[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fgAeY4ikpYPbC15lhSn7fdr-azg4J5LS9is6UtPxHjZ4":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":25,"download_link":26,"security_score":27,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30,"vulnerabilities":31,"developer":32,"crawl_stats":29,"alternatives":37,"analysis":139,"fingerprints":222},"cta-widget-manager","OrbitCarrot CTA Widget Manager","1.1","OrbitCarrot","https:\u002F\u002Fprofiles.wordpress.org\u002Forbitcarrot\u002F","\u003Cp>CTA Widget Manager allows you to very easily create Call To Actions for your WordPress sites as widgets, simply choose the text, the style and where you want the CTA to link to – it’s that simple!\u003C\u002Fp>\n\u003Cp>CTA Widget Manager is a free version of our low cost premium widget ‘CTA Manager’ – CTA Manager also allows you to create Call to Actions as widgets but has more functionality including creating in-content CTAs with an awesome CTA shortcode generator check our CTA Manager \u003Ca href=\"http:\u002F\u002Forbitcarrot.com\u002Fwordpress-plugins-purchase\u002Fcta-plugin-manager-wordpress-plugin\u002F\" rel=\"nofollow ugc\">here\u003C\u002Fa>.\u003C\u002Fp>\n","The easiest way to create Call to Actions as widgets on your Wordpress site. Customize your own CTA style or use pre-designed ones.",10,2631,100,1,"2016-08-02T09:13:00.000Z","4.8.28","3.4","",[20,21,22,23,24],"action","button","call-to-action","cta","widget","http:\u002F\u002Forbitcarrot.com\u002Fcta-manager-wordpress-plugin\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcta-widget-manager.zip",85,0,null,"2026-03-15T15:16:48.613Z",[],{"slug":33,"display_name":7,"profile_url":8,"plugin_count":14,"total_installs":11,"avg_security_score":27,"avg_patch_time_days":34,"trust_score":35,"computed_at":36},"orbitcarrot",30,84,"2026-04-04T11:44:36.913Z",[38,62,82,102,120],{"slug":39,"name":40,"version":41,"author":42,"author_profile":43,"description":44,"short_description":45,"active_installs":46,"downloaded":47,"rating":48,"num_ratings":34,"last_updated":49,"tested_up_to":50,"requires_at_least":51,"requires_php":52,"tags":53,"homepage":58,"download_link":59,"security_score":60,"vuln_count":14,"unpatched_count":28,"last_vuln_date":61,"fetched_at":30},"mobile-contact-bar","Mobile Contact Bar","3.0.5","Anna Bansaghi","https:\u002F\u002Fprofiles.wordpress.org\u002Fannabansaghi\u002F","\u003Cp>Mobile Contact Bar is a compact and highly customizable plugin, which allows your visitors to contact you directly via mobile phones, or access your site’s pages instantly.\u003C\u002Fp>\n\u003Cp>The settings page is available under the \u003Cem>Settings &rarr; Mobile Contact Bar\u003C\u002Fem> menu in the WordPress dashboard.\u003C\u002Fp>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Icons for social media, call-to-actions, or any links to web pages\u003C\u002Fli>\n\u003Cli>Simple and intuitive styling with the aid of the Real-time Model\u003C\u002Fli>\n\u003Cli>Built-in icon picker with \u003Ca href=\"https:\u002F\u002Ffontawesome.com\u002F\" rel=\"nofollow ugc\">Font Awesome 6\u003C\u002Fa> integration\u003C\u002Fli>\n\u003Cli>Customizable URLs using query string parameters\u003C\u002Fli>\n\u003Cli>No data collection from your website’s visitors\u003C\u002Fli>\n\u003Cli>Super easy to use, no coding required!\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Special Actions\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Scroll to Top of the page\u003C\u002Fli>\n\u003Cli>WooCommerce Cart with Item Counter\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Supported Protocols\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Ccode>http\u003C\u002Fcode>\u003C\u002Fli>\n\u003Cli>\u003Ccode>https\u003C\u002Fcode>\u003C\u002Fli>\n\u003Cli>\u003Ccode>mailto\u003C\u002Fcode>\u003C\u002Fli>\n\u003Cli>\u003Ccode>skype\u003C\u002Fcode>\u003C\u002Fli>\n\u003Cli>\u003Ccode>sms\u003C\u002Fcode>\u003C\u002Fli>\n\u003Cli>\u003Ccode>tel\u003C\u002Fcode>\u003C\u002Fli>\n\u003Cli>\u003Ccode>viber\u003C\u002Fcode>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Tested with\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Twenty Twenty-Four\u003C\u002Fli>\n\u003Cli>Twenty Twenty-Three\u003C\u002Fli>\n\u003Cli>Twenty Twenty-Two\u003C\u002Fli>\n\u003Cli>Twenty Twenty-One\u003C\u002Fli>\n\u003Cli>Twenty Twenty\u003C\u002Fli>\n\u003Cli>Twenty Nineteen\u003C\u002Fli>\n\u003Cli>Twenty Seventeen\u003C\u002Fli>\n\u003Cli>Twenty Sixteen\u003C\u002Fli>\n\u003Cli>Twenty Fifteen\u003C\u002Fli>\n\u003Cli>Twenty Fourteen\u003C\u002Fli>\n\u003Cli>Twenty Thirteen\u003C\u002Fli>\n\u003Cli>Twenty Twelve\u003C\u002Fli>\n\u003Cli>Twenty Eleven\u003C\u002Fli>\n\u003Cli>Twenty Ten\u003C\u002Fli>\n\u003C\u002Ful>\n","Allow your visitors to contact you via mobile phones, or access your site's pages instantly.",10000,145200,92,"2025-08-09T08:40:00.000Z","6.8.5","4.6","5.3",[22,54,55,56,57],"cta-button","icon","social-media","woocommerce-cart","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fmobile-contact-bar\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fmobile-contact-bar.3.0.5.zip",99,"2025-03-03 00:00:00",{"slug":63,"name":64,"version":65,"author":66,"author_profile":67,"description":68,"short_description":69,"active_installs":70,"downloaded":71,"rating":72,"num_ratings":14,"last_updated":73,"tested_up_to":74,"requires_at_least":75,"requires_php":76,"tags":77,"homepage":80,"download_link":81,"security_score":13,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"call-to-action-block-wppool","Call to Action Block by WPPOOL","2.1.3","WPPOOL","https:\u002F\u002Fprofiles.wordpress.org\u002Fwppool\u002F","\u003Cp>A fully featured Gutenberg block plugin that has a call to action block with extended customization support and great design. It currently has 10+ separate call to action layouts along with options for background color, image, and gradient.\u003C\u002Fp>\n\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002FcSxGaPWfPCQ?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\n\u003Ch3>How to use as gutenberg block?\u003C\u002Fh3>\n\u003Col>\n\u003Cli>While you are on the post\u002Fpage edit screen click on gutenberg plus icon to add a new gutenberg block\u003C\u002Fli>\n\u003Cli>Add “Call to action” from “Common” category\u003C\u002Fli>\n\u003Cli>Set link, layout, background etc from inspector control panel\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch3>🔥 More Awesome Plugins\u003C\u002Fh3>\n\u003Cp>If you like Call to Action Block, then consider checking out our other awesome projects:\u003C\u002Fp>\n\u003Cp>🌓 \u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fwp-dark-mode\u002F\" rel=\"ugc\">WP Dark Mode\u003C\u002Fa>\u003C\u002Fstrong>  – Use WP Dark Mode plugin to create a stunning dark version for your WordPress website. WP Dark Mode works automatically without going into any complicated settings.\u003C\u002Fp>\n\u003Cp>🔄 \u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fsheets-to-wp-table-live-sync\u002F\" rel=\"ugc\">Sheets To WP Table Live Sync\u003C\u002Fa>\u003C\u002Fstrong>  – Quick. Easy. Simple. Keep your Google Spreadsheet data always synced LIVE with the WordPress table. Responsive data tables with as many data you want to display – Sheets to WP Table Live Sync plugin got it all!\u003C\u002Fp>\n\u003Cp>🎥 \u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fwebinar-and-video-conference-with-jitsi-meet\u002F\" rel=\"ugc\">Webinar & Video Conference with Jitsi Meet\u003C\u002Fa>\u003C\u002Fstrong>  – Experience WordPress video conference plugin and live video chat solution. Get shortcode support with WooCommerce and BuddyPress integration.\u003C\u002Fp>\n\u003Cp>👍 \u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Feasy-video-reviews\u002F\" rel=\"ugc\">Easy Video Reviews\u003C\u002Fa>\u003C\u002Fstrong>  – Easy Video Reviews is a user-friendly video review plugin for WordPress. Your customers can record and send video testimonials right from their browser, and you can manage and showcase anywhere on your WordPress website.\u003C\u002Fp>\n\u003Cp>💹 \u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fstock-sync-with-google-sheet-for-woocommerce\u002F\" rel=\"ugc\">Stock Sync with Google Sheets for WooCommerce\u003C\u002Fa>\u003C\u002Fstrong> – Auto-sync WooCommerce products from Google Sheets. An easy and powerful solution for WooCommerce inventory management, stock management, and bulk edit.\u003C\u002Fp>\n","Add a stunning call to action (CTA) block to your WordPress post or page using 10+ prebuilt call to action layouts for Gutenberg.",1000,28538,20,"2025-12-09T09:08:00.000Z","6.9.4","5.0","5.4",[78,21,22,23,79],"block","gutenberg","https:\u002F\u002Fblock-cta.wppool.dev\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcall-to-action-block-wppool.2.1.3.zip",{"slug":83,"name":84,"version":85,"author":86,"author_profile":87,"description":88,"short_description":89,"active_installs":90,"downloaded":91,"rating":13,"num_ratings":92,"last_updated":93,"tested_up_to":74,"requires_at_least":94,"requires_php":95,"tags":96,"homepage":100,"download_link":101,"security_score":13,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"cta-button-styler","CTA Button Styler","2.0.1","Hub5050","https:\u002F\u002Fprofiles.wordpress.org\u002Fcreatorseo\u002F","\u003Cp>CTA Button Styler is a plugin for WordPress that allows easy styling of existing buttons in WordPress. Buttons labelled with the \u003Cem>cta101\u003C\u002Fem> class can be easily turned into effective \u003Cstrong>Call To Action buttons\u003C\u002Fstrong> which will encourage visitors to stay on the site and click through to the desired page.\u003C\u002Fp>\n\u003Cp>Reducing your bounce-rate (i.e. get visitors to look at more than one page on your site) is important for your site ranking. Using effective call-to-action buttons encourages visitors to click through and visit other pages thereby reducing your overall bounce rate and potentially increasing your ranking.\u003C\u002Fp>\n\u003Cp>CTA button styler is designed with flexibility and ease of use in mind. It is easy to install. Does not consume any unnecessary resources and simply does what it needs to do to keep visitors on the site.\u003C\u002Fp>\n\u003Cp>You get to decide the button styles, hover-styles and effects for your button. You can also change the call-to-action buttons at any time according to your needs or to test whether a different style leads to more click-throughs.\u003C\u002Fp>\n\u003Cp>This is an early release version of the plugin. We are working on more advanced options like AB testing, image buttons and potentially lead identification. These advanced features will be rolled out in a future version of the software.\u003C\u002Fp>\n\u003Cp>For more information, check out plugin page at \u003Ca href=\"http:\u002F\u002Fmyinfo.ie\u002FCTA-Button-Styling\u002F\" rel=\"nofollow ugc\">Help\u003C\u002Fa> or see the \u003Ca href=\"http:\u002F\u002Fwww.creatorseo.com\u002F\" rel=\"nofollow ugc\">Working demo on CreatorSEO\u003C\u002Fa> on our site.\u003C\u002Fp>\n\u003Ch4>Key Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Ultra easy to apply using a defined button class\u003C\u002Fli>\n\u003Cli>Configure margins and padding\u003C\u002Fli>\n\u003Cli>Set background and text colors\u003C\u002Fli>\n\u003Cli>Customize borders and border radius\u003C\u002Fli>\n\u003Cli>Configure hover styles\u003C\u002Fli>\n\u003Cli>Optional animation effects (Shake, Buzz, Blink)\u003C\u002Fli>\n\u003Cli>Automatically generated and cached CSS file\u003C\u002Fli>\n\u003Cli>Clean uninstall (removes settings and generated files)\u003C\u002Fli>\n\u003Cli>No inline CSS injection\u003C\u002Fli>\n\u003Cli>No runtime CSS generation\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Usage\u003C\u002Fh3>\n\u003Cp>After saving your settings, use the configured CSS class in your theme:\u003C\u002Fp>\n\u003Cp>Example:\u003C\u002Fp>\n\u003Cpre>\u003Ccode>\u003Ca class=\"cta101\" href=\"#\">Click Here\u003C\u002Fa>\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Cp>Or apply it to a menu item using the WordPress menu class field.\u003C\u002Fp>\n","Increase engagement with reusable CTA buttons, styled your way with hover effects and optional animations. Clean and efficient.",400,15102,3,"2026-02-17T11:54:00.000Z","6.1","7.4",[22,97,54,98,99],"click-through-rate","ctr","styling","http:\u002F\u002Fwww.creatorseo.com\u002Fcta-button-styler-plugin\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcta-button-styler.2.0.1.zip",{"slug":103,"name":104,"version":105,"author":106,"author_profile":107,"description":108,"short_description":109,"active_installs":110,"downloaded":111,"rating":13,"num_ratings":14,"last_updated":112,"tested_up_to":113,"requires_at_least":75,"requires_php":114,"tags":115,"homepage":118,"download_link":119,"security_score":27,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"button-widget","Button Widget","1.2.2","Mahdi Yazdani","https:\u002F\u002Fprofiles.wordpress.org\u002Fmahdiyazdani\u002F","\u003Cp>A simple customizable button widget for your sidebars to allow users take actions, and make choices, with a single tap.\u003C\u002Fp>\n","A simple customizable button widget for your sidebars.",200,3188,"2020-12-22T15:15:00.000Z","5.6.17","7.2.0",[21,22,116,24,117],"callout","wordpress-button-plugin","https:\u002F\u002Fwww.mypreview.one","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbutton-widget.1.2.2.zip",{"slug":121,"name":122,"version":6,"author":123,"author_profile":124,"description":125,"short_description":126,"active_installs":110,"downloaded":127,"rating":128,"num_ratings":129,"last_updated":130,"tested_up_to":131,"requires_at_least":132,"requires_php":18,"tags":133,"homepage":137,"download_link":138,"security_score":27,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"call-to-action-widget","Call to Action Widget","Charlie Strickler","https:\u002F\u002Fprofiles.wordpress.org\u002Fcharliestricklergmailcom\u002F","\u003Cp>A modified version of the standard WordPress text widget.  In addition to a title and textarea\u002Fhtml field the CTA widget includes an image URL that can be positioned above or below the title, a button text field and a button URL field.  CTA widget is short for “Call to Action” widget.  We frequently see website designs with 3 columns of widgets on the home page.  Frequently these buckets or widgets utilize an image, title, description, and call to action button.  This widget makes it easier for beginners to change the content of these blocks without editing HTML.\u003C\u002Fp>\n\u003Cp>Read more about this widget on \u003Ca href=\"http:\u002F\u002Fwordpress.boomvisibility.com\u002Fcta-widget\u002F\" rel=\"nofollow ugc\">wordpress.boomvisibility.com\u003C\u002Fa>\u003C\u002Fp>\n","A simple text widget with Title, Image URL, A text\u002Fhtml area, Link Text and Link URL.  This simple widget is often used for a call to action widget.",13953,94,6,"2013-12-10T00:00:00.000Z","3.7.41","3.0.2",[121,134,135,136],"cta-widget","image-widget","text-widget","http:\u002F\u002Fwww.boomvisibility.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcall-to-action-widget.zip",{"attackSurface":140,"codeSignals":155,"taintFlows":209,"riskAssessment":210,"analyzedAt":221},{"hooks":141,"ajaxHandlers":151,"restRoutes":152,"shortcodes":153,"cronEvents":154,"entryPointCount":28,"unprotectedCount":28},[142,147],{"type":20,"name":143,"callback":144,"file":145,"line":146},"wp_enqueue_scripts","ocarrot_styles_with_the_lot","cta-widgetmanager.php",19,{"type":20,"name":148,"callback":149,"file":145,"line":150},"widgets_init","init_orbitcarrot_widgets",176,[],[],[],[],{"dangerousFunctions":156,"sqlUsage":157,"outputEscaping":159,"fileOperations":28,"externalRequests":28,"nonceChecks":28,"capabilityChecks":28,"bundledLibraries":208},[],{"prepared":28,"raw":28,"locations":158},[],{"escaped":160,"rawEcho":161,"locations":162},4,24,[163,166,168,170,171,173,175,177,179,181,183,185,187,189,191,193,195,197,199,200,201,202,204,206],{"file":145,"line":164,"context":165},47,"raw output",{"file":145,"line":167,"context":165},50,{"file":145,"line":169,"context":165},51,{"file":145,"line":169,"context":165},{"file":145,"line":172,"context":165},55,{"file":145,"line":174,"context":165},59,{"file":145,"line":176,"context":165},60,{"file":145,"line":178,"context":165},61,{"file":145,"line":180,"context":165},66,{"file":145,"line":182,"context":165},71,{"file":145,"line":184,"context":165},72,{"file":145,"line":186,"context":165},73,{"file":145,"line":188,"context":165},77,{"file":145,"line":190,"context":165},81,{"file":145,"line":192,"context":165},82,{"file":145,"line":194,"context":165},95,{"file":145,"line":196,"context":165},151,{"file":145,"line":198,"context":165},157,{"file":145,"line":198,"context":165},{"file":145,"line":198,"context":165},{"file":145,"line":198,"context":165},{"file":145,"line":203,"context":165},159,{"file":145,"line":205,"context":165},161,{"file":145,"line":207,"context":165},168,[],[],{"summary":211,"deductions":212},"The \"cta-widget-manager\" plugin v1.1 exhibits a generally good security posture based on the provided static analysis.  The absence of known CVEs, critical taint flows, and dangerous functions is a strong positive indicator. The plugin also correctly utilizes prepared statements for its SQL queries and avoids external HTTP requests and file operations, which are common sources of vulnerabilities.\n\nHowever, a significant concern arises from the low percentage of properly escaped output (14%). This suggests that user-supplied data or data processed by the plugin might be directly outputted into the HTML without sufficient sanitization, potentially leading to Cross-Site Scripting (XSS) vulnerabilities if user input is not properly handled elsewhere. The lack of any capability checks or nonce checks on the identified entry points, while the attack surface is reported as zero, is also noteworthy. If any entry points were to be introduced in future versions or if the reported zero is an oversight, the absence of these fundamental security checks would be a critical flaw.\n\nIn conclusion, while the plugin benefits from a clean vulnerability history and good practices in SQL handling and external interactions, the unescaped output is a notable weakness that requires attention. The absence of nonce and capability checks, even with a zero attack surface currently, points to a potential area of risk if the plugin's functionality evolves. Addressing the output escaping issue should be the primary focus for improving the plugin's security.",[213,216,219],{"reason":214,"points":215},"Low percentage of properly escaped output",8,{"reason":217,"points":218},"Missing nonce checks on entry points",5,{"reason":220,"points":218},"Missing capability checks on entry points","2026-03-17T01:33:47.556Z",{"wat":223,"direct":230},{"assetPaths":224,"generatorPatterns":226,"scriptPaths":227,"versionParams":228},[225],"\u002Fwp-content\u002Fplugins\u002Fcta-widget-manager\u002Fcss\u002Fstyles.css",[],[],[229],"cta-widget-manager\u002Fcss\u002Fstyles.css?ver=",{"cssClasses":231,"htmlComments":234,"htmlAttributes":237,"restEndpoints":245,"jsGlobals":246,"shortcodeOutput":247},[232,233],"ctatitle","ctatext",[235,236],"\u002F* Are you sure you want to be in here? Do you have magic developer powers? If not move along... *\u002F","WIDGET CTA CODE",[238,239,240,241,242,243,244],"id=\"cta\"","id=\"red\"","id=\"blue\"","id=\"green\"","id=\"purple\"","id=\"royalred\"","id=\"royalblue\"",[],[],[]]