[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fm8NvYoLRHCGmOTD5Oolju9UIxqtjOCm-YPJhlKAOiww":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":22,"download_link":23,"security_score":24,"vuln_count":25,"unpatched_count":25,"last_vuln_date":26,"fetched_at":27,"vulnerabilities":28,"developer":29,"crawl_stats":26,"alternatives":34,"analysis":54,"fingerprints":95},"cotacao-dolar-hoje","Cotação Dólar","2.1","febeckers","https:\u002F\u002Fprofiles.wordpress.org\u002Ffebeckers\u002F","\u003Cp>Cotação do Dólar em relação ao Real (moeda do Brasil). Tenha a cotação do dólar em seu site – atualizado diariamente direto do site do Banco Central do Brasil.\u003C\u002Fp>\n\u003Ch3>Arbitrary section\u003C\u002Fh3>\n\u003Ch3>A brief Markdown Example\u003C\u002Fh3>\n","Cotação do Dólar em relação ao Real (moeda do Brasil). Tenha a cotação do dólar em seu site - atualizado diariamente direto do site do Banco Central d &hellip;",20,4830,100,1,"2015-07-21T12:24:00.000Z","3.4.2","3.0.1","",[20,21],"cotacao-dolar","dolar-hoje","http:\u002F\u002Fwww.cotacaocolarhoje.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcotacao-dolar-hoje.zip",85,0,null,"2026-03-15T15:16:48.613Z",[],{"slug":7,"display_name":7,"profile_url":8,"plugin_count":30,"total_installs":31,"avg_security_score":24,"avg_patch_time_days":31,"trust_score":32,"computed_at":33},2,30,84,"2026-04-05T21:41:11.113Z",[35],{"slug":36,"name":37,"version":38,"author":39,"author_profile":40,"description":41,"short_description":42,"active_installs":13,"downloaded":43,"rating":25,"num_ratings":25,"last_updated":44,"tested_up_to":45,"requires_at_least":17,"requires_php":46,"tags":47,"homepage":52,"download_link":53,"security_score":24,"vuln_count":25,"unpatched_count":25,"last_vuln_date":26,"fetched_at":27},"cotacao-moedas-hoje","Cotação Moedas","1.0.2","Miguel Ninno Daipré","https:\u002F\u002Fprofiles.wordpress.org\u002Fmigueldaipre\u002F","\u003Cp>Tenha a Cotação do Dólar, Euro e Iene diretamente no cabeçalho do seu site ou utilize o shortcode para adicionar a cotação em qualquer lugar do seu site. É possível escolher as moedas que serão mostradas, as informações de preços são obtidos diariamente do Banco Central do Brasil, é mostrado tanto o valor de compra como o valor de venda da moeda em relação ao Real (R$).\u003Cbr \u002F>\nNovas moedas serão adicionadas. Aguarde atualizações\u003C\u002Fp>\n","Cotação do Dólar, Euro e Iene em relação ao Real (R$). Todos os dados são buscados do Banco Central do Brasil diariamente pelo Web Service.",11160,"2019-10-10T16:48:00.000Z","5.1.22","5.6",[48,49,21,50,51],"cotacao","cotacao-moedas","euro-hoje","iene-hoje","https:\u002F\u002Fgithub.com\u002Fmigueldaipre\u002Fwp-cotacao-moedas-hoje","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcotacao-moedas-hoje.zip",{"attackSurface":55,"codeSignals":61,"taintFlows":83,"riskAssessment":84,"analyzedAt":94},{"hooks":56,"ajaxHandlers":57,"restRoutes":58,"shortcodes":59,"cronEvents":60,"entryPointCount":25,"unprotectedCount":25},[],[],[],[],[],{"dangerousFunctions":62,"sqlUsage":63,"outputEscaping":65,"fileOperations":25,"externalRequests":25,"nonceChecks":25,"capabilityChecks":25,"bundledLibraries":82},[],{"prepared":25,"raw":25,"locations":64},[],{"escaped":25,"rawEcho":66,"locations":67},7,[68,72,74,76,78,79,81],{"file":69,"line":70,"context":71},"index.php",48,"raw output",{"file":69,"line":73,"context":71},53,{"file":69,"line":75,"context":71},55,{"file":69,"line":77,"context":71},57,{"file":69,"line":77,"context":71},{"file":69,"line":80,"context":71},58,{"file":69,"line":80,"context":71},[],[],{"summary":85,"deductions":86},"The \"cotacao-dolar-hoje\" v2.1 plugin exhibits a generally strong security posture based on the static analysis provided, with no reported vulnerabilities in its history and a clean taint analysis. The absence of dangerous functions, raw SQL queries, file operations, and external HTTP requests are positive indicators. However, a significant concern arises from the complete lack of output escaping for all identified output points. This means that any data displayed by the plugin could potentially be vulnerable to cross-site scripting (XSS) attacks if that data originates from user input or external sources without proper sanitization before being outputted. Furthermore, the absence of any capability checks or nonce checks on potential entry points, though the attack surface is currently zero, suggests a lack of defensive programming practices that could become problematic if new features or entry points are added without adhering to security principles.",[87,89,92],{"reason":88,"points":11},"All output is unescaped",{"reason":90,"points":91},"No capability checks present",10,{"reason":93,"points":91},"No nonce checks present","2026-03-16T22:51:26.089Z",{"wat":96,"direct":102},{"assetPaths":97,"generatorPatterns":99,"scriptPaths":100,"versionParams":101},[98],"\u002Fwp-content\u002Fplugins\u002Fcotacao-dolar-hoje\u002Fcss\u002Fcotacaodolar.css",[],[],[],{"cssClasses":103,"htmlComments":105,"htmlAttributes":106,"restEndpoints":107,"jsGlobals":108,"shortcodeOutput":109},[104],"cotacaodolar",[],[],[],[],[]]