[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fLoCecS97rdKnH0N187MWFc3JrjB7jZGkJRn0TLWUmG4":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":14,"tags":17,"homepage":23,"download_link":24,"security_score":25,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":27,"vulnerabilities":28,"developer":29,"crawl_stats":26,"alternatives":37,"analysis":136,"fingerprints":203},"folding-archives","Folding Archives","1.0","ray.viljoen","https:\u002F\u002Fprofiles.wordpress.org\u002Frayviljoen\u002F","\u003Cp>The Folding Archives plugin provides a sidebar widget to display archives in a small and simple jQuery dropdown menu.\u003Cbr \u002F>\nThe widget allows you to select how far back to display archives ( in days ), a custom title and an option for including jQuery.\u003C\u002Fp>\n\u003Cp>The folding animation is javascript dependant, although the widget will fallback to a basic non-animated version should javascript be disabled.\u003C\u002Fp>\n\u003Cp>Developed by \u003Ca href=\"http:\u002F\u002Fwww.catn.com\" rel=\"nofollow ugc\">PHP Hosting Experts CatN\u003C\u002Fa>\u003C\u002Fp>\n","A simple widget providing a customisable, animated dropdown menu to display archives.",10,3001,0,"","3.1.4","3.0",[18,19,20,21,22],"archives","colapsing","jquery","sidebar","widget","http:\u002F\u002Fcatn.com\u002Fcommunity\u002Fplugins\u002Ffolding-archives\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Ffolding-archives.zip",100,null,"2026-03-15T10:48:56.248Z",[],{"slug":30,"display_name":7,"profile_url":8,"plugin_count":31,"total_installs":32,"avg_security_score":33,"avg_patch_time_days":34,"trust_score":35,"computed_at":36},"rayviljoen",6,400,88,30,86,"2026-04-04T07:31:35.736Z",[38,62,82,102,119],{"slug":39,"name":40,"version":41,"author":42,"author_profile":43,"description":44,"short_description":45,"active_installs":46,"downloaded":47,"rating":48,"num_ratings":49,"last_updated":50,"tested_up_to":51,"requires_at_least":52,"requires_php":14,"tags":53,"homepage":56,"download_link":57,"security_score":58,"vuln_count":59,"unpatched_count":13,"last_vuln_date":60,"fetched_at":61},"collapsing-archives","Collapsing Archives","3.0.8","robfelty","https:\u002F\u002Fprofiles.wordpress.org\u002Frobfelty\u002F","\u003Cp>Create collapsible archives by year or month. Features include: link to archive pages, display of individual posts and support for custom post-types.\u003C\u002Fp>\n\u003Ch3>Demo\u003C\u002Fh3>\n\u003Cp>I use this plugin in my blog at http:\u002F\u002Fblog.robfelty.com\u003C\u002Fp>\n","This plugin uses Javascript to dynamically expand or collapse the set of months for each year and posts for each month in the archive listing of your  &hellip;",3000,146200,82,21,"2026-02-12T03:41:00.000Z","6.9.4","2.8",[54,18,55,21,22],"accordion","collapse","http:\u002F\u002Frobfelty.com\u002Fplugins\u002Fcollapsing-archives","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcollapsing-archives.3.0.8.zip",99,1,"2024-08-26 00:00:00","2026-03-15T15:16:48.613Z",{"slug":63,"name":64,"version":65,"author":66,"author_profile":67,"description":68,"short_description":69,"active_installs":70,"downloaded":71,"rating":72,"num_ratings":31,"last_updated":73,"tested_up_to":74,"requires_at_least":16,"requires_php":75,"tags":76,"homepage":79,"download_link":80,"security_score":81,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":61},"expanding-archives","Expanding Archives","2.1.0","Ashley","https:\u002F\u002Fprofiles.wordpress.org\u002Fnosegraze\u002F","\u003Cp>Expanding Archives adds a widget that shows your old posts in an expandable\u002Fcollapsible format. Each post is categorized under its year and month, so you can expand all the posts in a given month and year.\u003C\u002Fp>\n\u003Cp>This plugin comes with very minimal CSS styling so you can easily customize it to match your design.\u003C\u002Fp>\n\u003Cp>JavaScript is required. No IE support.\u003C\u002Fp>\n","This plugin adds a new widget where you can view your old posts by expanding certain years and months.",2000,22798,94,"2024-03-23T14:55:00.000Z","6.4.8","7.4",[18,77,78,21,22],"navigation","posts","https:\u002F\u002Fshop.nosegraze.com\u002Fproduct\u002Fexpanding-archives\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fexpanding-archives.zip",85,{"slug":83,"name":84,"version":85,"author":86,"author_profile":87,"description":88,"short_description":89,"active_installs":90,"downloaded":91,"rating":92,"num_ratings":93,"last_updated":94,"tested_up_to":95,"requires_at_least":96,"requires_php":14,"tags":97,"homepage":100,"download_link":101,"security_score":81,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":61},"sliding-panel","Sliding Panel","0.2.0","Justin Tadlock","https:\u002F\u002Fprofiles.wordpress.org\u002Fgreenshady\u002F","\u003Cp>The Sliding Panel plugin creates a new sidebar for your site that allows you to add widgets.  These widgets appear within a responsive sliding panel at the top of your site on the front end.\u003C\u002Fp>\n\u003Ch3>Features\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>It’s a jQuery-powered sliding panel.  That’s a feature in-and-of itself, right?\u003C\u002Fli>\n\u003Cli>Uses widgets, so you can add pretty much anything you can add to any other sidebar.\u003C\u002Fli>\n\u003Cli>Uses the WordPress-packaged jQuery.\u003C\u002Fli>\n\u003Cli>Will automatically display with any correctly-coded theme.\u003C\u002Fli>\n\u003Cli>Supports HTML5 and Schema.org microdata.\u003C\u002Fli>\n\u003Cli>It’s responsive, so it’ll look good on any device.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Professional Support\u003C\u002Fh3>\n\u003Cp>If you need professional plugin support from me, the plugin author, you can access the support forums at \u003Ca href=\"http:\u002F\u002Fthemehybrid.com\u002Fsupport\" rel=\"nofollow ugc\">Theme Hybrid\u003C\u002Fa>, which is a professional WordPress help\u002Fsupport site where I handle support for all my plugins and themes for a community of 40,000+ users (and growing).\u003C\u002Fp>\n\u003Ch3>Plugin Development\u003C\u002Fh3>\n\u003Cp>If you’re a theme author, plugin author, or just a code hobbyist, you can follow the development of this plugin on it’s \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fjustintadlock\u002Fsliding-panel\" rel=\"nofollow ugc\">GitHub repository\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch3>Donations\u003C\u002Fh3>\n\u003Cp>Yes, I do accept donations.  If you want to buy me a beer or whatever, you can do so from my \u003Ca href=\"http:\u002F\u002Fthemehybrid.com\u002Fdonate\" rel=\"nofollow ugc\">donations page\u003C\u002Fa>.  I appreciate all donations, no matter the size.  Further development of this plugin is not contingent on donations, but they are always a nice incentive.\u003C\u002Fp>\n","Adds a responsive sliding panel to the top of your WordPress-powered site.",70,36833,90,4,"2013-10-11T04:04:00.000Z","3.7.41","3.6",[98,20,21,99,22],"javascript","slider","http:\u002F\u002Fthemehybrid.com\u002Fplugins\u002Fsliding-panel","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsliding-panel.0.2.0.zip",{"slug":103,"name":104,"version":105,"author":106,"author_profile":107,"description":108,"short_description":109,"active_installs":34,"downloaded":110,"rating":25,"num_ratings":59,"last_updated":111,"tested_up_to":112,"requires_at_least":113,"requires_php":14,"tags":114,"homepage":117,"download_link":118,"security_score":81,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":61},"arcw-popover-addon","ARCW Popover Addon","0.1.4","alek","https:\u002F\u002Fprofiles.wordpress.org\u002Falekart\u002F","\u003Cp>\u003Cem>Shows a popover with list of links to the posts of the month\u002Fday.\u003C\u002Fem>\u003C\u002Fp>\n\u003Cp>Compatible with \u003Cstrong>ARCW 1.0.9+\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>This will not work if you don’t have Archives Calendar Widget installed\u002Factivated.\u003Cbr \u002F>\nGet it here : \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Farchives-calendar-widget\u002F\" rel=\"ugc\">Archives Calendar Widget\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>There is no any settings, just install and activate.\u003C\u002Fp>\n\u003Ch4>Notes\u003C\u002Fh4>\n\u003Cp>Please use the Support section to report issues.\u003C\u002Fp>\n","Popover Addon for Archives Calendar Widget",2777,"2016-08-16T22:31:00.000Z","4.6.30","4.0",[18,115,21,116,22],"calendar","view","http:\u002F\u002Flabs.alek.be\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Farcw-popover-addon.0.1.4.zip",{"slug":120,"name":121,"version":122,"author":123,"author_profile":124,"description":125,"short_description":126,"active_installs":11,"downloaded":127,"rating":25,"num_ratings":128,"last_updated":14,"tested_up_to":129,"requires_at_least":130,"requires_php":14,"tags":131,"homepage":134,"download_link":135,"security_score":25,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":27},"jquery-tabber-widget","jQuery Tabber Widget","1.0.2","Noumaan Yaqoob","https:\u002F\u002Fprofiles.wordpress.org\u002Fnoumaan\u002F","\u003Cp>A simple widget to add recent, popular, and random posts. This plugin is based on Jeff Star’s sidebar tabber code. It also needs \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fextend\u002Fplugins\u002Fwordpress-popular-posts\u002F\" rel=\"ugc\">WordPress Popular Posts\u003C\u002Fa> plugin installed and activated.\u003C\u002Fp>\n","A simple widget to display a jquery based tabbed menu for recent, random and popular posts.",4502,2,"3.5.2","3.1",[20,21,132,133,22],"tabber","tabs","http:\u002F\u002Fwww.wpbeginner.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fjquery-tabber-widget.1.0.2.zip",{"attackSurface":137,"codeSignals":149,"taintFlows":187,"riskAssessment":188,"analyzedAt":202},{"hooks":138,"ajaxHandlers":145,"restRoutes":146,"shortcodes":147,"cronEvents":148,"entryPointCount":13,"unprotectedCount":13},[139],{"type":140,"name":141,"callback":142,"file":143,"line":144},"action","widgets_init","anonymous","index.php",95,[],[],[],[],{"dangerousFunctions":150,"sqlUsage":154,"outputEscaping":156,"fileOperations":13,"externalRequests":13,"nonceChecks":13,"capabilityChecks":13,"bundledLibraries":186},[151],{"fn":152,"file":143,"line":144,"context":153},"create_function","add_action('widgets_init', create_function('', 'return register_widget(\"FoldingArchives\");'));",{"prepared":13,"raw":13,"locations":155},[],{"escaped":157,"rawEcho":158,"locations":159},3,17,[160,163,165,167,169,171,173,175,176,177,178,179,180,181,183,184,185],{"file":143,"line":161,"context":162},26,"raw output",{"file":143,"line":164,"context":162},46,{"file":143,"line":166,"context":162},47,{"file":143,"line":168,"context":162},48,{"file":143,"line":170,"context":162},52,{"file":143,"line":172,"context":162},54,{"file":143,"line":174,"context":162},89,{"file":143,"line":174,"context":162},{"file":143,"line":174,"context":162},{"file":143,"line":174,"context":162},{"file":143,"line":92,"context":162},{"file":143,"line":92,"context":162},{"file":143,"line":92,"context":162},{"file":143,"line":182,"context":162},91,{"file":143,"line":182,"context":162},{"file":143,"line":182,"context":162},{"file":143,"line":182,"context":162},[],[],{"summary":189,"deductions":190},"The \"folding-archives\" v1.0 plugin exhibits a mixed security posture. On the positive side, it demonstrates good practices by using prepared statements for all SQL queries and avoids external HTTP requests or file operations, which are common vectors for vulnerabilities. The absence of known CVEs and historical vulnerabilities is also a strong indicator of a generally secure development history.  However, several concerning signals arise from the static code analysis. The presence of the `create_function` function is a significant security risk, as it is deprecated and can be exploited for arbitrary code execution if not handled with extreme care, especially in user-facing contexts. Furthermore, a very low percentage of output escaping (15%) suggests a high likelihood of cross-site scripting (XSS) vulnerabilities, allowing attackers to inject malicious scripts into the website. The complete lack of nonce and capability checks, while aligned with the zero entry points found, means that if any entry points were ever added without proper security measures, they would be immediately vulnerable. The zero taint analysis flows can be attributed to the limited entry points and the lack of exploitable code patterns detected in the analyzed paths, but this does not negate the risks posed by `create_function` and poor output escaping.\n\nIn conclusion, while the plugin has a clean vulnerability history and good practices in SQL handling, the identified code signals of `create_function` and significantly inadequate output escaping present substantial security weaknesses. The lack of any detected entry points is a strength, but the potential for injection vulnerabilities remains high due to poor output sanitization. Until these critical code-level issues are addressed, the plugin should be considered a security risk, particularly if its functionality expands or user-provided data is ever displayed.",[191,194,197,200],{"reason":192,"points":193},"Dangerous function 'create_function' used",15,{"reason":195,"points":196},"Low percentage of properly escaped output (15%)",8,{"reason":198,"points":199},"No nonce checks detected",5,{"reason":201,"points":199},"No capability checks detected","2026-03-16T23:18:01.891Z",{"wat":204,"direct":210},{"assetPaths":205,"generatorPatterns":207,"scriptPaths":208,"versionParams":209},[206],"\u002Fwp-content\u002Fplugins\u002Ffolding-archives\u002Ffolding.js",[],[206],[],{"cssClasses":211,"htmlComments":215,"htmlAttributes":216,"restEndpoints":218,"jsGlobals":219,"shortcodeOutput":220},[212,213,214],"widget_folding_archives","archive-title","archive_post",[],[217],"id=\"collapsible-archives\"",[],[],[]]