[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fX5md6kzFPuYBMFULmcBluAfLKRD43PwKPLhofJIl_vI":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":25,"download_link":26,"security_score":27,"vuln_count":28,"unpatched_count":29,"last_vuln_date":30,"fetched_at":31,"vulnerabilities":32,"developer":48,"crawl_stats":38,"alternatives":53,"analysis":153,"fingerprints":304},"experto-cta-widget","Experto CTA Widget – Call To Action, Sticky CTA, Floating Button Plugin","1.2.1","UX Design Experts","https:\u002F\u002Fprofiles.wordpress.org\u002Fuxdexperts\u002F","\u003Cp>Maximizing Your Website’s Potential with Experto CTA Widget WordPress Plugin\u003C\u002Fp>\n\u003Ch4>#1 Plugin for Multi-CTA Pop Up Bubble Plugin on WordPress\u003C\u002Fh4>\n\u003Cp>Create a bubble popup for your website that enables your visitors to perform specific actions including form submission, conversing, appointment scheduling, newsletter subscription, inquiry posing, simplifying repetitive actions like invoice payments, and initiating chat.\u003C\u002Fp>\n\u003Cp>Supercharge your website with Experto CTA Widget, designed by our team of UX experts to serve as a powerful Top-Of-The-Funnel (TOFU) tool, guiding your users towards targeted pages from the moment they land on your site.\u003C\u002Fp>\n\u003Cp>Discover the ultimate solution for your website’s needs with Experto CTA Widget, the unrivaled choice among over 55,000 plugins available on WordPress.org. Say goodbye to Link Tree and hello to a customized solution designed specifically for your website, not just your social profiles.\u003C\u002Fp>\n\u003Cp>An inside look:\u003C\u002Fp>\n\u003Cp>\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002FP1IKQ5aJN_g?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\u003C\u002Fp>\n\u003Cp>With Experto CTA Widget, you can transform idle website visitors into loyal subscribers and customers, while delivering an unparalleled user experience to returning visitors who frequently perform repetitive actions on your site. Maximize your conversions and engagement with the #1 choice – Experto CTA Widget\u003C\u002Fp>\n\u003Cp>Revolutionize your website’s user engagement with Experto CTA Widget – the dynamic and flexible WordPress plugin that empowers you to create and showcase multiple, compelling calls-to-action (CTAs) on your site. This plugin is your key to effortlessly integrating a variety of CTA types, including form fills, conversation starters, appointment scheduling, newsletter subscriptions, question inquiries, quick order options, repeatable actions like invoice payments, and instant chat.\u003C\u002Fp>\n\u003Cp>With Experto CTA Widget, you can unlock the full potential of your website and captivate your audience, all while generating leads and increasing conversions. So why settle for basic CTAs when you can unleash the power of Experto CTA Widget? Get started now and take your website to new heights!\u003C\u002Fp>\n\u003Cp>\u003Cem>BENEFITS\u003C\u002Fem>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Define your identity with one bubble popup on your website\u003C\u002Fli>\n\u003Cli>Rapidly create and personalize your CTA Widget\u003C\u002Fli>\n\u003Cli>Scrutinize your audience to captivate your website visitors.\u003C\u002Fli>\n\u003Cli>Empower your CTA creation with Experto’s user-friendly interface\u003C\u002Fli>\n\u003Cli>Customize your CTAs with ease using Experto’s Easy Customizable UI\u003C\u002Fli>\n\u003Cli>Harmonize your brand with a Custom Color Scheme to match your website colors\u003C\u002Fli>\n\u003Cli>Distinguish your CTAs with Custom Icons\u003C\u002Fli>\n\u003Cli>Optimize your results with Experto’s Analytics feature.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Elevate your website’s engagement and drive more conversions with Experto CTA Widget Plugin, developed by the #1 \u003Ca href=\"https:\u002F\u002Fwww.uxdesignexperts.com\u002Fwordpress-website-design\u002F\" rel=\"nofollow ugc\">Website Design company in Denver\u003C\u002Fa>. Don’t wait, try it today and experience the difference!\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Maximize your reach with Experto’s fully responsive and mobile-optimized plugin\u003C\u002Fli>\n\u003Cli>Effortlessly collect leads with Experto’s direct email form integration\u003C\u002Fli>\n\u003Cli>Boost your marketing efforts with Experto’s detailed analytics and A\u002FB testing tools\u003C\u002Fli>\n\u003Cli>Optimize your CTAs’ effectiveness to increase your website’s conversions\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Sure, here are some additional use cases for the Experto CTA Widget Plugin by #1 Web Design company in Denver:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Boost e-commerce sales:\u003C\u002Fstrong> Use Experto CTA Widget Plugin to add product-specific CTAs to your e-commerce product pages, such as “Add to Cart” buttons, “Buy Now” buttons, or “Sign up for updates” forms.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Grow social media following:\u003C\u002Fstrong> Use Experto CTA Widget to add social media follow buttons or share buttons to your website’s pages and posts. You can also use social proof CTAs, such as “Join 10K+ followers”, to encourage visitors to follow your social media accounts.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Promote events or webinars:\u003C\u002Fstrong> Use Experto CTA Widget to add event or webinar registration forms or buttons to your website’s pages and posts. You can also use pop-ups or sticky bars to promote your upcoming events or webinars and capture leads.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Schedule A Call:\u003C\u002Fstrong> Experto CTA Widget plugin will help you to give Schedule A Call as an option to your customers for them to click and book a call with you.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Offer customer support:\u003C\u002Fstrong> Use Experto CTA Widget Plugin to add live chat or support ticket CTAs to your website’s pages and posts.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>There are 40+ different handymen services that can utilize #1 CTA Plugin to Maximizetheir Website’s Potential\u003C\u002Fh3>\n\u003Ch3>There are 70 different types of businesses that can utilize #1 CTA Plugin to Maximizetheir Website’s Potential\u003C\u002Fh3>\n\u003Ch3>CHECK OUT OUR OTHER SERVICES\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.uxdesignexperts.com\u002Fwordpress-website-design\" rel=\"nofollow ugc\">Website Design & Development Services in Denver\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.wpsprints.com\u002Fpricing\" rel=\"nofollow ugc\">Website Support & Maintenance\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.uxdesignexperts.com\u002Fecommerce-development\" rel=\"nofollow ugc\">eCommerce Development\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.uxdesignexperts.com\u002Fwordpress-custom-development\" rel=\"nofollow ugc\">Custom Development\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.uxdesignexperts.com\u002Fwordpress-api-integration\" rel=\"nofollow ugc\">API Integration\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.uxdesignexperts.com\u002Fwordpress-plugins\u002F\" rel=\"nofollow ugc\">WordPress Plugins\u003C\u002Fa> \u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.uxdesignexperts.com\u002Fwordpress-themes-experto\" rel=\"nofollow ugc\">WordPress Themes\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.uxdesignexperts.com\u002Fseo\" rel=\"nofollow ugc\">SEO\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.uxdesignexperts.com\u002Flocal-seo\" rel=\"nofollow ugc\">Local SEO\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.uxdesignexperts.com\u002Faccessibility-compliance\" rel=\"nofollow ugc\">ADA Compliance\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.uxdesignexperts.com\u002Fmarketing-automation\" rel=\"nofollow ugc\">Marketing Automation\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.uxdesignexperts.com\u002Fwhite-label-partnership\" rel=\"nofollow ugc\">White Label Digital Agency Partnership\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.uxdesignexperts.com\u002Fmarketing\" rel=\"nofollow ugc\">Digital Marketing agency in Denver\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.uxdesignexperts.com\u002Fseo\" rel=\"nofollow ugc\">Digital Marketing Denver\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.uxdesignexperts.com\u002Fseo\" rel=\"nofollow ugc\">SEO Agency in Denver\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.uxdesignexperts.com\u002Fsocial-media\" rel=\"nofollow ugc\">Social Media Marketing Agency Denver\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.uxdesignexperts.com\u002Fwordpress-website-design\" rel=\"nofollow ugc\">Redesign Website\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n","Experto CTA Widget is a lightweight, easy-to-use plugin that comes with lots of customization options and create a popup widget with some contact form &hellip;",80,2554,100,4,"2025-05-05T13:25:00.000Z","6.8.5","5.5.4","7.4",[20,21,22,23,24],"call-to-action","customizable","floating-content","pop-up","widget","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fexperto-cta-widget","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fexperto-cta-widget.zip",99,1,0,"2025-05-15 00:00:00","2026-03-15T15:16:48.613Z",[33],{"id":34,"url_slug":35,"title":36,"description":37,"plugin_slug":4,"theme_slug":38,"affected_versions":39,"patched_in_version":6,"severity":40,"cvss_score":41,"cvss_vector":42,"vuln_type":43,"published_date":30,"updated_date":44,"references":45,"days_to_patch":47},"CVE-2025-47529","experto-cta-widget-call-to-action-sticky-cta-floating-button-plugin-missing-authorization-to-unauthenticated-settings-up","Experto CTA Widget – Call To Action, Sticky CTA, Floating Button Plugin \u003C= 1.1.1 - Missing Authorization to Unauthenticated Settings Update","The Experto CTA Widget – Call To Action, Sticky CTA, Floating Button Plugin plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the esc_admin_side_ajax_function() function in all versions up to, and including, 1.1.1. This makes it possible for unauthenticated attackers to update the plugin's settings.",null,"\u003C=1.1.1","medium",5.3,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:N\u002FUI:N\u002FS:U\u002FC:N\u002FI:L\u002FA:N","Missing Authorization","2025-05-22 13:17:21",[46],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002Fc1e842de-2df2-47f1-896b-ae7a538aef1c?source=api-prod",8,{"slug":49,"display_name":7,"profile_url":8,"plugin_count":14,"total_installs":50,"avg_security_score":13,"avg_patch_time_days":47,"trust_score":51,"computed_at":52},"uxdexperts",170,94,"2026-04-04T07:06:49.442Z",[54,74,98,118,136],{"slug":55,"name":56,"version":57,"author":58,"author_profile":59,"description":60,"short_description":61,"active_installs":62,"downloaded":63,"rating":64,"num_ratings":65,"last_updated":66,"tested_up_to":67,"requires_at_least":68,"requires_php":18,"tags":69,"homepage":72,"download_link":73,"security_score":13,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"boxzilla","Boxzilla – Pop-Ups for WordPress","3.4.7","Danny van Kooten","https:\u002F\u002Fprofiles.wordpress.org\u002Fdvankooten\u002F","\u003Ch3>Boxzilla for WordPress\u003C\u002Fh3>\n\u003Cp>Boxzilla is a plugin allowing you to add pop-up or slide-in boxes to your WordPress site. Boxes can slide or fade in at any point and can contain whatever content you like.\u003C\u002Fp>\n\u003Ch4>Some of Boxzilla’s features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Boxes can contain any content you like.\u003C\u002Fli>\n\u003Cli>You can show boxes at various events:\n\u003Cul>\n\u003Cli>After scrolling down past a certain percentage of the page height.\u003C\u002Fli>\n\u003Cli>After scrolling down to a specific page element.\u003C\u002Fli>\n\u003Cli>After X seconds on the page.\u003C\u002Fli>\n\u003Cli>After X pageviews on the site.\u003C\u002Fli>\n\u003Cli>Manually by clicking a link or button\u003C\u002Fli>\n\u003Cli>When the user intents to exit your website (Premium)\u003C\u002Fli>\n\u003Cli>After X seconds on the site (any page). (Premium)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>Customizable box position on the screen.\u003C\u002Fli>\n\u003Cli>Animations for showing or hiding boxes.\u003C\u002Fli>\n\u003Cli>Page targeting, to only show pop-ups on certain posts or pages.\u003C\u002Fli>\n\u003Cli>Full control over how long boxes should stay hidden once they are dismissed.\u003C\u002Fli>\n\u003Cli>Customizable box appearance using a simple visual interface.\u003C\u002Fli>\n\u003Cli>Only 6 kB of JavaScript is added to your website.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fboxzillaplugin.com\u002F#utm_source=wp-plugin-repo&utm_medium=boxzilla&utm_campaign=description\" rel=\"nofollow ugc\">Read more about Boxzilla\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cblockquote>\n\u003Ch4>Premium add-ons for Boxzilla\u003C\u002Fh4>\n\u003Cp>The Boxzilla plugin itself is entirely free. Advanced functionality is available through several paid add-ons. Not only do they extend the core functionality of the plugin, they also help to fund further development of the core (free) plugin.\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fboxzillaplugin.com\u002Fadd-ons\u002F#utm_source=wp-plugin-repo&utm_medium=boxzilla&utm_campaign=description\" rel=\"nofollow ugc\">Browse available add-ons for Boxzilla\u003C\u002Fa>.\u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Ch4>Documentation\u003C\u002Fh4>\n\u003Cp>Please have a look at the \u003Ca href=\"https:\u002F\u002Fboxzillaplugin.com\u002Fkb\u002F\" rel=\"nofollow ugc\">Boxzilla Knowledge Base\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch4>Demo\u003C\u002Fh4>\n\u003Cp>There’s a \u003Ca href=\"https:\u002F\u002Fdemo.boxzillaplugin.com#utm_source=wp-plugin-repo&utm_medium=boxzilla&utm_campaign=description\" rel=\"nofollow ugc\">Boxzilla demo site\u003C\u002Fa> with some examples.\u003C\u002Fp>\n\u003Ch4>Support\u003C\u002Fh4>\n\u003Cp>Please use the \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fsupport\u002Fplugin\u002Fboxzilla\" rel=\"ugc\">WordPress.org plugin support forums\u003C\u002Fa> for community support.\u003C\u002Fp>\n\u003Cp>If you’re a \u003Ca href=\"https:\u002F\u002Fboxzillaplugin.com\u002Fpricing#utm_source=wp-plugin-repo&utm_medium=boxzilla&utm_campaign=description\" rel=\"nofollow ugc\">Boxzilla Premium customer\u003C\u002Fa>, please use our support email for a faster reply.\u003C\u002Fp>\n","Flexible pop-ups or slide-ins, showing up at just the right time.",20000,816953,96,131,"2026-03-09T08:08:00.000Z","6.9.4","4.6",[20,70,23,71],"modal","pop-ups","https:\u002F\u002Fwww.boxzillaplugin.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fboxzilla.3.4.7.zip",{"slug":75,"name":76,"version":77,"author":78,"author_profile":79,"description":80,"short_description":81,"active_installs":82,"downloaded":83,"rating":13,"num_ratings":84,"last_updated":85,"tested_up_to":86,"requires_at_least":87,"requires_php":88,"tags":89,"homepage":95,"download_link":96,"security_score":97,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"ts-widget-pack","Widget Pack","1.2","Slobodan Manic","https:\u002F\u002Fprofiles.wordpress.org\u002Fslobodanmanic\u002F","\u003Cp>Widget Pack consists of several widget modules that will enable you to do the things you wish were WordPress standard features.\u003C\u002Fp>\n\u003Cp>The idea behind building such a plugin is that we believe following WordPress.org codex and best practices is the only way of developing WordPress themes and plugins.\u003C\u002Fp>\n\u003Cp>We encourage all end-users, as well as developers, to extend any additional functionality of WordPress themes by using Widget Pack. This ensures painless and safe switching themes without loosing any widget content or its function.\u003C\u002Fp>\n\u003Ch4>TS Call to Action Widget\u003C\u002Fh4>\n\u003Cp>Call to action widget gives you an option of inserting a call to action box in any widgetized area of your WordPress theme. Elements of the call to action widget are:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Title\u003C\u002Fli>\n\u003Cli>Call to action text\u003C\u002Fli>\n\u003Cli>Button link\u003C\u002Fli>\n\u003Cli>Button text\u003C\u002Fli>\n\u003Cli>Button second line text\u003C\u002Fli>\n\u003Cli>Button position (right, left, below, no-button\u003C\u002Fli>\n\u003Cli>Button color (yellow, blue, red, green, black)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>TS List Authors Widget\u003C\u002Fh4>\n\u003Cp>This widget lists all authors on your blog. You have the option of customizing:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Title\u003C\u002Fli>\n\u003Cli>Number of authors to display\u003C\u002Fli>\n\u003Cli>Show\u002Fhide author Gravatars\u003C\u002Fli>\n\u003Cli>Gravatar Size (32px, 48px, 64px)\u003C\u002Fli>\n\u003Cli>Sort by (number of posts, alphabetically)\u003C\u002Fli>\n\u003Cli>Sorting (ascending, descending)\u003C\u002Fli>\n\u003Cli>Show latest posts for each author\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>TS oEmbed Widget\u003C\u002Fh4>\n\u003Cp>TS oEmbed allows you to embed all kinds of stuff without worrying about the code. You just enter the link and widget does the rest.\u003C\u002Fp>\n\u003Cp>Supported formats:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Animoto\u003C\u002Fli>\n\u003Cli>Blip\u003C\u002Fli>\n\u003Cli>CollegeHumor\u003C\u002Fli>\n\u003Cli>DailyMotion\u003C\u002Fli>\n\u003Cli>EmbedArticles\u003C\u002Fli>\n\u003Cli>Flickr\u003C\u002Fli>\n\u003Cli>FunnyOrDie.com\u003C\u002Fli>\n\u003Cli>Hulu\u003C\u002Fli>\n\u003Cli>Imgur\u003C\u002Fli>\n\u003Cli>Instagram\u003C\u002Fli>\n\u003Cli>iSnare\u003C\u002Fli>\n\u003Cli>Issuu\u003C\u002Fli>\n\u003Cli>Kickstarter\u003C\u002Fli>\n\u003Cli>Meetup.com\u003C\u002Fli>\n\u003Cli>Mixcloud\u003C\u002Fli>\n\u003Cli>Photobucket\u003C\u002Fli>\n\u003Cli>PollDaddy\u003C\u002Fli>\n\u003Cli>Rdio\u003C\u002Fli>\n\u003Cli>Revision3\u003C\u002Fli>\n\u003Cli>Scribd\u003C\u002Fli>\n\u003Cli>SlideShare\u003C\u002Fli>\n\u003Cli>SmugMug   \u003C\u002Fli>\n\u003Cli>SoundCloud\u003C\u002Fli>\n\u003Cli>Spotify\u003C\u002Fli>\n\u003Cli>TED\u003C\u002Fli>\n\u003Cli>Tumblr\u003C\u002Fli>\n\u003Cli>Twitter\u003C\u002Fli>\n\u003Cli>Vimeo\u003C\u002Fli>\n\u003Cli>Vine\u003C\u002Fli>\n\u003Cli>WordPress.tv\u003C\u002Fli>\n\u003Cli>YouTube   Videos\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>TS Page Tree Widget\u003C\u002Fh4>\n\u003Cp>The widget shows your current position in page hierarchy. Options you have for TS Page Tree widget are:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Title\u003C\u002Fli>\n\u003Cli>Page tree top level page (current, top)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>“Current” shows only child pages and all pages bellow the one you’re currently viewing\u003C\u002Fp>\n\u003Cp>“Top” shows top level ancestors.\u003C\u002Fp>\n\u003Ch4>TS Preview Post Widget\u003C\u002Fh4>\n\u003Cp>Preview Post widget shows the post you’d like to feature. For that post you choose:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Post ID\u003C\u002Fli>\n\u003Cli>Show post title\u003C\u002Fli>\n\u003Cli>Show post thumbnail\u003C\u002Fli>\n\u003Cli>Show Excerpt\u003C\u002Fli>\n\u003Cli>Read more link text (leave more link text)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>TS Social Icons\u003C\u002Fh4>\n\u003Cp>Social Icons widget enables people to easily connect with you on social networks of your choosing and there’s an abundance of them.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Twitter\u003C\u002Fli>\n\u003Cli>Facebook\u003C\u002Fli>\n\u003Cli>LinkedIn\u003C\u002Fli>\n\u003Cli>Google+\u003C\u002Fli>\n\u003Cli>Pinterest\u003C\u002Fli>\n\u003Cli>YouTube\u003C\u002Fli>\n\u003Cli>Vimeo\u003C\u002Fli>\n\u003Cli>Flickr\u003C\u002Fli>\n\u003Cli>Dribbble\u003C\u002Fli>\n\u003Cli>Tumblr\u003C\u002Fli>\n\u003Cli>Instagram\u003C\u002Fli>\n\u003Cli>Last.fm\u003C\u002Fli>\n\u003Cli>Reddit\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Features\u003C\u002Fh3>\n\u003Ch4>TS Call to Action Widget\u003C\u002Fh4>\n\u003Cp>Call to action widget gives you an option of inserting a call to action box in any widgetized area of your WordPress theme. Elements of the call to action widget are:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Title\u003C\u002Fli>\n\u003Cli>Call to action text\u003C\u002Fli>\n\u003Cli>Button link\u003C\u002Fli>\n\u003Cli>Button text\u003C\u002Fli>\n\u003Cli>Button second line text\u003C\u002Fli>\n\u003Cli>Button position (right, left, below, no-button\u003C\u002Fli>\n\u003Cli>Button color (yellow, blue, red, green, black)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>TS List Authors Widget\u003C\u002Fh4>\n\u003Cp>This widget lists all authors on your blog. You have the option of customizing:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Title\u003C\u002Fli>\n\u003Cli>Number of authors to display\u003C\u002Fli>\n\u003Cli>Show\u002Fhide author Gravatars\u003C\u002Fli>\n\u003Cli>Gravatar Size (32px, 48px, 64px)\u003C\u002Fli>\n\u003Cli>Sort by (number of posts, alphabetically)\u003C\u002Fli>\n\u003Cli>Sorting (ascending, descending)\u003C\u002Fli>\n\u003Cli>Show latest posts for each author\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>TS oEmbed Widget\u003C\u002Fh4>\n\u003Cp>TS oEmbed allows you to embed all kinds of stuff without worrying about the code. You just enter the link and widget does the rest.\u003C\u002Fp>\n\u003Cp>Supported formats:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>YouTube (public videos only)\u003C\u002Fli>\n\u003Cli>Vimeo\u003C\u002Fli>\n\u003Cli>Flickr (both videos and images)\u003C\u002Fli>\n\u003Cli>Hulu\u003C\u002Fli>\n\u003Cli>Twitter (WordPress 3.4+)\u003C\u002Fli>\n\u003Cli>DailyMotion\u003C\u002Fli>\n\u003Cli>blip.tv\u003C\u002Fli>\n\u003Cli>Viddler\u003C\u002Fli>\n\u003Cli>Qik\u003C\u002Fli>\n\u003Cli>Revision3\u003C\u002Fli>\n\u003Cli>Scribd\u003C\u002Fli>\n\u003Cli>Photobucket\u003C\u002Fli>\n\u003Cli>PollDaddy\u003C\u002Fli>\n\u003Cli>WordPress.tv (only VideoPress-type videos for the time being)\u003C\u002Fli>\n\u003Cli>SmugMug (WordPress 3.0+)\u003C\u002Fli>\n\u003Cli>FunnyOrDie.com (WordPress 3.0+)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>TS Page Tree Widget\u003C\u002Fh4>\n\u003Cp>The widget shows your current position in page hierarchy. Options you have for TS Page Tree widget are:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Title\u003C\u002Fli>\n\u003Cli>Page tree top level page (current, top)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>“Current” shows only child pages and all pages bellow the one you’re currently viewing\u003C\u002Fp>\n\u003Cp>“Top” shows top level ancestors.\u003C\u002Fp>\n\u003Ch4>TS Preview Post Widget\u003C\u002Fh4>\n\u003Cp>Preview Post widget shows the post you’d like to feature. For that post you choose:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Post ID\u003C\u002Fli>\n\u003Cli>Show post title\u003C\u002Fli>\n\u003Cli>Show post thumbnail\u003C\u002Fli>\n\u003Cli>Show Excerpt\u003C\u002Fli>\n\u003Cli>Read more link text (leave more link text)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>TS Social Icons\u003C\u002Fh4>\n\u003Cp>Social Icons widget enables people to easily connect with you on social networks of your choosing and there’s an abundance of them.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Twitter\u003C\u002Fli>\n\u003Cli>Facebook\u003C\u002Fli>\n\u003Cli>LinkedIn\u003C\u002Fli>\n\u003Cli>Google+\u003C\u002Fli>\n\u003Cli>Pinterest\u003C\u002Fli>\n\u003Cli>YouTube\u003C\u002Fli>\n\u003Cli>Vimeo\u003C\u002Fli>\n\u003Cli>Flickr\u003C\u002Fli>\n\u003Cli>Dribbble\u003C\u002Fli>\n\u003Cli>Tumblr\u003C\u002Fli>\n\u003Cli>Instagram\u003C\u002Fli>\n\u003Cli>Last.fm\u003C\u002Fli>\n\u003Cli>Reddit\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Credits\u003C\u002Fh3>\n\u003Cp>Social Icons – http:\u002F\u002Fveodesign.com\u002F2011\u002Fen\u002F11\u002F08\u002Fsomacro-27-free-big-and-simple-social-media-icons\u002F\u003C\u002Fp>\n","Widget Pack is a WordPress plugin that enables essential, yet powerful features for your website.",300,24328,3,"2016-06-27T07:37:00.000Z","4.2.39","4.0","",[90,91,92,93,94],"call-to-action-widget","list-authors","oembed","page-tree","preview-post-widget","https:\u002F\u002Fgithub.com\u002Fslobodan\u002FTS-Widget-Pack","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fts-widget-pack.zip",85,{"slug":99,"name":100,"version":101,"author":102,"author_profile":103,"description":104,"short_description":105,"active_installs":106,"downloaded":107,"rating":13,"num_ratings":28,"last_updated":108,"tested_up_to":109,"requires_at_least":110,"requires_php":111,"tags":112,"homepage":116,"download_link":117,"security_score":97,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"button-widget","Button Widget","1.2.2","Mahdi Yazdani","https:\u002F\u002Fprofiles.wordpress.org\u002Fmahdiyazdani\u002F","\u003Cp>A simple customizable button widget for your sidebars to allow users take actions, and make choices, with a single tap.\u003C\u002Fp>\n","A simple customizable button widget for your sidebars.",200,3188,"2020-12-22T15:15:00.000Z","5.6.17","5.0","7.2.0",[113,20,114,24,115],"button","callout","wordpress-button-plugin","https:\u002F\u002Fwww.mypreview.one","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbutton-widget.1.2.2.zip",{"slug":90,"name":119,"version":120,"author":121,"author_profile":122,"description":123,"short_description":124,"active_installs":106,"downloaded":125,"rating":51,"num_ratings":126,"last_updated":127,"tested_up_to":128,"requires_at_least":129,"requires_php":88,"tags":130,"homepage":134,"download_link":135,"security_score":97,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"Call to Action Widget","1.1","Charlie Strickler","https:\u002F\u002Fprofiles.wordpress.org\u002Fcharliestricklergmailcom\u002F","\u003Cp>A modified version of the standard WordPress text widget.  In addition to a title and textarea\u002Fhtml field the CTA widget includes an image URL that can be positioned above or below the title, a button text field and a button URL field.  CTA widget is short for “Call to Action” widget.  We frequently see website designs with 3 columns of widgets on the home page.  Frequently these buckets or widgets utilize an image, title, description, and call to action button.  This widget makes it easier for beginners to change the content of these blocks without editing HTML.\u003C\u002Fp>\n\u003Cp>Read more about this widget on \u003Ca href=\"http:\u002F\u002Fwordpress.boomvisibility.com\u002Fcta-widget\u002F\" rel=\"nofollow ugc\">wordpress.boomvisibility.com\u003C\u002Fa>\u003C\u002Fp>\n","A simple text widget with Title, Image URL, A text\u002Fhtml area, Link Text and Link URL.  This simple widget is often used for a call to action widget.",13953,6,"2013-12-10T00:00:00.000Z","3.7.41","3.0.2",[90,131,132,133],"cta-widget","image-widget","text-widget","http:\u002F\u002Fwww.boomvisibility.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcall-to-action-widget.zip",{"slug":137,"name":138,"version":139,"author":140,"author_profile":141,"description":142,"short_description":143,"active_installs":11,"downloaded":144,"rating":64,"num_ratings":145,"last_updated":146,"tested_up_to":147,"requires_at_least":148,"requires_php":88,"tags":149,"homepage":88,"download_link":152,"security_score":97,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"poppop","PopPop","0.4","shazdeh","https:\u002F\u002Fprofiles.wordpress.org\u002Fshazdeh\u002F","\u003Cp>This plugin enables you to quickly add beautiful modals by adding widgets to the Popup area. You can choose to trigger the popup automatically on page load, or manually, which the plugin generates the required code for you.\u003C\u002Fp>\n\u003Cp>Since 0.4, the plugin can be extended to support any popup script library (beta stage). Now the plugin supports \u003Ca href=\"http:\u002F\u002Fwww.rockettheme.com\u002Fwordpress-downloads\u002Fplugins\u002Ffree\u002F2625-rokbox\" rel=\"nofollow ugc\">RokBox plugin\u003C\u002Fa> as well. To enable it, you must add this bit to your wp-config.php file:\u003Cbr \u002F>\n    define( ‘POPPOP_SCRIPT’, ‘RokBox_PopPop_Script’ );\u003C\u002Fp>\n\u003Cp>You can use \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fextend\u002Fplugins\u002Fwidget-logic\u002F\" rel=\"ugc\">Widget Logic\u003C\u002Fa> plugin to completely take control of in which parts of your website the popups are displayed.\u003C\u002Fp>\n","Easily display your widgets inside modal and popup windows.",9843,5,"2013-04-27T22:37:00.000Z","3.6.1","3.0",[70,23,150,151,24],"popup","reveal","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fpoppop.zip",{"attackSurface":154,"codeSignals":218,"taintFlows":235,"riskAssessment":293,"analyzedAt":303},{"hooks":155,"ajaxHandlers":200,"restRoutes":215,"shortcodes":216,"cronEvents":217,"entryPointCount":145,"unprotectedCount":14},[156,162,166,171,175,179,183,188,190,193,195],{"type":157,"name":158,"callback":159,"file":160,"line":161},"action","admin_head","render_admin_Esc","admin\\class-esc-admin.php",24,{"type":157,"name":163,"callback":164,"file":160,"line":165},"wp_dashboard_setup","register_esc_dashboard_widget",25,{"type":157,"name":167,"callback":168,"priority":169,"file":160,"line":170},"admin_menu","addPluginAdminMenu",9,26,{"type":157,"name":172,"callback":173,"file":160,"line":174},"admin_init","registerAndBuildFields",27,{"type":157,"name":176,"callback":177,"file":160,"line":178},"admin_notices","esc_admin_notice",29,{"type":157,"name":176,"callback":180,"file":181,"line":182},"pluginNameSettingsMessages","admin\\partials\\esc-admin-settings.php",22,{"type":157,"name":184,"callback":185,"file":186,"line":187},"admin_enqueue_scripts","anonymous","includes\\class-esc.php",66,{"type":157,"name":184,"callback":185,"file":186,"line":189},67,{"type":157,"name":191,"callback":185,"file":186,"line":192},"wp_enqueue_scripts",76,{"type":157,"name":191,"callback":185,"file":186,"line":194},77,{"type":157,"name":196,"callback":197,"file":198,"line":199},"wp_footer","render_Esc","public\\class-esc-public.php",23,[201,207,210,211,214],{"action":202,"nopriv":203,"callback":204,"hasNonce":205,"hasCapCheck":205,"file":160,"line":206},"esc_admin_side_action",false,"esc_admin_side_ajax_function",true,28,{"action":208,"nopriv":203,"callback":209,"hasNonce":203,"hasCapCheck":203,"file":198,"line":161},"esc_public_action","esc_public_ajax_function",{"action":208,"nopriv":205,"callback":209,"hasNonce":203,"hasCapCheck":203,"file":198,"line":165},{"action":212,"nopriv":203,"callback":213,"hasNonce":203,"hasCapCheck":203,"file":198,"line":170},"esc_cta_click_action","esc_cta_click_ajax_function",{"action":212,"nopriv":205,"callback":213,"hasNonce":203,"hasCapCheck":203,"file":198,"line":174},[],[],[],{"dangerousFunctions":219,"sqlUsage":220,"outputEscaping":222,"fileOperations":29,"externalRequests":29,"nonceChecks":28,"capabilityChecks":28,"bundledLibraries":234},[],{"prepared":29,"raw":29,"locations":221},[],{"escaped":223,"rawEcho":84,"locations":224},327,[225,228,231],{"file":160,"line":226,"context":227},758,"raw output",{"file":229,"line":230,"context":227},"admin\\partials\\esc-admin-display.php",10,{"file":232,"line":233,"context":227},"public\\partials\\esc-public-display.php",17,[],[236,254,262,282],{"entryPoint":237,"graph":238,"unsanitizedCount":29,"severity":253},"esc_admin_side_ajax_function (admin\\class-esc-admin.php:704)",{"nodes":239,"edges":251},[240,245],{"id":241,"type":242,"label":243,"file":160,"line":244},"n0","source","$_POST",719,{"id":246,"type":247,"label":248,"file":160,"line":249,"wp_function":250},"n1","sink","update_option() [Settings Manipulation]",728,"update_option",[252],{"from":241,"to":246,"sanitized":205},"low",{"entryPoint":255,"graph":256,"unsanitizedCount":29,"severity":253},"\u003Cclass-esc-admin> (admin\\class-esc-admin.php:0)",{"nodes":257,"edges":260},[258,259],{"id":241,"type":242,"label":243,"file":160,"line":244},{"id":246,"type":247,"label":248,"file":160,"line":249,"wp_function":250},[261],{"from":241,"to":246,"sanitized":205},{"entryPoint":263,"graph":264,"unsanitizedCount":281,"severity":253},"esc_cta_click_ajax_function (public\\class-esc-public.php:78)",{"nodes":265,"edges":278},[266,269,271,273],{"id":241,"type":242,"label":267,"file":198,"line":268},"$_POST (x2)",81,{"id":246,"type":247,"label":248,"file":198,"line":270,"wp_function":250},89,{"id":272,"type":242,"label":243,"file":198,"line":268},"n2",{"id":274,"type":247,"label":275,"file":198,"line":276,"wp_function":277},"n3","echo() [XSS]",91,"echo",[279,280],{"from":241,"to":246,"sanitized":203},{"from":272,"to":274,"sanitized":205},2,{"entryPoint":283,"graph":284,"unsanitizedCount":281,"severity":253},"\u003Cclass-esc-public> (public\\class-esc-public.php:0)",{"nodes":285,"edges":290},[286,287,288,289],{"id":241,"type":242,"label":267,"file":198,"line":268},{"id":246,"type":247,"label":248,"file":198,"line":270,"wp_function":250},{"id":272,"type":242,"label":243,"file":198,"line":268},{"id":274,"type":247,"label":275,"file":198,"line":276,"wp_function":277},[291,292],{"from":241,"to":246,"sanitized":203},{"from":272,"to":274,"sanitized":205},{"summary":294,"deductions":295},"The \"experto-cta-widget\" v1.2.1 plugin exhibits a mixed security posture. While it demonstrates good practices such as exclusively using prepared statements for SQL queries and a very high rate of output escaping, several concerning areas exist. The primary weakness lies in its attack surface, with 4 out of 5 AJAX handlers lacking authorization checks. This creates a significant vulnerability if these handlers perform sensitive operations that can be triggered by unauthenticated users. The taint analysis, though small in scope, did reveal two flows with unsanitized paths, which could potentially be exploited if they interact with sensitive data or operations, although no critical or high severity issues were found in this area.\n\nThe vulnerability history shows one past CVE, which was of medium severity and is now patched. The common vulnerability type being 'Missing Authorization' is a direct red flag that aligns with the static analysis findings of unprotected AJAX handlers. This history suggests a recurring issue with access control within the plugin's development, underscoring the importance of thoroughly securing all entry points. In conclusion, the plugin has strengths in data handling and output sanitization, but the significant number of unprotected AJAX endpoints and the historical pattern of authorization flaws represent considerable risks that need immediate attention.",[296,299,301],{"reason":297,"points":298},"Unprotected AJAX handlers",15,{"reason":300,"points":230},"Flows with unsanitized paths",{"reason":302,"points":145},"Past medium severity vulnerability","2026-03-16T21:27:17.453Z",{"wat":305,"direct":314},{"assetPaths":306,"generatorPatterns":309,"scriptPaths":310,"versionParams":311},[307,308],"\u002Fwp-content\u002Fplugins\u002Fexperto-cta-widget\u002Fcss\u002Fesc-admin.css","\u002Fwp-content\u002Fplugins\u002Fexperto-cta-widget\u002Fjs\u002Fesc-admin.js",[],[],[312,313],"experto-cta-widget\u002Fcss\u002Fesc-admin.css?ver=","experto-cta-widget\u002Fjs\u002Fesc-admin.js?ver=",{"cssClasses":315,"htmlComments":324,"htmlAttributes":325,"restEndpoints":332,"jsGlobals":333,"shortcodeOutput":335},[316,317,318,319,320,321,322,323],"review-notice","review-top-bar","review-inner","esc-col100","esc-col-inner","star","fa-star","review-btn",[],[326,327,328,329,330,331],"id=\"escstyle\"","id=\"esc_box_primary_color\"","id=\"esc_box_secondary_color\"","id=\"esc_box_text_color\"","id=\"esc_box_icon_color\"","id=\"esc_box_footer_icon_color\"",[],[334],"EscURLS",[]]