[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fK-OEGQJSPQ9IyslLm2_6DsEN-ZJ6A5UsUBVvgVKXuIk":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":25,"download_link":26,"security_score":27,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30,"vulnerabilities":31,"developer":32,"crawl_stats":29,"alternatives":37,"analysis":124,"fingerprints":325},"codec-sponsored-content","CODEC Sponsored Content","3.0.0","codecprime","https:\u002F\u002Fprofiles.wordpress.org\u002Fcodecprime\u002F","\u003Cp>\u003Cstrong>Premium Monetizing System\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>CODEC provides quality bloggers and publishers* with an additional revenue stream, as well as an increase in audience engagement. Monetize 100% of your traffic (CODEC is not blocked by any AdBlocks currently on the market) or use CODEC as a Fallback for your blocked ads to increase your current monetization by 40% on average.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Enjoy:\u003C\u002Fstrong>\u003Cbr \u002F>\n    – top monetization rates of $4-$12 CPM.\u003Cbr \u002F>\n    – monthly payouts to your PayPal account, no minimum.\u003Cbr \u002F>\n    – real human support.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Only Quality Content\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>No obscenity, no violence, no video games. We 100% manually moderate CODEC content to ensure it’s always family-friendly. Monetize your content without compromising your integrity as well as your users’ experience.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Not Ad Blocked\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>CODEC ads are not adblocked, allowing you to monetize up to 100% of your traffic.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Your Readers Stay on Your Site\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>Most monetization systems pay when your reader clicks on their headline, link or banner and leaves your site. You thus lose the hard-earned traffic. With CODEC, users don’t need to leave your site for you to earn. We pay CPM, which means every time a user sees the CODEC content on your site, you earn money.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>As Easy as 1-2-3\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>It takes about 2 min to install and set up the plugin. Choose the location and the look of your widget. The rule of thumb is the bigger the widget you pick (6 unit plugin vs 3 unit plugin), the more revenue you’ll enjoy at the end of each month.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Support\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>We are here to help, so feel free to reach out to our support team at \u003Ca href='https:\u002F\u002Fwordpress.org\u002Fsupport\u002Fplugin\u002Fcodec-sponsored-content' rel=\"ugc\">CODEC\u002Fsupport\u003C\u002Fa> or at wp-support@codecprime.com\u003C\u002Fp>\n\u003Cp>*We advertise on family-friendly web properties. Websites are subject to approval for content guidance compliance. The monetization feature is currently available for English-language sites.\u003C\u002Fp>\n","Premium monetizing system for quality blogs & publications (English-language websites only.) Generate revenue by displaying a widget with manually &hellip;",10,2853,74,3,"2024-01-11T16:30:00.000Z","6.4.8","4.1","5.2.4",[20,21,22,23,24],"ad","adsense","advertising","monetization","revenue","","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcodec-sponsored-content.zip",85,0,null,"2026-03-15T15:16:48.613Z",[],{"slug":7,"display_name":7,"profile_url":8,"plugin_count":33,"total_installs":11,"avg_security_score":27,"avg_patch_time_days":34,"trust_score":35,"computed_at":36},1,30,84,"2026-04-04T05:03:09.693Z",[38,59,78,95,112],{"slug":39,"name":40,"version":41,"author":42,"author_profile":43,"description":44,"short_description":45,"active_installs":11,"downloaded":46,"rating":47,"num_ratings":33,"last_updated":48,"tested_up_to":49,"requires_at_least":50,"requires_php":25,"tags":51,"homepage":56,"download_link":57,"security_score":27,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":58},"rexadz-monetization","REXADZ Monetization","1.0","rexdirectnet","https:\u002F\u002Fprofiles.wordpress.org\u002Frexdirectnet\u002F","\u003Cp>REXADZ is a WordPress plugin that allows you to monetize your website visitors, similar to Adsense, but with more control over appearance and targeting.  REXADZ automatically optimizes ads to ensure the most profitable results for your visitors. Receive payments monthly via PayPal, ACH, Wire or Check.\u003C\u002Fp>\n\u003Cp>To get started \u003Ca href=\"http:\u002F\u002Fwww.rexadz.com\u002F\" rel=\"nofollow ugc\">sign up\u003C\u002Fa> for a REXADZ account to pull WordPress shortcode.\u003C\u002Fp>\n\u003Ch4>Hassle free\u003C\u002Fh4>\n\u003Cp>We deal with the advertisers and offer a wide range of brand safe ads (i.e. no adult, no downloads, etc.). It’s free and easy to install.\u003Cbr \u002F>\n= Regular payouts=\u003Cbr \u002F>\nThe money you earn will be sent to you automatically, once a month. Payments are made via PayPal, ACH, Wire or Check.\u003C\u002Fp>\n\u003Ch4>Full control\u003C\u002Fh4>\n\u003Cp>You decide the format of the ads and how many you want to show.  Also, you can select categories of interest. It takes just minutes to implement and seconds to uninstall if you are not pleased with results.\u003C\u002Fp>\n\u003Ch4>Safe and secure\u003C\u002Fh4>\n\u003Cp>All your personal data is safe. Your websites will only be available to our trusted advertisers.\u003Cbr \u002F>\n= Real time reporting=\u003Cbr \u002F>\nFind out how much revenue you earned in real time.  Track websites separately as well as up to 2 additional variables.  This is particularly handy if you want to know earnings by traffic sources.\u003C\u002Fp>\n\u003Ch4>REXADZ integration support\u003C\u002Fh4>\n\u003Cp>REXADZ supports several different inventory \u002F placement options. Typically, those include:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>New Member Registration\u003C\u002Fli>\n\u003Cli>Newsletter\u002FEmail Alert Sign Up\u003C\u002Fli>\n\u003Cli>Contest Entry\u003C\u002Fli>\n\u003Cli>Post-Purchase\u003C\u002Fli>\n\u003Cli>Banners, Tex Ads, in-line newsfeed\u003C\u002Fli>\n\u003Cli>And More…\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>The end result? Better engagement and a better user experience since the right ads are targeted to right audience at the right time on your website.\u003C\u002Fh4>\n","REXADZ is a simple and user-friendly ad solution that makes you money by automatically displaying targeted ads to your website visitors.",1406,100,"2016-11-22T22:14:00.000Z","4.6.30","4.0",[22,52,53,54,55],"earn-money-online","google-adsense-alternative","rexadz","website-monetization","http:\u002F\u002Fwww.rexadz.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Frexadz-monetization.zip","2026-03-15T14:54:45.397Z",{"slug":60,"name":61,"version":62,"author":63,"author_profile":64,"description":65,"short_description":66,"active_installs":28,"downloaded":67,"rating":47,"num_ratings":68,"last_updated":69,"tested_up_to":70,"requires_at_least":71,"requires_php":18,"tags":72,"homepage":25,"download_link":76,"security_score":77,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"ads-revenue-sharing","ADS Revenue Sharing","1.4.1","mahmmoudeid","https:\u002F\u002Fprofiles.wordpress.org\u002Fmahmmoudeid\u002F","\u003Cp>AdSense Revenue Sharing is a simple and easy-to-use plugin that allows website administrators to share Google AdSense revenue with contributors or authors who write posts on the site. You can customize the percentage of ads displayed for each user, allowing them to earn part of the revenue generated from their content.\u003C\u002Fp>\n\u003Ch3>Key Features:\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Customize the percentage of ad display for each user via the settings panel.\u003C\u002Fli>\n\u003Cli>Display site owner ads if the user doesn’t provide AdSense info.\u003C\u002Fli>\n\u003Cli>Support for multiple ad placements (Top of the article, Bottom of the article, or both).\u003C\u002Fli>\n\u003Cli>Set AdSense configurations per user via their profile settings.\u003C\u002Fli>\n\u003Cli>Automatically generate an ads.txt file based on site and user settings.\u003C\u002Fli>\n\u003Cli>Display fallback ads from the site owner if a user hasn’t configured their AdSense details.\u003C\u002Fli>\n\u003Cli>Now supports both Arabic and English.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>New in Version 1.4.1:\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Custom Code Support: All ad placements now allow for custom ad codes or AdSense ads.\u003C\u002Fli>\n\u003Cli>Footer Popup Ad: Footer ad can now be displayed as a popup with either AdSense or custom code.\u003C\u002Fli>\n\u003Cli>Tabbed Ad Management: All ad settings are now organized into separate tabs for each ad placement, simplifying management.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>New in Version 1.4:\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>Multilingual Support\u003C\u002Fstrong>: Plugin now supports both English and Arabic.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>New Ad Placements\u003C\u002Fstrong>: Ads can be placed at the top, bottom, and after any paragraph (up to four custom positions).\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Custom End Ad\u003C\u002Fstrong>: A customizable ad that can either display AdSense or another company’s ad.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Website URL Added\u003C\u002Fstrong>: A website link field has been added to the admin settings.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>License\u003C\u002Fh3>\n\u003Cp>This plugin is licensed under the GPLv2 or later. For more details, visit \u003Ca href=\"https:\u002F\u002Fwww.gnu.org\u002Flicenses\u002Fgpl-2.0.html\" rel=\"nofollow ugc\">GPLv2 License\u003C\u002Fa>.\u003C\u002Fp>\n","A AdSense revenue-sharing plugin, allowing site owners and users to customize ad settings, manage ad positions, and control ad shares seamlessly.",2202,5,"2024-10-20T18:45:00.000Z","6.6.5","5.5",[73,74,23,75],"ads","google-adsense","revenue-sharing","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fads-revenue-sharing.1.4.1.zip",92,{"slug":79,"name":80,"version":81,"author":82,"author_profile":83,"description":84,"short_description":85,"active_installs":28,"downloaded":86,"rating":28,"num_ratings":28,"last_updated":87,"tested_up_to":88,"requires_at_least":89,"requires_php":90,"tags":91,"homepage":93,"download_link":94,"security_score":47,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"panxo-ai-monetization","Panxo AI Monetization","1.0.1","panxoai","https:\u002F\u002Fprofiles.wordpress.org\u002Fpanxoai\u002F","\u003Cp>Panxo AI Monetization is an enterprise-grade WordPress plugin that automatically integrates AI-powered programmatic advertising into your website. With zero configuration required, the plugin handles everything from registration to script integration.\u003C\u002Fp>\n\u003Ch4>Key Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Zero-Click Setup\u003C\u002Fstrong>: Automatically registers your site, creates your property, and integrates the Panxo script\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Automatic Script Integration\u003C\u002Fstrong>: Injects the optimized Panxo script into your site header\u003C\u002Fli>\n\u003Cli>\u003Cstrong>ads.txt Management\u003C\u002Fstrong>: Automatically updates your ads.txt file with required Panxo entries\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Learning Phase Monitoring\u003C\u002Fstrong>: Track your site’s learning progress directly from WordPress\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Enterprise-Grade\u003C\u002Fstrong>: Built with 50+ years of combined development experience\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Privacy-First\u003C\u002Fstrong>: No persistent cookies, GDPR\u002FCCPA compliant\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>How It Works\u003C\u002Fh4>\n\u003Col>\n\u003Cli>Install and activate the plugin\u003C\u002Fli>\n\u003Cli>The plugin automatically registers your WordPress site with Panxo\u003C\u002Fli>\n\u003Cli>Your property is created and the learning process begins\u003C\u002Fli>\n\u003Cli>The Panxo script is automatically integrated into your site\u003C\u002Fli>\n\u003Cli>Your ads.txt file is updated with Panxo entries\u003C\u002Fli>\n\u003Cli>Monitor your learning progress from the WordPress dashboard\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch4>Requirements\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>WordPress 5.8 or higher\u003C\u002Fli>\n\u003Cli>PHP 7.4 or higher\u003C\u002Fli>\n\u003Cli>Active internet connection for API communication\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>External services\u003C\u002Fh3>\n\u003Cp>This plugin connects to Panxo’s external services for AI-powered advertising monetization. The connection to these services is required for the plugin to function.\u003C\u002Fp>\n\u003Ch4>Panxo API (api.panxo.ai)\u003C\u002Fh4>\n\u003Cp>The Panxo API handles automatic registration, property creation, script verification, and learning phase monitoring.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Data sent:\u003C\u002Fstrong>\u003Cbr \u002F>\n* Site domain (to create and identify your property)\u003Cbr \u002F>\n* Admin email address (to create your publisher account)\u003Cbr \u002F>\n* Publisher ID and Property ID (for authentication and status checks)\u003C\u002Fp>\n\u003Cp>\u003Cstrong>When data is sent:\u003C\u002Fstrong>\u003Cbr \u002F>\n* During initial plugin activation (automatic registration)\u003Cbr \u002F>\n* When verifying installation status\u003Cbr \u002F>\n* When checking learning phase progress\u003Cbr \u002F>\n* When updating ads.txt configuration\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Service documentation:\u003C\u002Fstrong>\u003Cbr \u002F>\n* Terms of Service: https:\u002F\u002Fpanxo.ai\u002Fterms\u002F\u003Cbr \u002F>\n* Privacy Policy: https:\u002F\u002Fpanxo.ai\u002Fprivacy\u002F\u003C\u002Fp>\n\u003Ch4>Panxo CDN (cdn.panxo.ai)\u003C\u002Fh4>\n\u003Cp>The Panxo CDN delivers the optimized monetization script to your website visitors.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Data sent:\u003C\u002Fstrong>\u003Cbr \u002F>\n* No data is sent directly to the CDN. The script is loaded as a static resource.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>When the script loads:\u003C\u002Fstrong>\u003Cbr \u002F>\n* On every page load when the plugin is active and enabled.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>What the script does:\u003C\u002Fstrong>\u003Cbr \u002F>\n* Detects AI traffic sources (ChatGPT, Claude, Perplexity, etc.)\u003Cbr \u002F>\n* Serves relevant advertisements to AI-referred visitors\u003Cbr \u002F>\n* Sends anonymous analytics to Panxo (page views, ad impressions)\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Service documentation:\u003C\u002Fstrong>\u003Cbr \u002F>\n* Terms of Service: https:\u002F\u002Fpanxo.ai\u002Fterms\u002F\u003Cbr \u002F>\n* Privacy Policy: https:\u002F\u002Fpanxo.ai\u002Fprivacy\u002F\u003C\u002Fp>\n","Automatically monetize your WordPress site with AI-powered programmatic advertising. Zero configuration required.",177,"2026-02-11T15:04:00.000Z","6.8.5","5.8","7.4",[73,22,92,23,24],"ai","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fpanxo-ai-monetization\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fpanxo-ai-monetization.1.0.1.zip",{"slug":96,"name":97,"version":98,"author":99,"author_profile":100,"description":101,"short_description":102,"active_installs":103,"downloaded":104,"rating":28,"num_ratings":28,"last_updated":105,"tested_up_to":88,"requires_at_least":106,"requires_php":18,"tags":107,"homepage":25,"download_link":110,"security_score":47,"vuln_count":33,"unpatched_count":28,"last_vuln_date":111,"fetched_at":30},"website-article-monetization-by-magenet","Website Article Monetization By MageNet","1.0.12","MageNet","https:\u002F\u002Fprofiles.wordpress.org\u002Fmagenet\u002F","\u003Cp>Article Plugin by MageNet is a free WordPress plugin that allows you to monetize your website through the automated placement of third-party content on your site.\u003C\u002Fp>\n\u003Cp>To install the Article Plugin, you need to \u003Ca href=\"https:\u002F\u002Fwww.magenet.com\u002F\" rel=\"nofollow ugc\">sign in\u002Fup\u003C\u002Fa> to your MageNet account and get your MageNet Key.\u003C\u002Fp>\n\u003Cp>Time-saving\u003Cbr \u002F>\nWith the Article Plugin, you’ll start getting new relevant content on your website automatically. After your approval, this plugin creates a new webpage on your site and place an article from your buyers.\u003C\u002Fp>\n\u003Cp>Full control\u003Cbr \u002F>\nYou have the total control over the content placed on your site even though the Article Plugin does all the content placement work for you. You can reject the task for the content placement if you don’t like the provided content or find it irrelevant to your website niche.\u003C\u002Fp>\n\u003Cp>Better chances to rank high in SERPs\u003Cbr \u002F>\nWith the Article Plugin, you’ll be able to regularly update your website with the new content. As a result, you’ll boost your chances to rank for new keywords in SERPs.\u003C\u002Fp>\n\u003Cp>Automated changes\u003Cbr \u002F>\nArticle Plugin will take control of any changes or amendments in the provided content if there will be any.\u003C\u002Fp>\n\u003Cp>Auto removal\u003Cbr \u002F>\nIf the buyer cancels the provided content, the Article Plugin will automatically remove such an article from your website as soon as possible.\u003C\u002Fp>\n\u003Cp>Error checking\u003Cbr \u002F>\nThe Article Plugin will save you from errors that might occur during manual content placement.\u003C\u002Fp>\n","Get additional income from your website or blog by placing text ads automatically.",20000,94404,"2025-05-21T08:32:00.000Z","4.9",[22,108,109,52,55],"contextual-ads","contextual-advertising","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwebsite-article-monetization-by-magenet.zip","2024-03-19 00:00:00",{"slug":113,"name":114,"version":115,"author":99,"author_profile":100,"description":116,"short_description":102,"active_installs":103,"downloaded":117,"rating":118,"num_ratings":119,"last_updated":120,"tested_up_to":88,"requires_at_least":50,"requires_php":25,"tags":121,"homepage":25,"download_link":122,"security_score":47,"vuln_count":33,"unpatched_count":28,"last_vuln_date":123,"fetched_at":30},"website-monetization-by-magenet","Website Monetization by MageNet","1.0.29.3","\u003Cp>\u003Ca href=\"http:\u002F\u002Fwww.magenet.com\u002F\" rel=\"nofollow ugc\">Website Monetization Plugin by MageNet\u003C\u002Fa> is a WordPress plugin that allows you to sell contextual ads from your pages automatically and receive payments with PayPal.\u003C\u002Fp>\n\u003Cp>To get started \u003Ca href=\"http:\u002F\u002Fwww.magenet.com\u002F\" rel=\"nofollow ugc\">sign up\u003C\u002Fa> for a MageNet Key.\u003C\u002Fp>\n\u003Cp>\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002FNNgahP_4DOo?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Hassle free\u003C\u002Fstrong>\u003Cbr \u002F>\nWe deal with the advertisers and offer relevant contextual ads to place. It’s free and easy to use.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Regular payouts\u003C\u002Fstrong>\u003Cbr \u002F>\nWithdraw your earnings with ease. Transfers are made via PayPal and WebMoney.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Full control\u003C\u002Fstrong>\u003Cbr \u002F>\nWe crawl all the pages of your site and list them for sales. You can set up the pages available or forbidden for advertising and set up the desired prices for your ads.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Safe and secure\u003C\u002Fstrong>\u003Cbr \u002F>\nAll your personal data is safe. Your websites will only be available to our trusted advertisers.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Statistics\u003C\u002Fstrong>\u003Cbr \u002F>\nDetailed information on all your current ads and listed pages of your sites.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Affiliate\u003C\u002Fstrong>\u003Cbr \u002F>\nYou will have access to awesome affiliate program available to our publishers.\u003C\u002Fp>\n",236447,58,7,"2025-05-20T15:55:00.000Z",[22,108,109,52,55],"https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwebsite-monetization-by-magenet.zip","2023-03-16 00:00:00",{"attackSurface":125,"codeSignals":188,"taintFlows":240,"riskAssessment":310,"analyzedAt":324},{"hooks":126,"ajaxHandlers":158,"restRoutes":184,"shortcodes":185,"cronEvents":186,"entryPointCount":187,"unprotectedCount":187},[127,133,138,142,145,149,153],{"type":128,"name":129,"callback":130,"file":131,"line":132},"action","admin_head","cppp_alert_msg","codec-sponsored-content.php",75,{"type":134,"name":135,"callback":136,"file":131,"line":137},"filter","wp_head","cppp_fix_head",101,{"type":134,"name":139,"callback":140,"priority":11,"file":131,"line":141},"script_loader_tag","add_async_attribute_codec_my_vue",109,{"type":134,"name":139,"callback":143,"priority":11,"file":131,"line":144},"add_defer_attribute_codec",117,{"type":128,"name":146,"callback":147,"file":131,"line":148},"admin_menu","cppp_admin_actions",121,{"type":134,"name":150,"callback":151,"priority":47,"file":131,"line":152},"the_content","cppp_fix_blank_post",359,{"type":128,"name":154,"callback":155,"file":156,"line":157},"widgets_init","cppp_widget_load_widget","widget.php",11,[159,163,166,169,172,175,178,181],{"action":160,"nopriv":161,"callback":160,"hasNonce":161,"hasCapCheck":161,"file":131,"line":162},"cppp_page_status",false,124,{"action":164,"nopriv":161,"callback":164,"hasNonce":161,"hasCapCheck":161,"file":131,"line":165},"cppp_create_page",125,{"action":167,"nopriv":161,"callback":167,"hasNonce":161,"hasCapCheck":161,"file":131,"line":168},"cppp_paypal",126,{"action":170,"nopriv":161,"callback":170,"hasNonce":161,"hasCapCheck":161,"file":131,"line":171},"cppp_empty_widgets",127,{"action":173,"nopriv":161,"callback":173,"hasNonce":161,"hasCapCheck":161,"file":131,"line":174},"cppp_site_url",128,{"action":176,"nopriv":161,"callback":176,"hasNonce":161,"hasCapCheck":161,"file":131,"line":177},"cppp_auto_widget_enable",129,{"action":179,"nopriv":161,"callback":179,"hasNonce":161,"hasCapCheck":161,"file":131,"line":180},"cppp_wizzard_finish",130,{"action":182,"nopriv":161,"callback":182,"hasNonce":161,"hasCapCheck":161,"file":131,"line":183},"cppp_disable_auto_widget",131,[],[],[],8,{"dangerousFunctions":189,"sqlUsage":190,"outputEscaping":192,"fileOperations":28,"externalRequests":238,"nonceChecks":28,"capabilityChecks":28,"bundledLibraries":239},[],{"prepared":28,"raw":28,"locations":191},[],{"escaped":68,"rawEcho":193,"locations":194},21,[195,199,201,202,204,206,208,210,212,214,216,218,220,222,225,227,229,231,232,234,236],{"file":196,"line":197,"context":198},"admin-page.php",39,"raw output",{"file":196,"line":200,"context":198},43,{"file":196,"line":27,"context":198},{"file":196,"line":203,"context":198},86,{"file":196,"line":205,"context":198},120,{"file":196,"line":207,"context":198},160,{"file":131,"line":209,"context":198},42,{"file":131,"line":211,"context":198},148,{"file":131,"line":213,"context":198},155,{"file":131,"line":215,"context":198},197,{"file":131,"line":217,"context":198},199,{"file":131,"line":219,"context":198},201,{"file":131,"line":221,"context":198},239,{"file":223,"line":224,"context":198},"uninstall.php",18,{"file":156,"line":226,"context":198},51,{"file":156,"line":228,"context":198},87,{"file":156,"line":230,"context":198},88,{"file":156,"line":230,"context":198},{"file":156,"line":233,"context":198},98,{"file":156,"line":235,"context":198},107,{"file":156,"line":237,"context":198},111,4,[],[241,267,278,288,298],{"entryPoint":242,"graph":243,"unsanitizedCount":265,"severity":266},"cppp_auto_widget_enable (codec-sponsored-content.php:134)",{"nodes":244,"edges":262},[245,250,256,258],{"id":246,"type":247,"label":248,"file":131,"line":249},"n0","source","$_POST",135,{"id":251,"type":252,"label":253,"file":131,"line":254,"wp_function":255},"n1","sink","update_option() [Settings Manipulation]",137,"update_option",{"id":257,"type":247,"label":248,"file":131,"line":249},"n2",{"id":259,"type":252,"label":260,"file":131,"line":213,"wp_function":261},"n3","echo() [XSS]","echo",[263,264],{"from":246,"to":251,"sanitized":161},{"from":257,"to":259,"sanitized":161},2,"medium",{"entryPoint":268,"graph":269,"unsanitizedCount":33,"severity":277},"cppp_paypal (codec-sponsored-content.php:230)",{"nodes":270,"edges":275},[271,273],{"id":246,"type":247,"label":248,"file":131,"line":272},232,{"id":251,"type":252,"label":253,"file":131,"line":274,"wp_function":255},234,[276],{"from":246,"to":251,"sanitized":161},"low",{"entryPoint":279,"graph":280,"unsanitizedCount":33,"severity":277},"cppp_page_status (codec-sponsored-content.php:243)",{"nodes":281,"edges":286},[282,284],{"id":246,"type":247,"label":248,"file":131,"line":283},244,{"id":251,"type":252,"label":253,"file":131,"line":285,"wp_function":255},257,[287],{"from":246,"to":251,"sanitized":161},{"entryPoint":289,"graph":290,"unsanitizedCount":33,"severity":277},"cppp_create_page (codec-sponsored-content.php:265)",{"nodes":291,"edges":296},[292,294],{"id":246,"type":247,"label":248,"file":131,"line":293},269,{"id":251,"type":252,"label":253,"file":131,"line":295,"wp_function":255},273,[297],{"from":246,"to":251,"sanitized":161},{"entryPoint":299,"graph":300,"unsanitizedCount":68,"severity":277},"\u003Ccodec-sponsored-content> (codec-sponsored-content.php:0)",{"nodes":301,"edges":307},[302,304,305,306],{"id":246,"type":247,"label":303,"file":131,"line":249},"$_POST (x4)",{"id":251,"type":252,"label":253,"file":131,"line":254,"wp_function":255},{"id":257,"type":247,"label":248,"file":131,"line":249},{"id":259,"type":252,"label":260,"file":131,"line":213,"wp_function":261},[308,309],{"from":246,"to":251,"sanitized":161},{"from":257,"to":259,"sanitized":161},{"summary":311,"deductions":312},"The \"codec-sponsored-content\" v3.0.0 plugin exhibits a significant security concern due to its unprotected AJAX handlers. While the plugin demonstrates good practices in its handling of SQL queries, using prepared statements exclusively, and has no recorded vulnerability history, the lack of authentication and capability checks on all its AJAX entry points creates a wide attack surface. This means any unauthenticated user could potentially trigger these AJAX actions, leading to unintended consequences. The taint analysis revealing unsanitized paths further exacerbates this risk, indicating that user-supplied data might be processed without proper validation, although no critical or high-severity issues were directly identified in the taint flows. The high percentage of improperly escaped output is also a notable weakness that could contribute to cross-site scripting (XSS) vulnerabilities if these outputs are rendered directly in the browser.\n\nIn conclusion, the plugin's strength lies in its secure database interactions and clean vulnerability history. However, the pervasive absence of security checks on its AJAX endpoints and the presence of unsanitized paths in taint flows are critical security oversights. The poorly escaped output further compounds these risks. While there are no known CVEs, the current implementation presents a clear opportunity for attackers to exploit these unprotected entry points, making it a plugin that requires immediate attention for security hardening, particularly regarding AJAX request verification and output sanitization.",[313,315,317,320,322],{"reason":314,"points":187},"AJAX handlers without auth checks",{"reason":316,"points":119},"Unsanitized paths in taint analysis",{"reason":318,"points":319},"Low percentage of properly escaped output",6,{"reason":321,"points":119},"No nonce checks on AJAX handlers",{"reason":323,"points":119},"No capability checks on AJAX handlers","2026-03-17T00:52:31.045Z",{"wat":326,"direct":336},{"assetPaths":327,"generatorPatterns":329,"scriptPaths":330,"versionParams":333},[328],"\u002Fwp-content\u002Fplugins\u002Fcodec-sponsored-content\u002Fimages\u002Fcodec-logo-small.png",[],[331,332],"\u002Fwp-content\u002Fplugins\u002Fcodec-sponsored-content\u002Fjs\u002Fcodec.js","\u002Fwp-content\u002Fplugins\u002Fcodec-sponsored-content\u002Fjs\u002Fcodec-admin.js",[334,335],"codec-sponsored-content\u002Fjs\u002Fcodec.js?ver=","codec-sponsored-content\u002Fjs\u002Fcodec-admin.js?ver=",{"cssClasses":337,"htmlComments":341,"htmlAttributes":342,"restEndpoints":343,"jsGlobals":346,"shortcodeOutput":357},[338,339,340],"update-nag","notice-warning","inline",[],[],[344,345],"\u002Fwp-json\u002Fcodec-sponsored-content\u002Fv1\u002Fsettings","\u002Fwp-json\u002Fcodec-sponsored-content\u002Fv1\u002Fsync",[347,348,349,350,351,352,353,354,355,356],"cppp_admin_ajax_url","codec_publisher_id","codec_admin_ajax_url","codec_auto_widget_status","codec_auto_widget_units","codec_paypal_status","codec_wizzard_finish_flag","codec_site_url","codec_connected_status","codec_publisher_id_status",[]]