[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fxw1nT6-3SWDipwuZLWTXoRWqpJ2Df_ZMXhcM-kGUAJ8":3,"$fGRB8JxJbqka2SDrYsRnuXa7DDJ9saVvvulb3gN4TyXc":208,"$f8tiLabEwI8XHxBZfne4i_vXahviae-8PCchpTEgQnFY":213},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":22,"download_link":23,"security_score":24,"vuln_count":25,"unpatched_count":25,"last_vuln_date":26,"fetched_at":27,"discovery_status":28,"vulnerabilities":29,"developer":30,"crawl_stats":26,"alternatives":38,"analysis":152,"fingerprints":194},"hello-bruce-campbell","Hello Bruce Campbell","1.0.3","Pete Nelson","https:\u002F\u002Fprofiles.wordpress.org\u002Fgungeekatx\u002F","\u003Cp>When activated you will randomly see a quote from a Bruce Campbell TV show or movie in the upper right of your admin screen on every page. A tip of the hat to Matt Mullenweg for the original code.\u003C\u002Fp>\n","Displays a random Bruce Campbell TV show or movie quote in the upper right of your admin screen on every page.",10,3419,100,1,"2023-07-19T20:58:00.000Z","6.2.9","4.0","",[20,21],"bruce-campbell","hello","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fhello-bruce-campbell\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fhello-bruce-campbell.1.0.3.zip",85,0,null,"2026-04-06T09:54:40.288Z","no_bundle",[],{"slug":31,"display_name":7,"profile_url":8,"plugin_count":32,"total_installs":33,"avg_security_score":34,"avg_patch_time_days":35,"trust_score":36,"computed_at":37},"gungeekatx",8,7550,89,30,86,"2026-05-19T22:54:17.400Z",[39,62,85,109,132],{"slug":40,"name":41,"version":42,"author":43,"author_profile":44,"description":45,"short_description":46,"active_installs":47,"downloaded":48,"rating":49,"num_ratings":14,"last_updated":50,"tested_up_to":51,"requires_at_least":52,"requires_php":53,"tags":54,"homepage":59,"download_link":60,"security_score":13,"vuln_count":25,"unpatched_count":25,"last_vuln_date":26,"fetched_at":61},"hello-plus","Hello Plus","1.7.7","Elementor","https:\u002F\u002Fprofiles.wordpress.org\u002Felemntor\u002F","\u003Cp>Hello+ is a free WordPress plugin designed to work seamlessly with Elementor’s \u003Ca href=\"https:\u002F\u002Fprofiles.wordpress.org\u002Felemntor\u002F#content-themes\" rel=\"nofollow ugc\">Hello suite of themes\u003C\u002Fa>. It provides a solid foundation for crafting unique, purpose-driven websites using Elementor’s drag-and-drop site builder.\u003C\u002Fp>\n\u003Cp>Hello+ includes specialized Hello widgets such as a Header, Footer, Zigzag, Form Lite, and more. Hello widgets help you build faster and create polished, professional websites.\u003C\u002Fp>\n\u003Cp>To use Hello+, you’ll need to \u003Ca href=\"https:\u002F\u002Fprofiles.wordpress.org\u002Felemntor\u002F#content-themes\" rel=\"nofollow ugc\">install one of Elementor’s Hello suite of themes\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch3>Copyright\u003C\u002Fh3>\n\u003Cp>This Plugin, like WordPress, is distributed under the terms of GPL.\u003Cbr \u002F>\nUse it as your springboard to building a site with \u003Cstrong>\u003Cem>Elementor\u003C\u002Fem>\u003C\u002Fstrong>.\u003C\u002Fp>\n","Hello+ is a free WordPress plugin designed to work seamlessly with Elementor’s Hello suite of themes.",80000,453680,60,"2025-09-18T11:37:00.000Z","6.8.5","6.0","7.4",[55,40,56,57,58],"elementor","hello-themes","themes","widgets","https:\u002F\u002Felementor.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fhello-plus.1.7.7.zip","2026-04-16T10:56:18.058Z",{"slug":63,"name":64,"version":65,"author":66,"author_profile":67,"description":68,"short_description":69,"active_installs":70,"downloaded":71,"rating":72,"num_ratings":73,"last_updated":74,"tested_up_to":75,"requires_at_least":76,"requires_php":18,"tags":77,"homepage":83,"download_link":84,"security_score":13,"vuln_count":25,"unpatched_count":25,"last_vuln_date":26,"fetched_at":61},"acf-gravityforms-add-on","Advanced Custom Fields: Gravity Forms Add-on","1.3.10","DannyvanHolten","https:\u002F\u002Fprofiles.wordpress.org\u002Fdannyvanholten\u002F","\u003Cp>Provides an Advanced Custom Field which allows a WordPress editorial user or administrator to select a Gravity Form as part of a field group configuration.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>This plugin does not have any effect on the frontend of the website. It does not output the form, nor does it modify the output of existing forms. The plugin only adds a custom ACF field type for use in an ACF field group.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>Full documentation can be found in the \u003Ca href=\"https:\u002F\u002Fgithub.com\u002FSayHelloGmbH\u002Facf-gravityforms-add-on\u002F\" rel=\"nofollow ugc\">plugin’s GitHub Repository\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch3>Development\u003C\u002Fh3>\n\u003Cp>Version 1.3.2 added a plain HTML filter to the output of the field. This filter is not applied to fields in ACF version 4.\u003C\u002Fp>\n\u003Cpre>\u003Ccode>apply_filters('acf-gravityforms-add-on\u002Ffield_html', string $field_html, array $field, string $field_options, string $multiple)\n\u003C\u002Fcode>\u003C\u002Fpre>\n","Provides an Advanced Custom Field which allows a WordPress user to select a Gravity Form as part of a field group configuration.",30000,560204,84,14,"2025-12-02T17:20:00.000Z","6.9.0","4.6",[78,79,80,81,82],"acf","advanced-custom-fields","form","gravity-forms","sayhellogmbh","https:\u002F\u002Fgithub.com\u002Fsayhellogmbh\u002Facf-gravityforms-add-on","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Facf-gravityforms-add-on.1.3.10.zip",{"slug":86,"name":87,"version":88,"author":89,"author_profile":90,"description":91,"short_description":92,"active_installs":93,"downloaded":94,"rating":95,"num_ratings":96,"last_updated":97,"tested_up_to":51,"requires_at_least":98,"requires_php":99,"tags":100,"homepage":105,"download_link":106,"security_score":107,"vuln_count":14,"unpatched_count":25,"last_vuln_date":108,"fetched_at":61},"lenix-elementor-leads-addon","Lenix Leads Collector","2.0.0","yonifre","https:\u002F\u002Fprofiles.wordpress.org\u002Fyonifre\u002F","\u003Cp>Lenix Leads Collector is a powerful plugin that stores and manages leads from your Elementor,Cf7,WPForms and more with export to CSV.\u003C\u002Fp>\n\u003Cp>Key Features:\u003Cbr \u002F>\n* Automatic capture of all Elementor form submissions\u003Cbr \u002F>\n* Automatic capture of all Hello Plus form submissions\u003Cbr \u002F>\n* Automatic capture of all Cf7 form submissions\u003Cbr \u002F>\n* Automatic capture of all WPForms form submissions\u003Cbr \u002F>\n* Centralized management interface in WordPress admin panel\u003Cbr \u002F>\n* Quick and easy export of leads to CSV format\u003Cbr \u002F>\n* Support for global forms\u003Cbr \u002F>\n* Multi-language support (including English, Hebrew, French and more)\u003Cbr \u002F>\n* User-friendly and intuitive interface\u003Cbr \u002F>\n* Date-based filtering for exports\u003Cbr \u002F>\n* Secure data handling\u003Cbr \u002F>\n* Each lead is a post in WordPress, so you can use all the features of WordPress to manage them\u003C\u002Fp>\n\u003Cp>No need to install any other plugin, just install and use, no configuration needed.\u003C\u002Fp>\n\u003Cp>The plugin provides a seamless way to track, manage, and export all leads received through your forms, organizing them similarly to WordPress posts for easy access and management.\u003C\u002Fp>\n\u003Cp>Perfect for Websites and organizations looking to efficiently manage their form submissions and lead data in one central location.\u003C\u002Fp>\n\u003Ch4>Maspik – Spam Protection\u003C\u002Fh4>\n\u003Cp>For improved spam protection, check out our sister plugin \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fcontact-forms-anti-spam\u002F\" rel=\"ugc\">Maspik\u003C\u002Fa>\u003Cbr \u002F>\nWe provide built-in spam protection and filtering. For enhanced spam prevention, we recommend using Maspik – an advanced anti-spam solution specifically designed for WordPress forms.\u003C\u002Fp>\n\u003Cp>With a 95%+ success rate, Maspik uses smart technology to block spam submissions while ensuring legitimate leads get through.\u003Cbr \u002F>\nThe plugin works instantly with no CAPTCHA required and includes features like smart blacklist system, IP blocking, and phone number validation.\u003C\u002Fp>\n\u003Cp>Compatible with all major form plugins including Elementor forms, you can set it up in just 2 minutes. \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fcontact-forms-anti-spam\u002F\" rel=\"ugc\">Learn more about Maspik\u003C\u002Fa>\u003C\u002Fp>\n","Leads Collector, Collects forms entries from Elementor,Cf7,WPForms and more with export to CSV.",10000,183632,88,25,"2025-06-12T06:39:00.000Z","5.0","7.0",[101,102,103,40,104],"contact-form-db","crm","form-collector","leads","https:\u002F\u002Flenix.co.il\u002Fplugin\u002Flenix-elementor-leads-addon\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Flenix-elementor-leads-addon.2.0.0.zip",98,"2025-02-19 00:00:00",{"slug":110,"name":111,"version":112,"author":111,"author_profile":113,"description":114,"short_description":115,"active_installs":116,"downloaded":117,"rating":118,"num_ratings":119,"last_updated":120,"tested_up_to":121,"requires_at_least":17,"requires_php":122,"tags":123,"homepage":128,"download_link":129,"security_score":130,"vuln_count":119,"unpatched_count":25,"last_vuln_date":131,"fetched_at":61},"helloasso","HelloAsso","1.1.24","https:\u002F\u002Fprofiles.wordpress.org\u002Fhelloasso\u002F","\u003Cp>HelloAsso est la solution gratuite (0 frais, 0 commission) des associations pour collecter des dons et des paiements sur internet. Plus de 80 000 associations françaises font confiance à HelloAsso pour gagner du temps et recevoir des paiements en ligne afin de financer leurs projets. Quel que soit le besoin de votre association, HelloAsso vous permet de proposer le paiement en ligne : don en ligne, billetterie, adhésion \u002F cotisation, crowdfunding, et davantage !\u003C\u002Fp>\n\u003Cp>L’extension HelloAsso vous permet d’intégrer tous vos formulaires de paiement HelloAsso directement sur votre site WordPress.\u003C\u002Fp>\n\u003Ch4>Cas d’usage :\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Financez de nouveaux projets (https:\u002F\u002Fwww.helloasso.com\u002Factivites\u002Ffinancement-de-projet)\u003C\u002Fli>\n\u003Cli>Organisez des événements (https:\u002F\u002Fwww.helloasso.com\u002Factivites\u002Fspectacle-concert)\u003C\u002Fli>\n\u003Cli>Gérez des compétitions et tournois (https:\u002F\u002Fwww.helloasso.com\u002Factivites\u002Fcompetition-tournoi)\u003C\u002Fli>\n\u003Cli>Proposez des ateliers et des stages (https:\u002F\u002Fwww.helloasso.com\u002Factivites\u002Fatelier-stage)\u003C\u002Fli>\n\u003Cli>Gérez vos adhérents et leur cotisation (https:\u002F\u002Fwww.helloasso.com\u002Foutils\u002Fgerer-mes-adhesions)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Fonctionnalités :\u003C\u002Fh4>\n\u003Cp>L’extension HelloAsso permet vous permet d’intégrer vos formulaires de paiement HelloAsso directement sur le site WordPress de votre association. Vous bénéficiez donc de toutes les fonctionnalités de HelloAsso :\u003Cbr \u002F>\n* Gestion des adhésions et adhérents\u003Cbr \u002F>\n* Billetterie et organisation d’événément\u003Cbr \u002F>\n* Collecte de dons\u003Cbr \u002F>\n* Campagne de financement participatif\u003Cbr \u002F>\n* Formulaire de vente\u003C\u002Fp>\n\u003Cp>Support HelloAsso : Une équipe de 15 personnes disponible via notre \u003Ca href=\"https:\u002F\u002Fcentredaide.helloasso.com\u002Fassociation?question=comment-integrer-mes-campagnes-sur-wordpress\" rel=\"nofollow ugc\">centre d’aide\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch3>Video\u003C\u002Fh3>\n\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002Fyrv1_PIakac?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\n","HelloAsso est la solution gratuite des associations pour collecter des paiements et des dons sur internet.",4000,61225,72,5,"2025-12-09T10:08:00.000Z","6.9.4","7.2.34",[124,125,126,110,127],"association","crowdfunding","don","paiement","https:\u002F\u002Fcentredaide.helloasso.com\u002Fs\u002Farticle\u002Fpaiement-en-ligne-wordpress-integrer-vos-campagnes-helloasso","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fhelloasso.1.1.24.zip",97,"2025-01-24 00:00:00",{"slug":133,"name":134,"version":135,"author":136,"author_profile":137,"description":138,"short_description":139,"active_installs":140,"downloaded":141,"rating":13,"num_ratings":142,"last_updated":143,"tested_up_to":75,"requires_at_least":98,"requires_php":144,"tags":145,"homepage":150,"download_link":151,"security_score":13,"vuln_count":25,"unpatched_count":25,"last_vuln_date":26,"fetched_at":61},"mhm-menu-separator","Add menu separators to navigation","2.1.3","Mark Howells-Mead","https:\u002F\u002Fprofiles.wordpress.org\u002Fmarkhowellsmead\u002F","\u003Cp>Allow separator (\u003Ccode>HR\u003C\u002Fcode> \u002F line) and unlinked, text-only entries in WordPress’ classic navigation menus.\u003C\u002Fp>\n\u003Ch3>Block editor\u003C\u002Fh3>\n\u003Cp>\u003Cstrong>This plugin does not support the Block Editor or the navigation block\u003C\u002Fstrong>. It is intended for use with the \u003Ca href=\"https:\u002F\u002Fcodex.wordpress.org\u002FWordPress_Menu_User_Guide\" rel=\"nofollow ugc\">classic menus\u003C\u002Fa> (e.g. \u003Ccode>wp_nav_menu\u003C\u002Fcode>).\u003C\u002Fp>\n\u003Ch3>Usage\u003C\u002Fh3>\n\u003Col>\n\u003Cli>Upload the plugin folder to the \u003Ccode>\u002Fwp-content\u002Fplugins\u002F\u003C\u002Fcode> directory\u003C\u002Fli>\n\u003Cli>Activate the plugin through the ‘Plugins’ menu in WordPress\u003C\u002Fli>\n\u003Cli>Edit your menu in the “Appearance” section of WordPress Admin. Add a custom link entry, then use \u003Ccode>---\u003C\u002Fcode> (three dashes) as link text for a horizontal line or use \u003Ccode>#\u003C\u002Fcode> as a URL for an unlinked menu entry.\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch3>Filters\u003C\u002Fh3>\n\u003Cp>Version 2.1.0 of the plugin added two filters, with which developers can customise the output.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ccode>mhm-menu-separator\u002Fseparator\u003C\u002Fcode> allows customisation of a separator output. Receives the arguments \u003Ccode>'\u003Chr class=\"mhm-menu-separator\">'\u003C\u002Fcode> (the uncustomised HTML) and \u003Ccode>$item\u003C\u002Fcode> (the menu item).\u003C\u002Fli>\n\u003Cli>\u003Ccode>mhm-menu-separator\u002Ftitle\u003C\u002Fcode> allows customisation of an unlinked menu entry. Receives the arguments \u003Ccode>$item->post_title\u003C\u002Fcode> (the plain, unlinked menu item text) and \u003Ccode>$item\u003C\u002Fcode> (the menu item).\u003C\u002Fli>\n\u003C\u002Ful>\n","Allow separator (HR \u002F line) and unlinked, text-only entries in WordPress' classic navigation menus.",900,15877,3,"2025-12-02T16:11:00.000Z","5.6",[146,147,82,148,149],"menu","navigation","separator","wp_nav_menu","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fmhm-menu-separator\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fmhm-menu-separator.zip",{"attackSurface":153,"codeSignals":169,"taintFlows":182,"riskAssessment":183,"analyzedAt":193},{"hooks":154,"ajaxHandlers":165,"restRoutes":166,"shortcodes":167,"cronEvents":168,"entryPointCount":25,"unprotectedCount":25},[155,161],{"type":156,"name":157,"callback":158,"file":159,"line":160},"action","admin_notices","hello_bruce_campbell","hello-bruce-campbell.php",77,{"type":156,"name":162,"callback":163,"file":159,"line":164},"admin_head","hello_bruce_campbell_css",80,[],[],[],[],{"dangerousFunctions":170,"sqlUsage":171,"outputEscaping":173,"fileOperations":25,"externalRequests":25,"nonceChecks":25,"capabilityChecks":25,"bundledLibraries":181},[],{"prepared":25,"raw":25,"locations":172},[],{"escaped":174,"rawEcho":174,"locations":175},2,[176,179],{"file":159,"line":177,"context":178},66,"raw output",{"file":159,"line":180,"context":178},67,[],[],{"summary":184,"deductions":185},"The \"hello-bruce-campbell\" plugin v1.0.3 exhibits a strong security posture based on the provided static analysis.  It has no identifiable attack surface points such as AJAX handlers, REST API routes, shortcodes, or cron events that are exposed. Furthermore, the code signals indicate no dangerous functions are used, all SQL queries are prepared, and there are no file operations or external HTTP requests. The absence of taint analysis findings further reinforces this clean bill of health.\n\nHowever, there are areas for improvement. The plugin has a complete lack of nonce checks and capability checks. While the current attack surface is zero, this leaves a significant security gap if any new entry points are introduced in future versions. Additionally, 50% of output escaping is not properly done, which could lead to cross-site scripting vulnerabilities if the data originates from an untrusted source or if the unescaped output is rendered in a context where it can be executed.\n\nThe plugin's vulnerability history is completely clean, with no recorded CVEs. This suggests a history of secure development or limited exposure. The lack of vulnerabilities is a significant positive indicator. In conclusion, while the plugin is currently very secure due to its minimal features and lack of exploitable entry points, the absence of fundamental security checks like nonces and capability checks, along with partial output escaping, represents potential future risks.  Addressing these would solidify its security.",[186,188,190],{"reason":187,"points":11},"Missing nonce checks",{"reason":189,"points":11},"Missing capability checks",{"reason":191,"points":192},"Half of outputs not properly escaped",4,"2026-03-17T00:30:29.402Z",{"wat":195,"direct":200},{"assetPaths":196,"generatorPatterns":197,"scriptPaths":198,"versionParams":199},[],[],[],[],{"cssClasses":201,"htmlComments":202,"htmlAttributes":203,"restEndpoints":205,"jsGlobals":206,"shortcodeOutput":207},[],[],[204],"id=\"hello-bruce-campbell-quote\"",[],[],[],{"error":209,"url":210,"statusCode":211,"statusMessage":212,"message":212},true,"http:\u002F\u002Flocalhost\u002Fapi\u002Fplugins\u002Fhello-bruce-campbell\u002Fbundle",404,"no bundle for this plugin yet",{"slug":4,"current_version":6,"total_versions":192,"versions":214},[215,221,228,235],{"version":6,"download_url":23,"svn_tag_url":216,"released_at":26,"has_diff":217,"diff_files_changed":218,"diff_lines":26,"trac_diff_url":219,"vulnerabilities":220,"is_current":209},"https:\u002F\u002Fplugins.svn.wordpress.org\u002Fhello-bruce-campbell\u002Ftags\u002F1.0.3\u002F",false,[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Fhello-bruce-campbell%2Ftags%2F1.0.2b&new_path=%2Fhello-bruce-campbell%2Ftags%2F1.0.3",[],{"version":222,"download_url":223,"svn_tag_url":224,"released_at":26,"has_diff":217,"diff_files_changed":225,"diff_lines":26,"trac_diff_url":226,"vulnerabilities":227,"is_current":217},"1.0.2b","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fhello-bruce-campbell.1.0.2b.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fhello-bruce-campbell\u002Ftags\u002F1.0.2b\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Fhello-bruce-campbell%2Ftags%2F1.0.1&new_path=%2Fhello-bruce-campbell%2Ftags%2F1.0.2b",[],{"version":229,"download_url":230,"svn_tag_url":231,"released_at":26,"has_diff":217,"diff_files_changed":232,"diff_lines":26,"trac_diff_url":233,"vulnerabilities":234,"is_current":217},"1.0.1","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fhello-bruce-campbell.1.0.1.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fhello-bruce-campbell\u002Ftags\u002F1.0.1\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Fhello-bruce-campbell%2Ftags%2F1.0.0&new_path=%2Fhello-bruce-campbell%2Ftags%2F1.0.1",[],{"version":236,"download_url":237,"svn_tag_url":238,"released_at":26,"has_diff":217,"diff_files_changed":239,"diff_lines":26,"trac_diff_url":26,"vulnerabilities":240,"is_current":217},"1.0.0","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fhello-bruce-campbell.1.0.0.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fhello-bruce-campbell\u002Ftags\u002F1.0.0\u002F",[],[]]