[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fSTG9PY79K7Kzi-1gAPLlUoO-riqy8unPnEYfjXgkuqY":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":11,"num_ratings":11,"last_updated":13,"tested_up_to":14,"requires_at_least":15,"requires_php":16,"tags":17,"homepage":18,"download_link":19,"security_score":20,"vuln_count":11,"unpatched_count":11,"last_vuln_date":21,"fetched_at":22,"vulnerabilities":23,"developer":24,"crawl_stats":21,"alternatives":32,"analysis":33,"fingerprints":66},"demomentsomtres-optimize","DeMomentSomTres Optimize","20201021","Marc Queralt i Bassa","https:\u002F\u002Fprofiles.wordpress.org\u002Fmarcqueralt\u002F","\u003Cp>WordPress optimization features.\u003C\u002Fp>\n\u003Cp>Soon it will work.\u003C\u002Fp>\n","Wordpress optimization features",0,869,"2020-01-27T12:52:00.000Z","5.3.21","4.0","",[],"https:\u002F\u002Fwww.demomentsomtres.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fdemomentsomtres-optimize.zip",85,null,"2026-03-15T15:16:48.613Z",[],{"slug":25,"display_name":7,"profile_url":8,"plugin_count":26,"total_installs":27,"avg_security_score":28,"avg_patch_time_days":29,"trust_score":30,"computed_at":31},"marcqueralt",15,340,91,30,88,"2026-04-04T02:45:14.644Z",[],{"attackSurface":34,"codeSignals":49,"taintFlows":56,"riskAssessment":57,"analyzedAt":65},{"hooks":35,"ajaxHandlers":45,"restRoutes":46,"shortcodes":47,"cronEvents":48,"entryPointCount":11,"unprotectedCount":11},[36,42],{"type":37,"name":38,"callback":39,"file":40,"line":41},"action","plugins_loaded","init","demomentsomtres-optimize.php",12,{"type":37,"name":38,"callback":43,"file":40,"line":44},"plugin_loaded",34,[],[],[],[],{"dangerousFunctions":50,"sqlUsage":51,"outputEscaping":53,"fileOperations":11,"externalRequests":11,"nonceChecks":11,"capabilityChecks":11,"bundledLibraries":55},[],{"prepared":11,"raw":11,"locations":52},[],{"escaped":11,"rawEcho":11,"locations":54},[],[],[],{"summary":58,"deductions":59},"Based on the static analysis and vulnerability history, the \"demomentsomtres-optimize\" plugin v20201021 exhibits a strong security posture. The absence of any identified AJAX handlers, REST API routes, shortcodes, cron events, or file operations significantly limits its attack surface. Crucially, the code signals indicate a complete lack of dangerous functions, all SQL queries are properly prepared, and all output is correctly escaped. Taint analysis further supports this, showing no flows with unsanitized paths or any severity levels. The plugin's vulnerability history is equally clean, with no recorded CVEs of any kind. This suggests a well-developed and security-conscious plugin. The primary concern, if any, is the complete absence of capability checks and nonce checks. While no vulnerabilities are present in this version, these checks are fundamental security best practices that protect against potential future vulnerabilities or exploit attempts if the plugin were to evolve or interact with other components in unexpected ways. However, given the current state, the immediate risk is very low.",[60,63],{"reason":61,"points":62},"Missing capability checks",3,{"reason":64,"points":62},"Missing nonce checks","2026-03-17T07:32:39.663Z",{"wat":67,"direct":74},{"assetPaths":68,"generatorPatterns":70,"scriptPaths":71,"versionParams":72},[69],"\u002Fwp-content\u002Fplugins\u002Fdemomentsomtres-optimize\u002F",[],[],[73],"demomentsomtres-optimize\u002Fdemomentsomtres-optimize.php?ver=",{"cssClasses":75,"htmlComments":76,"htmlAttributes":77,"restEndpoints":78,"jsGlobals":79,"shortcodeOutput":80},[],[],[],[],[],[]]