[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fJZZkO60vmeoFooG2oQ4bZ1MAZolIzNixfjZbLSbOknI":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":25,"download_link":26,"security_score":27,"vuln_count":28,"unpatched_count":29,"last_vuln_date":30,"fetched_at":31,"vulnerabilities":32,"developer":64,"crawl_stats":38,"alternatives":71,"analysis":166,"fingerprints":370},"corona-virus-covid-19-banner","Simple Website Banner","1.8.0.4","Nick Tomkin","https:\u002F\u002Fprofiles.wordpress.org\u002Forchestrated\u002F","\u003Cp>This is a very simple plugin with a sole purpose of allowing you to inform your visitors of an upcoming event, updated store hours, or other important message you want to display.\u003C\u002Fp>\n","This is a very simple plugin with a sole purpose of allowing you to inform your visitors of an upcoming event, updated store hours, or other important &hellip;",700,54234,100,8,"2024-05-09T20:33:00.000Z","6.4.8","5.1","7.4",[20,21,22,23,24],"banner","coronavirus","covid","covid-19","simple-web","","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcorona-virus-covid-19-banner.1.8.0.4.zip",90,2,0,"2024-05-06 00:00:00","2026-03-15T15:16:48.613Z",[33,48],{"id":34,"url_slug":35,"title":36,"description":37,"plugin_slug":4,"theme_slug":38,"affected_versions":39,"patched_in_version":6,"severity":40,"cvss_score":41,"cvss_vector":42,"vuln_type":43,"published_date":30,"updated_date":44,"references":45,"days_to_patch":47},"CVE-2024-34429","corona-virus-covid-19-banner-live-data-authenticated-administrator-stored-cross-site-scripting","Corona Virus (COVID-19) Banner & Live Data \u003C= 1.8.0.3 - Authenticated (Administrator+) Stored Cross-Site Scripting","The Simple Website Banner plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 1.8.0.3 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrator-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. This only affects multi-site installations and installations where unfiltered_html has been disabled.",null,"\u003C=1.8.0.3","medium",4.4,"CVSS:3.1\u002FAV:N\u002FAC:H\u002FPR:H\u002FUI:N\u002FS:C\u002FC:L\u002FI:L\u002FA:N","Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","2024-06-19 17:09:15",[46],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002Fd4fb697f-4571-4aa8-8430-fd4f457de2a8?source=api-prod",45,{"id":49,"url_slug":50,"title":51,"description":52,"plugin_slug":4,"theme_slug":38,"affected_versions":53,"patched_in_version":54,"severity":55,"cvss_score":56,"cvss_vector":57,"vuln_type":58,"published_date":59,"updated_date":60,"references":61,"days_to_patch":63},"CVE-2022-43469","corona-virus-covid-19-banner-live-data-cross-site-request-forgery","Corona Virus (COVID-19) Banner & Live Data \u003C= 1.7.0.6 - Cross-Site Request Forgery","The Corona Virus (COVID-19) Banner & Live Data plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.7.0.6. This is due to missing or incorrect nonce validation on one of its functions. This makes it possible for unauthenticated attackers to invoke this function, via forged request granted they can trick a site administrator into performing an action such as clicking on a link.","\u003C=1.7.0.6","1.8.0.0","high",8.8,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:N\u002FUI:R\u002FS:U\u002FC:H\u002FI:H\u002FA:H","Cross-Site Request Forgery (CSRF)","2022-10-24 00:00:00","2024-02-19 22:15:03",[62],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002F8773fa6e-6e81-4565-a9be-36ad0ea6ac88?source=api-prod",484,{"slug":65,"display_name":7,"profile_url":8,"plugin_count":66,"total_installs":11,"avg_security_score":67,"avg_patch_time_days":68,"trust_score":69,"computed_at":70},"orchestrated",3,87,265,70,"2026-04-04T03:59:19.488Z",[72,95,113,132,149],{"slug":73,"name":74,"version":75,"author":76,"author_profile":77,"description":78,"short_description":79,"active_installs":80,"downloaded":81,"rating":82,"num_ratings":83,"last_updated":84,"tested_up_to":85,"requires_at_least":86,"requires_php":87,"tags":88,"homepage":92,"download_link":93,"security_score":94,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"corona-virus-data","Corona Virus Data","1.4.3","Duke Yin","https:\u002F\u002Fprofiles.wordpress.org\u002Ffreeduke\u002F","\u003Cp>This plugin displays the Coronavirus case data of the whole world and country you care through shortcodes \u003Ccode>[cov2019]\u003C\u002Fcode> \u003Ccode>[cov2019all]\u003C\u002Fcode> or \u003Ccode>[cov2019map]\u003C\u002Fcode> in your WordPress post or page.\u003C\u002Fp>\n\u003Cp>You can see how many patient(s) are confirmed, dead or recovered, in the world, and the country or region you select.\u003C\u002Fp>\n\u003Cp>This plugin is free to use.\u003C\u002Fp>\n\u003Cp>Praying for those affected by the coronavirus and those who are worried. May everyone in this world be healthy.\u003C\u002Fp>\n\u003Ch3>Shortcode\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\n\u003Cp>\u003Ccode>[cov2019]\u003C\u002Fcode> Showing global COVID data.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ccode>[cov2019contry]\u003C\u002Fcode> Showing COVID data of the country or region you select.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ccode>[cov2019all]\u003C\u002Fcode> Showing data of all countries in a table.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ccode>[cov2019map]\u003C\u002Fcode> Showing a map with data of each country.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ccode>[cov2019history]\u003C\u002Fcode>  A line chart showing global historical daily data.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ccode>[cov2019historyc]\u003C\u002Fcode>  A line chart showing historical daily data of the country you select.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ccode>[cov2019namerica]\u003C\u002Fcode> Data of North America.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ccode>[cov2019samerica]\u003C\u002Fcode> Data of South America.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ccode>[cov2019europe]\u003C\u002Fcode> Data of Europe.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ccode>[cov2019asia]\u003C\u002Fcode> Data of Asia.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ccode>[cov2019oceania]\u003C\u002Fcode> Data of Oceania.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ccode>[cov2019africa]\u003C\u002Fcode> Data of Africa.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Current API information\u003C\u002Fh3>\n\u003Cp>NovelCOVID\u002FAPI\u003C\u002Fp>\n\u003Cp>API website: https:\u002F\u002Fgithub.com\u002FNovelCOVID\u002FAPI\u003C\u002Fp>\n\u003Cp>License: https:\u002F\u002Fgithub.com\u002FNovelCOVID\u002FAPI\u002Fblob\u002Fmaster\u002FLICENSE\u003C\u002Fp>\n\u003Cp>Endpoint: https:\u002F\u002Fdisease.sh\u002F\u003C\u002Fp>\n\u003Cp>Privacy policy: https:\u002F\u002Fgithub.com\u002FNovelCOVID\u002FAPI\u002Fblob\u002Fmaster\u002Fprivacy.md\u003C\u002Fp>\n\u003Cp>Please read the Privacy Policy of this API before you download and install this plugin in your website.\u003C\u002Fp>\n\u003Ch3>Third party services\u003C\u002Fh3>\n\u003Cp>Mapbox: https:\u002F\u002Fwww.mapbox.com\u002F\u003Cbr \u002F>\n* Mapbox Term of ues: https:\u002F\u002Fwww.mapbox.com\u002Flegal\u002Ftos\u002F\u003Cbr \u002F>\n* Mapbox Privacy policy: https:\u002F\u002Fwww.mapbox.com\u002Flegal\u002Fprivacy\u002F\u003C\u002Fp>\n","This plugin displays the Coronavirus case data through shortcodes [cov2019] [cov2019all] or [cov2019map] in your WordPress post or page.",1000,69028,94,13,"2024-05-22T03:06:00.000Z","6.6.5","3.0.1","7.2",[89,21,23,90,91],"corona-virus","ncov19","%e5%86%a0%e7%8a%b6%e7%97%85%e6%af%92","https:\u002F\u002Fwww.dukeyin.com\u002Fcorona-virus-data\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcorona-virus-data.zip",92,{"slug":96,"name":97,"version":98,"author":99,"author_profile":100,"description":101,"short_description":102,"active_installs":103,"downloaded":104,"rating":13,"num_ratings":105,"last_updated":106,"tested_up_to":107,"requires_at_least":86,"requires_php":25,"tags":108,"homepage":110,"download_link":111,"security_score":112,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"corona-virus-covid19-banner","South African COVID19 Banner","0.4.6","bridgementdevops","https:\u002F\u002Fprofiles.wordpress.org\u002Fbridgementdevops\u002F","\u003Cp>As of 26 March 2020, a new regulation (see reference below) was created in South Africa, requiring all websites operating within the .za top level domain name to have a landing page with a visible link to www.sacoronavirus.co.za.\u003Cbr \u002F>\nThis plugin will make you 100% compliant with the new regulation by adding a discrete, styled banner on the bottom right-hand side of the page which includes the link to the Department of Health’s official Covid-19 page.\u003C\u002Fp>\n\u003Cp>Once installed you can also customise the banner from the plugin’s setting page. The following features are available with many more to follow:\u003Cbr \u002F>\n1. Customise font and background colours to fit in with your website’s colour palette\u003Cbr \u002F>\n2. Customise the text that appears in the banner\u003Cbr \u002F>\n3. Include a link to help others add the banner to their own websites\u003Cbr \u002F>\n4. Select pages on your website where you don’t want the banner to appear\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Paragraph 5.1.4 in the Government Gazette 43164:\u003C\u002Fstrong>\u003Cbr \u002F>\n\u003Cem>All internet sites operating within .zaDNA top level domain name must have a landing page with a visible link to www.sacoronavirus.co.za\u003C\u002Fem>\u003C\u002Fp>\n","Comply with new South African Covid-19 regulations requiring all websites ending in .ZA to show a link to the official government page.",60,3608,1,"2020-06-15T05:07:00.000Z","5.4.19",[89,21,23,109],"covid19","https:\u002F\u002Fwww.bridgement.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcorona-virus-covid19-banner.zip",85,{"slug":114,"name":115,"version":116,"author":117,"author_profile":118,"description":119,"short_description":120,"active_installs":121,"downloaded":122,"rating":29,"num_ratings":29,"last_updated":123,"tested_up_to":124,"requires_at_least":17,"requires_php":125,"tags":126,"homepage":130,"download_link":131,"security_score":112,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"covid-19-float-button","COVID-19 Float Button","1.1","barthusz","https:\u002F\u002Fprofiles.wordpress.org\u002Fbarthusz\u002F","\u003Cp>This plugin creates a floating button with a link to a read more page (which you have to create yourself), meant for COVID-19 information. You can choose from different icons and set the colors, text, link and position of the button (including offset) in the WordPress backend. It is aimed to be simple and lightweight.\u003C\u002Fp>\n","Creates a floating button with a link to a read more page.",40,2003,"2022-01-29T14:35:00.000Z","5.9.13","7.0",[127,21,23,128,129],"corona","floating-button","information","https:\u002F\u002Fwww.bartsalle.nl\u002Fdownload\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcovid-19-float-button.1.1.zip",{"slug":133,"name":134,"version":135,"author":136,"author_profile":137,"description":138,"short_description":139,"active_installs":121,"downloaded":140,"rating":141,"num_ratings":14,"last_updated":142,"tested_up_to":143,"requires_at_least":144,"requires_php":145,"tags":146,"homepage":147,"download_link":148,"security_score":112,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"virusweather","VirusWeather Covid-19 Coronavirus","2.0.3","infectionrank.org","https:\u002F\u002Fprofiles.wordpress.org\u002Fsinger22-wordpress\u002F","\u003Ch4>VIRUSWEATHER CORONAVIRUS COVID-19 LOCAL INFECTION RATE WIDGET\u003C\u002Fh4>\n\u003Ch4>virusweather widget calculates and ranks local covid-19 Infection rates in real-time using a.i., from more than 10,000 global sources. widget stats are calculated using your ip address, displayed via a png banner.\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Get live infection rate details for your locality to safely travel in your community.\u003C\u002Fli>\n\u003Cli>Data sources from globally accredited and renown organizations in addition to thousands of additional local public health sources from all over the world.\u003C\u002Fli>\n\u003Cli>Personalized user location data.\u003C\u002Fli>\n\u003Cli>Infection Rate Algorithm developed by University mathematicians.\u003C\u002Fli>\n\u003Cli>Instant widget information display and compact file size.\u003C\u002Fli>\n\u003Cli>Widget can be set to specific location or from user’s IP geolocation\u003C\u002Fli>\n\u003Cli>Easily adjustable size designed with Retina screens in mind\u003C\u002Fli>\n\u003Cli>Compact HTML file. No javascript.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cpre>\u003Ca href=\"https:\u002F\u002Finfectionrank.org\u002Fcoronavirus\u002Fwidget\u002F\" rel=\"nofollow ugc\">Live Preview\u003C\u002Fa>\u003C\u002Fpre>\n\u003Ch3>How to use\u003C\u002Fh3>\n\u003Cp>You can use this plugin via a shortcode with attributes.\u003C\u002Fp>\n\u003Ch3>Static Location Example\u003C\u002Fh3>\n\u003Cp>Layout Square, Light theme.\u003C\u002Fp>\n\u003Cpre>[virusweather country=\"United States\" state=\"Florida\" county=\"Pinellas County\" size=\"300\"]\u003C\u002Fpre>\n\u003Cp>Layout Square, Dark theme.\u003C\u002Fp>\n\u003Cpre>[virusweather theme=\"dark\" country=\"United States\" state=\"Florida\" county=\"Pinellas County\" size=\"300\"]\u003C\u002Fpre>\n\u003Cp>Square Widget Side Size (Height and Width) in Pixels: (250–500 pixels)\u003C\u002Fp>\n\u003Cp>OR\u003C\u002Fp>\n\u003Cp>Layout Basic, Light theme.\u003C\u002Fp>\n\u003Cpre>[virusweather layout=\"casesapp\" country=\"United States\" state=\"Florida\" county=\"Pinellas County\"]\u003C\u002Fpre>\n\u003Cp>Layout Basic, Dark theme.\u003C\u002Fp>\n\u003Cpre>[virusweather theme=\"dark\" layout=\"casesapp\" country=\"United States\" state=\"Florida\" county=\"Pinellas County\"]\u003C\u002Fpre>\n\u003Cp>Height of your casesapp widget side in pixels: (300–600 pixels)\u003C\u002Fp>\n\u003Cp>OR\u003C\u002Fp>\n\u003Cp>Layout Horizontal, Light theme.\u003C\u002Fp>\n\u003Cpre>[virusweather layout=\"horizontal\" country=\"United States\" state=\"Florida\" county=\"Pinellas County\"]\u003C\u002Fpre>\n\u003Cp>Layout Horizontal, Dark theme.\u003C\u002Fp>\n\u003Cpre>[virusweather theme=\"dark\" layout=\"horizontal\" country=\"United States\" state=\"Florida\" county=\"Pinellas County\"]\u003C\u002Fpre>\n\u003Ch3>Dynamic by IP Location Example\u003C\u002Fh3>\n\u003Cp>Layout Square, Light theme.\u003C\u002Fp>\n\u003Cpre>[virusweather]\u003C\u002Fpre>\n\u003Cp>Layout Square, Dark theme.\u003C\u002Fp>\n\u003Cpre>[virusweather theme=\"dark\"]\u003C\u002Fpre>\n\u003Cp>OR\u003C\u002Fp>\n\u003Cp>Layout Basic, Light theme.\u003C\u002Fp>\n\u003Cpre>[virusweather layout=\"casesapp\"]\u003C\u002Fpre>\n\u003Cp>Layout Basic, Dark theme.\u003C\u002Fp>\n\u003Cpre>[virusweather theme=\"dark\" layout=\"casesapp\"]\u003C\u002Fpre>\n\u003Cp>OR\u003C\u002Fp>\n\u003Cp>Layout Horizontal, Light theme.\u003C\u002Fp>\n\u003Cpre>[virusweather layout=\"horizontal\"]\u003C\u002Fpre>\n\u003Cp>Layout Horizontal, Dark theme.\u003C\u002Fp>\n\u003Cpre>[virusweather theme=\"dark\" layout=\"horizontal\"]\u003C\u002Fpre>\n\u003Ch4>SAFELY TRAVEL IN YOUR LOCALITY AS THE ECONOMY REOPENS.\u003C\u002Fh4>\n\u003Cp>Use this free coronavirus widget to provide website visitors with information for safe travels in their communities, as localities reopen and restart local economies. Statistical data analysis provides your website visitors with more accurate data, as a result of the widget’s greater data sources than currently provided from other sources. In a time of uncertainty, facts provide clarity. Help your website visitors to get the most accurate data from credible sources.\u003C\u002Fp>\n\u003Cp>The VirusWeather Plugin, relies on its PNG images, which are generated by infectionrank.org, a web service site specializing in tools for webmasters. See \u003Ca href=\"https:\u002F\u002Finfectionrank.org\u002Fcoronavirus\u002Fwidget\u002F\" rel=\"nofollow ugc\">https:\u002F\u002Finfectionrank.org\u002Fcoronavirus\u002Fwidget\u002F\u003C\u002Fa>. Data Sources come from Wikipedia, in addition to numerous real-time resources from around the world.\u003C\u002Fp>\n\u003Cp>Virus Weather Widget Terms of Service available at: \u003Ca href=\"https:\u002F\u002Finfectionrank.org\u002Fcoronavirus\u002Fterms-of-service\u002F\" rel=\"nofollow ugc\">https:\u002F\u002Finfectionrank.org\u002Fcoronavirus\u002Fterms-of-service\u002F\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>Virus Weather Privacy Policy available at: \u003Ca href=\"https:\u002F\u002Finfectionrank.org\u002Fcoronavirus\u002Fprivacy-policy\u002F\" rel=\"nofollow ugc\">https:\u002F\u002Finfectionrank.org\u002Fcoronavirus\u002Fprivacy-policy\u002F\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch4>Data sourced from Globally Accredited and renown organizations\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Centers for Disease Control and Prevention – https:\u002F\u002Fwww.cdc.gov\u002Fcoronavirus\u002F2019-ncov\u002Findex.html\u003C\u002Fli>\n\u003Cli>World Health Organization – https:\u002F\u002Fwww.who.int\u002Femergencies\u002Fdiseases\u002Fnovel-coronavirus-2019 and https:\u002F\u002Fwww.who.int\u002Femergencies\u002Fdiseases\u002Fnovel-coronavirus-2019\u002Fsituation-reports\u003C\u002Fli>\n\u003Cli>European Centre for Disease Prevention and Control – https:\u002F\u002Fwww.ecdc.europa.eu\u002Fen\u002Fcovid-19-pandemic\u003C\u002Fli>\n\u003Cli>Wikipedia COVID-19 Pandemic Resources – https:\u002F\u002Fen.wikipedia.org\u002Fwiki\u002F2019%E2%80%9320_coronavirus_pandemic\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Personalized user location data.\u003C\u002Fh4>\n\u003Cp>This unique widget is capable of displaying detailed, real-time local statistics for 4500+ locations world-wide. Key features of the information provided by the widget include: a local COVID-19 infection rate and rank; a visual representation of growth, flattening, and deceleration rates; along with an integrated infected cases recent history chart.\u003C\u002Fp>\n\u003Cp>Your web page visitors will be able to determine safety levels in a particular local area. The displayed stats include user’s personalized local threat level, as well as country and global information.\u003C\u002Fp>\n\u003Ch4>MATHEMATICIAN Developed algorithm for the calculation and rank of infection rates.\u003C\u002Fh4>\n\u003Cp>The VirusWeather Widget, uses an algorithm to calculate and rank infection rate rank calculations which was developed by university mathematicians, incorporating multiple local data points such as population size, density and the recent dynamic effects of new cases.\u003C\u002Fp>\n\u003Ch4>INSTANT WIDGET GENERATION Display AND COMPACT FILE SIZE.\u003C\u002Fh4>\n\u003Cp>Dynamic widget generation is done instantaneously (under 0.2 second) without any delays from our massive cloud-based collection of thousand updated local widgets. Our Widget is compact, displaying local covid-19 coronavirus statistics and calculated relative area infection rank based on website visitor IP geolocation in a small PNG image (under 35 Kb).\u003C\u002Fp>\n\u003Ch4>EASILY ADJUSTABLE SIZE DESIGNED WITH RETINA SCREENS IN MIND.\u003C\u002Fh4>\n\u003Cp>The VirusWeather Widget recommended optimum size is 250×250 pixels. A square banner of this size can easily fit most websites. In addition, the true graphic resolution for generated widget images is 1000×1000 pixels. We do not recommend going above 500×500 pixels size in order to take advantage of retina display screen benefits. This plugin can be used at user’s own discretion in smaller sizes such as 200×200 pixels or less. Font sharpness may be lost when going below 200×200 pixels.\u003C\u002Fp>\n\u003Ch4>COMPACT HTML file. no javascript.\u003C\u002Fh4>\n\u003Cp>The VirusWeather Widget is a compact, HTML based, and does not use any JavaScript. The VirusWeather Widget contains a tiny html and PNG graphic file. Compared to other widgets, the VirusWeather Widget is completely transparent and works exactly as described.\u003C\u002Fp>\n\u003Ch3>Setup\u003C\u002Fh3>\n\u003Cp>Add Widget to any widget area on Appearance->Widgets page. Expand widget, specify Widget Title, select between light and dark theme and specify Widget layout. Afterwards, choose the location to be detected by IP either automatically or by specifying the country and\u002For region manually. Click ‘Save’ to apply changes.\u003C\u002Fp>\n","Personalized by IP address PNG banner shows local covid-19 A.I. calculated threat level and live coronavirus stats for 10000+ local areas world-wide",5522,98,"2020-10-16T18:35:00.000Z","5.5.18","4.0.3","5.6",[89,21,22,23,109],"https:\u002F\u002Finfectionrank.org\u002Fcoronavirus\u002Fwidget\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fvirusweather.2.0.3.zip",{"slug":150,"name":151,"version":152,"author":153,"author_profile":154,"description":155,"short_description":156,"active_installs":157,"downloaded":158,"rating":13,"num_ratings":28,"last_updated":159,"tested_up_to":160,"requires_at_least":17,"requires_php":145,"tags":161,"homepage":164,"download_link":165,"security_score":112,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"corona-update","Corona Update","1.6.0","themelooks","https:\u002F\u002Fprofiles.wordpress.org\u002Fthemelooks\u002F","\u003Cp>Corona Update WordPress Plugin to show corona current cases and more information about COVID-19. You will be able to show the relevant information: cases, today’s cases, deaths, today’s deaths, recovered, and critical on you website.\u003C\u002Fp>\n\u003Ch4>Main Features of Corona Update:\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Corona World Live Statistic Update\u003C\u002Fli>\n\u003Cli>Live Statistic WordPress Widgets Support\u003C\u002Fli>\n\u003Cli>Live Statistic WordPress Shortcode Support\u003C\u002Fli>\n\u003Cli>Live Statistic WordPress Elementor Support\u003C\u002Fli>\n\u003Cli>Corona Awareness Popup\u003C\u002Fli>\n\u003Cli>Compatibility with wordpress 5.4+\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cpre>\u003Ca href=\"https:\u002F\u002Fwww.themelooks.com\u002Fcovid-19-live-update-widgets-for-wordpress-elementor\u002F\" rel=\"nofollow ugc\">Live Preview\u003C\u002Fa>\u003C\u002Fpre>\n\u003Cpre>\u003Ca href=\"https:\u002F\u002Fcodecanyon.net\u002Fitem\u002Fcorona-updatepro-covid19-live-update-widgets-for-wordpress-elementor\u002F26140216\" rel=\"nofollow ugc\">Checkout Pro Version\u003C\u002Fa>\u003C\u002Fpre>\n\u003Cpre>\u003Ca href=\"https:\u002F\u002Fthemeforest.net\u002Fuser\u002Fthemelooks\" rel=\"nofollow ugc\">Checkout Our Pro Profile\u003C\u002Fa>\u003C\u002Fpre>\n\u003Ch3>CoronaVirus REST API v1.0\u003C\u002Fh3>\n\u003Cp>The CoronaVirus REST API returns the current cases and more information about COVID-19 or the Novel Coronavirus Strain. This API is free to use, and requires no authentication. The API returns JSON formatted responses. The API supports country-specific responses. The following parameters can be specified to retrieve relevant information: cases, today’s cases, deaths, today’s deaths, recovered, and critical.\u003C\u002Fp>\n\u003Cp>Privacy Policies Url:\u003Cbr \u002F>\nhttps:\u002F\u002Fgithub.com\u002FNovelCOVID\u002FAPI\u002Fblob\u002Fmaster\u002Fprivacy.md\u003C\u002Fp>\n","Corona Update WordPress Plugin to show corona current cases and more information about COVID-19. You will be able to show the relevant information: ca &hellip;",30,9085,"2021-08-23T09:06:00.000Z","5.6.17",[127,21,23,162,163],"live-update","statistic","https:\u002F\u002Fwww.themelooks.com\u002Fblog\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcorona-update.zip",{"attackSurface":167,"codeSignals":210,"taintFlows":354,"riskAssessment":355,"analyzedAt":369},{"hooks":168,"ajaxHandlers":206,"restRoutes":207,"shortcodes":208,"cronEvents":209,"entryPointCount":29,"unprotectedCount":29},[169,176,180,184,190,193,196,199,202],{"type":170,"name":171,"callback":172,"priority":173,"file":174,"line":175},"action","init","init_settings",11,"includes\\orchestrated-corona-virus-banner-settings.php",18,{"type":170,"name":177,"callback":178,"file":174,"line":179},"admin_init","register_settings",21,{"type":170,"name":181,"callback":182,"file":174,"line":183},"admin_menu","add_menu_item",24,{"type":170,"name":185,"callback":186,"priority":187,"file":188,"line":189},"wp_enqueue_scripts","enqueue_styles",10,"includes\\orchestrated-corona-virus-banner.php",38,{"type":170,"name":185,"callback":191,"priority":187,"file":188,"line":192},"enqueue_scripts",39,{"type":170,"name":194,"callback":194,"priority":187,"file":188,"line":195},"admin_enqueue_scripts",42,{"type":170,"name":194,"callback":197,"priority":187,"file":188,"line":198},"admin_enqueue_styles",43,{"type":170,"name":171,"callback":200,"priority":29,"file":188,"line":201},"load_localisation",49,{"type":170,"name":203,"callback":204,"file":188,"line":205},"wp_footer","page_code",50,[],[],[],[],{"dangerousFunctions":211,"sqlUsage":212,"outputEscaping":214,"fileOperations":29,"externalRequests":29,"nonceChecks":29,"capabilityChecks":29,"bundledLibraries":353},[],{"prepared":29,"raw":29,"locations":213},[],{"escaped":215,"rawEcho":216,"locations":217},17,67,[218,221,223,225,227,229,231,233,235,237,239,241,243,245,247,249,251,253,255,257,259,261,263,265,267,269,271,273,275,277,279,281,283,285,287,289,291,293,295,297,299,301,303,305,307,309,311,313,315,317,319,321,323,325,327,329,331,333,335,337,339,341,343,345,347,349,351],{"file":174,"line":219,"context":220},300,"raw output",{"file":174,"line":222,"context":220},301,{"file":174,"line":224,"context":220},302,{"file":174,"line":226,"context":220},306,{"file":174,"line":228,"context":220},307,{"file":174,"line":230,"context":220},310,{"file":174,"line":232,"context":220},313,{"file":174,"line":234,"context":220},314,{"file":174,"line":236,"context":220},315,{"file":174,"line":238,"context":220},319,{"file":174,"line":240,"context":220},326,{"file":174,"line":242,"context":220},327,{"file":174,"line":244,"context":220},332,{"file":174,"line":246,"context":220},333,{"file":174,"line":248,"context":220},338,{"file":174,"line":250,"context":220},339,{"file":174,"line":252,"context":220},344,{"file":174,"line":254,"context":220},345,{"file":174,"line":256,"context":220},353,{"file":174,"line":258,"context":220},361,{"file":174,"line":260,"context":220},362,{"file":174,"line":262,"context":220},363,{"file":174,"line":264,"context":220},368,{"file":174,"line":266,"context":220},369,{"file":174,"line":268,"context":220},370,{"file":174,"line":270,"context":220},377,{"file":174,"line":272,"context":220},379,{"file":174,"line":274,"context":220},385,{"file":174,"line":276,"context":220},387,{"file":174,"line":278,"context":220},393,{"file":174,"line":280,"context":220},395,{"file":174,"line":282,"context":220},403,{"file":174,"line":284,"context":220},404,{"file":174,"line":286,"context":220},411,{"file":174,"line":288,"context":220},412,{"file":174,"line":290,"context":220},420,{"file":174,"line":292,"context":220},424,{"file":174,"line":294,"context":220},426,{"file":174,"line":296,"context":220},432,{"file":174,"line":298,"context":220},434,{"file":174,"line":300,"context":220},440,{"file":174,"line":302,"context":220},441,{"file":174,"line":304,"context":220},442,{"file":174,"line":306,"context":220},447,{"file":174,"line":308,"context":220},448,{"file":174,"line":310,"context":220},449,{"file":174,"line":312,"context":220},455,{"file":174,"line":314,"context":220},458,{"file":174,"line":316,"context":220},461,{"file":174,"line":318,"context":220},462,{"file":174,"line":320,"context":220},467,{"file":174,"line":322,"context":220},468,{"file":174,"line":324,"context":220},469,{"file":174,"line":326,"context":220},475,{"file":174,"line":328,"context":220},479,{"file":174,"line":330,"context":220},480,{"file":174,"line":332,"context":220},485,{"file":174,"line":334,"context":220},486,{"file":174,"line":336,"context":220},489,{"file":174,"line":338,"context":220},495,{"file":174,"line":340,"context":220},499,{"file":174,"line":342,"context":220},508,{"file":174,"line":344,"context":220},511,{"file":174,"line":346,"context":220},512,{"file":174,"line":348,"context":220},513,{"file":174,"line":350,"context":220},514,{"file":188,"line":352,"context":220},88,[],[],{"summary":356,"deductions":357},"The static analysis of the \"corona-virus-covid-19-banner\" plugin version 1.8.0.4 reveals a seemingly clean code base with no identified attack surface in terms of AJAX handlers, REST API routes, shortcodes, or cron events. Furthermore, the code shows a positive sign by using prepared statements for all SQL queries and avoiding dangerous functions, file operations, and external HTTP requests. However, a significant concern arises from the low percentage (20%) of properly escaped output, indicating a high likelihood of Cross-Site Scripting (XSS) vulnerabilities. Taint analysis also shows no reported issues, which, when combined with the output escaping findings, might suggest an incomplete taint analysis or an oversight in identifying potential XSS vectors.\n\nThe vulnerability history paints a more concerning picture. With two known CVEs, including a high and a medium severity vulnerability, and a recent history of XSS and CSRF issues, the plugin has a track record of security weaknesses. The fact that there are currently no unpatched vulnerabilities is a positive sign, but the pattern of past issues, particularly XSS, combined with the static analysis finding of poor output escaping, strongly suggests that XSS remains a significant potential risk. While the absence of an exploitable attack surface and proper SQL handling are good, the persistent output escaping problem and past vulnerability trends indicate a need for caution.",[358,361,363,366],{"reason":359,"points":360},"Low percentage of properly escaped output",15,{"reason":362,"points":187},"One unpatched medium severity vulnerability",{"reason":364,"points":365},"One unpatched high severity vulnerability",20,{"reason":367,"points":368},"History of XSS and CSRF vulnerabilities",5,"2026-03-16T19:22:05.111Z",{"wat":371,"direct":380},{"assetPaths":372,"generatorPatterns":375,"scriptPaths":376,"versionParams":377},[373,374],"\u002Fwp-content\u002Fplugins\u002Fcorona-virus-covid-19-banner\u002Fassets\u002Fcss\u002Ffront.css","\u002Fwp-content\u002Fplugins\u002Fcorona-virus-covid-19-banner\u002Fassets\u002Fjs\u002Ffront.js",[],[374],[378,379],"corona-virus-covid-19-banner\u002Fassets\u002Fcss\u002Ffront.css?ver=","corona-virus-covid-19-banner\u002Fassets\u002Fjs\u002Ffront.js?ver=",{"cssClasses":381,"htmlComments":390,"htmlAttributes":391,"restEndpoints":394,"jsGlobals":395,"shortcodeOutput":397},[382,383,384,385,386,384,385,386,387,388,382,383,382,383,389],"ocvb-enabled","ocvb-disabled","ocvb-display-type-banner","ocvb-display-type-overlay","ocvb-display-type-leaderboard","ready-and-display","not-ready","ocvb-container-notice-text",[],[392,393],"data-message-alignment","data-allow-close",[],[396],"Orchestrated_Corona_Virus_Banner",[]]