[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fW7ubi6OJGPq_Vhj-O5hrnamcgjIfI9sWQSCPDbr4JhU":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":22,"download_link":23,"security_score":24,"vuln_count":13,"unpatched_count":13,"last_vuln_date":25,"fetched_at":26,"vulnerabilities":27,"developer":28,"crawl_stats":25,"alternatives":34,"analysis":131,"fingerprints":172},"game-of-15","Game of 15","1.0","biscia7","https:\u002F\u002Fprofiles.wordpress.org\u002Fbiscia7\u002F","\u003Ch4>Shortcode to add game of 15\u003C\u002Fh4>\n\u003Cp>Useful shortcode to a simple game on your page or posts\u003C\u002Fp>\n\u003Cp>[gameof15]\u003C\u002Fp>\n\u003Cp>This shortcode add a javascript function that  add a Game of 15 on your posts. You can set a background-image and the color of the numbers. [gameof15 immagine=“url”] to add an image of background IMPORTANT: image size: 400×400 [gameof15 color=“#000000”] to change the color of the numbers. [gameof15 immagine=“url” color=“#000000”] to add an image and change the color.\u003C\u002Fp>\n\u003Ch4>Credits\u003C\u002Fh4>\n\u003Cp>This plugin is created by \u003Ca href=\"http:\u002F\u002Fwww.crawlermotori.com\u002F\" title=\"Danilo Franceschini\" rel=\"friend nofollow ugc\">Danilo Franceschini\u003C\u002Fa>.\u003C\u002Fp>\n","Shortcode to add Game of 15 on pages or posts",10,2866,0,"2016-06-16T17:16:00.000Z","4.5.33","3.9","",[19,20,21],"game","javascript","shortcode","http:\u002F\u002Fwww.crawlermotori.com\u002F229\u002Fgame-of-15\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fgame-of-15.zip",85,null,"2026-03-15T15:16:48.613Z",[],{"slug":7,"display_name":7,"profile_url":8,"plugin_count":29,"total_installs":30,"avg_security_score":31,"avg_patch_time_days":32,"trust_score":31,"computed_at":33},4,420,80,30,"2026-04-04T16:52:33.763Z",[35,59,81,97,114],{"slug":36,"name":37,"version":38,"author":39,"author_profile":40,"description":41,"short_description":42,"active_installs":43,"downloaded":44,"rating":45,"num_ratings":46,"last_updated":47,"tested_up_to":48,"requires_at_least":49,"requires_php":50,"tags":51,"homepage":55,"download_link":56,"security_score":45,"vuln_count":57,"unpatched_count":13,"last_vuln_date":58,"fetched_at":26},"shortcoder","Shortcoder — Create Shortcodes for Anything","6.5.2","vaakash","https:\u002F\u002Fprofiles.wordpress.org\u002Fvaakash\u002F","\u003Cp>Shortcoder plugin allows to create a custom shortcodes for HTML, JavaScript, CSS and other code snippets. Now the shortcodes can be used in posts\u002Fpages and the snippet will be replaced in place.\u003C\u002Fp>\n\u003Ch3>✍ Create shortcodes easily\u003C\u002Fh3>\n\u003Col>\n\u003Cli>Give a name for the shortcode\u003C\u002Fli>\n\u003Cli>Paste the HTML\u002FJavaScript\u002FCSS as shortcode content\u003C\u002Fli>\n\u003Cli>Save !\u003C\u002Fli>\n\u003Cli>Now insert the shortcode \u003Ccode>[sc name=\"my_shortcode\"]\u003C\u002Fcode> in your post\u002Fpage.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Voila !\u003C\u002Fstrong> You got the HTML\u002FJavascript\u002FCSS in your post.\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch3>✨ Features\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Create \u003Cstrong>custom shortcodes\u003C\u002Fstrong> easily and use them in any place where shortcode is supported.\u003C\u002Fli>\n\u003Cli>Have any \u003Cstrong>HTML\u003C\u002Fstrong>, \u003Cstrong>Javascript\u003C\u002Fstrong>, \u003Cstrong>CSS\u003C\u002Fstrong> as Shortcode content.\u003C\u002Fli>\n\u003Cli>Insert: \u003Cstrong>Custom parameters\u003C\u002Fstrong> in shortcode\u003C\u002Fli>\n\u003Cli>Insert: \u003Cstrong>WordPress parameters\u003C\u002Fstrong> in shortcode\u003C\u002Fli>\n\u003Cli>Multiple editors: Code, Visual and text modes.\u003C\u002Fli>\n\u003Cli>Globally disable the shortcode when not needed.\u003C\u002Fli>\n\u003Cli>Disable shortcode on desktop, mobile devices.\u003C\u002Fli>\n\u003Cli>A button in post editor to pick the shortcodes to insert.\u003C\u002Fli>\n\u003Cli>Execute blocks HTML in shortcode content.\u003C\u002Fli>\n\u003Cli>Insert shortcodes in Gutenberg\u002Fblock editor.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>🎲 An example usage\u003C\u002Fh3>\n\u003Col>\n\u003Cli>Create a shortcode named “adsenseAd” in the Shortcoder admin page.\u003C\u002Fli>\n\u003Cli>Paste the adsense code in the box given and save it.\u003C\u002Fli>\n\u003Cli>Use \u003Ccode>[sc name=\"adsenseAd\"]\u003C\u002Fcode> in your posts and pages.\u003C\u002Fli>\n\u003Cli>Tada !!! the ad code is replaced and it appears in the post.\u003C\u002Fli>\n\u003Cli>Now you can edit the ad code at one place and the code is updated in all the locations where the shortcode is used.\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Cp>Similarly shortcodes can be created for frequently used snippets.\u003C\u002Fp>\n\u003Cp>You can also add \u003Ca href=\"https:\u002F\u002Fwww.aakashweb.com\u002Fdocs\u002Fshortcoder\u002F\" rel=\"nofollow ugc\">custom parameters\u003C\u002Fa> (like \u003Ccode>%%id%%\u003C\u002Fcode>) inside the snippets, and change it’s value like \u003Ccode>[sc name=\"youtube\" id=\"GrlRADfvjII\"]\u003C\u002Fcode> when using them.\u003C\u002Fp>\n\u003Ch3>🧱 Using in block editor\u003C\u002Fh3>\n\u003Cp>Though shortcodes can be used in \u003Cstrong>any\u003C\u002Fstrong> place manually, Shortcoder provides below options to select and insert the shortcodes created easily when working with the block editor.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Shortcoder block\u003C\u002Fli>\n\u003Cli>Toolbar button to select and insert shortcodes inline (under “more”)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>💎 Upgrade to PRO\u003C\u002Fh3>\n\u003Cp>Shortcoder also provides a \u003Ca href=\"https:\u002F\u002Fwww.aakashweb.com\u002Fwordpress-plugins\u002Fshortcoder\u002F\" rel=\"nofollow ugc\">PRO version\u003C\u002Fa> which has additional features to further enhance the experience. Below features are offered in the PRO version.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Custom editor\u003C\u002Fstrong> – Edit Shortcode content using block editor or page builder plugins like Elementor and WPBakery.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>(New) Translation with WPML\u003C\u002Fstrong> – Translate Shortcode content with WPML.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Revisions\u003C\u002Fstrong> – Revisions support for Shortcode content.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Locate shortcode\u003C\u002Fstrong> – Search posts and pages where a shortcode is used.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Extra code\u003C\u002Fstrong> – Include extra code to the footer when a shortcode is used in a page.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.aakashweb.com\u002Fwordpress-plugins\u002Fshortcoder\u002F\" rel=\"nofollow ugc\">Get started with Shortcoder – PRO\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch3>Links\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.aakashweb.com\u002Fdocs\u002Fshortcoder\u002F\" rel=\"nofollow ugc\">Documentation\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.aakashweb.com\u002Fdocs\u002Fshortcoder\u002Ffaq\u002F\" rel=\"nofollow ugc\">FAQs\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.aakashweb.com\u002Fforum\u002F\" rel=\"nofollow ugc\">Support forum\u002FReport bugs\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.aakashweb.com\u002Fwordpress-plugins\u002Fshortcoder\u002F#pro\" rel=\"nofollow ugc\">PRO features\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n","Create custom \"Shortcodes\" easily for HTML, JavaScript, CSS code snippets and use the shortcodes within posts, pages & widgets",100000,1888190,98,225,"2026-03-01T17:44:00.000Z","6.9.4","4.9.0","5.3",[52,53,20,21,54],"code","html","snippets","https:\u002F\u002Fwww.aakashweb.com\u002Fwordpress-plugins\u002Fshortcoder\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fshortcoder.6.5.2.zip",2,"2026-01-09 00:00:00",{"slug":60,"name":61,"version":62,"author":63,"author_profile":64,"description":65,"short_description":66,"active_installs":67,"downloaded":68,"rating":69,"num_ratings":70,"last_updated":71,"tested_up_to":72,"requires_at_least":73,"requires_php":74,"tags":75,"homepage":79,"download_link":80,"security_score":69,"vuln_count":13,"unpatched_count":13,"last_vuln_date":25,"fetched_at":26},"dinosaur-game","Dinosaur Game","1.0.7","Chris David Miles","https:\u002F\u002Fprofiles.wordpress.org\u002Fchrisdavidmiles\u002F","\u003Cp>This plugin lets you add the dinosaur game from Google Chrome onto your WordPress site.\u003C\u002Fp>\n\u003Cp>To use it, install the plugin, and use the [dinosaur-game] shortcode wherever you’d like the game to appear.\u003C\u002Fp>\n\u003Ch3>How to play\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Jump to start a game.\u003C\u002Fli>\n\u003Cli>The object of the game is to run as far as possible. Enemies and obstacles will try to block your path. \u003C\u002Fli>\n\u003Cli>Use the space bar or up key on your keyboard to jump over them. The down key lets you crouch. On mobile, tap on the game area to jump.\u003C\u002Fli>\n\u003C\u002Ful>\n","Add the dinosaur game from Google Chrome to your site using the [dinosaur-game] shortcode.",1000,86354,100,13,"2025-08-14T23:31:00.000Z","6.8.5","3.3","5.2.4",[76,77,78,19,21],"chrome","chromium","dinosaur","https:\u002F\u002Fchrisdavidmiles.com\u002Fdinosaur-game","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fdinosaur-game.1.0.7.zip",{"slug":82,"name":83,"version":84,"author":85,"author_profile":86,"description":87,"short_description":88,"active_installs":67,"downloaded":89,"rating":13,"num_ratings":13,"last_updated":90,"tested_up_to":91,"requires_at_least":92,"requires_php":17,"tags":93,"homepage":95,"download_link":96,"security_score":24,"vuln_count":13,"unpatched_count":13,"last_vuln_date":25,"fetched_at":26},"slideshow","Slideshow","0.1","Justin Tadlock","https:\u002F\u002Fprofiles.wordpress.org\u002Fgreenshady\u002F","\u003Cp>The Slideshow plugin gives you a shortcode called \u003Ccode>[slideshow]\u003C\u002Fcode>, which pulls any image attachments for a post (or any post type) and formats them into a nicely-designed slideshow.\u003C\u002Fp>\n\u003Cp>The Slideshow plugin was originally developed as a feature of the \u003Ca href=\"http:\u002F\u002Fdevpress.com\u002Fthemes\u002Fnews\" title=\"News WordPress theme\" rel=\"nofollow ugc\">News theme\u003C\u002Fa> (if you’re using that theme, please don’t install this plugin).  Realizing that users sometimes switch themes, we wanted to give those users a way to continue using their slideshows with other themes.  This also allows us to make the slideshow feature something that anyone can use, even if they’re not using one of our themes.\u003C\u002Fp>\n","A shortcode for displaying a slideshow of image attachments for a post.",110767,"2017-11-28T14:07:00.000Z","3.0.5","3.0",[20,94,21,82],"jquery","http:\u002F\u002Fdevpress.com\u002Fplugins\u002Fslideshow","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fslideshow.0.1.zip",{"slug":98,"name":99,"version":100,"author":7,"author_profile":8,"description":101,"short_description":102,"active_installs":103,"downloaded":104,"rating":13,"num_ratings":13,"last_updated":105,"tested_up_to":106,"requires_at_least":16,"requires_php":17,"tags":107,"homepage":109,"download_link":110,"security_score":111,"vuln_count":112,"unpatched_count":112,"last_vuln_date":113,"fetched_at":26},"hide-text-shortcode","Hide Text Shortcode","1.1","\u003Ch4>Hide Text Shortcode\u003C\u002Fh4>\n\u003Cp>Useful shortcode to hide text in a post\u003C\u002Fp>\n\u003Cp>[htsP type=”Read More…”]Lorem ipsum dolor sit amet, consectetuer adipiscing elit.[\u002FhtsP].\u003C\u002Fp>\n\u003Cp>This shortcode add a javascript function that  hide a text in a post and will show it on clicking on a choosen string.\u003C\u002Fp>\n\u003Ch4>Credits\u003C\u002Fh4>\n\u003Cp>This plugin is created by \u003Ca href=\"http:\u002F\u002Fwww.crawlermotori.com\u002F\" title=\"Danilo Franceschini\" rel=\"friend nofollow ugc\">Danilo Franceschini\u003C\u002Fa>.\u003C\u002Fp>\n","Shortcode to hide text",400,2333,"2016-06-16T17:25:00.000Z","4.8.28",[108,20,21],"hide-text","http:\u002F\u002Fwww.crawlermotori.com\u002F210\u002Fhide-text-shortcode-plug-wordpress\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fhide-text-shortcode.zip",63,1,"2025-08-13 00:00:00",{"slug":115,"name":116,"version":6,"author":117,"author_profile":118,"description":119,"short_description":120,"active_installs":69,"downloaded":121,"rating":13,"num_ratings":13,"last_updated":122,"tested_up_to":123,"requires_at_least":124,"requires_php":17,"tags":125,"homepage":129,"download_link":130,"security_score":24,"vuln_count":13,"unpatched_count":13,"last_vuln_date":25,"fetched_at":26},"embed-solitaire-iframe","Solitaire Card Game – Embed Klondike Solitaire for Free – Ad-free Solitaire Puzzle game","onlinesolitaire","https:\u002F\u002Fprofiles.wordpress.org\u002Fonlinesolitaire\u002F","\u003Cp>This plugin lets you embed an ad-free version of Solitaire for free using a shortcode. Easily embed Klondike Solitaire anywhere on your WordPress website, including pages and posts.\u003C\u002Fp>\n\u003Cp>To include Solitaire, simply add the shortcode [’embed-solitaire-game’] wherever you’d like the game to appear and people will see an ad-free version of Solitaire that anyone can play.\u003C\u002Fp>\n\u003Cp>This plugin also features Klondike Solitaire with the deck turning one card at a time. To include that game, use the shortcode [’embed-solitaire-turn-one-game’].\u003C\u002Fp>\n\u003Ch3>Third Party Dependence\u003C\u002Fh3>\n\u003Cp>This plugin is dependent on our website: https:\u002F\u002Fonline-solitaire.com. We own and operate this this website and have created this plugin to make it easy for anyone to embed an ad-free version of solitaire on their own website.\u003C\u002Fp>\n","This plugin lets you embed an ad-free version of Solitaire for free using a shortcode. Easily embed Klondike Solitaire on your WordPress website, usin &hellip;",3797,"2021-03-23T13:29:00.000Z","5.6.17","4.9",[126,19,127,21,128],"embed","puzzle","solitaire","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fembed-solitaire-iframe\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fembed-solitaire-iframe.zip",{"attackSurface":132,"codeSignals":143,"taintFlows":159,"riskAssessment":160,"analyzedAt":171},{"hooks":133,"ajaxHandlers":134,"restRoutes":135,"shortcodes":136,"cronEvents":142,"entryPointCount":112,"unprotectedCount":13},[],[],[],[137],{"tag":138,"callback":139,"file":140,"line":141},"gameof15","go15s","gameof15.php",12,[],{"dangerousFunctions":144,"sqlUsage":145,"outputEscaping":147,"fileOperations":13,"externalRequests":13,"nonceChecks":13,"capabilityChecks":13,"bundledLibraries":158},[],{"prepared":13,"raw":13,"locations":146},[],{"escaped":13,"rawEcho":29,"locations":148},[149,152,154,156],{"file":140,"line":150,"context":151},22,"raw output",{"file":140,"line":153,"context":151},23,{"file":140,"line":155,"context":151},27,{"file":140,"line":157,"context":151},51,[],[],{"summary":161,"deductions":162},"The \"game-of-15\" v1.0 plugin exhibits a generally good security posture based on the static analysis provided.  There are no identified dangerous functions, SQL queries are properly prepared, and there are no external HTTP requests or file operations that pose immediate risks. The absence of known vulnerabilities further reinforces this positive outlook.  However, a significant concern is the lack of output escaping on all identified output points. This means that any data displayed to users, if it originates from an untrusted source or contains user-supplied content, could be vulnerable to Cross-Site Scripting (XSS) attacks.  The lack of nonce and capability checks, while not tied to specific entry points in this analysis (as there are no unprotected AJAX or REST API routes), represents a potential weakness if the plugin's functionality were to expand or if existing entry points are not fully secured in practice.  The zero taint analysis results are encouraging, indicating no obvious flows of unsanitized data within the analyzed code paths.\n\nOverall, the plugin demonstrates a commitment to secure coding practices in several key areas, particularly concerning data handling for SQL queries. The primary risk identified is the universal lack of output escaping, which presents a clear vulnerability for XSS. While the plugin has a clean vulnerability history and no immediate critical flaws detected in static analysis, the missing output sanitization is a critical oversight that requires immediate attention to prevent potential security breaches.",[163,166,169],{"reason":164,"points":165},"All output is unescaped",8,{"reason":167,"points":168},"No nonce checks",3,{"reason":170,"points":168},"No capability checks","2026-03-17T01:27:34.690Z",{"wat":173,"direct":182},{"assetPaths":174,"generatorPatterns":177,"scriptPaths":178,"versionParams":179},[175,176],"\u002Fwp-content\u002Fplugins\u002Fgame-of-15\u002Fgameof15.css","\u002Fwp-content\u002Fplugins\u002Fgame-of-15\u002Fgameof15.js",[],[176],[180,181],"game-of-15\u002Fgameof15.css?ver=","game-of-15\u002Fgameof15.js?ver=",{"cssClasses":183,"htmlComments":186,"htmlAttributes":188,"restEndpoints":191,"jsGlobals":192,"shortcodeOutput":193},[184,185],"InnerDiv","container",[187],"\u003C!--\n\n    $testo = '\u003Cdiv class=\"container\">';\n    $testo = '\u003Ch2>Gioco del 15\u003C\u002Fh2>';\n    $testo = '\u003Cdiv id=\"status\">Numero mosse: \u003Cspan>\u003C\u002Fspan>\u003C\u002Fdiv>';\n    $testo = '\u003Cdiv id=\"game\">\u003C\u002Fdiv>';\n    $testo = '\u003Cdiv id=\"controls\">\u003Cbutton>New Game\u003C\u002Fbutton>\u003C\u002Fdiv>';\n    $testo = '\u003C\u002Fdiv>';\n\u002F\u002F    return $testo;\n-->",[189,190],"immagine","color",[],[],[194],"\u003Cdiv class=\"container\">\n            \u003Ch1>Gioco del 15\u003C\u002Fh1>\n            \u003Cdiv id=\"status\">Numero mosse: \u003Cspan>\u003C\u002Fspan>\u003C\u002Fdiv>\n            \u003Cdiv id=\"game\">\u003C\u002Fdiv>\n            \u003Cdiv id=\"controls\">\u003Cbutton>Nuovo Gioco\u003C\u002Fbutton>\u003C\u002Fdiv>\n        \u003C\u002Fdiv>"]