[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fiOqDJ4-wMJioJyGrtgZqJ2ZWU3d68WotQuUPGFg-b70":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":25,"download_link":26,"security_score":27,"vuln_count":28,"unpatched_count":29,"last_vuln_date":30,"fetched_at":31,"vulnerabilities":32,"developer":48,"crawl_stats":38,"alternatives":52,"analysis":164,"fingerprints":208},"dino-game","Dino Game – Embed Google Chrome Dinosaur Game in your website","1.2.0","Tahmid ul Karim","https:\u002F\u002Fprofiles.wordpress.org\u002Ftahmidulkarim\u002F","\u003Cp>\u003Cstrong>Introducing the Google Chrome Dinosaur Game plugin for WordPress! With this plugin, you can easily add the popular game to any page, post or widget of your website.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>To add the game, simply use the shortcode \u003Ccode>[dino-game]\u003C\u002Fcode> anywhere on your site. Alternatively, you can use the dino game Gutenberg block to add it directly to a page or post.\u003C\u002Fp>\n\u003Cp>With the Gutenberg block, you can easily adjust the game’s speed and sound settings (mute audio) using the block’s built-in settings. Additionally, you can also choose whether or not to save the high score.\u003C\u002Fp>\n\u003Cp>If you prefer to use the shortcode method, you can customize the game’s speed and audio settings by including attributes in the following format: \u003Ccode>[dino-game speed=\"8\" mute_audio='true']\u003C\u002Fcode>\u003C\u002Fp>\n\u003Ch3>How to play\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Use the space bar or up key on your keyboard to jump over the obstacles.\u003C\u002Fli>\n\u003Cli>The down key lets you crouch under the overhead obstacles.\u003C\u002Fli>\n\u003Cli>When viewing from mobile tap on the game area to jump.\u003C\u002Fli>\n\u003C\u002Ful>\n","Add the dinosaur game from Google Chrome to your site using the Dino Game Gutenberg block or [dino-game] shortcode.",300,42195,100,3,"2024-11-21T00:43:00.000Z","6.7.5","5.0","7.3",[20,21,22,23,24],"chrome","dino","dinosaur","game","trex","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fdino-game","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fdino-game.1.2.0.zip",91,1,0,"2024-11-20 13:37:17","2026-03-15T15:16:48.613Z",[33],{"id":34,"url_slug":35,"title":36,"description":37,"plugin_slug":4,"theme_slug":38,"affected_versions":39,"patched_in_version":6,"severity":40,"cvss_score":41,"cvss_vector":42,"vuln_type":43,"published_date":30,"updated_date":44,"references":45,"days_to_patch":47},"CVE-2024-11388","dino-game-embed-google-chrome-dinosaur-game-in-wordpress-authenticated-contributor-stored-cross-site-scripting","Dino Game – Embed Google Chrome Dinosaur Game in WordPress \u003C= 1.1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting","The Dino Game – Embed Google Chrome Dinosaur Game in WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'dino-game' shortcode in all versions up to, and including, 1.1.0 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.",null,"\u003C=1.1.0","medium",6.4,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:L\u002FUI:N\u002FS:C\u002FC:L\u002FI:L\u002FA:N","Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","2024-11-22 15:34:08",[46],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002Fb1acc5f8-bd77-42e0-96d5-636039a533a1?source=api-prod",2,{"slug":49,"display_name":7,"profile_url":8,"plugin_count":28,"total_installs":11,"avg_security_score":27,"avg_patch_time_days":47,"trust_score":50,"computed_at":51},"tahmidulkarim",94,"2026-04-05T06:53:12.683Z",[53,73,93,119,144],{"slug":54,"name":55,"version":56,"author":57,"author_profile":58,"description":59,"short_description":60,"active_installs":61,"downloaded":62,"rating":13,"num_ratings":63,"last_updated":64,"tested_up_to":65,"requires_at_least":66,"requires_php":67,"tags":68,"homepage":71,"download_link":72,"security_score":13,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"dinosaur-game","Dinosaur Game","1.0.7","Chris David Miles","https:\u002F\u002Fprofiles.wordpress.org\u002Fchrisdavidmiles\u002F","\u003Cp>This plugin lets you add the dinosaur game from Google Chrome onto your WordPress site.\u003C\u002Fp>\n\u003Cp>To use it, install the plugin, and use the [dinosaur-game] shortcode wherever you’d like the game to appear.\u003C\u002Fp>\n\u003Ch3>How to play\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Jump to start a game.\u003C\u002Fli>\n\u003Cli>The object of the game is to run as far as possible. Enemies and obstacles will try to block your path. \u003C\u002Fli>\n\u003Cli>Use the space bar or up key on your keyboard to jump over them. The down key lets you crouch. On mobile, tap on the game area to jump.\u003C\u002Fli>\n\u003C\u002Ful>\n","Add the dinosaur game from Google Chrome to your site using the [dinosaur-game] shortcode.",1000,86354,13,"2025-08-14T23:31:00.000Z","6.8.5","3.3","5.2.4",[20,69,22,23,70],"chromium","shortcode","https:\u002F\u002Fchrisdavidmiles.com\u002Fdinosaur-game","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fdinosaur-game.1.0.7.zip",{"slug":74,"name":75,"version":76,"author":77,"author_profile":78,"description":79,"short_description":80,"active_installs":13,"downloaded":81,"rating":13,"num_ratings":47,"last_updated":82,"tested_up_to":83,"requires_at_least":84,"requires_php":85,"tags":86,"homepage":90,"download_link":91,"security_score":92,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"block-a-saurus","Block-a-saurus","1.0.1","alphaparticlecode","https:\u002F\u002Fprofiles.wordpress.org\u002Falphaparticlecode\u002F","\u003Cp>With Block-a-saurus embedded in a post, your users will be able to click and play an embedded version of the jumping T-Rex game, originally popularized by Google Chrome. This block works on all screen sizes and even allows users to play on mobile using touch controls instead of a keyboard!\u003C\u002Fp>\n","Block-a-saurus is a Gutenberg block that lets users play the jumping T-rex game right within a post!",6459,"2020-11-19T23:22:00.000Z","5.5.18","5.0.0","5.6",[87,88,23,89,24],"block","blockasaurus","gutenberg","https:\u002F\u002Falphaparticle.com\u002Fblockasaurus","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fblock-a-saurus.zip",85,{"slug":94,"name":95,"version":96,"author":97,"author_profile":98,"description":99,"short_description":100,"active_installs":101,"downloaded":102,"rating":103,"num_ratings":104,"last_updated":105,"tested_up_to":106,"requires_at_least":107,"requires_php":108,"tags":109,"homepage":115,"download_link":116,"security_score":117,"vuln_count":47,"unpatched_count":29,"last_vuln_date":118,"fetched_at":31},"onesignal-free-web-push-notifications","OneSignal – Web Push Notifications","3.8.0","OneSignal Push Notifications","https:\u002F\u002Fprofiles.wordpress.org\u002Fonesignal\u002F","\u003Cp>\u003Ca href=\"https:\u002F\u002Fonesignal.com\" rel=\"nofollow ugc\">OneSignal\u003C\u002Fa> is an easy way to increase user engagement. Use OneSignal to send visitors targeted push notifications so they keep coming back. It takes just a few minutes to install.\u003C\u002Fp>\n\u003Cp>As a WordPress VIP Gold Partner, OneSignal has been rigorously tested to handle even the highest volume use cases with reliability and ease of use.\u003C\u002Fp>\n\u003Cp>After setup, your visitors opt-in to receive push notifications when you publish a new post. Visitors receive these notifications even after they’ve left your website, thus driving re-engagement.\u003C\u002Fp>\n\u003Cp>You can configure notification delivery at preset intervals, create user segments, and customize the opt-in process for visitors.\u003C\u002Fp>\n\u003Cp>OneSignal’s free plan allows targeting up to 10,000 subscribers with push notifications. Contact support@onesignal.com if you have any questions. We’d love to hear from you!\u003C\u002Fp>\n\u003Ch4>Company\u003C\u002Fh4>\n\u003Cp>OneSignal is trusted by over 1.8M+ developers and marketing strategists. We power push notifications for everyone from early stage startups to Fortune 500 Companies, sending over 6 billion notifications per day. It is the most popular push notification plugin on WordPress with 100,000+ installations.\u003C\u002Fp>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\n\u003Cp>\u003Cstrong>Supports Chrome\u003C\u002Fstrong> (Desktop & Android), \u003Cstrong>Safari\u003C\u002Fstrong> (Mac OS X), \u003Cstrong>Microsoft Edge\u003C\u002Fstrong> (Desktop & Android), \u003Cstrong>Opera\u003C\u002Fstrong> (Desktop & Android) and \u003Cstrong>Firefox\u003C\u002Fstrong> (Desktop & Android) on both HTTP and HTTPS sites.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Automatic Notifications\u003C\u002Fstrong> – Send notifications to followers every time you publish a new post. Or set up a reminder that gets automatically sent to them if they haven’t visited for a few days.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Targeting Segments\u003C\u002Fstrong> – Send notifications to specific visitors based on language, number of times they’ve visited your blog, or even set up your own user attributes that you can target.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Opt-In Customization\u003C\u002Fstrong> – Choose when and how to ask your visitors to opt-in to browser notifications. Customize the prompt they first see.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Real Time Analytics\u003C\u002Fstrong> – See your notifications being delivered in real time, and watch them as they convert into visitors.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>A\u002FB Testing\u003C\u002Fstrong> – Try out different messages to a smaller set of your visitors to figure out which messages are more effective and then send the more effective message to the rest of your visitors!\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Scheduled Notifications\u003C\u002Fstrong> – Schedule notifications to be delivered in the future, based on a user’s time zone, or even based on the same time of day they last visited your website.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Ful>\n","Increase engagement and drive more repeat traffic to your WordPress site with push notifications. Now a WordPress VIP Gold Partner.",70000,5069120,86,361,"2026-01-22T23:02:00.000Z","6.9.4","3.8","",[110,111,112,113,114],"chrome-push","desktop-notifications","mobile-notifications","push-notification","push-notifications","https:\u002F\u002Fonesignal.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fonesignal-free-web-push-notifications.3.8.0.zip",98,"2025-12-15 02:15:21",{"slug":120,"name":121,"version":122,"author":123,"author_profile":124,"description":125,"short_description":126,"active_installs":127,"downloaded":128,"rating":129,"num_ratings":130,"last_updated":131,"tested_up_to":106,"requires_at_least":132,"requires_php":133,"tags":134,"homepage":140,"download_link":141,"security_score":142,"vuln_count":47,"unpatched_count":29,"last_vuln_date":143,"fetched_at":31},"super-progressive-web-apps","Super Progressive Web Apps","2.2.42","SuperPWA","https:\u002F\u002Fprofiles.wordpress.org\u002Fsuperpwa\u002F","\u003Cp>Progressive Web Apps (PWA) is a new technology that combines the best of mobile web and the best of mobile apps to create a superior mobile web experience. They are installed on the phone like a normal app (web app) and can be accessed from the home screen.\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fsuperpwa.com\u002F\" rel=\"nofollow ugc\">Home\u003C\u002Fa> | \u003Ca href=\"https:\u002F\u002Fsuperpwa.com\u002Fdocs\u002F\" rel=\"nofollow ugc\">Documentation\u003C\u002Fa> | \u003Ca href=\"https:\u002F\u002Fsuperpwa.com\u002Fcontact\u002F\" rel=\"nofollow ugc\">Help\u003C\u002Fa> | \u003Ca href=\"https:\u002F\u002Fsuperpwa.com\u002Fdocs\u002F#pro-doc\" rel=\"nofollow ugc\">Premium version Features\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>Users can come back to your website by launching the app from their home screen and interact with your website through an app-like interface. Your return visitors will experience almost-instant loading times and enjoy the great performance benefits of your PWA!\u003C\u002Fp>\n\u003Cp>Super Progressive Web Apps makes it easy for you to convert your WordPress website into a Progressive Web App instantly!\u003C\u002Fp>\n\u003Cp>Once SuperPWA is installed, users browsing your website from a supported mobile device will see a “Add To Home Screen” notice (from the bottom of the screen) and will be able to ‘install your website’ on the home screen of their device. Every page visited is stored locally on their device and will be available to read even when they are offline!\u003C\u002Fp>\n\u003Cp>SuperPWA is easy to configure, it takes less than a minute to set-up your Progressive Web App! SuperPWA does a clean uninstall, by removing every database entry and file that it creates. In fact, none of the default settings are saved to the database until you manually save it the first time. Go ahead and give it a try.\u003C\u002Fp>\n\u003Cp>And the best part? If you ever get stuck, we are here to watch your back! \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fsupport\u002Fplugin\u002Fsuper-progressive-web-apps\" rel=\"ugc\">Open a support\u003C\u002Fa> ticket if you have a question or need a feature. We are super excited to hear your feedback and we want to genuinely help you build the best Progressive Web App for your WordPress website!\u003C\u002Fp>\n\u003Ch4>Quick Demo?\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Open up \u003Ca href=\"https:\u002F\u002Fsuperpwa.com\u002F?utm_source=wordpress.org&utm_medium=description-demo\" rel=\"nofollow ugc\">SuperPWA.com\u003C\u002Fa> in a supported device. \u003C\u002Fli>\n\u003Cli>Add the website to your home screen either from the Add to Home Screen prompt (Chrome for Android) or from the browser menu. \u003C\u002Fli>\n\u003Cli>Open the app from your home screen and you will see the splash screen. \u003C\u002Fli>\n\u003Cli>Turn off your data and wifi to go offline and open up the app. You will still be able to see the app and browse the pages you have already visited. \u003C\u002Fli>\n\u003Cli>Browse to a page that you haven’t visited before. The offline page will be displayed. \u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Thank You PWA Enthusiasts!\u003C\u002Fh4>\n\u003Cp>We are humbled by the feedback from the community. Thanks to everyone who believed in us and tried our plugin. Your feedback has been invaluable and we have learned a lot from your experience. Thank you for your love and support and we hope to return the love by striving to bring you the best ever Progressive Web Apps plugin for WordPress!\u003C\u002Fp>\n\u003Ch3>What’s in the box\u003C\u002Fh3>\n\u003Cp>Here are the current features of Super Progressive Web Apps:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Generate a manifest for your website and add it to the head of your website.\u003C\u002Fli>\n\u003Cli>Set the application icon for your Progressive Web App. \u003C\u002Fli>\n\u003Cli>Set the background color for the splash screen of your Progressive Web App. \u003C\u002Fli>\n\u003Cli>Your website will show the “Add to home screen” notice when accessed in a supported browser.\u003C\u002Fli>\n\u003Cli>Aggressive caching of pages using CacheStorage API.\u003C\u002Fli>\n\u003Cli>Pages once cached are served even if the user is offline. \u003C\u002Fli>\n\u003Cli>Set custom offline page: Select the page you want the user to see when a page that isn’t in the cache is accessed and the user is offline.\u003C\u002Fli>\n\u003Cli>New in version 1.2: Support for theme-color meta property. Change the color of browser address bar of Chrome, Firefox OS and Opera to match your website colors. \u003C\u002Fli>\n\u003Cli>New in version 1.2: Now you can edit the Application Name and Application Short name.\u003C\u002Fli>\n\u003Cli>New in version 1.2: Set the start page of your PWA.\u003C\u002Fli>\n\u003Cli>New in version 1.2: Set Accelerated Mobile Pages (AMP) version of the start page. Supported plugins: AMP for WordPress, AMP for WP, Better AMP, AMP Supremacy, WP AMP.\u003C\u002Fli>\n\u003Cli>New in version 1.3: Added support for high-quality splash screen. You can now set the 512×512 icon for the splash screen of your Progressive Web App.\u003C\u002Fli>\n\u003Cli>New in version 1.3: Super Progressive Web Apps now accounts for content updates and will update the cache as you update the website. \u003C\u002Fli>\n\u003Cli>New in version 1.3: Improved in-browser service worker update handling.\u003C\u002Fli>\n\u003Cli>New in version 1.4: You can now set the default orientation of your PWA. Choose from “any” (Follow Device Orientation), “Portrait” and “Landscape”.\u003C\u002Fli>\n\u003Cli>New in version 1.4: You can now set the theme_color property in the manifest.\u003C\u002Fli>\n\u003Cli>New in version 1.5: OneSignal integration for Push notifications.\u003C\u002Fli>\n\u003Cli>New in version 1.6: WordPress Multisite Network compatibility. \u003C\u002Fli>\n\u003Cli>New in version 1.7: Add-Ons for SuperPWA is here! Ships with \u003Ca href=\"https:\u002F\u002Fsuperpwa.com\u002Faddons\u002Futm-tracking\u002F?utm_source=wordpress.org&utm_medium=description\" rel=\"nofollow ugc\">UTM Tracking Add-On\u003C\u002Fa> to track visits coming from your PWA.\u003C\u002Fli>\n\u003Cli>New in version 1.8: Compatibility issues with OneSignal are now resolved! \u003C\u002Fli>\n\u003Cli>New in version 1.8: New Add-On: \u003Ca href=\"https:\u002F\u002Fsuperpwa.com\u002Faddons\u002Fapple-touch-icons\u002F?utm_source=wordpress.org&utm_medium=description\" rel=\"nofollow ugc\">Apple Touch Icons\u003C\u002Fa> that sets your app icons as Apple Touch Icons. \u003C\u002Fli>\n\u003Cli>New in version 2.0: SuperPWA is now compatible with WordPress installed in a sub-folder. \u003C\u002Fli>\n\u003Cli>New in version 2.0: You can now set \u003Ca href=\"https:\u002F\u002Fsuperpwa.com\u002Fdoc\u002Fweb-app-manifest-display-modes\u002F?utm_source=wordpress.org&utm_medium=description\" rel=\"nofollow ugc\">display property\u003C\u002Fa> from SuperPWA settings.\u003C\u002Fli>\n\u003Cli>New in version 2.1.1: SuperPWA now supports Maskable Icons.\u003C\u002Fli>\n\u003Cli>New in version 2.1.15: SuperPWA now supports Monochrome Icon.\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fsuperpwa.com\u002Fchangelog\u002F\" rel=\"nofollow ugc\">Full changelog\u003C\u002Fa> \u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>Upcoming features:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Offline Indicator Notice.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>PRO Version\u003C\u002Fstrong> support additional \u003Ca href=\"https:\u002F\u002Fsuperpwa.com\u002Fdocs\u002F\" rel=\"nofollow ugc\">advance feature\u003C\u002Fa>\u003Cbr \u002F>\n* Call To Action (CTA) \u003Ca href=\"https:\u002F\u002Fsuperpwa.com\u002Fdoc\u002Fcall-to-action-cta-add-on-for-superpwa\u002F\" rel=\"nofollow ugc\">More Info\u003C\u002Fa>\u003Cbr \u002F>\n* Android APK APP Generator \u003Ca href=\"https:\u002F\u002Fsuperpwa.com\u002Fdoc\u002Fandroid-apk-app-generator-add-on-for-superpwa\u002F\" rel=\"nofollow ugc\">More Info\u003C\u002Fa>\u003Cbr \u002F>\n* Data Analytics \u003Ca href=\"https:\u002F\u002Fsuperpwa.com\u002Fdoc\u002Fdata-analytics-add-on-for-superpwa\u002F\" rel=\"nofollow ugc\">More Info\u003C\u002Fa>\u003Cbr \u002F>\n* Pre-Loader \u003Ca href=\"https:\u002F\u002Fsuperpwa.com\u002Fdocs\u002Farticle\u002Fpreloader-add-on-for-superpwa\u002F\" rel=\"nofollow ugc\">More Info\u003C\u002Fa>\u003Cbr \u002F>\n* App Shortcuts \u003Ca href=\"https:\u002F\u002Fsuperpwa.com\u002Fdocs\u002Farticle\u002Fapp-shortcuts-add-on-for-superpwa\u002F\" rel=\"nofollow ugc\">More Info\u003C\u002Fa>\u003Cbr \u002F>\n* QR Code Generator \u003Ca href=\"https:\u002F\u002Fsuperpwa.com\u002Fdocs\u002Farticle\u002Fqr-code-generator-add-on-for-superpwa\u002F\" rel=\"nofollow ugc\">More Info\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch3>Progressive Web App Minimum Requirements\u003C\u002Fh3>\n\u003Cp>Progressive Web Apps require that your WordPress website is served from a secure origin i.e. your website should be HTTPS and not HTTP. If your website isn’t HTTPS, please contact your host about it. You can also \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fsupport\u002Fplugin\u002Fsuper-progressive-web-apps\" rel=\"ugc\">ask us\u003C\u002Fa> if you need help.\u003C\u002Fp>\n\u003Ch3>Device and Browser Support For PWA\u003C\u002Fh3>\n\u003Cp>Progressive web apps need browsers that support manifests and service workers. Currently Google Chrome (version 57+), Chrome for Android (62), Mozilla Firefox (57), Firefox for Android (58) are the major browsers that support PWA.\u003C\u002Fp>\n\u003Cp>The list is fast growing and is likely to be supported in most major browsers by the end of this year.\u003C\u002Fp>\n\u003Ch3>How To Convert Your WordPress Website Into A Progressive Web App\u003C\u002Fh3>\n\u003Ch4>WordPress Installation\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Visit WordPress Admin > Plugins > Add New\u003C\u002Fli>\n\u003Cli>Search for ‘Super Progressive Web Apps’\u003C\u002Fli>\n\u003Cli>Click “Install Now” and then “Activate” Super Progressive Web Apps\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>To install manually:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Upload super-progressive-web-apps folder to the \u002Fwp-content\u002Fplugins\u002F directory on your server\u003C\u002Fli>\n\u003Cli>Go to WordPress Admin > Plugins\u003C\u002Fli>\n\u003Cli>Activate Super Progressive Web Apps plugin from the list.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Customizing Your Progressive Web App\u003C\u002Fh4>\n\u003Cp>Your Progressive Web App should be ready to test with the default settings on activation. You can customize it further and make it truly your own.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Go to WordPress Admin > SuperPWA\u003C\u002Fli>\n\u003Cli>Set a Background Color for the splash screen to be shown when your PWA is opened on a mobile device.\u003C\u002Fli>\n\u003Cli>Set the Application Icon. This will be the icon of your PWA when it is added to the homescreen in a mobile device. The icon must be a PNG image and exactly 192 x 192 pixels in size.\u003C\u002Fli>\n\u003Cli>Set the Offline Page. This page will be displayed if the user is offline and the page he requested is not cached already. Ideally you should create a dedicated WordPress page and set it here. Within the page you create, you could add a note that reads, “It looks like you are offline and the page you requested is not available right now. Please check back again once you are online.”. \u003C\u002Fli>\n\u003Cli>Click “Save Settings”.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Testing Your Progressive Web App\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Open a supported browser in a supported device (for eg: Chrome for Android (62 or higher) in an Android Phone)\u003C\u002Fli>\n\u003Cli>Enter your website and wait till it fully loads\u003C\u002Fli>\n\u003Cli>You should see a pop-up that has your Application Icon and a button that reads “ADD TO HOME SCREEN”.\u003C\u002Fli>\n\u003Cli>Click on it and your PWA will be added to your home screen. Wait for the install to complete. \u003C\u002Fli>\n\u003Cli>Go to your home screen and open your PWA. Browse into a few pages if you like. Close the App.\u003C\u002Fli>\n\u003Cli>Disconnect from the internet and now open your PWA again. You should be able to see all the pages that you previously browsed. \u003C\u002Fli>\n\u003Cli>Try visiting a page that you did not visit before. You should see the page you set as your “Offline Page” in the settings of SuperPWA. \u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Troubleshooting Your Progressive Web App\u003C\u002Fh4>\n\u003Cp>Uh, oh. Your PWA did not work as expected? You do not see the “Add to Home Screen” notice?\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Make sure your website has a SSL certificate installed. i.e. your website should be https instead of http (as in https:\u002F\u002Fyour-domain.com).\u003C\u002Fli>\n\u003Cli>Make sure you are using a supported device and a supported browser. Refer to the “Device and Browser Support For PWA” list above.\u003C\u002Fli>\n\u003Cli>Make sure your Application Icon and Splash Screen Icon’s are of PNG format and 192px X 192px and 512px X 512px in size respectively. \u003C\u002Fli>\n\u003Cli>Clear the browser cache and try again. In Chrome for Android, go to Settings > Privacy > “Clear browsing data”.\u003C\u002Fli>\n\u003Cli>If the application icon does not update after first install, delete the PWA from your phone, clear browser cache and install again. (We are working on making it better.) \u003C\u002Fli>\n\u003Cli>Create a \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fsupport\u002Fplugin\u002Fsuper-progressive-web-apps\" rel=\"ugc\">new support ticket\u003C\u002Fa> and share a link to your website. We will take a look and figure it out for you.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Feature Requests, Issues, Pull Requests\u003C\u002Fh3>\n\u003Cp>Here is our repository on \u003Ca href=\"https:\u002F\u002Fgithub.com\u002FSuperPWA\u002FSuper-Progressive-Web-Apps\" rel=\"nofollow ugc\">GitHub\u003C\u002Fa>. Send us your pull requests, feature requests or issues, if any.\u003C\u002Fp>\n\u003Ch3>About us\u003C\u002Fh3>\n\u003Cp>We are a duo who got excited about the idea. Our mission is simple: Help you build an awesome PWA that your users would want to have on their home screen.\u003C\u002Fp>\n\u003Cp>When we first heard about PWA we wanted to learn everything about it. We have spent countless hours learning and wants to share it with the world.\u003C\u002Fp>\n\u003Cp>Please give us your constructive feedback and support.\u003C\u002Fp>\n","SuperPWA helps you convert your WordPress website into a Progressive Web App instantly.",50000,2278059,92,224,"2026-02-09T14:37:00.000Z","3.6.0","5.3",[135,136,137,138,139],"add-to-homescreen","android-app","chrome-app","progressive-web-apps","pwa","https:\u002F\u002Fsuperpwa.com\u002F?utm_source=superpwa-plugin&utm_medium=plugin-uri","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsuper-progressive-web-apps.2.2.42.zip",99,"2023-11-22 00:00:00",{"slug":145,"name":146,"version":147,"author":148,"author_profile":149,"description":150,"short_description":151,"active_installs":152,"downloaded":153,"rating":117,"num_ratings":154,"last_updated":155,"tested_up_to":106,"requires_at_least":156,"requires_php":85,"tags":157,"homepage":162,"download_link":163,"security_score":13,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"wp-menu-icons","WP Menu Icons","3.4.1","quadlayers","https:\u002F\u002Fprofiles.wordpress.org\u002Fquadlayers\u002F","\u003Cp>\u003Ca href=\"https:\u002F\u002Fquadlayers.com\u002Fproducts\u002Fwp-menu-icons\u002F\" rel=\"nofollow ugc\">Premium\u003C\u002Fa> | \u003Ca href=\"https:\u002F\u002Fquadlayers.com\u002Fproducts\u002Fwp-menu-icons\u002F\" rel=\"nofollow ugc\">Documentation\u003C\u002Fa> | \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fquadmenu\" rel=\"ugc\">QuadMenu\u003C\u002Fa> | \u003Ca href=\"https:\u002F\u002Fwww.facebook.com\u002Fgroups\u002Fquadlayers\u002F\" rel=\"nofollow ugc\">Community\u003C\u002Fa> | \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fquadlayers\u002Fwp-menu-icons\" rel=\"nofollow ugc\">Github\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>The site’s menu can be as simple as a list of links without indentation, or as complex as a major feature within the site.\u003C\u002Fp>\n\u003Cp>However, many developers strive to provide more complex features in their mega menu plugins, often overlooking users who only need a very basic function that isn’t included in the default WordPress menu.\u003C\u002Fp>\n\u003Cp>This is why we created WP Menu Icons, a plugin that doesn’t claim to be the best premium WordPress plugin, but does what it’s designed to do: it gives you the ability to incorporate icons into your WordPress menu.\u003C\u002Fp>\n\u003Ch3>WP Menu Icons PRO\u003C\u002Fh3>\n\u003Cp>The premium version of the WP Menu Icons plugin offers you some important extra features that allow full control of the menu icons customization process.\u003C\u002Fp>\n\u003Cp>Features included:\u003C\u002Fp>\n\u003Cblockquote>\n\u003Cul>\n\u003Cli>Ability to upload icons from IcoMoon\u003C\u002Fli>\n\u003Cli>Ability to upload icons from Fontello\u003C\u002Fli>\n\u003Cli>More features coming soon\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fblockquote>\n\u003Ch3>Icons Libraries\u003C\u002Fh3>\n\u003Cblockquote>\n\u003Cul>\n\u003Cli>Dashicons\u003C\u002Fli>\n\u003Cli>Elegant Icons\u003C\u002Fli>\n\u003Cli>Elusive\u003C\u002Fli>\n\u003Cli>FontAwsome\u003C\u002Fli>\n\u003Cli>Foundation\u003C\u002Fli>\n\u003Cli>Themify\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fblockquote>\n","WP Menu Icons allows you to add icons to your WordPress menu items.",20000,732014,138,"2025-12-03T12:33:00.000Z","4.7",[158,159,160,161],"mega-menu","megamenu","menu","menu-icons","https:\u002F\u002Fquadlayers.com\u002Fproducts\u002Fwp-menu-icons\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-menu-icons.3.4.1.zip",{"attackSurface":165,"codeSignals":188,"taintFlows":195,"riskAssessment":196,"analyzedAt":207},{"hooks":166,"ajaxHandlers":181,"restRoutes":182,"shortcodes":183,"cronEvents":187,"entryPointCount":28,"unprotectedCount":29},[167,173,177],{"type":168,"name":169,"callback":170,"file":171,"line":172},"action","wp_enqueue_scripts","dinogame_css_js","dino-game.php",33,{"type":168,"name":174,"callback":175,"file":171,"line":176},"enqueue_block_editor_assets","dino_editor_assets",139,{"type":168,"name":178,"callback":179,"file":171,"line":180},"enqueue_block_assets","dino_frontend_assets",169,[],[],[184],{"tag":4,"callback":185,"file":171,"line":186},"dinogame_shortcode",39,[],{"dangerousFunctions":189,"sqlUsage":190,"outputEscaping":192,"fileOperations":29,"externalRequests":29,"nonceChecks":29,"capabilityChecks":29,"bundledLibraries":194},[],{"prepared":29,"raw":29,"locations":191},[],{"escaped":14,"rawEcho":29,"locations":193},[],[],[],{"summary":197,"deductions":198},"The \"dino-game\" plugin v1.2.0 presents a mixed security posture. On the positive side, the static analysis reveals strong adherence to secure coding practices.  All SQL queries are prepared, output is properly escaped, and there are no dangerous functions, file operations, or external HTTP requests detected. The absence of taint analysis findings and zero unprotected entry points are also encouraging signs.\n\nHowever, the plugin's vulnerability history raises a significant concern. It has a known medium-severity Cross-Site Scripting (XSS) vulnerability, even though it is currently patched. This indicates a past weakness in input sanitization or output escaping that, despite being fixed, suggests a potential for similar issues to arise in the future if development practices are not consistently robust. The lack of nonce checks and capability checks on the single shortcode, while not directly flagged as a vulnerability in the static analysis, leaves room for improvement and a potential attack vector if the shortcode handles user-supplied data that is not otherwise validated or sanitized.\n\nIn conclusion, while the current code appears to follow many security best practices, the history of an XSS vulnerability necessitates caution. The plugin exhibits strengths in its clean code regarding direct database interaction and output handling. However, the past CVE and the minimal protection around its single entry point (the shortcode) are areas that require ongoing vigilance and potentially further hardening to ensure a truly secure user experience.",[199,202,205],{"reason":200,"points":201},"Past medium severity XSS vulnerability",10,{"reason":203,"points":204},"Missing nonce check on shortcode",5,{"reason":206,"points":204},"Missing capability check on shortcode","2026-03-16T20:08:29.486Z",{"wat":209,"direct":220},{"assetPaths":210,"generatorPatterns":215,"scriptPaths":216,"versionParams":217},[211,212,213,214],"\u002Fwp-content\u002Fplugins\u002Fdino-game\u002Fdist\u002Fdino.build.js","\u002Fwp-content\u002Fplugins\u002Fdino-game\u002Fsrc\u002Fcss\u002Fstyle.css","\u002Fwp-content\u002Fplugins\u002Fdino-game\u002Fsrc\u002Fimg\u002Fgame-sprites-1x.png","\u002Fwp-content\u002Fplugins\u002Fdino-game\u002Fsrc\u002Fimg\u002Fgame-sprites-2x.png",[],[211],[218,219],"dino-game\u002Fstyle.css?ver=","dino.build.js?ver=",{"cssClasses":221,"htmlComments":226,"htmlAttributes":228,"restEndpoints":232,"jsGlobals":233,"shortcodeOutput":234},[222,223,224,225],"dinogame-shortcode","dino-game-wrapper","dino-icon","dino-initial-icon",[227],"\u003C!-- The dinosaur game can only be used once per page. -->",[229,230,231],"data-speed","data-mute-audio","data-save-high-score",[],[],[235],"\u003Cdiv class=\"dinogame-shortcode\">"]