcategory-description-widget%2Ftags%2F2",[],{"version":222,"download_url":223,"svn_tag_url":224,"released_at":28,"has_diff":210,"diff_files_changed":225,"diff_lines":28,"trac_diff_url":28,"vulnerabilities":226,"is_current":210},"1","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcategory-description-widget.1.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fcategory-description-widget\u002Ftags\u002F1\u002F",[],[]]