[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f8sXZzMuI41QiQvLGZX4yq1POxZ0nIDz9VeTcYFfEFFY":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":25,"download_link":26,"security_score":27,"vuln_count":14,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30,"vulnerabilities":31,"developer":61,"crawl_stats":37,"alternatives":69,"analysis":70,"fingerprints":326},"gs-envato-portfolio","GS Portfolio for Envato","1.4.2","GS Plugins","https:\u002F\u002Fprofiles.wordpress.org\u002Fsamdani\u002F","\u003Cp>Best Responsive Envato Portfolio Plugin to showcase Themeforest & Codecanyon Items on WordPress site. Display items anywhere at your site using the shortcode like [gs_envato theme=”gs_envato_theme1″] & widgets. GS Envato Portfolio plugin packed with necessary controlling options & different themes to display Themeforest & Codecanyon Items elegantly with eye catching effects.\u003C\u002Fp>\n\u003Cp>GS Envato Portfolio plugin is simple, flexible & powerful.\u003C\u002Fp>\n\u003Ch3>GS Envato Portfolio by \u003Ca href=\"https:\u002F\u002Fwww.gsplugins.com\" rel=\"nofollow ugc\">GS Plugins\u003C\u002Fa>\u003C\u002Fh3>\n\u003Cblockquote>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fenvato.gsplugins.com\" rel=\"nofollow ugc\"> Live Demo\u003C\u002Fa> | \u003Ca href=\"https:\u002F\u002Fwww.gsplugins.com\u002Fproduct\u002Fwordpress-envato-plugin\" rel=\"nofollow ugc\">Upgrade to PRO\u003C\u002Fa> | \u003Ca href=\"https:\u002F\u002Fdocs.gsplugins.com\u002Fgs-envato-portfolio\" rel=\"nofollow ugc\">Documentation\u003C\u002Fa> | \u003Ca href=\"https:\u002F\u002Fwww.gsplugins.com\u002Fcontact\" rel=\"nofollow ugc\">Support\u003C\u002Fa>\u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Ch3>Plugin Features\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Responsive Envato Portfolio plugin\u003C\u002Fli>\n\u003Cli>Pull latest items from any Envato user from Themeforest & Codecanyon market\u003C\u002Fli>\n\u003Cli>Display items price Newest, Number of sell or Rating wise\u003C\u002Fli>\n\u003Cli>Choose the number of items to display\u003C\u002Fli>\n\u003Cli>Different Column options\u003C\u002Fli>\n\u003Cli>Display Envato items anywhere with the shortcode like [gs_envato theme=”gs_envato_theme1″] & widgets.\u003C\u002Fli>\n\u003Cli>Options for 2 columns, 3 columns & 4 columns\u003C\u002Fli>\n\u003Cli>Widgets Available\u003C\u002Fli>\n\u003Cli>Custom CSS\u003C\u002Fli>\n\u003Cli>Works with any standard WordPress Theme.\u003C\u002Fli>\n\u003Cli>Developer friendly & easy to customize.\u003C\u002Fli>\n\u003Cli>All modern browsers supported.\u003C\u002Fli>\n\u003Cli>W3C valid markup.\u003C\u002Fli>\n\u003Cli>Easy to set up.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>\u003Ca href=\"https:\u002F\u002Fwww.gsplugins.com\u002Fproduct\u002Fwordpress-envato-plugin\" rel=\"nofollow ugc\">Pro Features\u003C\u002Fa>\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>10 different Themes\n\u003Cul>\n\u003Cli>Theme 01 : Grid\u003C\u002Fli>\n\u003Cli>Theme 02 : Grid Linked\u003C\u002Fli>\n\u003Cli>Theme 03 : Grid Hover\u003C\u002Fli>\n\u003Cli>Theme 04 : Horizontal – Square Right Info\u003C\u002Fli>\n\u003Cli>Theme 05 : Horizontal – Square Left Info\u003C\u002Fli>\n\u003Cli>Theme 06 : Gray\u003C\u002Fli>\n\u003Cli>Theme 07 : Popup\u003C\u002Fli>\n\u003Cli>Theme 08 : Slider\u003C\u002Fli>\n\u003Cli>Theme 09 : Rating Info\u003C\u002Fli>\n\u003Cli>Theme 10 : Gallery\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>GS Envato Widget available\u003C\u002Fli>\n\u003Cli>GS Envato Shortcode generator available at page \u002F post\u003C\u002Fli>\n\u003Cli>Limit number of Envato items to display.\u003C\u002Fli>\n\u003Cli>Custom CSS – Add Custom CSS to GS Envato themes\u003C\u002Fli>\n\u003Cli>Priority Email Support.\u003C\u002Fli>\n\u003Cli>Free Installation ( If needed ).\u003C\u002Fli>\n\u003Cli>Free updates for one year.\u003C\u002Fli>\n\u003Cli>Auto update notification.\u003C\u002Fli>\n\u003Cli>Auto update from dashboard.\u003C\u002Fli>\n\u003Cli>Well documentation and support.\u003C\u002Fli>\n\u003Cli>And many more..\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fenvato.gsplugins.com\" rel=\"nofollow ugc\">View live Demos &raquo;\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.gsplugins.com\u002Fproduct\u002Fwordpress-envato-plugin\" rel=\"nofollow ugc\">Upgrade to PRO &raquo;\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>GS Envato Portfolio Settings (Pro)\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>User\u003C\u002Fli>\n\u003Cli>Style & Theming\u003C\u002Fli>\n\u003Cli>Columns\u003C\u002Fli>\n\u003Cli>Referral user\u003C\u002Fli>\n\u003Cli>Number of items to display\u003C\u002Fli>\n\u003Cli>Select Envato Market : Themeforest \u002F Codecanyon\u003C\u002Fli>\n\u003Cli>OrderBy : Price \u002F Newest \u002F Number of Sell \u002F Rating\u003C\u002Fli>\n\u003Cli>Sort : Descending \u002F Ascending\u003C\u002Fli>\n\u003Cli>Items Link Target : New Tab \u002F Same window\u003C\u002Fli>\n\u003Cli>Envato Custom CSS ( write your own custom css )\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>GS Envato Portfolio’s shortcode usage\u003C\u002Fh3>\n\u003Cp>Basic Usage –\u003C\u002Fp>\n\u003Cpre>\u003Ccode>[gs_envato theme=\"gs_envato_theme1\"]\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Cp>\u003Cstrong>GS Envato Portfolio’s Shortcode attributes Usage\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cpre>\u003Ccode>[gs_envato userid=\"themeum\" market=\"themeforest\" theme=\"gs_envato_theme1\" cols=\"3\" referral_user=\"gsplugins\" count=\"10\"]\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Cp>\u003Cstrong>Shortcode PHP Usage\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cpre>\u003Ccode>\u003C?php echo do_shortcode( '[gs_envato theme=\"gs_envato_theme1\"]' ); ?>\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Cp>Template Usage – Add the shortcode anywhere you need to display GS Envato Portfolio in template files (header.php, front-page.php, etc.)\u003C\u002Fp>\n\u003Cpre>\u003Ccode>\u003C?php echo do_shortcode( '[gs_envato userid=\"themeum\" market=\"themeforest\" theme=\"gs_envato_theme1\" cols=\"3\" referral_user=\"gsplugins\" count=\"10\"]' ); ?>\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Ch3>Confused?\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fenvato.gsplugins.com\" rel=\"nofollow ugc\">View live Demos &raquo;\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.gsplugins.com\u002Fproduct\u002Fwordpress-envato-plugin\" rel=\"nofollow ugc\">Upgrade to PRO &raquo;\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>🔥 You may like other plugins from \u003Ca href=\"https:\u002F\u002Fwww.gsplugins.com\" rel=\"nofollow ugc\">GS Plugins\u003C\u002Fa>\u003C\u002Fh3>\n\u003Cp>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fgs-testimonial\" rel=\"ugc\">Testimonial Slider\u003C\u002Fa>\u003C\u002Fstrong> – Testimonials slider displays rotating customer endorsements and recommendations, helping to build trust and credibility for a business or product.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fgs-logo-slider\" rel=\"ugc\">Logo Slider\u003C\u002Fa>\u003C\u002Fstrong> – Logo slider displays rotating logos of partners, clients, or sponsors, showcasing a business’s relationships and endorsements.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fgs-portfolio\u002F\" rel=\"ugc\">Portfolio\u003C\u002Fa>\u003C\u002Fstrong> – Filterable Portfolio plugin for WordPress allows you to easily display and showcase your projects, highlighting your skills and abilities.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fgs-team-members\" rel=\"ugc\">Team Members\u003C\u002Fa>\u003C\u002Fstrong> – Build a Stunning Team Page or Section and Show off Your Team’s Talents!\u003C\u002Fp>\n\u003Cp>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fgs-projects\" rel=\"ugc\">Projects\u003C\u002Fa>\u003C\u002Fstrong> – Projects showcase displays detailed information including client reviews, ratings, galleries, and videos for a business’s work.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fgs-books-showcase\" rel=\"ugc\">Books Showcase\u003C\u002Fa>\u003C\u002Fstrong> – Books showcase displays detailed information including author, published date, reviews, ratings, and gallery, allowing users to easily find and explore books.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fgs-coach\" rel=\"ugc\">Coaches\u003C\u002Fa>\u003C\u002Fstrong> – Coaches plugin displays coaches’ experience, skills, reviews, ratings, and certifications, helping users find the right coach for their needs.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fposts-grid\" rel=\"ugc\">Posts Grid\u003C\u002Fa>\u003C\u002Fstrong> –  WordPress Posts Grid plugin displays the latest posts in an elegant grid format, allowing for easy navigation and quick access to new content on a website.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fposts-widget\" rel=\"ugc\">Posts Widget\u003C\u002Fa>\u003C\u002Fstrong> –  WordPress Posts Widget plugin displays the latest posts in an elegant format on the sidebar or any widget area, allowing for easy navigation and quick access to new content on a website.\u003C\u002Fp>\n\u003Ch3>🎯 WooCommerce Plugins\u003C\u002Fh3>\n\u003Cp>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fgs-woocommerce-products-slider\" rel=\"ugc\">WooCommerce Products Slider\u003C\u002Fa>\u003C\u002Fstrong> – WooCommerce Product Slider plugin displays products in a visually pleasing, sliding manner, making it easy for customers to browse and find the products they want on an online store.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fgs-woo-variation-swatches\" rel=\"ugc\">WooCommerce Variation Swatches\u003C\u002Fa>\u003C\u002Fstrong> – WooCommerce Variation Swatches plugin replaces the default dropdown fields for variable products with visually appealing swatches, making it easier for customers to select product options and improve the overall shopping experience.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fgs-woo-brands\" rel=\"ugc\">WooCommerce Brands\u003C\u002Fa>\u003C\u002Fstrong> – WooCommerce Brands taxonomy plugin allows for easy cataloging of products by adding a brand taxonomy, making it simple to organize and filter products on an online store.\u003C\u002Fp>\n\u003Ch3>📣 Social Plugins\u003C\u002Fh3>\n\u003Cp>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fgs-dribbble-portfolio\" rel=\"ugc\">Dribbble Portfolio\u003C\u002Fa>\u003C\u002Fstrong> – Dribbble Portfolio WP plugin enables you to display your Dribbble shots on your website in a portfolio layout, allowing you to showcase your design work to a wider audience.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fgs-behance-portfolio\" rel=\"ugc\">Behance Portfolio\u003C\u002Fa>\u003C\u002Fstrong> – Behance Portfolio WordPress plugin allows you to display your Behance projects on your website in a visually appealing layout, making it easy for your audience to view and appreciate your work.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fgs-pinterest-portfolio\" rel=\"ugc\">Pinterest Portfolio\u003C\u002Fa>\u003C\u002Fstrong> – Pinterest plugin for WordPress allows you to display your Pinterest pins on your website, giving your audience a chance to view and interact with your boards, and potentially drive more traffic to your Pinterest profile.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fgs-instagram-portfolio\u002F\" rel=\"ugc\">Instagram Portfolio\u003C\u002Fa>\u003C\u002Fstrong> – Instagram plugin for WordPress allows you to display your Instagram posts on your website, making it easy for visitors to view and interact with your content and also to increase engagement on your website.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fgs-youtube-gallery\" rel=\"ugc\">Youtube Gallery\u003C\u002Fa>\u003C\u002Fstrong> – YouTube Gallery plugin allows you to display videos from a YouTube channel or playlist on your website, creating a visually appealing gallery and making it easy for visitors to access and watch your videos.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Ffeeds-of-twitter\" rel=\"ugc\">Twitter Feeds\u003C\u002Fa>\u003C\u002Fstrong> – Twitter Feeds plugin displays Twitter feeds, hashtags, user cards, and collections on a website, making it easy for visitors to view and interact with your Twitter content.\u003C\u002Fp>\n\u003Ch3>🏆 Branding Plugin\u003C\u002Fh3>\n\u003Cp>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fgs-custom-login\" rel=\"ugc\">Custom Login\u003C\u002Fa>\u003C\u002Fstrong> – GS Custom Login allows you to customize the WordPress login screen, providing an easy way to create a unique and visually appealing login experience for your website users.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fpowerup\" rel=\"ugc\">PowerUp\u003C\u002Fa>\u003C\u002Fstrong> – Enhance Your WordPress Experience with the Ultimate Security & Convenience Solution – Hide Admin Bar, Login & Logout Redirection, Disable Comments & Restrict WP-Admin Module.\u003C\u002Fp>\n","Best Responsive Envato Portfolio Plugin to display Themeforest & Codecanyon Items.",4000,54522,100,2,"2025-12-14T08:19:00.000Z","6.9.4","4.3","5.6",[20,21,22,23,24],"codecanyon-wordpress","envato-market-wordpress-plugin","envato-themeforest","portfolio-items-wordpress","premium-wordpress-plugins","https:\u002F\u002Fwww.gsplugins.com\u002Fwordpress-plugins\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fgs-envato-portfolio.1.4.2.zip",76,1,"2025-12-31 00:00:00","2026-03-15T15:16:48.613Z",[32,46],{"id":33,"url_slug":34,"title":35,"description":36,"plugin_slug":4,"theme_slug":37,"affected_versions":38,"patched_in_version":37,"severity":39,"cvss_score":40,"cvss_vector":41,"vuln_type":42,"published_date":29,"updated_date":43,"references":44,"days_to_patch":37},"CVE-2025-62755","gs-portfolio-for-envato-missing-authorization","GS Portfolio for Envato \u003C= 1.4.2 - Missing Authorization","The GS Portfolio for Envato plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in versions up to, and including, 1.4.2. This makes it possible for unauthenticated attackers to perform an unauthorized action.",null,"\u003C=1.4.2","medium",5.3,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:N\u002FUI:N\u002FS:U\u002FC:N\u002FI:L\u002FA:N","Missing Authorization","2026-01-05 18:35:16",[45],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002F71e8c2ae-7ed2-4b8a-a0ac-06ca6f2f2ecf?source=api-prod",{"id":47,"url_slug":48,"title":49,"description":50,"plugin_slug":4,"theme_slug":37,"affected_versions":51,"patched_in_version":52,"severity":39,"cvss_score":53,"cvss_vector":54,"vuln_type":55,"published_date":56,"updated_date":57,"references":58,"days_to_patch":60},"CVE-2023-0559","gs-portfolio-for-envato-authenticated-contributor-stored-cross-site-scripting-via-shortcode","GS Portfolio for Envato \u003C= 1.3.8 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode","The GS Portfolio for Envato plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s) in versions up to, and including, 1.3.8 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page","\u003C=1.3.8","1.4.0",6.4,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:L\u002FUI:N\u002FS:C\u002FC:L\u002FI:L\u002FA:N","Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","2023-01-30 00:00:00","2024-01-22 19:56:02",[59],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002Ff6816cb4-0fad-417a-a980-d35a734bce13?source=api-prod",358,{"slug":62,"display_name":7,"profile_url":8,"plugin_count":63,"total_installs":64,"avg_security_score":65,"avg_patch_time_days":66,"trust_score":67,"computed_at":68},"samdani",19,41460,98,173,78,"2026-04-04T03:56:09.283Z",[],{"attackSurface":71,"codeSignals":166,"taintFlows":272,"riskAssessment":312,"analyzedAt":325},{"hooks":72,"ajaxHandlers":156,"restRoutes":157,"shortcodes":158,"cronEvents":164,"entryPointCount":28,"unprotectedCount":165},[73,78,82,85,90,94,98,102,105,110,113,116,121,124,128,131,135,138,141,146,149,151],{"type":74,"name":75,"callback":75,"file":76,"line":77},"action","admin_enqueue_scripts","gs-envato-assets\\admin\\class.settings-api.php",30,{"type":74,"name":79,"callback":79,"file":80,"line":81},"admin_init","gs-envato-assets\\admin\\gs_envato_options_config.php",22,{"type":74,"name":83,"callback":83,"file":80,"line":84},"admin_menu",23,{"type":74,"name":86,"callback":87,"file":88,"line":89},"switch_theme","deactivation_cleanup","gs-envato-assets\\appsero\\Insights.php",132,{"type":74,"name":86,"callback":91,"priority":92,"file":88,"line":93},"theme_deactivated",12,133,{"type":74,"name":95,"callback":96,"file":88,"line":97},"admin_footer","deactivate_scripts",145,{"type":74,"name":99,"callback":100,"file":88,"line":101},"admin_notices","admin_notice",162,{"type":74,"name":79,"callback":103,"file":88,"line":104},"handle_optin_optout",165,{"type":106,"name":107,"callback":108,"file":88,"line":109},"filter","cron_schedules","add_weekly_schedule",171,{"type":74,"name":83,"callback":83,"file":111,"line":112},"gs-envato-assets\\gs-common-pages\\gs-plugins-common-pages.php",16,{"type":74,"name":75,"callback":114,"file":111,"line":115},"scripts",17,{"type":74,"name":117,"callback":118,"file":119,"line":120},"init","gs_enqueue_envato_styles","gs-envato-assets\\gs-envato-scripts.php",24,{"type":74,"name":75,"callback":122,"file":119,"line":123},"gsenvato_enque_admin_style",46,{"type":74,"name":99,"callback":125,"file":126,"line":127},"gsenvato_review_notice_message","gs-envato-assets\\includes\\gs-envato-root.php",49,{"type":74,"name":79,"callback":129,"file":126,"line":130},"gsenvato_review_notice",52,{"type":74,"name":132,"callback":133,"file":126,"line":134},"in_admin_header","remove_envato_admin_notices",65,{"type":74,"name":79,"callback":136,"file":126,"line":137},"gsenv_redirect",195,{"type":74,"name":79,"callback":139,"file":126,"line":140},"gsenv_nag_ignore",228,{"type":106,"name":142,"callback":143,"priority":144,"file":126,"line":145},"plugin_row_meta","gsenv_row_meta",10,257,{"type":74,"name":99,"callback":147,"file":126,"line":148},"gsadmin_signup_notice_message",274,{"type":74,"name":99,"callback":147,"file":126,"line":150},277,{"type":74,"name":152,"callback":153,"file":154,"line":155},"plugins_loaded","closure","gs_envato_market.php",66,[],[],[159],{"tag":160,"callback":161,"file":162,"line":163},"gs_envato","gs_envato_shortcode","gs-envato-assets\\includes\\gs-envato-item-shortcode.php",13,[],0,{"dangerousFunctions":167,"sqlUsage":168,"outputEscaping":170,"fileOperations":165,"externalRequests":268,"nonceChecks":269,"capabilityChecks":270,"bundledLibraries":271},[],{"prepared":14,"raw":165,"locations":169},[],{"escaped":171,"rawEcho":172,"locations":173},91,48,[174,177,179,181,183,185,187,189,191,193,195,196,198,200,202,204,206,208,210,212,214,216,218,220,222,224,226,228,230,232,234,236,238,240,242,244,245,247,249,251,253,255,257,259,261,262,264,266],{"file":76,"line":175,"context":176},107,"raw output",{"file":76,"line":178,"context":176},181,{"file":76,"line":180,"context":176},218,{"file":76,"line":182,"context":176},241,{"file":76,"line":184,"context":176},263,{"file":76,"line":186,"context":176},284,{"file":76,"line":188,"context":176},300,{"file":76,"line":190,"context":176},310,{"file":76,"line":192,"context":176},323,{"file":76,"line":194,"context":176},339,{"file":76,"line":60,"context":176},{"file":76,"line":197,"context":176},374,{"file":76,"line":199,"context":176},390,{"file":76,"line":201,"context":176},407,{"file":76,"line":203,"context":176},424,{"file":76,"line":205,"context":176},504,{"file":76,"line":207,"context":176},516,{"file":88,"line":209,"context":176},445,{"file":88,"line":211,"context":176},447,{"file":88,"line":213,"context":176},448,{"file":88,"line":215,"context":176},451,{"file":88,"line":217,"context":176},850,{"file":88,"line":219,"context":176},861,{"file":88,"line":221,"context":176},862,{"file":88,"line":223,"context":176},863,{"file":88,"line":225,"context":176},873,{"file":88,"line":227,"context":176},874,{"file":88,"line":229,"context":176},875,{"file":88,"line":231,"context":176},884,{"file":88,"line":233,"context":176},904,{"file":88,"line":235,"context":176},908,{"file":88,"line":237,"context":176},966,{"file":88,"line":239,"context":176},967,{"file":111,"line":241,"context":176},105,{"file":111,"line":243,"context":176},106,{"file":111,"line":175,"context":176},{"file":111,"line":246,"context":176},113,{"file":111,"line":248,"context":176},115,{"file":111,"line":250,"context":176},117,{"file":111,"line":252,"context":176},227,{"file":111,"line":254,"context":176},440,{"file":111,"line":256,"context":176},468,{"file":111,"line":258,"context":176},509,{"file":126,"line":260,"context":176},94,{"file":126,"line":13,"context":176},{"file":126,"line":263,"context":176},112,{"file":126,"line":265,"context":176},208,{"file":126,"line":267,"context":176},296,4,5,8,[],[273,291,301],{"entryPoint":274,"graph":275,"unsanitizedCount":290,"severity":39},"gsenvato_review_notice_message (gs-envato-assets\\includes\\gs-envato-root.php:70)",{"nodes":276,"edges":287},[277,282],{"id":278,"type":279,"label":280,"file":126,"line":281},"n0","source","$_SERVER (x3)",72,{"id":283,"type":284,"label":285,"file":126,"line":260,"wp_function":286},"n1","sink","echo() [XSS]","echo",[288],{"from":278,"to":283,"sanitized":289},false,3,{"entryPoint":292,"graph":293,"unsanitizedCount":28,"severity":39},"gsadmin_signup_notice_message (gs-envato-assets\\includes\\gs-envato-root.php:285)",{"nodes":294,"edges":299},[295,298],{"id":278,"type":279,"label":296,"file":126,"line":297},"$_SERVER",287,{"id":283,"type":284,"label":285,"file":126,"line":267,"wp_function":286},[300],{"from":278,"to":283,"sanitized":289},{"entryPoint":302,"graph":303,"unsanitizedCount":165,"severity":311},"\u003Cgs-envato-root> (gs-envato-assets\\includes\\gs-envato-root.php:0)",{"nodes":304,"edges":308},[305,307],{"id":278,"type":279,"label":306,"file":126,"line":281},"$_SERVER (x4)",{"id":283,"type":284,"label":285,"file":126,"line":260,"wp_function":286},[309],{"from":278,"to":283,"sanitized":310},true,"low",{"summary":313,"deductions":314},"The gs-envato-portfolio plugin exhibits a mixed security posture. While it demonstrates strengths in using prepared statements for SQL queries and includes a reasonable number of nonce and capability checks, there are significant areas of concern. The 65% proper output escaping rate is a notable weakness, suggesting a risk of Cross-Site Scripting (XSS) vulnerabilities, a pattern supported by the plugin's vulnerability history. The presence of unsanitized paths in taint analysis, even without critical or high severity, warrants attention as it can be an indicator of potential path traversal or file inclusion vulnerabilities.\n\nThe plugin's vulnerability history, with two known CVEs, one of which remains unpatched, is a critical red flag. The common vulnerability types of Missing Authorization and XSS further reinforce the output escaping concern and highlight potential privilege escalation or unauthorized access risks. The unpatched vulnerability is a direct and immediate threat. While the attack surface is currently small and appears to be protected, the historical trend and the taint analysis findings suggest that past vulnerabilities may not have been fully addressed or that new ones could emerge.\n\nIn conclusion, while the plugin has implemented some good security practices like prepared SQL statements, the high percentage of unescaped output, identified unsanitized paths, and the presence of unpatched historical vulnerabilities significantly elevate the risk. The historical pattern of XSS and Missing Authorization vulnerabilities, coupled with the current static analysis findings, suggests that a thorough security audit and prompt patching of the known vulnerability are highly recommended.",[315,318,321,323],{"reason":316,"points":317},"Unpatched CVE present",18,{"reason":319,"points":320},"Output escaping below recommended threshold",7,{"reason":322,"points":269},"Unsanitized paths identified in taint analysis",{"reason":324,"points":269},"Historical vulnerability pattern (XSS & Missing Auth)","2026-03-16T18:16:51.337Z",{"wat":327,"direct":342},{"assetPaths":328,"generatorPatterns":334,"scriptPaths":335,"versionParams":336},[329,330,331,332,333],"\u002Fwp-content\u002Fplugins\u002Fgs-envato-portfolio\u002Fgs-envato-assets\u002Fcss\u002Ffrontend.css","\u002Fwp-content\u002Fplugins\u002Fgs-envato-portfolio\u002Fgs-envato-assets\u002Fcss\u002Fowl.carousel.min.css","\u002Fwp-content\u002Fplugins\u002Fgs-envato-portfolio\u002Fgs-envato-assets\u002Fjs\u002Ffrontend.js","\u002Fwp-content\u002Fplugins\u002Fgs-envato-portfolio\u002Fgs-envato-assets\u002Fjs\u002Fowl.carousel.min.js","\u002Fwp-content\u002Fplugins\u002Fgs-envato-portfolio\u002Fgs-envato-assets\u002Fjs\u002Fgs-envato-frontend.js",[],[331,332,333],[337,338,339,340,341],"gs-envato-portfolio\u002Fgs-envato-assets\u002Fcss\u002Ffrontend.css?ver=","gs-envato-portfolio\u002Fgs-envato-assets\u002Fcss\u002Fowl.carousel.min.css?ver=","gs-envato-portfolio\u002Fgs-envato-assets\u002Fjs\u002Ffrontend.js?ver=","gs-envato-portfolio\u002Fgs-envato-assets\u002Fjs\u002Fowl.carousel.min.js?ver=","gs-envato-portfolio\u002Fgs-envato-assets\u002Fjs\u002Fgs-envato-frontend.js?ver=",{"cssClasses":343,"htmlComments":352,"htmlAttributes":355,"restEndpoints":357,"jsGlobals":358,"shortcodeOutput":360},[4,344,345,346,347,348,349,350,351],"gs-envato-items","gs-envato-item","gs-envato-item-wrap","gs-envato-item-img-wrap","gs-envato-item-content","gs-envato-item-title","gs-envato-item-price","gs-envato-item-rating",[353,354],"Copyright GS Plugins","Protect direct access",[356],"data-gs-envato-theme",[],[359],"GS_envato_WeDevs_Settings_API",[361],"[gs_envato"]