[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fDmfYlEsVkwmybh0dooEuU3V55TDYmE59NM6-35F_mjU":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":23,"download_link":24,"security_score":25,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":27,"vulnerabilities":28,"developer":29,"crawl_stats":26,"alternatives":36,"analysis":126,"fingerprints":196},"fast-aws","Fast AWS","1.1.2","fastflow","https:\u002F\u002Fprofiles.wordpress.org\u002Ffastflow\u002F","\u003Cp>Fast AWS is designed to work seamlessly with \u003Ca href=\"https:\u002F\u002Ffastmember.com\" rel=\"nofollow ugc\">Fast Member\u003C\u002Fa> and the \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Ffast-flow-dashboard\u002F\" rel=\"ugc\">Fast Flow Dashboard\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>Using Fast AWS you can protect your Fast Member download links on Amazon S3\u003C\u002Fp>\n\u003Cp>There is support for the following endpoint regions\u003C\u002Fp>\n\u003Cp>us-east-1 — s3-external-1.amazonaws.com\u003Cbr \u002F>\nus-west-2 — s3-us-west-2.amazonaws.com\u003Cbr \u002F>\nus-west-1 — s3-us-west-1.amazonaws.com\u003Cbr \u002F>\neu-west-1 — s3-eu-west-1.amazonaws.com\u003Cbr \u002F>\nap-southeast-1 — s3-ap-southeast-1.amazonaws.com\u003Cbr \u002F>\nap-southeast-2 — s3-ap-southeast-2.amazonaws.com\u003Cbr \u002F>\nap-northeast-1 — s3-ap-northeast-1.amazonaws.com\u003Cbr \u002F>\nsa-east-1 — s3-sa-east-1.amazonaws.com\u003C\u002Fp>\n\u003Cblockquote>\n\u003Cp>NOTE: Fast AWS requires the Fast Flow Dashboard to manage the settings.\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Ffast-flow-dashboard\u002F\" rel=\"ugc\">https:\u002F\u002Fwordpress.org\u002Fplugins\u002Ffast-flow-dashboard\u002F\u003C\u002Fa>\u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Cp>You can find out more about Fast Flow and Fast Member here\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Ffastflow.io\" rel=\"nofollow ugc\">https:\u002F\u002Ffastflow.io\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Ffastmember.com\" rel=\"nofollow ugc\">https:\u002F\u002Ffastmember.com\u003C\u002Fa>\u003C\u002Fp>\n","Enable Amazon File Protection for Fast Member",10,1215,0,"2023-08-09T21:48:00.000Z","6.3.8","4.0","7.4",[19,4,20,21,22],"amazon-web-services","fast-flow","fast-member","s3-file-protection","https:\u002F\u002Fwww.fastflow.io\u002Fproducts\u002Ffast-aws","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Ffast-aws.zip",85,null,"2026-03-15T15:16:48.613Z",[],{"slug":7,"display_name":7,"profile_url":8,"plugin_count":30,"total_installs":31,"avg_security_score":32,"avg_patch_time_days":33,"trust_score":34,"computed_at":35},14,940,87,432,70,"2026-04-04T11:41:05.537Z",[37,56,75,92,110],{"slug":19,"name":38,"version":39,"author":40,"author_profile":41,"description":42,"short_description":43,"active_installs":44,"downloaded":45,"rating":46,"num_ratings":47,"last_updated":48,"tested_up_to":49,"requires_at_least":50,"requires_php":51,"tags":52,"homepage":54,"download_link":55,"security_score":25,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":27},"Amazon Web Services","1.0.5","WP Engine","https:\u002F\u002Fprofiles.wordpress.org\u002Fwpengine\u002F","\u003Cp>This plugin allows the user to define AWS access keys and allows other plugins to hook into it and use the AWS SDK that’s included.\u003C\u002Fp>\n\u003Cp>The plan was for this plugin to be a dependency of several plugins and all could use the same AWS SDK. We realized however that there are \u003Ca href=\"https:\u002F\u002Fdeliciousbrains.com\u002Fwp-offload-s3-1-6-released\u002F?utm_campaign=WP%2BOffload%2BS3&utm_source=wordpress.org&utm_medium=free%2Bplugin%2Blisting&utm_content=AWS\" rel=\"nofollow ugc\">problems with this idea\u003C\u002Fa> and we’ve taken \u003Ca href=\"https:\u002F\u002Fdeliciousbrains.com\u002Fwp-offload-s3-1-6-released\u002F?utm_campaign=WP%2BOffload%2BS3&utm_source=wordpress.org&utm_medium=free%2Bplugin%2Blisting&utm_content=AWS\" rel=\"nofollow ugc\">another approach\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>This plugin was used by our plugins (\u003Ca href=\"https:\u002F\u002Fdeliciousbrains.com\u002Fwp-offload-s3\u002F?utm_campaign=WP%2BOffload%2BS3&utm_source=wordpress.org&utm_medium=free%2Bplugin%2Blisting&utm_content=AWS\" rel=\"nofollow ugc\">WP Offload S3\u003C\u002Fa> and \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Famazon-s3-and-cloudfront\u002F\" rel=\"ugc\">WP Offload S3 Lite\u003C\u002Fa>) but it is almost certainly used by other plugins we’re not aware of. So although it is no longer needed for our plugins, we’ll leave it here for others.\u003C\u002Fp>\n\u003Ch4>Requirements\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>PHP version 5.3.3 or greater\u003C\u002Fli>\n\u003Cli>PHP cURL library 7.16.2 or greater\u003C\u002Fli>\n\u003Cli>cURL compiled with OpenSSL and zlib\u003C\u002Fli>\n\u003Cli>curl_multi_exec enabled\u003C\u002Fli>\n\u003C\u002Ful>\n","Houses the Amazon Web Services (AWS) PHP SDK v2 libraries and manages access keys.",6000,814247,78,7,"2018-02-20T18:11:00.000Z","4.9.29","4.6","",[53,19],"amazon","http:\u002F\u002Fwordpress.org\u002Fextend\u002Fplugins\u002Famazon-web-services\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Famazon-web-services.1.0.5.zip",{"slug":57,"name":58,"version":59,"author":7,"author_profile":8,"description":60,"short_description":61,"active_installs":62,"downloaded":63,"rating":13,"num_ratings":13,"last_updated":64,"tested_up_to":65,"requires_at_least":66,"requires_php":17,"tags":67,"homepage":70,"download_link":71,"security_score":72,"vuln_count":73,"unpatched_count":13,"last_vuln_date":74,"fetched_at":27},"fast-flow-dashboard","Fast Flow","1.2.18","\u003Cp>Data dashboard, user tagging and settings plugin for Fast Flow plugins system.\u003C\u002Fp>\n\u003Cp>FastFlow opens WordPress up to the world of sales and marketing automation giving you a powerful user tagging system with multiple data dashboards.\u003C\u002Fp>\n\u003Cp>At the heart of FastFlow are Fast Tags. Every user can have different Fast Tags applied and then these tags can be used to interact with both your WordPress site and your other apps and services.\u003C\u002Fp>\n\u003Cp>Using Fast Tags and our growing number of integrations you can apply tags to users at any stage of your marketing and sales process.\u003C\u002Fp>\n\u003Cp>FastFlow can then be used to sync your users across different platforms which would otherwise not be talking with each other and display data based on the tags your contacts have.\u003C\u002Fp>\n\u003Cp>Fast Flow is designed to work seamlessly with \u003Ca href=\"https:\u002F\u002Ffastmember.com\" rel=\"nofollow ugc\">Fast Member\u003C\u002Fa>, an all in one WordPress based membership platform for securely selling your digital content.\u003C\u002Fp>\n\u003Cp>You can find out more about Fast Member here\u003C\u002Fp>\n\u003Ch3>Serving A Global Community Since 2011\u003C\u002Fh3>\n\u003Cp>We’ve been actively developing WordPress plugins for over six years connecting with customers and clients across 6 continents (hey, if you’re already using our plugins in Antarctica let us know and we’ll make it 7!)\u003C\u002Fp>\n\u003Cp>Through this Fast Flow has been founded to serve the needs of the growing global community of awesome WordPress users.\u003C\u002Fp>\n\u003Cp>From digital music downloads to full scale membership sites with thousands of users, our plugins are used to sell a wide range of products online.\u003C\u002Fp>\n\u003Cp>As a result they are always designed and developed with modern digital marketing and eCommerce needs in mind.\u003C\u002Fp>\n\u003Ch3>Carefully Architected and Seamlessly Integrated\u003C\u002Fh3>\n\u003Cp>Through nearly a decade of experience selling with WordPress, the Fast Flow system is a collection of carefully architected plugins which integrate seamlessly with each other.\u003C\u002Fp>\n\u003Cp>Together they give you a complete sales and marketing platform for WordPress, which adapts to your needs.\u003C\u002Fp>\n\u003Ch3>Future Proof Your Business\u003C\u002Fh3>\n\u003Cp>Each Fast Flow plugin is also powerful enough to work independently, allowing you to slot them into your business and then expand with your needs .\u003C\u002Fp>\n\u003Cp>Because all plugins are also designed and tested working as part of a bigger system, this removes the pain or worry of something breaking in the expansion process.\u003C\u002Fp>\n\u003Cp>When you know you have a reliable suite of tools to tap into at any time this future proofs your business.\u003C\u002Fp>\n\u003Ch3>Solid Architecture, Fanatical Support, Regular Updates\u003C\u002Fh3>\n\u003Cp>WordPress users need assurance a system is in place which will cover your needs for expansion, support and updates further down the line and FastFlow offers this.\u003C\u002Fp>\n\u003Cp>Visit \u003Ca href=\"https:\u002F\u002Ffastflow.io\" rel=\"nofollow ugc\">Fast Flow\u003C\u002Fa> to find out more\u003C\u002Fp>\n","Data dashboard, user tagging and settings plugin for Fast Flow plugins system.",100,9438,"2025-02-17T14:29:00.000Z","6.7.5","6.5",[68,20,7,69],"dashboard","user-tags","https:\u002F\u002Ffastflow.io","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Ffast-flow-dashboard.zip",89,4,"2025-02-22 00:00:00",{"slug":76,"name":77,"version":78,"author":7,"author_profile":8,"description":79,"short_description":80,"active_installs":81,"downloaded":82,"rating":13,"num_ratings":13,"last_updated":83,"tested_up_to":84,"requires_at_least":16,"requires_php":85,"tags":86,"homepage":90,"download_link":91,"security_score":25,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":27},"fast-thrivecart","Fast ThriveCart","1.0.4","\u003Cp>Fast ThriveCart is a FastFlow add on for Fast Member. Now you can quickly and easily integrate your ThriveCart products with Fast Member and add your new customers to your WordPress membership site.\u003C\u002Fp>\n\u003Cp>Once your customers purchase through ThriveCart they are immediately added to WordPress and your chosen Fast Member products. There is support for order bumps and upsells, giving you integration accross your entire slaes funnel.\u003C\u002Fp>\n\u003Cblockquote>\n\u003Cp>NOTE: Fast ThriveCart requires the FastFlow Dashboard and FastMember to register the transactions and add your customer to WordPress\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Ffastmember.com\u002F?utm_source=wordpress.org\" rel=\"nofollow ugc\">https:\u002F\u002Ffastmember.com\u003C\u002Fa>\u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Cp>You can find out more about \u003Ca href=\"https:\u002F\u002Ffastflow.io\" rel=\"nofollow ugc\">Fast Flow\u003C\u002Fa> here\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Ffastflow.io\" rel=\"nofollow ugc\">https:\u002F\u002Ffastflow.io\u003C\u002Fa>\u003C\u002Fp>\n","Integrate ThriveCart with your FastMember site",20,1380,"2022-09-05T13:20:00.000Z","6.0.11","7.3",[21,7,87,88,89],"marketing","sales-funnels","thrivecart","https:\u002F\u002Ffastflow.io\u002Fproducts\u002Ffast-thrivecart","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Ffast-thrivecart.zip",{"slug":93,"name":94,"version":95,"author":96,"author_profile":97,"description":98,"short_description":99,"active_installs":11,"downloaded":100,"rating":13,"num_ratings":13,"last_updated":101,"tested_up_to":102,"requires_at_least":103,"requires_php":51,"tags":104,"homepage":108,"download_link":109,"security_score":25,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":27},"aws-sns","AWS SNS Plugin","1.0.0","fayzandotocom","https:\u002F\u002Fprofiles.wordpress.org\u002Ffayzandotocom\u002F","\u003Cp>This plugin is created to send push notifications to different devices using Amazon Simple Notification Service.\u003Cbr \u002F>\nIt connects with the Amazon SNS and fetch all the Topics created. And publish messages to that topics.\u003C\u002Fp>\n\u003Cp>To use this plugin you must need following things.\u003Cbr \u002F>\n1. Amazon web service account.\u003Cbr \u002F>\n2. Amazon API “Access Key ID” and “Secret Access Key”.\u003Cbr \u002F>\n3. Create atleast one topic in SNS.\u003C\u002Fp>\n\u003Cp>Following payload is send to the selected topic, togather with the title and message you provide.\u003C\u002Fp>\n\u003Cp>{\u003Cbr \u002F>\n“default”: “[MESSAGE]”,\u003Cbr \u002F>\n“APNS”: “{\\”aps\\”:{\\”alert\\”: \\”[MESSAGE]\\”} }”,\u003Cbr \u002F>\n“APNS_SANDBOX”:”{\\”aps\\”:{\\”alert\\”:\\”[MESSAGE]\\”}}”,\u003Cbr \u002F>\n“GCM”: “{ \\”data\\”: { \\”message\\”: \\”[MESSAGE]\\”, \\”title\\”: \\”[TITLE]\\”, \\”datetime\\”: \\”[DATETIME]\\” } }”,\u003Cbr \u002F>\n“MPNS” : “1[MESSAGE]”,\u003Cbr \u002F>\n“WNS” : “”\u003Cbr \u002F>\n}\u003C\u002Fp>\n\u003Cp>In above payload following tags are replaced by the data provided.\u003Cbr \u002F>\n[TITLE] -> The title you provide.\u003Cbr \u002F>\n[MESSAGE] -> The message you provide.\u003Cbr \u002F>\n[DATETIME] -> server current datetime.\u003C\u002Fp>\n","This plugin is created to send push notifications to different devices using Amazon Simple Notification Service.",2261,"2016-02-28T06:44:00.000Z","4.4.34","3.0.1",[53,105,19,106,107],"amazon-simple-notification-service","notifications","push-notifications","https:\u002F\u002Fgithub.com\u002Ffayzandotcom\u002Faws-sns-plugin.git","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Faws-sns.zip",{"slug":111,"name":112,"version":113,"author":114,"author_profile":115,"description":116,"short_description":117,"active_installs":11,"downloaded":118,"rating":13,"num_ratings":13,"last_updated":119,"tested_up_to":120,"requires_at_least":16,"requires_php":121,"tags":122,"homepage":124,"download_link":125,"security_score":25,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":27},"simple-ses-mail","Simple AWS SES Mail","0.0.1","S3Bubble","https:\u002F\u002Fprofiles.wordpress.org\u002Fs3bubble\u002F","\u003Cp>Amazon Simple Email Service (SES) is a cost-effective, flexible, and scalable email service that enables developers to send mail from within any application. You can configure Amazon SES quickly to support several email use cases, including transactional, marketing, or mass email communications.\u003C\u002Fp>\n","Amazon Simple Email Service (SES) is a cost-effective, flexible, and scalable email service",1097,"2021-01-20T12:26:00.000Z","5.6.17","5.6",[19,123],"ses","https:\u002F\u002Fgithub.com\u002Fs3bubble\u002FSimple-AWS-SES-Mail.git","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsimple-ses-mail.0.0.1.zip",{"attackSurface":127,"codeSignals":143,"taintFlows":183,"riskAssessment":184,"analyzedAt":195},{"hooks":128,"ajaxHandlers":139,"restRoutes":140,"shortcodes":141,"cronEvents":142,"entryPointCount":13,"unprotectedCount":13},[129,135],{"type":130,"name":131,"callback":132,"priority":133,"file":134,"line":81},"filter","ff_settings","fast_aws_settings_html",83,"fast-aws.php",{"type":130,"name":136,"callback":137,"priority":133,"file":134,"line":138},"ff_settings_data","fast_process_aws_data",21,[],[],[],[],{"dangerousFunctions":144,"sqlUsage":145,"outputEscaping":169,"fileOperations":171,"externalRequests":178,"nonceChecks":13,"capabilityChecks":13,"bundledLibraries":179},[],{"prepared":13,"raw":146,"locations":147},9,[148,151,153,156,159,161,163,165,167],{"file":134,"line":149,"context":150},26,"$wpdb->query() with variable interpolation",{"file":134,"line":152,"context":150},28,{"file":134,"line":154,"context":155},60,"$wpdb->get_var() with variable interpolation",{"file":134,"line":157,"context":158},82,"$wpdb->get_row() with variable interpolation",{"file":134,"line":160,"context":155},118,{"file":134,"line":162,"context":155},119,{"file":134,"line":164,"context":155},120,{"file":134,"line":166,"context":155},176,{"file":134,"line":168,"context":155},191,{"escaped":170,"rawEcho":171,"locations":172},6,2,[173,176],{"file":134,"line":174,"context":175},164,"raw output",{"file":134,"line":177,"context":175},229,1,[180],{"name":181,"version":26,"knownCves":182},"Guzzle",[],[],{"summary":185,"deductions":186},"The \"fast-aws\" plugin v1.1.2 presents a concerning security posture, primarily due to a complete lack of authorization checks and inadequate data sanitization practices in its SQL queries. While the attack surface appears minimal, with no exposed AJAX handlers, REST API routes, shortcodes, or cron events, the absence of capability checks or nonce checks means that any function that *could* be triggered would be accessible without proper authentication or authorization.  Furthermore, all nine SQL queries are executed without prepared statements, making them highly susceptible to SQL injection vulnerabilities, especially if any input is ever processed without sanitization. The plugin also exhibits a weakness in output escaping, with 25% of outputs not properly escaped, posing a potential risk for cross-site scripting (XSS) vulnerabilities.\n\nThe vulnerability history for \"fast-aws\" is clean, with no recorded CVEs. This might suggest that the plugin has either been less of a target or that prior versions have not had significant exploitable flaws. However, this lack of history should not be interpreted as a guarantee of current security, especially given the significant red flags identified in the code analysis. The combination of raw SQL queries, unescaped output, and a complete absence of any access control mechanisms creates a substantial risk profile, even with a seemingly small attack surface. The bundling of Guzzle, a popular HTTP client, is standard practice but doesn't inherently offset the identified vulnerabilities.\n\nIn conclusion, while \"fast-aws\" v1.1.2 has no reported historical vulnerabilities and a seemingly contained attack surface, the critical findings in its code analysis, particularly the pervasive use of raw SQL and the complete lack of authorization checks, introduce significant security risks. The absence of these fundamental security controls is a serious concern that outweighs the plugin's clean vulnerability history. Users should be highly cautious and consider the potential for SQL injection and XSS attacks.",[187,189,191,193],{"reason":188,"points":81},"SQL queries without prepared statements",{"reason":190,"points":11},"Missing capability checks",{"reason":192,"points":11},"Missing nonce checks",{"reason":194,"points":170},"Unescaped output","2026-03-17T00:35:59.029Z",{"wat":197,"direct":202},{"assetPaths":198,"generatorPatterns":199,"scriptPaths":200,"versionParams":201},[],[],[],[],{"cssClasses":203,"htmlComments":205,"htmlAttributes":206,"restEndpoints":213,"jsGlobals":214,"shortcodeOutput":215},[204],"item-tab-box",[],[207,208,209,210,211,212],"id=\"s3url\"","name=\"s3url\"","id=\"s3akey\"","name=\"s3akey\"","id=\"s3skey\"","name=\"s3skey\"",[],[],[]]