[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fUyM1Gz6VGJijksN1kw_t6Ej0_-gyp8yz6pbS0R4Occ8":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":24,"download_link":25,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28,"vulnerabilities":29,"developer":30,"crawl_stats":27,"alternatives":37,"analysis":133,"fingerprints":275},"forms-mailcoach","Mailcoach","0.0.16","freekmurze","https:\u002F\u002Fprofiles.wordpress.org\u002Ffreekmurze\u002F","\u003Cp>Mailcoach is an email marketing platform that covers all your email needs for a fraction of the cost. Don’t pay for subscribers, pay for what you send.\u003C\u002Fp>\n\u003Ch3>Introduction\u003C\u002Fh3>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fmailcoach.app\" rel=\"nofollow ugc\">Mailcoach\u003C\u002Fa> is both a self-hosted and hosted email marketing platform that integrates with services like Amazon SES, Mailgun, Postmark or Sendgrid to send out bulk mailings and drip campaigns affordably. It can also keep track of all transactional mails sent out by your app.\u003C\u002Fp>\n\u003Cp>Cloud, stand-alone, or integrated in a project, it’s the perfect email list service for bloggers, artisans and entrepreneurs.\u003C\u002Fp>\n\u003Cp>This plugin allows admins to create a subscribe form to a mailcoach email list. This can be plugged into your website with a shortcode.\u003C\u002Fp>\n\u003Ch3>Using Mailcoach\u003C\u002Fh3>\n\u003Ch3>Setting up your credentials\u003C\u002Fh3>\n\u003Cp>Before we can proceed, you’ll need an API Token and the Mailcoach URL, which can be obtained from your Mailcoach profile settings.\u003C\u002Fp>\n\u003Col>\n\u003Cli>Log in to your Mailcoach instance and access your Mailcoach profile settings.\u003C\u002Fli>\n\u003Cli>Create a new API Token.\u003C\u002Fli>\n\u003Cli>In your WordPress Admin panel, navigate to Mailcoach settings and enter the API Token and Mailcoach URL.\u003C\u002Fli>\n\u003Cli>Save the settings.\u003C\u002Fli>\n\u003Cli>You should be able to view all your email lists with the number of subscribers. If no lists are displayed, make sure you create a list on your Mailcoach instance first.\u003C\u002Fli>\n\u003C\u002Fol>\n\u003C\u002Fp>\n\u003Ch3>Creating a form\u003C\u002Fh3>\n\u003Cp>Now let’s move on to the core functionality of the plugin. Navigate to the “Forms” or “Add Form” section in the WordPress Admin panel.\u003C\u002Fp>\n\u003Cp>You can easily design and customize a form with your own HTML to seamlessly integrate with your website’s look and feel.\u003C\u002Fp>\n\u003Cp>You may encounter a warning regarding the “Email List” with the message “External form subscriptions are not enabled for this list. Please enable them in the Mailcoach dashboard.”\u003Cbr \u002F>\nTo enable external form subscriptions, go to the email list settings on your Mailcoach instance.\u003Cbr \u002F>\nAccess the “Onboarding” tab and enable the option “Allow POST from an external form.” Don’t forget to save.\u003C\u002Fp>\n\u003Cp>After saving the form, you will notice a shortcode field that cannot be updated. Copy the shortcode for later use.\u003C\u002Fp>\n\u003Cp>You also have the option to customize the messages displayed to the user after they attempt to subscribe.\u003C\u002Fp>\n\u003C\u002Fp>\n\u003Ch3>Embed a form on your page\u003C\u002Fh3>\n\u003Cp>Displaying your subscription form on specific pages is a breeze.\u003C\u002Fp>\n\u003Col>\n\u003Cli>Navigate to the desired page where you want to showcase the form.\u003C\u002Fli>\n\u003Cli>Paste the shortcode at the desired location on the page.\u003C\u002Fli>\n\u003Cli>Ensure that the shortcode is enclosed within [brackets].\u003C\u002Fli>\n\u003Cli>After inserting the shortcode, preview the page to verify the form’s functionality. Please note that Cloudflare 5. turnstile provides spam protection for your forms.\u003C\u002Fli>\n\u003C\u002Fol>\n","Embed forms easily on your WordPress site with this plugin. Use shortcodes to add them to specific pages, creating a seamless user experience.",20,2432,0,"2024-10-02T09:08:00.000Z","6.6.5","6.2","8.1",[19,20,21,22,23],"developer","mail","mailcoach","mass-mailing","spatie","https:\u002F\u002Fgithub.com\u002Fspatie\u002Fwordpress-mailcoach","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fforms-mailcoach.0.0.16.zip",92,null,"2026-03-15T15:16:48.613Z",[],{"slug":7,"display_name":7,"profile_url":8,"plugin_count":31,"total_installs":32,"avg_security_score":33,"avg_patch_time_days":34,"trust_score":35,"computed_at":36},2,520,96,30,91,"2026-04-04T17:26:19.889Z",[38,62,84,100,118],{"slug":39,"name":40,"version":41,"author":42,"author_profile":43,"description":44,"short_description":45,"active_installs":46,"downloaded":47,"rating":48,"num_ratings":49,"last_updated":50,"tested_up_to":51,"requires_at_least":52,"requires_php":52,"tags":53,"homepage":57,"download_link":58,"security_score":59,"vuln_count":60,"unpatched_count":13,"last_vuln_date":61,"fetched_at":28},"wp-reroute-email","WP Reroute Email","1.5.2","Sajjad Hossain","https:\u002F\u002Fprofiles.wordpress.org\u002Fmsh134\u002F","\u003Cp>This plugin intercepts all outgoing emails from a WordPress site, sent using the wp_mail() function, and reroutes them to a predefined configurable email address. This is useful in case where you do not want email sent from a WordPress site to reach the users. For an example, to resolve an issue you downloaded production database to your development site and you want no email is sent to production users when testing. You may enable this plugin in development server and reroute emails to your given email address.\u003C\u002Fp>\n\u003Cp>WP Reroute Email provides options for adding your own text or the recipients address at the bottom of the mail.\u003C\u002Fp>\n\u003Cp>You may also save a copy of the email to database and view them from the interface.\u003C\u002Fp>\n\u003Cp>Now, you will be able to disable rerouting based on the subject texts.\u003C\u002Fp>\n","This plugin reroutes all outgoing emails from a WordPress site (sent using the wp_mail() function) to a predefined configurable email address.",1000,28119,100,9,"2025-07-06T06:59:00.000Z","6.8.5","",[54,55,56,20],"developer-tool","development-server","email","http:\u002F\u002Fwordpress.org\u002Fextend\u002Fplugins\u002Fwp-reroute-email\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-reroute-email.1.5.2.zip",98,3,"2023-07-05 00:00:00",{"slug":63,"name":64,"version":65,"author":66,"author_profile":67,"description":68,"short_description":69,"active_installs":70,"downloaded":71,"rating":13,"num_ratings":13,"last_updated":72,"tested_up_to":73,"requires_at_least":74,"requires_php":52,"tags":75,"homepage":79,"download_link":80,"security_score":81,"vuln_count":82,"unpatched_count":13,"last_vuln_date":83,"fetched_at":28},"developer-loggers-for-simple-history","Developer Loggers for Simple History","0.5.1","Pär Thernström","https:\u002F\u002Fprofiles.wordpress.org\u002Feskapism\u002F","\u003Cp>Bring more loggers to \u003Ca href=\"https:\u002F\u002Fsimple-history.com\" rel=\"nofollow ugc\">WordPress user history plugin Simple History\u003C\u002Fa>.\u003Cbr \u002F>\nThat are useful for developers during development of a site or to maintain a live site.\u003C\u002Fp>\n\u003Ch3>Important\u003C\u002Fh3>\n\u003Cp>Please note that this plugin is no longer actively maintained and only receives security fixes.\u003C\u002Fp>\n\u003Ch3>Modern and up to date alternatives\u003C\u002Fh3>\n\u003Cp>For an up to date alternative please see the \u003Ca href=\"https:\u002F\u002Fsimple-history.com\u002Fadd-ons\u002Fdebug-and-monitor\u002F\" rel=\"nofollow ugc\">Debug & Monitor add-on\u003C\u002Fa> which logs WP REST API requests, sent emails, HTTP API requests, and WP cron jobs.\u003C\u002Fp>\n\u003Ch3>Get more features with Simple History Premium\u003C\u002Fh3>\n\u003Cp>Need advanced WordPress audit logging capabilities? Simple History Premium extends your site monitoring with powerful features:\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Enhanced WordPress Activity Logging:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Advanced Analytics Dashboard\u003C\u002Fstrong> – Comprehensive stats and visual activity tracking\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Custom Event Logging\u003C\u002Fstrong> – Add manual entries and notifications to your audit trail\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Stealth Mode\u003C\u002Fstrong> – Control user access with granular permissions\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Flexible Log Retention\u003C\u002Fstrong> – Configure automatic cleanup or keep logs indefinitely\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Data Export Tools\u003C\u002Fstrong> – Export logs in CSV\u002FJSON format for analysis\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Security Features\u003C\u002Fstrong> – IP anonymization and login attempt location tracking\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fsimple-history.com\u002Fpremium\u002F\" rel=\"nofollow ugc\">» \u003Cstrong>Get Simple History Premium\u003C\u002Fstrong>\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch3>Included loggers and plugins\u003C\u002Fh3>\n\u003Cp>\u003Cstrong>Post to Slack\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>All your events is posted to a \u003Ca href=\"https:\u002F\u002Fslack.com\u002F\" rel=\"nofollow ugc\">Slack\u003C\u002Fa> channel of your choice, using an \u003Ca href=\"https:\u002F\u002Fapi.slack.com\u002Fincoming-webhooks\" rel=\"nofollow ugc\">incoming webhook\u003C\u002Fa>. Yes, with this plugin enabled\u003Cbr \u002F>\nthere is no need what so ever to ever leave Slack to see what’s happening on your site or the site of your\u003Cbr \u002F>\nclients or… well, on any site where you have Simple Histor and this plugin enabled.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>WP_Mail-logger\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>See all mails sent with wp_mail(), no matter what the recipient address is.\u003Cbr \u002F>\nchangelog\u003C\u002Fp>\n\u003Cp>\u003Cstrong>404 logger\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>View page visits that load the 404 template.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>JavaScript error logger\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>See what JavaScript errors users that visit your site is getting.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>SystemLog logger\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>Log all messages from Simple History to the syslog on the server. With this logger enabled there is no need to use the beautiful GUI of Simple History ;).\u003C\u002Fp>\n\u003Cp>\u003Cstrong>HTTP API logger\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>Log all usage of HTTP calls from functions like wp_remote_post() and wp_remote_get().\u003C\u002Fp>\n\u003Cp>You can the URL requested, the arguments posted and the full returned result, including server headers.\u003C\u002Fp>\n\u003Cp>The time for the request to complete is also logged. Great for debugging!\u003C\u002Fp>\n","Useful loggers for SimpleHistory for developers during development of a site or to maintain a live site.",400,7569,"2025-09-15T07:32:00.000Z","6.4.8","4.4",[76,19,56,77,78],"debugging","logging","simple-history","https:\u002F\u002Fgithub.com\u002Fbonny\u002FDeveloper-Loggers-for-Simple-History","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fdeveloper-loggers-for-simple-history.0.5.1.zip",99,1,"2025-09-16 00:00:00",{"slug":85,"name":86,"version":87,"author":88,"author_profile":89,"description":90,"short_description":91,"active_installs":11,"downloaded":92,"rating":48,"num_ratings":60,"last_updated":93,"tested_up_to":94,"requires_at_least":95,"requires_php":52,"tags":96,"homepage":52,"download_link":98,"security_score":99,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"cc-devs","CC Devs","1.0.4","John Hawkins","https:\u002F\u002Fprofiles.wordpress.org\u002Fvegasgeek\u002F","\u003Cp>Have you ever built a site for a client and your email address gets set as the admin email, then lost access to the site but continue to receive their admin emails until the end of time? Me, too!\u003C\u002Fp>\n\u003Cp>The CC Devs plugin adds a field to the General settings page where you can add a comma separated list of emails who should receive copies of admin emails for testing. The dev’s version of the emails will include a link allowing them to unsubscribe from the site’s emails.\u003C\u002Fp>\n","Adds the ability to easily CC developers on all admin emails",2556,"2023-03-07T15:50:00.000Z","6.1.10","3.0",[97,56],"developers","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcc-devs.1.0.4.zip",85,{"slug":101,"name":102,"version":103,"author":104,"author_profile":105,"description":106,"short_description":107,"active_installs":13,"downloaded":108,"rating":48,"num_ratings":82,"last_updated":52,"tested_up_to":15,"requires_at_least":109,"requires_php":110,"tags":111,"homepage":115,"download_link":116,"security_score":48,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":117},"change-administration-email","Change Administration Email","1.0.3","Plugin Critic","https:\u002F\u002Fprofiles.wordpress.org\u002Fplugincritic\u002F","\u003Cp>Having trouble changing or confirming your General Settings Administration Email Address?\u003C\u002Fp>\n\u003Cp>A second notice with “Confirm Immediately” is added to update the primary site email without needing to click the confirmation link in the email sent from WordPress.\u003C\u002Fp>\n\u003Cp>\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002F182EOHmawV8?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\u003C\u002Fp>\n\u003Cp>Submit any support requests to \u003Ca href=\"https:\u002F\u002Fplugincritic.com\u002Fcontact\u002F\" rel=\"nofollow ugc\">https:\u002F\u002Fplugincritic.com\u002Fcontact\u002F\u003C\u002Fa>\u003C\u002Fp>\n","Change the Site's Administration Email Address on the General Settings page without the confirmation email.",1842,"6.4","8.0",[112,113,56,114],"administration","developer-tools","settings","https:\u002F\u002Fplugincritic.com\u002Fplugin\u002Fchange-administration-email\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fchange-administration-email.1.0.3.zip","2026-03-15T10:48:56.248Z",{"slug":119,"name":120,"version":121,"author":122,"author_profile":123,"description":124,"short_description":125,"active_installs":13,"downloaded":126,"rating":13,"num_ratings":13,"last_updated":52,"tested_up_to":127,"requires_at_least":128,"requires_php":129,"tags":130,"homepage":131,"download_link":132,"security_score":48,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":117},"email-tools","FS Email Tools","1.2.4","Firdaus Zahari","https:\u002F\u002Fprofiles.wordpress.org\u002Ffsylum\u002F","\u003Cp>The plugin provides a number of tools to modify the behaviour of outgoing emails from your site. This is particularly useful if you are trying to debug any email issues that are happening.\u003C\u002Fp>\n\u003Cp>Features that this plugin offers includes:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Automatic rerouting for all outgoing emails to any number of the specified email address.\u003C\u002Fli>\n\u003Cli>Logging outgoing emails into the database to be viewed later.\u003C\u002Fli>\n\u003Cli>Adding specified email addresses as BCC for all outgoing emails.\u003C\u002Fli>\n\u003C\u002Ful>\n","Collection of tools to interact with emails in WordPress including email rerouting, outgoing email logging to the database, and automatic BCC to speci &hellip;",2680,"6.2.9","5.6","7.3",[54,56,20],"https:\u002F\u002Fgithub.com\u002Ffsylum\u002Ffs-email-tools","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Femail-tools.1.2.4.zip",{"attackSurface":134,"codeSignals":177,"taintFlows":207,"riskAssessment":263,"analyzedAt":274},{"hooks":135,"ajaxHandlers":173,"restRoutes":174,"shortcodes":175,"cronEvents":176,"entryPointCount":13,"unprotectedCount":13},[136,142,146,149,152,154,158,161,163,164,165,168,170],{"type":137,"name":138,"callback":139,"file":140,"line":141},"action","admin_init","closure","src\\Admin\\AdminMenu.php",39,{"type":137,"name":143,"callback":139,"priority":144,"file":140,"line":145},"wp_enqueue_scripts",999,40,{"type":137,"name":147,"callback":139,"file":140,"line":148},"enqueue_block_editor_assets",41,{"type":137,"name":150,"callback":139,"file":140,"line":151},"admin_menu",43,{"type":137,"name":150,"callback":139,"file":140,"line":153},44,{"type":137,"name":155,"callback":139,"file":156,"line":157},"admin_post_create_new_form","src\\Admin\\FormsController.php",33,{"type":137,"name":159,"callback":139,"file":156,"line":160},"admin_post_delete_form",34,{"type":137,"name":162,"callback":139,"file":156,"line":141},"init",{"type":137,"name":162,"callback":139,"file":156,"line":145},{"type":137,"name":162,"callback":139,"file":156,"line":148},{"type":137,"name":138,"callback":139,"file":166,"line":167},"src\\Admin\\SettingsController.php",28,{"type":137,"name":169,"callback":139,"file":166,"line":34},"admin_post_nopriv_store_settings_form",{"type":137,"name":171,"callback":139,"file":166,"line":172},"admin_post_store_settings_form",31,[],[],[],[],{"dangerousFunctions":178,"sqlUsage":179,"outputEscaping":189,"fileOperations":13,"externalRequests":13,"nonceChecks":60,"capabilityChecks":13,"bundledLibraries":203},[],{"prepared":180,"raw":31,"locations":181},5,[182,186],{"file":183,"line":184,"context":185},"src\\Support\\Table.php",32,"$wpdb->get_var() with variable interpolation",{"file":183,"line":187,"context":188},78,"$wpdb->query() with variable interpolation",{"escaped":190,"rawEcho":191,"locations":192},81,4,[193,197,199,201],{"file":194,"line":195,"context":196},"src\\Admin\\views\\create-or-update-form.php",129,"raw output",{"file":198,"line":184,"context":196},"src\\Admin\\views\\show-forms.php",{"file":200,"line":180,"context":196},"src\\Front\\views\\subscribe.php",{"file":200,"line":202,"context":196},16,[204],{"name":205,"version":27,"knownCves":206},"Guzzle",[],[208,226,234,253],{"entryPoint":209,"graph":210,"unsanitizedCount":82,"severity":225},"storeSettings (src\\Admin\\SettingsController.php:34)",{"nodes":211,"edges":222},[212,217],{"id":213,"type":214,"label":215,"file":166,"line":216},"n0","source","$_SERVER['HTTP_REFERER']",38,{"id":218,"type":219,"label":220,"file":166,"line":216,"wp_function":221},"n1","sink","wp_redirect() [Open Redirect]","wp_redirect",[223],{"from":213,"to":218,"sanitized":224},false,"medium",{"entryPoint":227,"graph":228,"unsanitizedCount":82,"severity":225},"\u003CSettingsController> (src\\Admin\\SettingsController.php:0)",{"nodes":229,"edges":232},[230,231],{"id":213,"type":214,"label":215,"file":166,"line":216},{"id":218,"type":219,"label":220,"file":166,"line":216,"wp_function":221},[233],{"from":213,"to":218,"sanitized":224},{"entryPoint":235,"graph":236,"unsanitizedCount":82,"severity":252},"fromRequest (src\\Admin\\Data\\CreateOrUpdateFormData.php:25)",{"nodes":237,"edges":249},[238,241,244],{"id":213,"type":214,"label":239,"file":240,"line":157},"$_POST","src\\Admin\\Data\\CreateOrUpdateFormData.php",{"id":218,"type":242,"label":243,"file":240,"line":157},"transform","→ execute()",{"id":245,"type":219,"label":246,"file":247,"line":172,"wp_function":248},"n2","update_option() [Settings Manipulation]","src\\Admin\\Action\\StoreSettings.php","update_option",[250,251],{"from":213,"to":218,"sanitized":224},{"from":218,"to":245,"sanitized":224},"low",{"entryPoint":254,"graph":255,"unsanitizedCount":82,"severity":252},"\u003CCreateOrUpdateFormData> (src\\Admin\\Data\\CreateOrUpdateFormData.php:0)",{"nodes":256,"edges":260},[257,258,259],{"id":213,"type":214,"label":239,"file":240,"line":157},{"id":218,"type":242,"label":243,"file":240,"line":157},{"id":245,"type":219,"label":246,"file":247,"line":172,"wp_function":248},[261,262],{"from":213,"to":218,"sanitized":224},{"from":218,"to":245,"sanitized":224},{"summary":264,"deductions":265},"The \"forms-mailcoach\" plugin v0.0.16 exhibits a generally strong security posture based on the static analysis provided. The complete absence of identified CVEs in its vulnerability history is a significant positive indicator, suggesting a history of secure development or prompt patching.  The code also demonstrates good practices by using prepared statements for a high percentage of its SQL queries and properly escaping a vast majority of its output. The limited attack surface with no discoverable AJAX handlers, REST API routes, or shortcodes, and no external HTTP requests, further enhances its security profile.\n\nHowever, there are areas for concern. The taint analysis reveals that all four analyzed flows have unsanitized paths. While no critical or high severity issues were flagged from this, it suggests a potential for vulnerabilities if these unsanitized paths are ever exposed to user input that could be manipulated. Additionally, the lack of capability checks for any entry points is a notable weakness, meaning that potentially sensitive actions could be performed by users without the necessary permissions if an attack vector were to be discovered.  The bundled Guzzle library, while not inherently insecure, could pose a risk if it's an outdated version with known vulnerabilities.\n\nIn conclusion, \"forms-mailcoach\" v0.0.16 is built on a foundation of good security practices, particularly regarding its limited attack surface and diligent output escaping. The absence of historical vulnerabilities is reassuring. Nevertheless, the presence of unsanitized paths in taint flows and the complete absence of capability checks on its limited entry points represent exploitable weaknesses that warrant careful consideration and potential remediation.",[266,269,272],{"reason":267,"points":268},"Unsanitized paths in taint flows",10,{"reason":270,"points":271},"No capability checks on entry points",8,{"reason":273,"points":60},"Bundled Guzzle library (potential for outdated version)","2026-03-16T22:45:24.195Z",{"wat":276,"direct":283},{"assetPaths":277,"generatorPatterns":279,"scriptPaths":280,"versionParams":281},[278],"\u002Fwp-content\u002Fplugins\u002Fforms-mailcoach\u002Fresources\u002Fdist\u002Fcss\u002Ftailwind.min.css",[],[],[282],"forms-mailcoach\u002Fresources\u002Fdist\u002Fcss\u002Ftailwind.min.css?ver=",{"cssClasses":284,"htmlComments":285,"htmlAttributes":286,"restEndpoints":287,"jsGlobals":288,"shortcodeOutput":289},[],[],[],[],[],[290,291,292,293,294,295],"{{ form.mailcoachListId }}","\u003Cinput type=\"hidden\" name=\"list_id\" value=\"{{ form.mailcoachListId }}\">","\u003Cbutton type=\"submit\"","\u003Cinput type=\"email\" name=\"email\" placeholder=\"","\u003Cinput type=\"text\" name=\"first_name\" placeholder=\"","\u003Cinput type=\"text\" name=\"last_name\" placeholder=\""]