[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fLz7YqvT6Ub8xkmQRlp7VQYaeiHj4MHiTQCcQFQ9vkb4":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":24,"download_link":25,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28,"vulnerabilities":29,"developer":30,"crawl_stats":27,"alternatives":35,"analysis":135,"fingerprints":241},"eofdsupport","Фискализация чеков е-ОФД","1.0.8","е-ОФД","https:\u002F\u002Fprofiles.wordpress.org\u002Feofdsupport\u002F","\u003Cp>Плагин для WooCommerce, для фискализации чеков согласно 54 ФЗ, арендованной облачной онлайн кассы оператора фискальных данных е-ОФД.\u003C\u002Fp>\n\u003Ch3>Описание\u003C\u002Fh3>\n\u003Cp>Плагин для настройки арендованной кассы с модулем WooCommerce для клиентов е-ОФД – оператора фискальных данных  (ФНС РФ).\u003C\u002Fp>\n\u003Cp>Требуемые  данные для подключения вашей арендованной облачной кассы вам доступны в личном кабинете е-ОФД.\u003C\u002Fp>\n\u003Ch4>Поддержка\u003C\u002Fh4>\n\u003Cp>Если у вас возникли какие-либо вопросы вы можете обратиться напрямую к разработчикам: support@e-ofd.ru\u003C\u002Fp>\n","Плагин для WooCommerce, для фискализации чеков согласно 54 ФЗ, арендованной облачной онлайн кассы оператора фискальных данных е-ОФД.",10,1354,0,"2025-12-30T09:37:00.000Z","6.8.5","4.8","5.3",[19,20,21,22,23],"54-%d1%84%d0%b7","%d0%ba%d0%ba%d1%82","%d0%be%d0%b1%d0%bb%d0%b0%d1%87%d0%bd%d0%b0%d1%8f-%d0%ba%d0%b0%d1%81%d1%81%d0%b0","%d0%be%d0%bd%d0%bb%d0%b0%d0%b9%d0%bd-%d0%ba%d0%b0%d1%81%d1%81%d0%b0","%d0%be%d0%bd%d0%bb%d0%b0%d0%b9%d0%bd-%d0%ba%d0%b0%d1%81%d1%81%d0%b0-%d0%b4%d0%bb%d1%8f-%d0%b8%d0%bd%d1%82%d0%b5%d1%80%d0%bd%d0%b5%d1%82-%d0%bc%d0%b0%d0%b3%d0%b0%d0%b7%d0%b8%d0%bd%d0%b0","","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Feofdsupport.zip",100,null,"2026-03-15T15:16:48.613Z",[],{"slug":4,"display_name":7,"profile_url":8,"plugin_count":31,"total_installs":11,"avg_security_score":26,"avg_patch_time_days":32,"trust_score":33,"computed_at":34},1,30,94,"2026-04-04T14:08:54.004Z",[36,52,77,99,118],{"slug":37,"name":38,"version":39,"author":37,"author_profile":40,"description":41,"short_description":42,"active_installs":13,"downloaded":43,"rating":13,"num_ratings":13,"last_updated":24,"tested_up_to":44,"requires_at_least":16,"requires_php":24,"tags":45,"homepage":49,"download_link":50,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":51},"nanokassa","Онлайн касса – nanokassa.ru","1.0.2","https:\u002F\u002Fprofiles.wordpress.org\u002Fnanokassa\u002F","\u003Cp>Плагин для фискализации чеков согласно 54 ФЗ и облачной онлайн кассы Nanokassa.ru\u003C\u002Fp>\n\u003Ch3>Описание\u003C\u002Fh3>\n\u003Cp>Плагин позволяет вам фискализировать ваши платежи (woocommerce) согласно 54 Федеральному Закону. Перед использованием советуем вам изучить информацию на облачном сервисе аренды онлайн касс Nanokassa.ru\u003C\u002Fp>\n\u003Cp>Облачная онлайн касса Nanokassa.ru это:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Готовая интеграция вашего WordPress и Woocommerce с нашим сервисом\u003C\u002Fli>\n\u003Cli>Непробиваеая защита и безопасность (уникальное двойное шифрование ваших коммерческих данных AES256-CTR + RSA4096)\u003C\u002Fli>\n\u003Cli>Нерушимая работа (неуязвимые каналы связи, балансировка нагрузки, TIER-III Selectel)\u003C\u002Fli>\n\u003Cli>Отличная стоимость (качественно и практично, подключение к ОФД бесплатно!)\u003C\u002Fli>\n\u003Cli>Хорошая документация (возможность подключить любые сервисы для выполнения 54-ФЗ)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Поддержка\u003C\u002Fh4>\n\u003Cp>Вы можете найти информацию по использованию плагина \u003Ca href=\"https:\u002F\u002Fnanokassa.ru\u002Fintegration\u002Fwordpress\u002F\" rel=\"nofollow ugc\">здесь\u003C\u002Fa>\u003Cbr \u002F>\nТакже вы можете обратиться напрямую к разработчикам: support@nanokassa.ru\u003C\u002Fp>\n","Плагин для фискализации чеков согласно 54 ФЗ и облачной онлайн кассы Nanokassa.ru",1228,"5.0.25",[19,46,22,47,48],"54fz","kassa","online-kassa","https:\u002F\u002Fnanokassa.ru","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fnanokassa.1.0.2.zip","2026-03-15T10:48:56.248Z",{"slug":53,"name":54,"version":55,"author":56,"author_profile":57,"description":58,"short_description":59,"active_installs":60,"downloaded":61,"rating":62,"num_ratings":63,"last_updated":64,"tested_up_to":15,"requires_at_least":65,"requires_php":66,"tags":67,"homepage":73,"download_link":74,"security_score":75,"vuln_count":31,"unpatched_count":31,"last_vuln_date":76,"fetched_at":28},"wp-yandex-metrika","Yandex.Metrica","1.2.2","Yandex Metrika","https:\u002F\u002Fprofiles.wordpress.org\u002Fyandexmetrika\u002F","\u003Ch4>Yandex.Metrica\u003C\u002Fh4>\n\u003Cp>The free official Yandex.Metrica plugin for WordPress. This plugin helps you install a Yandex.Metrica tag on your site and configure the transfer of E-commerce data without manually editing the site’s code. It also transmits data about product views, additions to the basket, and sales.\u003C\u002Fp>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Official Yandex.Metrica plugin\u003C\u002Fli>\n\u003Cli>E-commerce event tracking without manually editing the site’s code\u003C\u002Fli>\n\u003Cli>Quick installation\u003C\u002Fli>\n\u003Cli>Support for WordPress versions 5.2.9 and higher\u003C\u002Fli>\n\u003Cli>Scheduled updates\u003C\u002Fli>\n\u003Cli>Prompt support service\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>List of functions\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Automatically search for and configure installed Yandex.Metrica tags.\u003C\u002Fli>\n\u003Cli>Quickly add new Yandex.Metrica tags. The following parameters are set by default:\n\u003Cul>\n\u003Cli>E-commerce: Enabled\u003C\u002Fli>\n\u003Cli>Session Replay: Enabled (can be disabled if necessary)\u003C\u002Fli>\n\u003Cli>Click map: enabled\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>Transfer of e-commerce events according to the \u003Ca href=\"https:\u002F\u002Fyandex.ru\u002Fsupport\u002Fmetrica\u002Fdata\u002Fe-commerce.html\" rel=\"nofollow ugc\">documentation\u003C\u002Fa>:\n\u003Cul>\n\u003Cli>Adding an item to the basket\u003C\u002Fli>\n\u003Cli>Pageview of a product profile\u003C\u002Fli>\n\u003Cli>Removing an item from the basket\u003C\u002Fli>\n\u003Cli>Placing an order\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>Detalization of transferred product data according to the \u003Ca href=\"https:\u002F\u002Fyandex.ru\u002Fsupport\u002Fmetrica\u002Fecommerce\u002Fdata.html\" rel=\"nofollow ugc\">documentation\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>Event logs with the following error codes:\n\u003Cul>\n\u003Cli>The WordPress version is deprecated\u003C\u002Fli>\n\u003Cli>The site lacks the brand taxonomy indicated by the user\u003C\u002Fli>\n\u003Cli>The theme doesn’t have the hook required for the plugin to work\u003C\u002Fli>\n\u003Cli>The tag number contains characters that aren’t numbers\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Translations\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Russian\u003C\u002Fli>\n\u003Cli>English\u003C\u002Fli>\n\u003C\u002Ful>\n","The free official Yandex.Metrica plugin for WordPress.",60000,262856,70,13,"2025-09-25T10:44:00.000Z","5.2.9","5.6.20",[68,69,70,71,72],"%d1%8f%d0%bd%d0%b4%d0%b5%d0%ba%d1%81","%d1%8f%d0%bd%d0%b4%d0%b5%d0%ba%d1%81-%d0%bc%d0%b5%d1%82%d1%80%d0%b8%d0%ba%d0%b0","%d0%bc%d0%b5%d1%82%d1%80%d0%b8%d0%ba%d0%b0","metrica","yandex","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fwp-yandex-metrika\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-yandex-metrika.1.2.2.zip",78,"2025-12-07 00:00:00",{"slug":78,"name":79,"version":80,"author":81,"author_profile":82,"description":83,"short_description":84,"active_installs":85,"downloaded":86,"rating":33,"num_ratings":87,"last_updated":88,"tested_up_to":15,"requires_at_least":89,"requires_php":24,"tags":90,"homepage":94,"download_link":95,"security_score":96,"vuln_count":97,"unpatched_count":13,"last_vuln_date":98,"fetched_at":28},"yamaps","YaMaps for WordPress Plugin","0.6.41","Yuri Baranov","https:\u002F\u002Fprofiles.wordpress.org\u002Fyhunter\u002F","\u003Cp>YaMaps plugin is the simplest way to insert Yandex maps on your site. The plugin has a user-friendly interface. You can visually put placemarks on your Yandex map, move them with your mouse, change icons and much more.\u003C\u002Fp>\n\u003Cp>For use with the new Gutenberg editor, you need add the classic editor block first!\u003C\u002Fp>\n\u003Cp>For the map search to work correctly and find routes, you may need to set an API key (JavaScript API и HTTP Geocoder) on the plugin settings page.\u003C\u002Fp>\n\u003Ch4>Plugin Highlights:\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>You can add maps to pages without coding.\u003C\u002Fli>\n\u003Cli>Or you can visually edit the shortcodes in the editor.\u003C\u002Fli>\n\u003Cli>You can add any number of maps to one page.\u003C\u002Fli>\n\u003Cli>You can add multiple markers to one card.\u003C\u002Fli>\n\u003Cli>You can add markers with hyperlinks.\u003C\u002Fli>\n\u003Cli>You can select the icon and it’s color of the marker in the colorpicker.\u003C\u002Fli>\n\u003Cli>You can select type of map (Map, Satellite, Hybrid), map zoom, map controls in the visual editor.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002Fm7YncsBrL5g?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\u003C\u002Fp>\n\u003Ch4>Shortcodes Structure\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>yamap center – Map center coordinates\u003C\u002Fli>\n\u003Cli>yamap height – Map height\u003C\u002Fli>\n\u003Cli>yamap zoom – Map zoom (0 to 19)\u003C\u002Fli>\n\u003Cli>yamap scrollzoom – Scrollwheel zoom lock (scrollzoom=”0″ for lock)\u003C\u002Fli>\n\u003Cli>yamap mobiledrag – Map dragging can be disabled for mobile devices (mobiledrag=”0″ for lock)\u003C\u002Fli>\n\u003Cli>yamap type – Map type (yandex#map, yandex#satellite, yandex#hybrid)\u003C\u002Fli>\n\u003Cli>yamap controls – Map controls separated by a semicolon (typeSelector;zoomControl;searchControl;routeEditor;trafficControl;fullscreenControl;geolocationControl)\u003C\u002Fli>\n\u003Cli>\n\u003Cp>yamap container – ID of the existing block in the WP template. The map will be placed in the block with this ID. The new block in the content will not be created.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>yaplacemark coord – Placemark coordinates\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>yaplacemark icon – Placemark icon (Yandex.Map icon type or url of your own image)\u003C\u002Fli>\n\u003Cli>yaplacemark color – Marker color\u003C\u002Fli>\n\u003Cli>yaplacemark name – Placemark hint or content\u003C\u002Fli>\n\u003Cli>\n\u003Cp>yaplacemark url – Linked URL or post with ID will be opened by click on the placemark\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>You can insert multiple placemark codes inside the maps’s shortcode.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Shortcode Example\u003C\u002Fh4>\n\u003Cpre>\u003Ccode>[yamap center=\"55.7532,37.6225\" height=\"15rem\" zoom=\"12\" type=\"yandex#map\" controls=\"typeSelector;zoomControl\"][yaplacemark coord=\"55.7532,37.6225\" icon=\"islands#blueRailwayIcon\" color=\"#ff751f\" name=\"Placemark\"][\u002Fyamap]\n\u003C\u002Fcode>\u003C\u002Fpre>\n","The plugin allows you to add Yandex Maps (Яндекс Карты) to pages of your site using a WordPress visual editor.",10000,157674,41,"2026-01-15T18:30:00.000Z","4.7",[68,91,92,93,72],"%d0%ba%d0%b0%d1%80%d1%82%d0%b0","%d0%ba%d0%b0%d1%80%d1%82%d1%8b","maps","http:\u002F\u002Fwww.yhunter.ru\u002Fportfolio\u002Fdev\u002Fyamaps\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fyamaps.zip",95,5,"2026-02-18 16:26:48",{"slug":100,"name":101,"version":102,"author":103,"author_profile":104,"description":105,"short_description":106,"active_installs":107,"downloaded":108,"rating":26,"num_ratings":109,"last_updated":110,"tested_up_to":111,"requires_at_least":112,"requires_php":24,"tags":113,"homepage":115,"download_link":116,"security_score":117,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"wt-yandex-metrika","WT Yandex Metrika","1.1","Roman Kusty","https:\u002F\u002Fprofiles.wordpress.org\u002Fkustyrt\u002F","\u003Cp>С помощью этого плагина вы можете c легкость добавить на свой сайт счетчик \u003Cstrong>Яндекс.Метрика\u003C\u002Fstrong>.\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fmetrika.yandex.ru\" rel=\"nofollow ugc\">Яндекс.Метрика\u003C\u002Fa> — инструмент для оценки посещаемости сайтов, анализа поведения посетителей и эффективности рекламы. Метрика работает по традиционному принципу интернет-счетчиков: код, установленный на страницах вашего сайта, регистрирует каждое посещение, собирая о нем данные.\u003C\u002Fp>\n\u003Ch4>Возможности плагина\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Выбор расположения кода счетчика: Header \u002F Footer\u003C\u002Fli>\n\u003Cli>Отключение счетчика при посещении сайта администратором\u003C\u002Fli>\n\u003Cli>Активация счетчика в панели администратора\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>После установки и активации плагина в \u003Cstrong>настройках сайта\u003C\u002Fstrong> появится раздел \u003Cstrong>WT Яндекс Метрика\u003C\u002Fstrong>, в котором необходимо вставить код счетчика и настроить отображение.\u003C\u002Fp>\n\u003Ch4>Поддержка\u003C\u002Fh4>\n\u003Cp>Домашняя страница и документация плагина: \u003Ca href=\"https:\u002F\u002Fweb-technology.biz\u002Fcms-wordpress\u002Fplugin-wt-yandex-metrika-for-cms-wordpress\u002F\" rel=\"nofollow ugc\">WT Yandex Metrika\u003C\u002Fa>.\u003Cbr \u002F>\nРазработка и поддержка: \u003Ca href=\"https:\u002F\u002Fweb-technology.biz\" rel=\"nofollow ugc\">АИТ “Web Technology”\u003C\u002Fa>.\u003Cbr \u002F>\nСообщество Вконтакте: \u003Ca href=\"https:\u002F\u002Fvk.com\u002Fagency_web_technology\" rel=\"nofollow ugc\">vk.com\u002Fagency_web_technology\u003C\u002Fa>.\u003C\u002Fp>\n","Простое добавление на сайт счетчика Яндекс.Метрика",6000,45465,2,"2020-05-25T14:17:00.000Z","5.4.19","3.9",[68,69,70,114],"yandex-metrika","https:\u002F\u002Fweb-technology.biz\u002Fcms-wordpress\u002Fplugin-wt-yandex-metrika-for-cms-wordpress","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwt-yandex-metrika.zip",85,{"slug":119,"name":120,"version":55,"author":121,"author_profile":122,"description":123,"short_description":124,"active_installs":125,"downloaded":126,"rating":127,"num_ratings":128,"last_updated":129,"tested_up_to":130,"requires_at_least":112,"requires_php":24,"tags":131,"homepage":132,"download_link":133,"security_score":134,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"easy-yandex-metrica","Easy Yandex Metrica","abwp","https:\u002F\u002Fprofiles.wordpress.org\u002Fabwp\u002F","\u003Cp>The Easy Yandex Metrica plugin allows you to view some Yandex Metrica data directly in your WordPress admin panel\u003C\u002Fp>\n\u003Ch4>What is Yandex Metrica\u003C\u002Fh4>\n\u003Cp>Yandex Metrica is a free tool for evaluating site traffic and analyzing user behavior. Learn all the features of the service\u003Cbr \u002F>\nyou can on the official \u003Ca href=\"https:\u002F\u002Fmetrica.yandex.com\u002F\" rel=\"nofollow ugc\">page\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch3>Features\u003C\u002Fh3>\n\u003Cp>The Easy Yandex Metrica plugin adds a graphical display of the following data to the administrative panel\u003Cbr \u002F>\n– the number of visitors to the site\u003Cbr \u002F>\n– sources, summary\u003Cbr \u002F>\n– summary of transitions from search engines\u003Cbr \u002F>\n– summary of transitions from sites\u003Cbr \u002F>\n– summary of transitions from social networks\u003C\u002Fp>\n\u003Cp>This plugin does not add the tracking counter code to the site, if you need a simple installation of the code – use our plugin \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fabwp-simple-counter\u002F\" rel=\"ugc\">Simple Counter\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch3>Translations\u003C\u002Fh3>\n\u003Cp>The plugin is available in the following languages:\u003Cbr \u002F>\n– English (en_US), built-in\u003Cbr \u002F>\n– Russian (ru_RU), native support\u003C\u002Fp>\n\u003Cp>You can help with translation to other languages-the plugin is completely ready for translation!\u003C\u002Fp>\n","Easily add statistics display Yandex Metrica to the Wordpress admin panel.",1000,15557,74,3,"2024-04-22T12:35:00.000Z","6.5.8",[69,70,72,114],"https:\u002F\u002Fab-wp.com\u002Fplugins\u002Feasy-yandex-metrica\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Feasy-yandex-metrica.1.2.2.zip",92,{"attackSurface":136,"codeSignals":171,"taintFlows":198,"riskAssessment":227,"analyzedAt":240},{"hooks":137,"ajaxHandlers":159,"restRoutes":164,"shortcodes":165,"cronEvents":166,"entryPointCount":31,"unprotectedCount":31},[138,143,147,151,155],{"type":139,"name":140,"callback":141,"file":142,"line":32},"action","wp","add_my_cron_event","eofdsupport.php",{"type":139,"name":144,"callback":145,"file":142,"line":146},"eofdsupport_my_hourly_event","eofdsupport_do_this_hourly",45,{"type":139,"name":148,"callback":149,"file":142,"line":150},"admin_menu","eofdsupport_create_menu",117,{"type":139,"name":152,"callback":153,"file":142,"line":154},"admin_init","eofdsupport_settings",129,{"type":139,"name":156,"callback":157,"priority":11,"file":142,"line":158},"woocommerce_order_status_changed","eofdsupport_status_change",196,[160],{"action":4,"nopriv":161,"callback":162,"hasNonce":161,"hasCapCheck":161,"file":142,"line":163},false,"eofdsupport_check_connection",139,[],[],[167,169],{"hook":144,"callback":144,"file":142,"line":168},34,{"hook":144,"callback":144,"file":142,"line":170},42,{"dangerousFunctions":172,"sqlUsage":173,"outputEscaping":180,"fileOperations":13,"externalRequests":128,"nonceChecks":13,"capabilityChecks":13,"bundledLibraries":197},[],{"prepared":13,"raw":109,"locations":174},[175,178],{"file":142,"line":176,"context":177},50,"$wpdb->get_results() with variable interpolation",{"file":179,"line":11,"context":177},"includes\\eofdsupport-history.php",{"escaped":168,"rawEcho":181,"locations":182},7,[183,186,188,189,190,192,194],{"file":142,"line":184,"context":185},188,"raw output",{"file":179,"line":187,"context":185},40,{"file":179,"line":87,"context":185},{"file":179,"line":170,"context":185},{"file":179,"line":191,"context":185},43,{"file":179,"line":193,"context":185},51,{"file":195,"line":196,"context":185},"includes\\eofdsupport-settings.php",306,[],[199,217],{"entryPoint":200,"graph":201,"unsanitizedCount":109,"severity":216},"eofdsupport_check_connection (eofdsupport.php:141)",{"nodes":202,"edges":214},[203,208],{"id":204,"type":205,"label":206,"file":142,"line":207},"n0","source","$_POST (x2)",153,{"id":209,"type":210,"label":211,"file":142,"line":212,"wp_function":213},"n1","sink","wp_remote_request() [SSRF]",163,"wp_remote_request",[215],{"from":204,"to":209,"sanitized":161},"medium",{"entryPoint":218,"graph":219,"unsanitizedCount":226,"severity":216},"\u003Ceofdsupport> (eofdsupport.php:0)",{"nodes":220,"edges":224},[221,223],{"id":204,"type":205,"label":222,"file":142,"line":207},"$_POST (x6)",{"id":209,"type":210,"label":211,"file":142,"line":212,"wp_function":213},[225],{"from":204,"to":209,"sanitized":161},6,{"summary":228,"deductions":229},"The eofdsupport v1.0.8 plugin exhibits a concerning security posture primarily due to its unprotected AJAX handler, which represents a significant attack vector.  While the plugin demonstrates good practices in terms of output escaping and avoids dangerous functions or file operations, the absence of authentication and capability checks on an entry point is a critical oversight.  The presence of two flows with unsanitized paths in the taint analysis, though not reaching a critical or high severity in this specific scan, hints at potential vulnerabilities if user-supplied data is not properly validated and sanitized before being used in SQL queries or other sensitive operations. The plugin's clean vulnerability history is positive, suggesting a lack of past exploitation or discovery. However, this should not overshadow the immediate risks posed by the identified code signals.",[230,232,234,236,238],{"reason":231,"points":11},"Unprotected AJAX handler",{"reason":233,"points":11},"Raw SQL queries without prepared statements",{"reason":235,"points":97},"No nonce checks on entry points",{"reason":237,"points":97},"No capability checks on entry points",{"reason":239,"points":97},"Flows with unsanitized paths","2026-03-17T00:43:08.461Z",{"wat":242,"direct":250},{"assetPaths":243,"generatorPatterns":246,"scriptPaths":247,"versionParams":248},[244,245],"\u002Fwp-content\u002Fplugins\u002Feofdsupport\u002Fcss\u002Feofdsupport-styles.css","\u002Fwp-content\u002Fplugins\u002Feofdsupport\u002Fjs\u002Feofdsupport-scripts.js",[],[245],[249],"eofdsupport-scripts.js?ver=1.0.8",{"cssClasses":251,"htmlComments":253,"htmlAttributes":254,"restEndpoints":255,"jsGlobals":257,"shortcodeOutput":258},[252],"err",[],[],[256],"\u002Fwp-json\u002Feofdsupport\u002F",[162,153],[]]