[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f9ul8KLyyUjGIzptzH0Y-lF8CrFS1fyfgkK4ex4zmCNQ":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":23,"download_link":24,"security_score":25,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":27,"vulnerabilities":28,"developer":29,"crawl_stats":26,"alternatives":36,"analysis":139,"fingerprints":205},"hatena-bookmark-comment","Hatena Bookmark Comment","0.2","makoto_kw","https:\u002F\u002Fprofiles.wordpress.org\u002Fmakoto_kw\u002F","\u003Cp>This plugin displays hatena bookmark comments on entry by using HatenaBookmarkBlogparts.\u003Cbr \u002F>\nHatenaBookmarkBlogparts is here:\u003Cbr \u002F>\nhttp:\u002F\u002Fd.hatena.ne.jp\u002Fkeyword\u002F%A4%CF%A4%C6%A4%CA%A5%D6%A5%C3%A5%AF%A5%DE%A1%BC%A5%AF%A5%B3%A5%E1%A5%F3%A5%C8%C9%BD%BC%A8%A5%D6%A5%ED%A5%B0%A5%D1%A1%BC%A5%C4\u003C\u002Fp>\n","Displays hatena bookmark comments on entry by using HatenaBookmark Blogparts.",10,2022,0,"2010-07-22T17:14:00.000Z","3.0.5","2.7","",[19,20,21,22],"bookmark","comment","hatena","japanese","http:\u002F\u002Fwordpress.org\u002Fextend\u002Fplugins\u002Fhatena-bookmark-comment\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fhatena-bookmark-comment.0.2.zip",85,null,"2026-03-15T15:16:48.613Z",[],{"slug":7,"display_name":7,"profile_url":8,"plugin_count":30,"total_installs":31,"avg_security_score":32,"avg_patch_time_days":33,"trust_score":34,"computed_at":35},3,40,90,30,87,"2026-04-04T16:48:10.328Z",[37,54,74,95,112],{"slug":38,"name":39,"version":40,"author":41,"author_profile":42,"description":43,"short_description":44,"active_installs":32,"downloaded":45,"rating":13,"num_ratings":13,"last_updated":46,"tested_up_to":47,"requires_at_least":48,"requires_php":17,"tags":49,"homepage":52,"download_link":53,"security_score":25,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":27},"hatena-bookmark-autopost","Hatena Bookmark AutoPost","1.0","output48","https:\u002F\u002Fprofiles.wordpress.org\u002Foutput48\u002F","\u003Cp>When you added new post, this plugin send email to Hatena bookmark.\u003C\u002Fp>\n","When you added new post, this plugin send email to Hatena bookmark.",3352,"2016-06-01T23:21:00.000Z","4.5.33","4.3",[50,19,21,51],"auto","post","http:\u002F\u002Fwww.out48.com\u002Fdownload\u002Fhatena-bookmark-autopost\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fhatena-bookmark-autopost.zip",{"slug":55,"name":56,"version":57,"author":58,"author_profile":59,"description":60,"short_description":61,"active_installs":33,"downloaded":62,"rating":13,"num_ratings":13,"last_updated":63,"tested_up_to":64,"requires_at_least":65,"requires_php":17,"tags":66,"homepage":72,"download_link":73,"security_score":25,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":27},"sharekoube","Sharekoube","0.8","Keisuke Nemoto","https:\u002F\u002Fprofiles.wordpress.org\u002Fnemooon\u002F","\u003Cp>Add to Sharedaddy support service.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Ftwitter.com\u002Fabout\u002Fresources\u002Ftweetbutton\" rel=\"nofollow ugc\">Twitter\u003C\u002Fa>（日本語化）\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"http:\u002F\u002Fwww.google.com\u002Fintl\u002Fja\u002Fwebmasters\u002F+1\u002Fbutton\u002F\" rel=\"nofollow ugc\">Google +1\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"http:\u002F\u002Fwww.google.com\u002Fbuzz\u002Fapi\u002Fadmin\u002FconfigPostWidget\" rel=\"nofollow ugc\">Google Buzz\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"http:\u002F\u002Fb.hatena.ne.jp\u002Fguide\u002Fbbutton\" rel=\"nofollow ugc\">はてなブックマーク\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"http:\u002F\u002Fdeveloper.mixi.co.jp\u002Fconnect\u002Fmixi_plugin\u002Fmixi_check\u002F\" rel=\"nofollow ugc\">mixiチェック\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"http:\u002F\u002Fwww.evernote.com\u002Fabout\u002Fintl\u002Fjp\u002Fdeveloper\u002Fsitememory\u002F\" rel=\"nofollow ugc\">Evernote\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>PHP5 REQUIRE\u003C\u002Fstrong>\u003C\u002Fp>\n","Add to Sharedaddy support service.",2462,"2011-07-07T06:30:00.000Z","3.2.1","3.0",[67,68,69,70,71],"google-1","hatena-bookmark","mixi-check","sharedaddy","twitter","http:\u002F\u002Fnemooon.jp\u002Fplugins\u002Fsharekoube\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsharekoube.zip",{"slug":75,"name":76,"version":77,"author":78,"author_profile":79,"description":80,"short_description":81,"active_installs":33,"downloaded":82,"rating":83,"num_ratings":84,"last_updated":85,"tested_up_to":86,"requires_at_least":87,"requires_php":17,"tags":88,"homepage":93,"download_link":94,"security_score":25,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":27},"social-bookmarking-jp","Social Bookmarking JP","0.9.1.4","sakuratan","https:\u002F\u002Fprofiles.wordpress.org\u002Fsakuratan\u002F","\u003Cp>Social Bookmarking JP plugin embeds links and icons of Hatena Bookmark, Livedoor Clip, Yahoo!JAPAN Bookmark, BuzzURL, Twitter, Tumblr, FC2 Bookmark, newsing, Choix, Google Bookmark, Delicious and Digg to the heading or ending of the post. These are Japanese major social bookmark services (except Delicious and Digg).\u003C\u002Fp>\n","Embedding Japanese major social bookmark services hyper links and icons",7605,100,1,"2010-07-02T11:46:00.000Z","2.9.0","2.7.0",[89,90,21,91,92],"bookmarking","bookmarks","links","social","http:\u002F\u002Fsakuratan.biz\u002Fcontents\u002Fsocial-bookmarking-jp","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsocial-bookmarking-jp.zip",{"slug":96,"name":96,"version":97,"author":98,"author_profile":99,"description":100,"short_description":101,"active_installs":11,"downloaded":102,"rating":13,"num_ratings":13,"last_updated":103,"tested_up_to":104,"requires_at_least":105,"requires_php":17,"tags":106,"homepage":110,"download_link":111,"security_score":25,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":27},"dekabotann","0.1.2","土橋一夫 Kazuo Dobashi","https:\u002F\u002Fprofiles.wordpress.org\u002Fkazunii\u002F","\u003Cp>“dekabotann” is a plugin providing big social button. Hatena, Twitter, Facebook, Google+. Especially, this plugin is optimized for Japanese.\u003C\u002Fp>\n\u003Ch3>Arbitrary section 1\u003C\u002Fh3>\n","\"dekabotann\" is a plugin providing big social button. Hatena, Twitter, Facebook, Google+. Especially, this plugin is optimized for Japanese.",1809,"2012-10-06T02:46:00.000Z","3.4.2","3.3",[107,108,21,109,71],"facebook","google-plus-one","social-bookmark","http:\u002F\u002Faccountingse.net\u002F2012\u002F09\u002F582\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fdekabotann.zip",{"slug":113,"name":114,"version":115,"author":116,"author_profile":117,"description":118,"short_description":119,"active_installs":120,"downloaded":121,"rating":122,"num_ratings":123,"last_updated":124,"tested_up_to":125,"requires_at_least":126,"requires_php":127,"tags":128,"homepage":134,"download_link":135,"security_score":136,"vuln_count":137,"unpatched_count":13,"last_vuln_date":138,"fetched_at":27},"akismet","Akismet Anti-spam: Spam Protection","5.6","Automattic","https:\u002F\u002Fprofiles.wordpress.org\u002Fautomattic\u002F","\u003Cp>The best anti-spam protection to block spam comments and spam in a contact form. The most trusted antispam solution for WordPress and WooCommerce.\u003C\u002Fp>\n\u003Cp>Akismet checks your comments and contact form submissions against our global database of spam to prevent your site from publishing malicious content. You can review the comment spam it catches on your blog’s “Comments” admin screen.\u003C\u002Fp>\n\u003Cp>Major features in Akismet include:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Automatically checks all comments and filters out the ones that look like spam.\u003C\u002Fli>\n\u003Cli>Each comment has a status history, so you can easily see which comments were caught or cleared by Akismet and which were spammed or unspammed by a moderator.\u003C\u002Fli>\n\u003Cli>URLs are shown in the comment body to reveal hidden or misleading links.\u003C\u002Fli>\n\u003Cli>Moderators can see the number of approved comments for each user.\u003C\u002Fli>\n\u003Cli>A discard feature that outright blocks the worst spam, saving you disk space and speeding up your site.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>PS: You’ll be prompted to get an Akismet.com API key to use it, once activated. Keys are free for personal blogs; paid subscriptions are available for businesses and commercial sites.\u003C\u002Fp>\n","The best anti-spam protection to block spam comments and spam in a contact form. The most trusted antispam solution for WordPress and WooCommerce.",6000000,386405930,94,1173,"2025-11-12T16:31:00.000Z","6.9.4","5.8","7.2",[129,130,131,132,133],"anti-spam","antispam","comments","contact-form","spam","https:\u002F\u002Fakismet.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fakismet.5.6.zip",99,2,"2015-10-13 00:00:00",{"attackSurface":140,"codeSignals":160,"taintFlows":185,"riskAssessment":186,"analyzedAt":204},{"hooks":141,"ajaxHandlers":156,"restRoutes":157,"shortcodes":158,"cronEvents":159,"entryPointCount":13,"unprotectedCount":13},[142,147,150,153],{"type":143,"name":144,"callback":144,"file":145,"line":146},"action","wp_print_scripts","hatena-bookmark-comment.php",48,{"type":143,"name":148,"callback":148,"file":145,"line":149},"admin_menu",149,{"type":143,"name":151,"callback":151,"file":145,"line":152},"admin_init",150,{"type":143,"name":154,"callback":154,"file":145,"line":155},"init",313,[],[],[],[],{"dangerousFunctions":161,"sqlUsage":166,"outputEscaping":168,"fileOperations":13,"externalRequests":13,"nonceChecks":13,"capabilityChecks":13,"bundledLibraries":184},[162],{"fn":163,"file":145,"line":164,"context":165},"preg_replace(\u002Fe)",298,"preg_replace('\u002F(%[0-9a-f]{2})\u002Fe'",{"prepared":13,"raw":13,"locations":167},[],{"escaped":13,"rawEcho":169,"locations":170},6,[171,174,176,178,180,182],{"file":145,"line":172,"context":173},208,"raw output",{"file":145,"line":175,"context":173},209,{"file":145,"line":177,"context":173},212,{"file":145,"line":179,"context":173},214,{"file":145,"line":181,"context":173},222,{"file":145,"line":183,"context":173},226,[],[],{"summary":187,"deductions":188},"The \"hatena-bookmark-comment\" plugin version 0.2 exhibits a mixed security posture. On the positive side, the plugin demonstrates a commendable lack of critical vulnerabilities in its history, with no recorded CVEs.  Furthermore, all SQL queries are properly prepared, and there are no file operations or external HTTP requests, which are common vectors for exploitation.  However, significant concerns arise from the static code analysis. The presence of a dangerous function (preg_replace with the \u002Fe modifier) is a major red flag, as it can lead to arbitrary code execution if user input is not strictly controlled.  Compounding this, 100% of the plugin's outputs are not properly escaped, presenting a high risk of cross-site scripting (XSS) vulnerabilities. The complete absence of nonce checks and capability checks, coupled with zero AJAX handlers or REST API routes that require authentication, indicates a very broad, unprotected attack surface, making any potential vulnerabilities much easier to exploit.",[189,192,195,198,200,202],{"reason":190,"points":191},"Dangerous function (preg_replace(\u002Fe)) detected",15,{"reason":193,"points":194},"100% of outputs are not properly escaped",8,{"reason":196,"points":197},"0 Nonce checks present",5,{"reason":199,"points":197},"0 Capability checks present",{"reason":201,"points":197},"0 unprotected AJAX handlers",{"reason":203,"points":197},"0 unprotected REST API routes","2026-03-17T00:23:11.764Z",{"wat":206,"direct":214},{"assetPaths":207,"generatorPatterns":209,"scriptPaths":210,"versionParams":212},[208],"\u002Fwp-content\u002Fplugins\u002Fhatena-bookmark-comment\u002Fjs\u002Fbookmark_blogparts.js",[],[211],"http:\u002F\u002Fb.hatena.ne.jp\u002Fjs\u002Fbookmark_blogparts.js",[213],"hatena-bookmark-comment\u002Fjs\u002Fbookmark_blogparts.js?ver=",{"cssClasses":215,"htmlComments":216,"htmlAttributes":217,"restEndpoints":218,"jsGlobals":219,"shortcodeOutput":221},[],[],[],[],[220],"WPHatenaBookmarkComment",[]]