[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$faiKDe2vgcKPTdfelOc8nS7jAezwzq8ydd3dYVi9TAAo":3,"$fnVEN7FoURkA9sh8dwAeMYgkvC9yjkoapAFz6hed-1n0":260,"$fnxvrZjOkAmiYBqCRnhZ22pyjgl6tqXUlwJVtB-C-eTo":264},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":24,"download_link":25,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28,"discovery_status":29,"vulnerabilities":30,"developer":31,"crawl_stats":27,"alternatives":39,"analysis":143,"fingerprints":228},"cleantalk-bbpress-spam-scanner","CleanTalk bbPress spam scanner","1.0.3","CleanTalk Inc","https:\u002F\u002Fprofiles.wordpress.org\u002Fcleantalk\u002F","\u003Cp>CleanTalk bbPress spam scanner is an add-on for \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fcleantalk-spam-protect\u002F\" rel=\"ugc\">CleanTalk Anti-Spam Plugin\u003C\u002Fa> and extends its capabilities. The plugin is designed to help you find and move to trash all existing bbPress spam topics.\u003C\u002Fp>\n\u003Cp>The plugin scans all bbPress topics and checks the author parameters through the CleanTalk database. After scanning, you will receive a list of all found spam topics and you can choose which of them to move to the trash or move them all at once.\u003C\u002Fp>\n","Check existing bbPress topics for spam and move to trash all found spam.",200,5463,0,"2026-01-22T08:47:00.000Z","6.9.4","3.0","7.2",[19,20,21,22,23],"bbpress","cleaner","spam","spam-check","spam-comments","https:\u002F\u002Fcleantalk.org","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcleantalk-bbpress-spam-scanner.1.0.3.zip",100,null,"2026-04-16T10:56:18.058Z","no_bundle",[],{"slug":32,"display_name":7,"profile_url":8,"plugin_count":33,"total_installs":34,"avg_security_score":35,"avg_patch_time_days":36,"trust_score":37,"computed_at":38},"cleantalk",5,230200,92,571,73,"2026-05-20T19:06:55.957Z",[40,65,88,106,126],{"slug":41,"name":42,"version":43,"author":44,"author_profile":45,"description":46,"short_description":47,"active_installs":48,"downloaded":49,"rating":50,"num_ratings":51,"last_updated":52,"tested_up_to":15,"requires_at_least":53,"requires_php":54,"tags":55,"homepage":60,"download_link":61,"security_score":62,"vuln_count":63,"unpatched_count":13,"last_vuln_date":64,"fetched_at":28},"bbpress-notify-nospam","bbPress Notify (No-Spam)","3.0.3","useStrict","https:\u002F\u002Fprofiles.wordpress.org\u002Fusestrict\u002F","\u003Cp>\u003Cstrong>bbPress Notify (No-Spam)\u003C\u002Fstrong> is the ultimate notification plugin for \u003Cstrong>bbPress\u003C\u002Fstrong> and \u003Cstrong>BuddyBoss\u003C\u002Fstrong> forums.\u003Cbr \u002F>\nIt replaces the limited default subscription system with a flexible, no-spam solution that gives your users \u003Cstrong>personalized, reliable email updates\u003C\u002Fstrong> about new topics and replies.\u003C\u002Fp>\n\u003Cp>Stop flooding inboxes. With bbpnns you control exactly who gets notified, when, and how. Perfect for community managers, membership sites, and anyone who wants professional-grade forum notifications.\u003C\u002Fp>\n\u003Ch4>Key Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>📧 \u003Cstrong>Send professional emails\u003C\u002Fstrong> — Choose HTML, plain text, or multipart with image support.\u003C\u002Fli>\n\u003Cli>🎯 \u003Cstrong>Target the right audience\u003C\u002Fstrong> — Notify by user roles (admins, moderators, members, etc.).\u003C\u002Fli>\n\u003Cli>🚀 \u003Cstrong>Faster performance\u003C\u002Fstrong> — Background notifications prevent post-submission timeouts.\u003C\u002Fli>\n\u003Cli>🧪 \u003Cstrong>Preview before sending\u003C\u002Fstrong> — Dry-run mode shows exactly who will receive notifications.\u003C\u002Fli>\n\u003Cli>🔌 \u003Cstrong>Developer-friendly\u003C\u002Fstrong> — Dozens of filters and actions for easy customization.\u003C\u002Fli>\n\u003Cli>✅ \u003Cstrong>BuddyBoss compatible\u003C\u002Fstrong> — Works out of the box with BuddyBoss forums.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fusestrict.net\u002Fbbpress-notify-no-spam-documentation\u002F\" rel=\"nofollow ugc\">📖 View the full documentation\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>💡 Looking for advanced features like digests, reply-by-email, and membership integrations? \u003Ca href=\"https:\u002F\u002Fusestrict.net\u002Fbbpress-notify-premium\u002F?utm_source=wporg-readme&utm_medium=plugin&utm_campaign=top\" rel=\"nofollow ugc\">See bbPress Notify Premium\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch3>Premium Add-Ons\u003C\u002Fh3>\n\u003Cp>Take bbpnns to the next level with powerful extensions:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Reply by Email\u003C\u002Fstrong> – Post new topics or replies directly from your inbox.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Bulk Mailer\u003C\u002Fstrong> – Send notifications to thousands of users reliably — no timeouts, no dropped emails.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Digests\u003C\u002Fstrong> – Give users daily, weekly, or monthly summaries to reduce inbox noise.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Opt-Out\u003C\u002Fstrong> – One-click unsubscribe options for CAN-SPAM and CASL compliance.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Membership & LMS Bridges\u003C\u002Fstrong> – Running a membership or LMS site? Keep notifications in sync with your access control layer. Supports BuddyPress, MemberPress, LearnDash, AccessAlly, Private Groups, and more.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>👉 Browse all premium add-ons here: \u003Ca href=\"https:\u002F\u002Fusestrict.net\u002Fbbpress-notify-premium\u002F?utm_source=wporg-readme&utm_medium=plugin&utm_campaign=bbpnns\" rel=\"nofollow ugc\">bbPress Notify Premium\u003C\u002Fa>\u003C\u002Fp>\n","Powerful, customizable email notifications for bbPress and BuddyBoss forums — without the spam.",3000,292808,96,39,"2026-03-11T19:58:00.000Z","3.1","7.4",[19,56,57,58,59],"buddyboss","email-notification","forum-notifications","no-spam","","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbbpress-notify-nospam.3.0.3.zip",98,2,"2025-07-19 00:00:00",{"slug":66,"name":67,"version":68,"author":69,"author_profile":70,"description":71,"short_description":72,"active_installs":73,"downloaded":74,"rating":26,"num_ratings":75,"last_updated":76,"tested_up_to":77,"requires_at_least":78,"requires_php":79,"tags":80,"homepage":85,"download_link":86,"security_score":87,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"toms-recaptcha","TomS reCAPTCHA","1.2.0","TomS Caprice","https:\u002F\u002Fprofiles.wordpress.org\u002Ftomsneddon\u002F","\u003Cp>Integrated Google ReCaptcha for WordPress. Protect the login, register, lostpassword and comment forms. Support Woocommerce, Ultimate Member and more popular forms.\u003Cbr \u002F>\n\u003Ca href=\"https:\u002F\u002Fdevelopers.google.com\u002Frecaptcha\" rel=\"nofollow ugc\">\u003Cstrong>Google reCAPTCHA\u003C\u002Fstrong>\u003C\u002Fa> is a free service that protects your site from spam and abuse. It uses advanced risk analysis techniques to tell humans and bots apart.\u003C\u002Fp>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cp>Go to \u003Ca href=\"https:\u002F\u002Fwww.google.com\u002Frecaptcha\u002Fadmin\u002Fcreate\" rel=\"nofollow ugc\">Google reCAPTCHA\u003C\u002Fa> to get the \u003Cstrong>Site key\u003C\u002Fstrong> and \u003Cstrong>Secret key\u003C\u002Fstrong>.\u003C\u002Fp>\n\u003Ch4>reCAPTCHA Type:\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>reCAPTCHA \u003Cstrong>v3\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>reCAPTCHA \u003Cstrong>v2 Checkbox\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>reCAPTCHA \u003Cstrong>v2 Invisible\u003C\u002Fstrong>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Supported Form List\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>WordPress default login form\u003C\u002Fli>\n\u003Cli>WordPress default register form\u003C\u002Fli>\n\u003Cli>WordPress default lostpassword form\u003C\u002Fli>\n\u003Cli>\n\u003Cp>WordPress default comment form\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fwoocommerce\u002F\" rel=\"ugc\">\u003Cstrong>Woocommerce\u003C\u002Fstrong>\u003C\u002Fa> login form\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fwoocommerce\u002F\" rel=\"ugc\">\u003Cstrong>Woocommerce\u003C\u002Fstrong>\u003C\u002Fa> register form\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fwoocommerce\u002F\" rel=\"ugc\">\u003Cstrong>Woocommerce\u003C\u002Fstrong>\u003C\u002Fa> lostpassword form\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fwoocommerce\u002F\" rel=\"ugc\">\u003Cstrong>Woocommerce\u003C\u002Fstrong>\u003C\u002Fa> checkout Billing form\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Add a shortcode \u003Cstrong>[toms_woo_register_form]\u003C\u002Fstrong> for \u003Cstrong>woocommerce register form\u003C\u002Fstrong> on any page you want.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fultimate-member\u002F\" rel=\"ugc\">\u003Cstrong>Ultimate Member\u003C\u002Fstrong>\u003C\u002Fa> login form\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fultimate-member\u002F\" rel=\"ugc\">\u003Cstrong>Ultimate Member\u003C\u002Fstrong>\u003C\u002Fa> register form\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fultimate-member\u002F\" rel=\"ugc\">\u003Cstrong>Ultimate Member\u003C\u002Fstrong>\u003C\u002Fa> lostpassword form\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fcontact-form-block\u002F\" rel=\"ugc\">\u003Cstrong>Contact Form Block\u003C\u002Fstrong>\u003C\u002Fa> Contact Form Block\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>more support forms comming soon…\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Option settings\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Verify API : \u003Cstrong>Google.com\u003C\u002Fstrong>\u002F\u003Cstrong>Recaptcha.net\u003C\u002Fstrong> \u003Cstrong>—Notice:—\u003C\u002Fstrong> Some country can not use Google verify API, that means Google verify API will not work, even using vpn. If google.com not work try use Recaptcha.net\u003C\u002Fli>\n\u003Cli>reCAPTCHA v2 (Checkbox)  Theme: \u003Cstrong>Light\u003C\u002Fstrong>\u002F\u003Cstrong>Dark\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>reCAPTCHA v2 (Invisible) Badge: \u003Cstrong>Bottom Right\u003C\u002Fstrong>\u002F\u003Cstrong>Bottom Left\u003C\u002Fstrong>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Custom reCAPTCHA Language\u003C\u002Fh4>\n\u003Ch4>Translation ready\u003C\u002Fh4>\n\u003Ch3>Translations\u003C\u002Fh3>\n\u003Cp>Reliance upon any non-English translation is at your own risk; TomS reCAPTCHA can give no guarantees that translations from the original English are accurate.\u003C\u002Fp>\n\u003Cp>We recognise and thank those mentioned at https:\u002F\u002Ftoms-caprice.org\u002Ftranslations for code and\u002For libraries used and\u002For modified under the terms of their open source licences.\u003C\u002Fp>\n","Integrated Google ReCaptcha for WordPress.Protect the login, register, lostpassword and comment forms. Support Woocommerce, Ultimate Member and more p &hellip;",600,16788,1,"2023-03-29T08:59:00.000Z","6.2.9","5.8","7.0",[81,82,83,84,66],"block-spam-comments","captcha","nocaptcha","recaptcha","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Ftoms-recaptcha","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Ftoms-recaptcha.1.2.0.zip",85,{"slug":89,"name":90,"version":91,"author":92,"author_profile":93,"description":94,"short_description":95,"active_installs":11,"downloaded":96,"rating":26,"num_ratings":75,"last_updated":97,"tested_up_to":98,"requires_at_least":99,"requires_php":54,"tags":100,"homepage":104,"download_link":105,"security_score":87,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"bbp-jp-utility","bbPress forum utility pack","1.1.0","enomoto celtislab","https:\u002F\u002Fprofiles.wordpress.org\u002Fenomoto-celtislab\u002F","\u003Ch4>Always active functions\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Added “bbpress user” (bbp_user) to user role. (same capabilities as subscriber)\u003C\u002Fli>\n\u003Cli>Ajax form template with Login \u002F Signup \u002F Lost password.\u003C\u002Fli>\n\u003Cli>Record login date and time of bbpress user.\u003C\u002Fli>\n\u003Cli>bbpress user forbids access to Admin’s Dashboard and Profile edit page.\u003C\u002Fli>\n\u003Cli>Display link to forum root on Admin bar menu.\u003C\u002Fli>\n\u003Cli>Create anonymous user for replacing posting data of unsubscribe user.\u003C\u002Fli>\n\u003Cli>Load Japanese font designation CSS to TinyMCE editor used for posting.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Option functions\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Auto role of bbpress user. (Used in place of “Auto role” setting of bbpress plugins. Set the forum role only to bbpress user)\u003C\u002Fli>\n\u003Cli>Login from wp-login page of bbpress user is redirected to forums root page.   \u003C\u002Fli>\n\u003Cli>If it contains “code” tag to the post, replacing it with “pre” tag\u003C\u002Fli>\n\u003Cli>If the post does not contain Japanese treats as spam.\u003C\u002Fli>\n\u003Cli>Spam posts containing images that are larger than the set number.\u003C\u002Fli>\n\u003Cli>Spam posts containing embedded (YouTube \u002F Twitter \u002F Flickr etc) more than the set number.\u003C\u002Fli>\n\u003Cli>To Widget of Recent Topics and Recent Replies. Mark up the author in div tag, and easy to read Japanese display.  \u003C\u002Fli>\n\u003Cli>Delete account that has never been used within the specified number of days after new registration.\u003C\u002Fli>\n\u003Cli>Delete account that has not been recently logged in. (User posted data is replaced with anonymous)\u003C\u002Fli>\n\u003Cli>Forum unsubscribe function. (Place the link for the “unsubscribe” in the forum of the user profile page. However, forum role is only to Participant or Spectator of bbpress user.)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Note\u003C\u002Fp>\n\u003Cul>\n\u003Cli>The usage that this plugin is supposed to use is Forum operation with member registration system using bbPress.\u003C\u002Fli>\n\u003Cli>Many features of this plugin depend on the newly created “bbp_user” role.\u003C\u002Fli>\n\u003Cli>Registered automatically by “bbp_user” role by user registration using bbPress short code “bbp-register”.\u003C\u002Fli>\n\u003Cli>To use it in multi-site, please enable it with “Network Plugins”. If you activate it with “Site Specific Plugins”, some functions will not work.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>If you introduce this plug-in to an existing forum later, you must manually change the user role from “Subscriber” to “bbpress user”. Please note that it is only for the “Subscriber” user to change, so please do not mistake it.\u003C\u002Fp>\n\u003Cp>For details, please see the link page below. (Because it is a document in Japanese, please use Google translation etc. when you want to refer in your native language)\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"http:\u002F\u002Fceltislab.net\u002Fwp_plugin_bbp_utility_pack\u002F\" title=\"Documentation in Japanese\" rel=\"nofollow ugc\">日本語の説明\u003C\u002Fa>\u003C\u002Fp>\n","This is a utility plugin that nifty to support the management of bbpress. However, some features are the Japanese version only.",10147,"2024-04-15T05:37:00.000Z","6.5.8","5.4",[101,19,102,21,103],"add_role","last-login","unsubscribe","https:\u002F\u002Fceltislab.net\u002Fwp_plugin_bbp_utility_pack\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbbp-jp-utility.zip",{"slug":107,"name":108,"version":109,"author":110,"author_profile":111,"description":112,"short_description":113,"active_installs":11,"downloaded":114,"rating":50,"num_ratings":115,"last_updated":116,"tested_up_to":117,"requires_at_least":16,"requires_php":60,"tags":118,"homepage":124,"download_link":125,"security_score":87,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"wp-database-cleaner","WP Database Cleaner","1.0","wpmize","https:\u002F\u002Fprofiles.wordpress.org\u002Fwpmize\u002F","\u003Cp>WP Database Cleaner is a easy to use WordPress plugin that allow users to quickly cleanup and optimize the WordPress database by removing all spam comments, trash comments, unused tags, post revisions, auto drafts, and much more.\u003C\u002Fp>\n\u003Cp>When you have a WordPress site that has a lot of visitors, and presumibly a lot of comments, you may find that a high number of comments will be placed in the spam folder. It is not good to have 10k spam comments saved in the database, because all of these comments can increase consistently the size of the mysql database backups.\u003C\u002Fp>\n\u003Cp>If you have a lot of published posts, you may have post revisions and auto-drafts saved in the database, that can slow down the database performances. All this data is considered junk and it should be cleaned frequently.\u003C\u002Fp>\n\u003Ch4>Key Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Delete post revisions\u003C\u002Fli>\n\u003Cli>Delete auto drafts\u003C\u002Fli>\n\u003Cli>Delete pending comments\u003C\u002Fli>\n\u003Cli>Delete spam comments\u003C\u002Fli>\n\u003Cli>Delete trash comments\u003C\u002Fli>\n\u003Cli>Delete tags with 0 posts associated\u003C\u002Fli>\n\u003Cli>Delete categories with 0 posts associated\u003C\u002Fli>\n\u003Cli>Delete trash posts\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>More Information\u003C\u002Fh4>\n\u003Cp>For more details visit \u003Ca href=\"http:\u002F\u002Fwww.wpmize.com\u002Fwordpress-plugins\u002Foptimize-wordpress-database-wp-database-cleaner\u002F\" rel=\"nofollow ugc\">the official plugin URL\u003C\u002Fa>.\u003Cbr \u002F>\nFor more plugins and WordPress tips visit us at \u003Ca href=\"http:\u002F\u002Fwww.wpmize.com\u002F\" rel=\"nofollow ugc\">wpmize.com\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch3>Author\u003C\u002Fh3>\n\u003Cp>WPMize.com\u003Cbr \u002F>\nhttp:\u002F\u002Fwww.wpmize.com\u003C\u002Fp>\n","Cleanup and optimize the database of WordPress sites.",24292,6,"2012-08-27T12:32:00.000Z","3.4.2",[119,120,121,122,123],"cleanup-database","database","optimize","optimize-database","remove-spam-comments","http:\u002F\u002Fwww.wpmize.com\u002Fwordpress-plugins\u002Foptimize-wordpress-database-wp-database-cleaner\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-database-cleaner.zip",{"slug":127,"name":128,"version":129,"author":130,"author_profile":131,"description":132,"short_description":133,"active_installs":26,"downloaded":134,"rating":26,"num_ratings":33,"last_updated":135,"tested_up_to":136,"requires_at_least":16,"requires_php":60,"tags":137,"homepage":140,"download_link":141,"security_score":87,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":142},"bbpress-recaptcha","bbPress reCaptcha","1.1","Pippin Williamson","https:\u002F\u002Fprofiles.wordpress.org\u002Fmordauk\u002F","\u003Cp>Sick of getting spam on your bbPress 2.0 forums? This will add a reCaptcha anti-bot system to your new topic  and topic reply forums.\u003C\u002Fp>\n\u003Cp>It’s very simple to use. Just activate, then go to Settings > bbPress reCaptcha and enter your Public and Private keys.\u003C\u002Fp>\n","This is a simple plugin that adds a recaptcha validation to the bbPress 2.0 topic creation and topic reply forum.",15304,"2014-12-17T05:12:00.000Z","4.1.42",[138,19,139,82,84],"anti-spam","bbpress-2-0","http:\u002F\u002Fpippinsplugins.com\u002Fbbpress-recaptcha","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbbpress-recaptcha.1.1.zip","2026-04-06T09:54:40.288Z",{"attackSurface":144,"codeSignals":170,"taintFlows":215,"riskAssessment":216,"analyzedAt":227},{"hooks":145,"ajaxHandlers":152,"restRoutes":166,"shortcodes":167,"cronEvents":168,"entryPointCount":169,"unprotectedCount":169},[146],{"type":147,"name":148,"callback":149,"file":150,"line":151},"action","admin_menu","ct_bbpress_find_spam_page","cleantalk-bbpress-scan.php",31,[153,158,162],{"action":154,"nopriv":155,"callback":156,"hasNonce":155,"hasCapCheck":155,"file":150,"line":157},"ajax_bbpress_scan_clear_topics",false,"ct_ajax_clear_topics",44,{"action":159,"nopriv":155,"callback":160,"hasNonce":155,"hasCapCheck":155,"file":150,"line":161},"ajax_bbpress_scan_check_topics","ct_ajax_check_topics",45,{"action":163,"nopriv":155,"callback":164,"hasNonce":155,"hasCapCheck":155,"file":150,"line":165},"ajax_bbpress_scan_info_topics","ct_ajax_info",46,[],[],[],3,{"dangerousFunctions":171,"sqlUsage":172,"outputEscaping":182,"fileOperations":13,"externalRequests":13,"nonceChecks":213,"capabilityChecks":13,"bundledLibraries":214},[],{"prepared":13,"raw":169,"locations":173},[174,178,180],{"file":175,"line":176,"context":177},"inc\\CleantalkBbPressChecker.php",170,"$wpdb->query() with variable interpolation",{"file":175,"line":179,"context":177},178,{"file":175,"line":181,"context":177},185,{"escaped":33,"rawEcho":183,"locations":184},14,[185,188,190,192,194,196,198,200,202,205,208,209,210,211],{"file":175,"line":186,"context":187},103,"raw output",{"file":175,"line":189,"context":187},106,{"file":175,"line":191,"context":187},114,{"file":175,"line":193,"context":187},291,{"file":175,"line":195,"context":187},369,{"file":175,"line":197,"context":187},404,{"file":175,"line":199,"context":187},409,{"file":175,"line":201,"context":187},415,{"file":203,"line":204,"context":187},"inc\\CleantalkBbPressListTable.php",81,{"file":206,"line":207,"context":187},"inc\\CleantalkBbPressScanner.php",32,{"file":206,"line":161,"context":187},{"file":206,"line":161,"context":187},{"file":206,"line":165,"context":187},{"file":206,"line":212,"context":187},48,4,[],[],{"summary":217,"deductions":218},"The \"cleantalk-bbpress-spam-scanner\" v1.0.3 plugin exhibits several concerning security practices despite having no publicly disclosed vulnerabilities. A significant weakness lies in its attack surface, with all three identified AJAX handlers lacking authentication checks. This means any user, even an unauthenticated one, could potentially trigger these handlers, leading to unintended actions or information disclosure.\n\nFurther analysis reveals that 100% of its SQL queries are not using prepared statements. This is a critical security flaw that exposes the plugin to SQL injection vulnerabilities. While taint analysis shows no immediate critical or high severity flows, the absence of proper input sanitization and prepared statements for all SQL queries creates a significant risk. The code also shows a low percentage of properly escaped output, indicating a potential for cross-site scripting (XSS) vulnerabilities.\n\nThe plugin's clean vulnerability history is a positive sign, suggesting either robust development or a lack of public scrutiny. However, it does not negate the inherent risks identified in the static analysis. The combination of unprotected AJAX endpoints, unsanitized SQL queries, and insufficient output escaping presents a substantial security risk that needs immediate attention. Prioritizing the implementation of authentication checks, prepared statements, and proper output escaping is crucial for mitigating these vulnerabilities.",[219,222,224],{"reason":220,"points":221},"3 unprotected AJAX handlers",15,{"reason":223,"points":221},"3 SQL queries without prepared statements",{"reason":225,"points":226},"Low percentage of properly escaped output (26%)",10,"2026-03-16T20:29:55.002Z",{"wat":229,"direct":235},{"assetPaths":230,"generatorPatterns":232,"scriptPaths":233,"versionParams":234},[231],"\u002Fwp-content\u002Fplugins\u002Fcleantalk-bbpress-spam-scanner\u002Fjs\u002Fcleantalk-bbpress-checkspam.js",[],[231],[],{"cssClasses":236,"htmlComments":246,"htmlAttributes":247,"restEndpoints":256,"jsGlobals":257,"shortcodeOutput":259},[237,238,239,240,241,242,243,244,245],"ct_to_hide","ct_check_params_wrapper","ct_check_params_elem","ct_check_spam_button","ct_check_params_desc","ct_cooling_notice","ct_preloader","ct_working_message","ct_pause",[],[248,249,250,251,252,253,254,255],"id=\"ct_checking_count\"","id=\"ct_checking_status\"","id=\"ct_check_params_wrapper\"","id=\"ct_check_spam_button\"","id=\"ct_cooling_notice\"","id=\"ct_preloader\"","id=\"ct_working_message\"","id=\"ct_pause\"",[],[258],"ctBbpressCheck",[],{"error":261,"url":262,"statusCode":197,"statusMessage":263,"message":263},true,"http:\u002F\u002Flocalhost\u002Fapi\u002Fplugins\u002Fcleantalk-bbpress-spam-scanner\u002Fbundle","no bundle for this plugin yet",{"slug":4,"current_version":6,"total_versions":213,"versions":265},[266,271,278,285],{"version":6,"download_url":25,"svn_tag_url":267,"released_at":27,"has_diff":155,"diff_files_changed":268,"diff_lines":27,"trac_diff_url":269,"vulnerabilities":270,"is_current":261},"https:\u002F\u002Fplugins.svn.wordpress.org\u002Fcleantalk-bbpress-spam-scanner\u002Ftags\u002F1.0.3\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Fcleantalk-bbpress-spam-scanner%2Ftags%2F1.0.2&new_path=%2Fcleantalk-bbpress-spam-scanner%2Ftags%2F1.0.3",[],{"version":272,"download_url":273,"svn_tag_url":274,"released_at":27,"has_diff":155,"diff_files_changed":275,"diff_lines":27,"trac_diff_url":276,"vulnerabilities":277,"is_current":155},"1.0.2","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcleantalk-bbpress-spam-scanner.1.0.2.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fcleantalk-bbpress-spam-scanner\u002Ftags\u002F1.0.2\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Fcleantalk-bbpress-spam-scanner%2Ftags%2F1.0.1&new_path=%2Fcleantalk-bbpress-spam-scanner%2Ftags%2F1.0.2",[],{"version":279,"download_url":280,"svn_tag_url":281,"released_at":27,"has_diff":155,"diff_files_changed":282,"diff_lines":27,"trac_diff_url":283,"vulnerabilities":284,"is_current":155},"1.0.1","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcleantalk-bbpress-spam-scanner.1.0.1.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fcleantalk-bbpress-spam-scanner\u002Ftags\u002F1.0.1\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Fcleantalk-bbpress-spam-scanner%2Ftags%2F1.0.0&new_path=%2Fcleantalk-bbpress-spam-scanner%2Ftags%2F1.0.1",[],{"version":286,"download_url":287,"svn_tag_url":288,"released_at":27,"has_diff":155,"diff_files_changed":289,"diff_lines":27,"trac_diff_url":27,"vulnerabilities":290,"is_current":155},"1.0.0","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcleantalk-bbpress-spam-scanner.1.0.0.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fcleantalk-bbpress-spam-scanner\u002Ftags\u002F1.0.0\u002F",[],[]]