[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f2jw7R9lDneLm8vAGI0hR-txt76XdIJ8Zfi6rhqv4gxE":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":25,"download_link":26,"security_score":27,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30,"vulnerabilities":31,"developer":32,"crawl_stats":29,"alternatives":40,"analysis":133,"fingerprints":239},"cresta-image-in-widget","Cresta Image In Widget","1.0.3","CrestaProject","https:\u002F\u002Fprofiles.wordpress.org\u002Fcrestaproject\u002F","\u003Cp>Cresta Image In Widget it’s a widget that allows you to simply add an \u003Cstrong>image in a widget\u003C\u002Fstrong>, choose the size, choose the border radius, add a link on it and add text under the image.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Some features\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Add an image in the widget\u003C\u002Fli>\n\u003Cli>Choose the image size\u003C\u002Fli>\n\u003Cli>Add a border radius at the image\u003C\u002Fli>\n\u003Cli>Choose where to show the widget (entire website, only home page, only all posts, etc…)\u003C\u002Fli>\n\u003Cli>Add a link on the image\u003C\u002Fli>\n\u003Cli>Add text under the image\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>This plugin can be useful if you want to show an “About Me” section in your sidebar, or the logo of your company in your footer, or for any reason you need an image in the widget.\u003Cbr \u002F>\nAll features are optional so you can choose what to show in your website and what not!\u003C\u002Fp>\u003C\u002Fp>\n","Simple plugin to show an image, photo or logo in a widget with text and link",30,3504,100,1,"2017-06-08T16:57:00.000Z","4.8.28","4.2","",[20,21,22,23,24],"about-me","image","image-author","image-widget","widget","https:\u002F\u002Fcrestaproject.com\u002Fdownloads\u002Fcresta-image-in-widget\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcresta-image-in-widget.1.0.3.zip",85,0,null,"2026-03-15T15:16:48.613Z",[],{"slug":33,"display_name":7,"profile_url":8,"plugin_count":34,"total_installs":35,"avg_security_score":36,"avg_patch_time_days":37,"trust_score":38,"computed_at":39},"crestaproject",25,21740,97,36,86,"2026-04-04T18:14:07.322Z",[41,58,79,97,116],{"slug":42,"name":43,"version":44,"author":45,"author_profile":46,"description":47,"short_description":48,"active_installs":49,"downloaded":50,"rating":28,"num_ratings":28,"last_updated":51,"tested_up_to":52,"requires_at_least":53,"requires_php":18,"tags":54,"homepage":56,"download_link":57,"security_score":27,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"about-me-image-widget","About Me Image Widget by Angie Makes","1.4.3","Chris Baldelomar","https:\u002F\u002Fprofiles.wordpress.org\u002Fcbaldelomar\u002F","\u003Cp>See the \u003Ca href=\"http:\u002F\u002Fhallie.angiemakes.com\u002Fblog\u002F\" rel=\"nofollow ugc\">‘About Me Image Widget’ in action\u003C\u002Fa>\u003C\u002Fp>\n","Add \"About Me\" image widget, with caption and link, to any widget area.",200,11366,"2017-05-10T16:21:00.000Z","4.7.32","4.2.4",[20,55,42,23],"about-me-image","http:\u002F\u002Fangiemakes.com\u002Ffeminine-wordpress-blog-themes-women\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fabout-me-image-widget.zip",{"slug":59,"name":60,"version":61,"author":62,"author_profile":63,"description":64,"short_description":65,"active_installs":66,"downloaded":67,"rating":68,"num_ratings":69,"last_updated":70,"tested_up_to":71,"requires_at_least":72,"requires_php":18,"tags":73,"homepage":77,"download_link":78,"security_score":13,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"simple-image-widget","Simple Image Widget","4.4.2","Cedaro","https:\u002F\u002Fprofiles.wordpress.org\u002Fcedaro\u002F","\u003Cp>Simple Image Widget is what the name implies — the easiest way to add images to your sidebars. Display advertisements, calls-to-action, or even build a slider based on image widgets.\u003C\u002Fp>\n\u003Cp>Despite its simplicity, Simple Image Widget is built with extensibility in mind, making it super easy to spin off new image-based widgets, or customize the widget ouput using the available template hierarchy.\u003C\u002Fp>\n\u003Ch3>Additional Resources\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fsupport\u002Fview\u002Fplugin-reviews\u002Fsimple-image-widget#postform\" rel=\"ugc\">Write a review\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fcedaro\u002Fsimple-image-widget\" rel=\"nofollow ugc\">Contribute on GitHub\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Ftwitter.com\u002Fcedaroco\" rel=\"nofollow ugc\">Follow @cedaroco\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.cedaro.com\u002F?utm_source=wordpress.org&utm_medium=link&utm_content=simple-image-widget-readme&utm_campaign=plugins\" rel=\"nofollow ugc\">Visit Cedaro\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n","A simple widget that makes it a breeze to add images to your sidebars.",10000,854415,90,39,"2025-07-20T14:44:00.000Z","6.8.5","4.9",[23,74,75,76,24],"media","media-manager","sidebar","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fsimple-image-widget\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsimple-image-widget.4.4.2.zip",{"slug":80,"name":81,"version":82,"author":83,"author_profile":84,"description":85,"short_description":86,"active_installs":87,"downloaded":88,"rating":89,"num_ratings":90,"last_updated":91,"tested_up_to":71,"requires_at_least":92,"requires_php":18,"tags":93,"homepage":95,"download_link":96,"security_score":13,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"image-widget-rb","Image Widget","1.0.12","rbplugins","https:\u002F\u002Fprofiles.wordpress.org\u002Frbplugins\u002F","\u003Cp>With Image Widget plugin you can in few simple steps publish images grid on sidebar of your blog page or post. For management of the images implemented set of simple and smart options. It’s not gonna take to much time to manage your media resources. Configuration of the gallery widget it’s very simple task with our image widget.\u003Cbr \u002F>\nImage Widget have few functionality modes. You can easily change view of the image widget thumbnails layout. Upload images to the image widget take just few minutes and few clicks. You can use external plugins which have integration with Image Widget RB as source of the settings for the gallery and images sets.\u003Cbr \u002F>\nConfigure styles and view in external gallery plugin, select required gallery elements and publish it in image widget, as target content.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Key Features Image Widget\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Simple image widget interface;\u003C\u002Fli>\n\u003Cli>Simple image management tools;\u003C\u002Fli>\n\u003Cli>Media resources could be upload in few clicks;\u003C\u002Fli>\n\u003Cli>Multi columns image widget configuration;\u003C\u002Fli>\n\u003Cli>Unlimited images amount;\u003C\u002Fli>\n\u003Cli>Image grid widget view;\u003C\u002Fli>\n\u003Cli>Import of the image widget content from the external integrated plugins;\u003C\u002Fli>\n\u003Cli>No limits for image widgets amount on page;\u003C\u002Fli>\n\u003Cli>No limits for image widgets on sidebar;\u003C\u002Fli>\n\u003Cli>Additional parameters for images in image widget media manager;\u003C\u002Fli>\n\u003Cli>Image widget with lightbox;\u003C\u002Fli>\n\u003Cli>Fast navigation in lightbox;\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>It’s not require any special skills or code modifications to image widget on your website. Just install image widget plugin on your website, open settings to enable main functionality. Just install plugin from the directory and activate image widget function in widget settings.\u003C\u002Fp>\n\u003Cp>If you have some ideas of new functionality or options for this image widget plugin please drop a line to our contact form or support section.\u003C\u002Fp>\n","Image Widget - most simple and fast way to create image widget to your sidebar",4000,54014,60,2,"2025-09-25T07:24:00.000Z","3.1",[94,21,23,76,24],"gallery-widget","https:\u002F\u002Fwordpress.org\u002Fsupport\u002Fplugin\u002Fimage-widget-rb","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fimage-widget-rb.1.0.12.zip",{"slug":98,"name":99,"version":100,"author":101,"author_profile":102,"description":103,"short_description":104,"active_installs":105,"downloaded":106,"rating":107,"num_ratings":108,"last_updated":109,"tested_up_to":110,"requires_at_least":111,"requires_php":18,"tags":112,"homepage":114,"download_link":115,"security_score":27,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"hw-image-widget","HW Image Widget","4.4","Håkan Wennerberg","https:\u002F\u002Fprofiles.wordpress.org\u002Fpuffythepirateboy\u002F","\u003Cp>This widget requires WordPress 3.5 or newer.\u003C\u002Fp>\n\u003Cp>Primary features of HW Image Widget:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Allow you to choose responsive or fixed behavior.\u003C\u002Fli>\n\u003Cli>Fixed sized images allow you to define width\u002Fheight with, or without kept aspect ratio.\u003C\u002Fli>\n\u003Cli>Responsive sized images will allow you to define “fill width” or not.\u003C\u002Fli>\n\u003Cli>Uses TinyMCE for rich text editing of the image text field.\u003C\u002Fli>\n\u003Cli>Allow you to create a custom widget HTML-template in the active theme to override the default layout.\u003C\u002Fli>\n\u003Cli>Default settings can be overridden using filter.\u003C\u002Fli>\n\u003Cli>Works with Carrington Build.\u003C\u002Fli>\n\u003Cli>Works with the theme customizer.\u003C\u002Fli>\n\u003Cli>Available in English and Swedish.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>For more info, visit http:\u002F\u002Fwebartisan.se\u002Fhw-image-widget\u002F\u003C\u002Fp>\n","Image widget that will allow you to choose responsive or fixed sized behavior. Includes TinyMCE rich text editing of the text description.",1000,39559,88,14,"2017-11-28T19:47:00.000Z","4.2.39","3.5",[21,23,113,24],"responsive","http:\u002F\u002Fwordpress.org\u002Fextend\u002Fplugins\u002Fhw-image-widget\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fhw-image-widget.4.4.zip",{"slug":117,"name":118,"version":119,"author":120,"author_profile":121,"description":122,"short_description":123,"active_installs":105,"downloaded":124,"rating":13,"num_ratings":125,"last_updated":126,"tested_up_to":127,"requires_at_least":111,"requires_php":18,"tags":128,"homepage":131,"download_link":132,"security_score":27,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"swifty-image-widget","Swifty Image Widget","1.1.1","Goran87","https:\u002F\u002Fprofiles.wordpress.org\u002Fgoran87\u002F","\u003Cp>Super simple but powerful widget that allows adding single or multiple images to your widget positions, using native media uploader. You can add caption for each image to act as testimonial, or you can use it as banner advertising module because its not being blocked with Ad Blocker. It doesn’t load any javascript on front end so its super fast. Use drag and drop to rearrange images.\u003C\u002Fp>\n\u003Cp>Check out demo in sidebar \u003Ca href=\"http:\u002F\u002Fitsgoran.com\u002Fwp\u002Fswifty-image-widget\u002F\" rel=\"nofollow ugc\">here\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>Major features in Swifty Image Widget include:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Easily select image from your media collection\u003C\u002Fli>\n\u003Cli>Add one or add multiple images\u003C\u002Fli>\n\u003Cli>Chose full size, one from registered sizes by your theme or define your custom size\u003C\u002Fli>\n\u003Cli>Add caption that will show below image (optional)\u003C\u002Fli>\n\u003Cli>Add link (optional)\u003C\u002Fli>\n\u003Cli>Enable\u002Fdisable rel nofollow\u003C\u002Fli>\n\u003Cli>Drag and Drop to rearrange images\u003C\u002Fli>\n\u003Cli>Arrange images\u002Fbanners next to each other or below each other\u003C\u002Fli>\n\u003Cli>Not being blocked by AdBlocker\u003C\u002Fli>\n\u003Cli>Just one css file (0.5kb) called for front styling, no scripts.\u003C\u002Fli>\n\u003Cli>Super Light and Super Fast\u003C\u002Fli>\n\u003Cli>Responsive\u003C\u002Fli>\n\u003Cli>Secure and written with best practices\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>Check my other plugins at www.wpgens.com\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>If you have any suggestions\u002Ffeedback to improve Swifty Image Widget, please get in touch with me via email goran@wpgens.com .\u003C\u002Fp>\n\u003Cp>Also be sure to check out \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fswifty-bar\u002F\" rel=\"ugc\">Swifty Bar\u003C\u002Fa>. Plugin that you will fall in love with 🙂\u003C\u002Fp>\n","Super simple but powerful widget that allows adding single or multiple images to your widget positions, using native media uploader.",26632,12,"2023-08-09T13:13:00.000Z","6.3.8",[129,23,130,76,24],"image-list","resize","https:\u002F\u002Fwww.wpgens.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fswifty-image-widget.1.1.1.zip",{"attackSurface":134,"codeSignals":150,"taintFlows":231,"riskAssessment":232,"analyzedAt":238},{"hooks":135,"ajaxHandlers":146,"restRoutes":147,"shortcodes":148,"cronEvents":149,"entryPointCount":28,"unprotectedCount":28},[136,142],{"type":137,"name":138,"callback":139,"file":140,"line":141},"action","sidebar_admin_setup","setup_script","cresta-image-in-widget.php",22,{"type":137,"name":143,"callback":144,"file":140,"line":145},"widgets_init","ciiw_register_widget",205,[],[],[],[],{"dangerousFunctions":151,"sqlUsage":152,"outputEscaping":154,"fileOperations":28,"externalRequests":28,"nonceChecks":28,"capabilityChecks":14,"bundledLibraries":230},[],{"prepared":28,"raw":28,"locations":153},[],{"escaped":155,"rawEcho":156,"locations":157},28,43,[158,161,163,165,167,169,170,172,174,175,177,179,181,183,184,186,187,189,190,192,194,195,196,198,200,201,203,204,206,208,209,211,213,214,216,218,219,221,223,224,225,227,228],{"file":140,"line":159,"context":160},71,"raw output",{"file":140,"line":162,"context":160},81,{"file":140,"line":164,"context":160},94,{"file":140,"line":166,"context":160},112,{"file":140,"line":168,"context":160},113,{"file":140,"line":168,"context":160},{"file":140,"line":171,"context":160},116,{"file":140,"line":173,"context":160},117,{"file":140,"line":173,"context":160},{"file":140,"line":176,"context":160},127,{"file":140,"line":178,"context":160},130,{"file":140,"line":180,"context":160},132,{"file":140,"line":182,"context":160},135,{"file":140,"line":182,"context":160},{"file":140,"line":185,"context":160},136,{"file":140,"line":185,"context":160},{"file":140,"line":188,"context":160},137,{"file":140,"line":188,"context":160},{"file":140,"line":191,"context":160},140,{"file":140,"line":193,"context":160},141,{"file":140,"line":193,"context":160},{"file":140,"line":193,"context":160},{"file":140,"line":197,"context":160},144,{"file":140,"line":199,"context":160},145,{"file":140,"line":199,"context":160},{"file":140,"line":202,"context":160},149,{"file":140,"line":202,"context":160},{"file":140,"line":205,"context":160},155,{"file":140,"line":207,"context":160},156,{"file":140,"line":207,"context":160},{"file":140,"line":210,"context":160},159,{"file":140,"line":212,"context":160},160,{"file":140,"line":212,"context":160},{"file":140,"line":215,"context":160},163,{"file":140,"line":217,"context":160},164,{"file":140,"line":217,"context":160},{"file":140,"line":220,"context":160},170,{"file":140,"line":222,"context":160},171,{"file":140,"line":222,"context":160},{"file":140,"line":222,"context":160},{"file":140,"line":226,"context":160},174,{"file":140,"line":226,"context":160},{"file":140,"line":229,"context":160},175,[],[],{"summary":233,"deductions":234},"The cresta-image-in-widget plugin version 1.0.3 exhibits a generally positive security posture based on the provided static analysis. The absence of detected AJAX handlers, REST API routes, shortcodes, or cron events significantly limits the potential attack surface. Furthermore, the code signals are encouraging, with no dangerous functions identified, all SQL queries utilizing prepared statements, and no file operations or external HTTP requests observed. The presence of a capability check is also a positive indicator of access control.\n\nHowever, a notable concern arises from the output escaping analysis, where only 39% of outputs are properly escaped. This indicates a risk of Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is not consistently sanitized before being displayed in the widget. The lack of nonce checks, while not explicitly a problem given the zero attack surface, could become an issue if new entry points are introduced in future versions without proper security considerations.\n\nThe vulnerability history is completely clear, with no known CVEs or past vulnerabilities recorded. This suggests a history of responsible development or a lack of past discovery, but it should not be taken as a guarantee of future security. In conclusion, while the plugin has a strong foundation with a limited attack surface and good SQL practices, the significant proportion of unescaped output presents a tangible risk that requires attention.",[235],{"reason":236,"points":237},"Low percentage of properly escaped output",8,"2026-03-16T22:29:07.476Z",{"wat":240,"direct":245},{"assetPaths":241,"generatorPatterns":242,"scriptPaths":243,"versionParams":244},[],[],[],[],{"cssClasses":246,"htmlComments":247,"htmlAttributes":248,"restEndpoints":249,"jsGlobals":250,"shortcodeOutput":251},[],[],[],[],[],[]]