[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fYNYE9o8JTLl4qWHDX8a-Dwg3111QOXyRbFSlPFLsUuk":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":23,"download_link":24,"security_score":25,"vuln_count":14,"unpatched_count":26,"last_vuln_date":27,"fetched_at":28,"vulnerabilities":29,"developer":57,"crawl_stats":35,"alternatives":64,"analysis":177,"fingerprints":262},"icon-widget","Icon Widget","1.4.0","seothemes","https:\u002F\u002Fprofiles.wordpress.org\u002Fseothemes\u002F","\u003Cp>Icon Widget creates a new WordPress widget that displays an icon, title and description. Select the size, color and text-alignment with easy to use dropdown options.\u003C\u002Fp>\n\u003Ch4>Icon Fonts Included\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Font Awesome 4 & 5\u003C\u002Fli>\n\u003Cli>Line Awesome\u003C\u002Fli>\n\u003Cli>Ionicons\u003C\u002Fli>\n\u003Cli>Streamline Icons\u003C\u002Fli>\n\u003Cli>ET Line Icons\u003Cbr \u002F>\n\u003Cem>More coming soon. We are open to suggestions.\u003C\u002Fem>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Shortcode Usage\u003C\u002Fh4>\n\u003Cp>Since 1.0.6 you can now use the \u003Ccode>icon_widget\u003C\u002Fcode> shortcode. Below is a list of available attributes with their default values:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>classes  =>  ‘icon-widget’\u003C\u002Fli>\n\u003Cli>title    =>  ‘Icon Widget’\u003C\u002Fli>\n\u003Cli>content  =>  ‘Add a short description.’\u003C\u002Fli>\n\u003Cli>icon     =>  ‘fa-star’\u003C\u002Fli>\n\u003Cli>weight   =>  ‘600’\u003C\u002Fli>\n\u003Cli>size     =>  ‘2x’\u003C\u002Fli>\n\u003Cli>align    =>  ‘center’\u003C\u002Fli>\n\u003Cli>color    =>  ‘#333333’\u003C\u002Fli>\n\u003Cli>bg       =>  ”\u003C\u002Fli>\n\u003Cli>padding  =>  ”\u003C\u002Fli>\n\u003Cli>radius   =>  ”\u003C\u002Fli>\n\u003Cli>heading  =>  ‘h4’\u003C\u002Fli>\n\u003Cli>break    =>  ‘\u003Ccode>\u003Cbr>\u003C\u002Fcode>‘\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Here is an example of the icon widget shortcode using all available parameters:\u003C\u002Fp>\n\u003Cpre>\u003Ccode>[icon_widget classes=\"icon-widget\" title=\"Icon Widget\" content=\"Add a short description\" icon=\"fa-star\" weight=\"600\" size=\"2x\" align=\"center\" color=\"#fff\" bg=\"#333\" padding=\"30\" radius=\"30\" heading=\"h4\" break=\"\u003Cbr>\"]\n\u003C\u002Fcode>\u003C\u002Fpre>\n","Display an icon, title and description with a widget or a shortcode.",5000,96968,100,2,"2024-04-10T12:35:00.000Z","6.5.8","5.0","5.6",[20,21,22],"fontawesome","icon","widget","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Ficon-widget\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Ficon-widget.zip",91,0,"2024-04-19 00:00:00","2026-03-15T15:16:48.613Z",[30,45],{"id":31,"url_slug":32,"title":33,"description":34,"plugin_slug":4,"theme_slug":35,"affected_versions":36,"patched_in_version":6,"severity":37,"cvss_score":38,"cvss_vector":39,"vuln_type":40,"published_date":27,"updated_date":41,"references":42,"days_to_patch":44},"CVE-2024-1993","icon-widget-authenticatedcontributor-stored-cross-site-scripting-via-shortcode","Icon Widget \u003C= 1.3.0 - Authenticated(Contributor+) Stored Cross-Site Scripting via shortcode","The Icon Widget plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s) in all versions up to, and including, 1.3.0 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.",null,"\u003C=1.3.0","medium",6.4,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:L\u002FUI:N\u002FS:C\u002FC:L\u002FI:L\u002FA:N","Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","2024-05-31 15:30:25",[43],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002F7352ab6d-b582-4512-a9fa-4b42b78fa862?source=api-prod",43,{"id":46,"url_slug":47,"title":48,"description":49,"plugin_slug":4,"theme_slug":35,"affected_versions":50,"patched_in_version":51,"severity":37,"cvss_score":38,"cvss_vector":39,"vuln_type":40,"published_date":52,"updated_date":53,"references":54,"days_to_patch":56},"CVE-2022-4763","icon-widget-authenticated-contributor-stored-cross-site-scripting-via-shortcode","Icon Widget \u003C= 1.2.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode","The Icon Widget plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcodes in versions up to, and including, 1.2.6 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page","\u003C=1.2.6","1.3.0","2023-01-03 00:00:00","2024-01-22 19:56:02",[55],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002F81c4dd54-a248-48a0-a407-ffd3162e0abe?source=api-prod",385,{"slug":7,"display_name":7,"profile_url":8,"plugin_count":58,"total_installs":59,"avg_security_score":60,"avg_patch_time_days":61,"trust_score":62,"computed_at":63},8,6630,83,170,67,"2026-04-04T09:04:15.381Z",[65,84,107,133,157],{"slug":66,"name":67,"version":68,"author":69,"author_profile":70,"description":71,"short_description":72,"active_installs":13,"downloaded":73,"rating":13,"num_ratings":74,"last_updated":75,"tested_up_to":68,"requires_at_least":68,"requires_php":76,"tags":77,"homepage":81,"download_link":82,"security_score":83,"vuln_count":26,"unpatched_count":26,"last_vuln_date":35,"fetched_at":28},"service-boxes-widgets-text-icon","Service Boxes Widgets Text Icon","1.0.1","Mahabub Hasan","https:\u002F\u002Fprofiles.wordpress.org\u002Fmahabub-hasan\u002F","\u003Cp>Basically it just a WordPress “Service Boxes Text Widget” but with additional icon font selector based on \u003Ca href=\"http:\u002F\u002Ffortawesome.github.io\u002FFont-Awesome\u002F\" rel=\"nofollow ugc\">FontAwesome\u003C\u002Fa>. The Icon will display Top, bottom, Left, Right to widget title.\u003Cbr \u002F>\nFont Awesome is my favorite of the free font icon sets.All of the 220 pixel perfect icons,have great cross-browser support and are easy to use.\u003Cbr \u002F>\nI wanted to be able to use the icons without having to rely on my current theme, so I created a simple WordPress widget Text plugin.\u003C\u002Fp>\n\u003Cp>Easy to configure CSS\u003C\u002Fp>\n\u003Cp>Credits\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Author URI: http:\u002F\u002Fbdwebteam.com\u003C\u002Fli>\n\u003Cli>Support Email: m.manik01@gmail.com\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Implement\u003C\u002Fh3>\n\u003Col>\n\u003Cli>Go to the wp admin Widget page.\u003C\u002Fli>\n\u003Cli>Drag and drop “Service Boxes Widgets Text Icon” into active sidebar.\u003C\u002Fli>\n\u003C\u002Fol>\n","Service Boxes Widgets Text Icon will display Top, bottom, Left, Right for widget title.",11783,4,"2015-06-29T19:47:00.000Z","",[78,79,20,80,22],"advanced-recent-posts","advanced-recent-posts-widget","icons","http:\u002F\u002Fplugin.bdwebteam.com\u002Fservice-boxes-widgets-text-icon\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fservice-boxes-widgets-text-icon.zip",85,{"slug":85,"name":86,"version":87,"author":20,"author_profile":88,"description":89,"short_description":90,"active_installs":91,"downloaded":92,"rating":93,"num_ratings":94,"last_updated":95,"tested_up_to":96,"requires_at_least":97,"requires_php":98,"tags":99,"homepage":103,"download_link":104,"security_score":105,"vuln_count":14,"unpatched_count":26,"last_vuln_date":106,"fetched_at":28},"font-awesome","Font Awesome","5.1.3","https:\u002F\u002Fprofiles.wordpress.org\u002Ffontawesome\u002F","\u003Cp>The official way to use Font Awesome Free or Pro icons on your WordPress site, brought to you by the Font Awesome team.\u003C\u002Fp>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cp>Our official plugin makes it easy to add Font Awesome icons to your pages, posts, and templates and includes the following features:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Use \u003Cstrong>Pro or Free icons\u003C\u002Fstrong>, from the latest release or a specific release.\u003C\u002Fli>\n\u003Cli>Use \u003Cstrong>custom icons\u003C\u002Fstrong> from your Pro Kits.\u003C\u002Fli>\n\u003Cli>Use a \u003Cstrong>Font Awesome Kit\u003C\u002Fstrong> to add any of our icons (including the latest Duotone styles and custom icons!), or select the Font Awesome \u003Cstrong>CDN for Version 5 icons only\u003C\u002Fstrong>.\u003C\u002Fli>\n\u003Cli>Turn on automatic \u003Cstrong>compatibility for Font Awesome Version 4\u003C\u002Fstrong> if you – or your plugins – are still using Version 4 syntax.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Troubleshoot and resolve issues\u003C\u002Fstrong> when multiple versions of Font Awesome are loading on your site from other plugins\u002Fthemes, which can cause unexpected icon display or technical issues.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>How to Use\u003C\u002Fh3>\n\u003Cp>\u003Cstrong>Install And Enable The Plugin\u003C\u002Fstrong>\u003Cbr \u002F>\n(See the Installation tab for details)\u003C\u002Fp>\n\u003Cp>\u003Cstrong>How to Add and Style Icons\u003C\u002Fstrong>\u003Cbr \u002F>\nFull docs on how to use the plugin and add icons are available on the \u003Ca href=\"https:\u002F\u002Fdocs.fontawesome.com\u002Fweb\u002Fuse-with\u002Fwordpress\u002Fadd-icons\" rel=\"nofollow ugc\">Font Awesome Docs site\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Add Icons in the Block Editor\u003C\u002Fstrong>\u003Cbr \u002F>\nOnce you’ve set up your plugin, you can add icons as blocks or inline with text.\u003C\u002Fp>\n\u003Cp>To add icons as blocks, select the “Font Awesome Icon” block, and then click the “Choose Icon button” to open the Icon Chooser.\u003C\u002Fp>\n\u003Cp>To add icons inline, select the Font Awesome option in the format toolbar to open the Icon Chooser. (Note: Inline icons require at least WP 6.3.)\u003C\u002Fp>\n\u003Cp>Once you open the Icon Chooser, add icons by:\u003C\u002Fp>\n\u003Col>\n\u003Cli>Searching for the icon you want – you can \u003Cstrong>search by icon name, category, or keyword\u003C\u002Fstrong>.\u003C\u002Fli>\n\u003Cli>Changing the Family and Style using the drop downs if you want an icon in a different style.\u003C\u002Fli>\n\u003Cli>When you see the icon you want, clicking it to enter it into the content of your page or post.\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Cp>\u003Cem>Note: If you want to search and add Pro icons in the Icon Chooser, make sure you set your plugin to use a Pro Kit.\u003C\u002Fem>\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Add Icons in The Classic Editor\u003C\u002Fstrong>\u003Cbr \u002F>\nIf you need to add icons in the classic editor, you can \u003Ca href=\"https:\u002F\u002Ffontawesome.com\u002Ficons?d=gallery\" rel=\"nofollow ugc\">use the icon names in shortcodes or HTML\u003C\u002Fa>. Add an icon using shortcodes to any text area – just add the name of the icon and a style prefix, where \u003Ca href=\"https:\u002F\u002Ffontawesome.com\u002Fhow-to-use\u002Fon-the-web\u002Freferencing-icons\u002Fbasic-use\" rel=\"nofollow ugc\">the prefix is the style of icon\u003C\u002Fa> you want to use. Note that you don’t need to include the \u003Ccode>fa-\u003C\u002Fcode> part of the icon name. And if you don’t include any style prefix, the icon will default to the Classic Solid style.\u003C\u002Fp>\n\u003Cp>The shortcode for an icon looks like this:\u003C\u002Fp>\n\u003Cpre>\u003Ccode>[icon name=\"stroopwafel\"]\n\n[icon name=\"stroopwafel\" prefix=\"fa-sharp fa-light\"]\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Cp>You can also use basic HTML with \u003Ca href=\"https:\u002F\u002Ffontawesome.com\u002Fhow-to-use\u002Fon-the-web\u002Freferencing-icons\u002Fbasic-use\" rel=\"nofollow ugc\">standard Font Awesome syntax\u003C\u002Fa>, like this:\u003C\u002Fp>\n\u003Cpre>\u003Ccode>\u003Ci class=\"fa-solid fa-stroopwafel\">\u003C\u002Fi>\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Cp>\u003Cstrong>Using Pro Icons and Features\u003C\u002Fstrong>\u003Cbr \u002F>\nTo use a Kit to power your icons, \u003Ca href=\"https:\u002F\u002Ffontawesome.com\u002Fkits\" rel=\"nofollow ugc\">create a Kit on FontAwesome.com\u003C\u002Fa> and select “Pro icons” in the Kit Settings tab. Then grab your \u003Ca href=\"https:\u002F\u002Ffontawesome.com\u002Faccount#api-tokens\" rel=\"nofollow ugc\">API Token from your Font Awesome Account page\u003C\u002Fa> and add it to your WordPress plugin settings.\u003C\u002Fp>\n\u003Cp>To use the CDN to power your icons, know that you will \u003Cstrong>only be able to use icons from Version 5\u003C\u002Fstrong>. To enable Pro icons, add your site’s domain to the list allowed domains on your \u003Ca href=\"https:\u002F\u002Ffontawesome.com\u002Faccount\u002Fcdn\" rel=\"nofollow ugc\">Font Awesome CDN Settings page\u003C\u002Fa> and then use shortcodes or HTML to add the icons into your content.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Troubleshooting with the Plugin\u003C\u002Fstrong>\u003Cbr \u002F>\nFont Awesome icons are popular, so lots of themes and plugins also load Font Awesome, and sometimes their version can conflict with yours. So we created a way to help you find and prevent those conflicting versions from affecting your icons: \u003Cstrong>The Conflict Detection Scanner\u003C\u002Fstrong>.\u003C\u002Fp>\n\u003Cp>If the plugin seems to be set up correctly and your icons still aren’t loading and you’re not sure why, head over to the Troubleshoot tab, which has two parts:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cem>Detect Conflicts with Other Versions of Font Awesome\u003C\u002Fem> – which lets you start the conflict detection scanner to find versions of Font Awesome loading on your site.\u003C\u002Fli>\n\u003Cli>\u003Cem>Versions of Font Awesome Active on Your Site\u003C\u002Fem> – which shows the results of the scanner and lets  you prevent any conflicting versions from loading other versions of Font Awesome on your site.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Get more information about using the scanner for troubleshooting on the \u003Ca href=\"https:\u002F\u002Fdocs.fontawesome.com\u002Fweb\u002Fuse-with\u002Fwordpress\u002Ftroubleshoot\" rel=\"nofollow ugc\">Font Awesome WordPress docs\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch3>Configuring\u003C\u002Fh3>\n\u003Cp>The plugin is set to serve Font Awesome Free icons as a Web Font via the Font Awesome CDN by default. You can change the CDN settings right in the plugin. If you want just the basic Free icons, you probably don’t need to make any changes to the default configuration.\u003C\u002Fp>\n\u003Cp>You can get more information about all the available settings and troubleshooting on the \u003Ca href=\"https:\u002F\u002Fdocs.fontawesome.com\u002Fweb\u002Fuse-with\u002Fwordpress\" rel=\"nofollow ugc\">Font Awesome WordPress docs\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch3>Upgrading from Plugin Version 4\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Ccode>[icon]\u003C\u002Fcode> shortcodes found in Block Editor content and elsewehre will continue to work as before,\u003Cbr \u002F>\nthough new icons added with the Icon Chooser in the Block Editor will be inline SVGs.\u003Cbr \u002F>\nPreviously added \u003Ccode>[icon]\u003C\u002Fcode> shortcodes will not be automatically be converted into the new inline SVG\u003Cbr \u002F>\nformat. If you want to convert an \u003Ccode>[icon]\u003C\u002Fcode> shortcode, delete it and re-add the icon using the Icon Chooser in the Block Editor.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>See Also\u003C\u002Fh3>\n\u003Cp>The \u003Ca href=\"https:\u002F\u002Fgithub.com\u002FFortAwesome\u002Fwordpress-fontawesome\u002Fblob\u002Fmaster\u002FREADME.md\" rel=\"nofollow ugc\">README\u003C\u002Fa> on GitHub has details for WordPress site owners and developers.\u003C\u002Fp>\n\u003Cp>You can get more information about all the available settings and troubleshooting on the \u003Ca href=\"https:\u002F\u002Fdocs.fontawesome.com\u002Fweb\u002Fuse-with\u002Fwordpress\" rel=\"nofollow ugc\">Font Awesome WordPress docs\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>And there are \u003Ca href=\"https:\u002F\u002Ffortawesome.github.io\u002Fwordpress-fontawesome\u002F\" rel=\"nofollow ugc\">API docs\u003C\u002Fa> for developers.\u003C\u002Fp>\n","The official way to use Font Awesome Free or Pro icons on your WordPress site, brought to you by the Font Awesome team.",400000,5666760,72,61,"2025-12-17T22:34:00.000Z","6.9.4","5.8","7.4",[20,21,100,101,102],"iconfont","svg-icon","webfont","https:\u002F\u002Ffontawesome.com\u002Fhow-to-use\u002Fon-the-web\u002Fusing-with\u002Fwordpress","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Ffont-awesome.5.1.3.zip",99,"2022-12-22 00:00:00",{"slug":108,"name":109,"version":110,"author":111,"author_profile":112,"description":113,"short_description":114,"active_installs":115,"downloaded":116,"rating":117,"num_ratings":118,"last_updated":119,"tested_up_to":96,"requires_at_least":120,"requires_php":121,"tags":122,"homepage":128,"download_link":129,"security_score":130,"vuln_count":131,"unpatched_count":26,"last_vuln_date":132,"fetched_at":28},"astra-widgets","Astra Widgets","1.2.17","Brainstorm Force","https:\u002F\u002Fprofiles.wordpress.org\u002Fbrainstormforce\u002F","\u003Ch4>The fastest way to add more widgets into your WordPress website.\u003C\u002Fh4>\n\u003Cp>How easy can things get when you can add widgets for particular information and fetch them anywhere on your website? This goes with the most wanted information like the business address, social profile links and list icons.\u003C\u002Fp>\n\u003Cp>The Astra Widget plugin lets you create widgets to add an address, a social profile widget and list icons that you can add into your header, sidebar, footer etc. on your website.\u003C\u002Fp>\n\u003Ch4>How does this work?\u003C\u002Fh4>\n\u003Cp>The Astra Widgets plugin can be installed like any other WordPress plugin. Once installed, you will find the following widgets listed under Appearance -> Widgets\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Astra : Address\u003C\u002Fli>\n\u003Cli>Astra : List Icons\u003C\u002Fli>\n\u003Cli>Astra : Social Profiles\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>You simply need to select the place you wish to add the widget in and then add the information in the specific fields. Save this and you are done!\u003C\u002Fp>\n\u003Ch4>WHY PEOPLE LOVE THE ASTRA THEME?\u003C\u002Fh4>\n\u003Cp>Astra is currently powering over 1+ million websites. The performance and ease of use it offers has made it the go-to theme for beginners as well as experts.\u003C\u002Fp>\n\u003Ch4>Here are a few reasons why they love Astra –\u003C\u002Fh4>\n\u003Cp>\u003Cstrong>Faster Performance\u003C\u002Fstrong> – Astra follows the best coding standards and is built with speed and performance in mind. It is the best WordPress theme that lets you build faster lading and better performing websites.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Easy Customization\u003C\u002Fstrong> – With an aim to keep it simple and easy, Astra gives you lots of options to customize everything with just a few clicks. Everything can be managed through the customizer itself!\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Compatibility with Page Builders\u003C\u002Fstrong> – Astra works seamlessly with all major page builders and therefore is opted as the best \u003Ca href=\"https:\u002F\u002Fwpastra.com\u002Ftheme-for-elementor\u002F?utm_source=wp-repo&utm_medium=astra_desc&utm_campaign=ast_widgets\" rel=\"nofollow ugc\">theme for Elementor\u003C\u002Fa>, Beaver Builder, Gutenberg, etc.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Pixel Perfect Design\u003C\u002Fstrong> – Astra offers pixel-perfect FREE ready-to-use website demos within a huge library of starter sites. These can simply be imported, tweaked and used to reduce your overall design time.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Deeper Integrations\u003C\u002Fstrong> – Astra lets you create and beautify eCommerce websites and those that offer online courses in minutes. This is possible due to its in-depth integrations with all WooCommerce plugins, LifterLMS, LearnDash, etc.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Ready-to-use complete website demos\u003C\u002Fstrong> – Astra offers ready-made starter templates built with Elementor, Beaver Builder, Brizy and Gutenberg. You can import them using the \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fastra-sites\u002F\" rel=\"ugc\">Starter Templates\u003C\u002Fa> plugin, tweak and go live in minutes!\u003C\u002Fp>\n","Quickest solution to add widgets like Address, Social Profiles and List icons on a website built with Astra.",200000,4538614,78,17,"2025-12-15T06:25:00.000Z","4.7","5.2",[123,124,125,126,127],"add-widget","address-widget","list-icon-widget","social-media","social-profile-widget","https:\u002F\u002Fwpastra.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fastra-widgets.1.2.17.zip",96,3,"2025-12-28 00:00:00",{"slug":134,"name":135,"version":136,"author":137,"author_profile":138,"description":139,"short_description":140,"active_installs":141,"downloaded":142,"rating":143,"num_ratings":144,"last_updated":145,"tested_up_to":146,"requires_at_least":147,"requires_php":98,"tags":148,"homepage":154,"download_link":155,"security_score":130,"vuln_count":131,"unpatched_count":26,"last_vuln_date":156,"fetched_at":28},"social-icons-widget-by-wpzoom","Social Icons Widget & Block – Social Media Icons & Share Buttons","4.5.9","WPZOOM","https:\u002F\u002Fprofiles.wordpress.org\u002Fwpzoom\u002F","\u003Ch4>Social Media Icons & Share Buttons for WordPress\u003C\u002Fh4>\n\u003Cp>\u003Cstrong>The best social icons plugin for WordPress.\u003C\u002Fstrong> Add beautiful social media icons and share buttons anywhere on your site. 400+ icons, Gutenberg block, widget, Elementor support – all in one plugin.\u003C\u002Fp>\n\u003Cblockquote>\n\u003Cp>Did you find this plugin helpful? Please consider \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fsupport\u002Fview\u002Fplugin-reviews\u002Fsocial-icons-widget-by-wpzoom\" rel=\"ugc\">leaving a 5-star review\u003C\u002Fa>.\u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Cp>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fdemo.wpzoom.com\u002Fsocial-icons\u002F\" rel=\"nofollow ugc\">Social Icons Block Demo\u003C\u002Fa>\u003C\u002Fstrong>\u003Cbr \u002F>\n\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fdemo.wpzoom.com\u002Fsocial-icons\u002F2016\u002F04\u002F21\u002Fsharing-buttons\u002F\" rel=\"nofollow ugc\">Sharing Buttons Demo\u003C\u002Fa>\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Social Icons & Sharing Buttons\u003C\u002Fstrong> helps you to add social media icons and sharing buttons to your website. The plugin includes several icon sets, which gives you the possibility to use the widget for more than just linking to your social media profiles. You can use generic icons to add links to anything you want, and enable sharing buttons to let visitors share your content across social networks.\u003C\u002Fp>\n\u003Cblockquote>\n\u003Cp>With the help of WPZOOM’s excellent Social Icons Widget plugin, you can link to all your social network profiles and add sharing buttons in no time, letting your visitors easily get in touch with you on all social media channels and share your content.\u003Cbr \u002F>\n  ⭐️⭐️⭐️⭐️⭐️\u003Cbr \u002F>\n  WPKlik\u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Ch4>What’s new in 4.5.0\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>NEW: Social Sharing Buttons Block\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>NEW: Add Social Sharing Buttons in posts and pages\u003C\u002Fstrong>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>What’s new in 4.4.0\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>NEW: Add SVG Icons in the Social Icons Block\u003C\u002Fstrong>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>What’s new in 4.0.0\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>NEW: Gutenberg Block\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>New icon styles in the new Social Icons Block\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Where I can view a Demo?\u003C\u002Fh4>\n\u003Cp>You can view the plugin live in all our themes at \u003Ca href=\"https:\u002F\u002Fwww.wpzoom.com\u002Fthemes\u002F\" rel=\"nofollow ugc\">WPZOOM\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch4>View Demo & Examples\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fdemo.wpzoom.com\u002F?theme=foodica\" rel=\"nofollow ugc\">Foodica Theme\u003C\u002Fa> – header bar and sidebar\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fdemo.wpzoom.com\u002Finspiro\" rel=\"nofollow ugc\">Inspiro Theme\u003C\u002Fa> – sidebar panel and footer\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Features:\u003C\u002Fh4>\n\u003Cp>\u003Cstrong>Social Icons Block:\u003C\u002Fstrong>\u003Cbr \u002F>\n* SVG Icons Support – Upload custom SVG icons\u003Cbr \u002F>\n* 400+ Custom Icons from 5 Icon Sets\u003Cbr \u002F>\n* Gutenberg Block with Live Preview\u003Cbr \u002F>\n* Drag & Drop Icons with Sortable Arrows\u003Cbr \u002F>\n* Color Picker for Each Icon\u003Cbr \u002F>\n* Search by Keywords\u003Cbr \u002F>\n* Adjust Icon Size & Padding\u003Cbr \u002F>\n* Multiple Styles: Icon Shape and Icon with Background\u003Cbr \u002F>\n* 3 Background Styles: Rounded Corners, Round, Square\u003Cbr \u002F>\n* Icon Sets + Shortcodes\u003Cbr \u002F>\n* Elementor Widget Integration\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Social Sharing Buttons Block:\u003C\u002Fstrong>\u003Cbr \u002F>\n* 12+ Sharing Platforms: Facebook, X, Threads, LinkedIn, Pinterest, Reddit, Telegram, WhatsApp, Bluesky, Email, Copy Link, and Print\u003Cbr \u002F>\n* Multiple Button Styles: Circle, Square, Rounded, Outlined, Minimal, One-tone\u003Cbr \u002F>\n* Customizable Colors, Sizes, Padding & Margins\u003Cbr \u002F>\n* Show\u002FHide Labels\u003Cbr \u002F>\n* Print Button to Trigger Browser Print Dialog\u003Cbr \u002F>\n* Copy Link Button with Visual Feedback\u003Cbr \u002F>\n* X\u002FTwitter Username Integration (via parameter)\u003C\u002Fp>\n\u003Ch4>PRO Features\u003C\u002Fh4>\n\u003Cp>Upgrade to \u003Ca href=\"https:\u002F\u002Fwww.wpzoom.com\u002Fplugins\u002Fsocial-share\u002F\" rel=\"nofollow ugc\">Social Icons Widget PRO\u003C\u002Fa> to unlock powerful features:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Floating Buttons\u003C\u002Fstrong> – Display social sharing icons as a fixed floating bar on the side of your website (NEW!)\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Share Analytics Dashboard\u003C\u002Fstrong> – Track how visitors share your content with detailed analytics\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Like Button\u003C\u002Fstrong> – Add a like button to let visitors engage with your posts\u003C\u002Fli>\n\u003Cli>\u003Cstrong>AI Share Buttons\u003C\u002Fstrong> – Share to ChatGPT, Claude, and Perplexity AI platforms\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Share Counts\u003C\u002Fstrong> – Display total and individual share counts on buttons\u003C\u002Fli>\n\u003Cli>\u003Cstrong>External Share Counts\u003C\u002Fstrong> – Fetch real share counts from Facebook, Pinterest via SharedCount API\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Custom SVG Icon Uploads\u003C\u002Fstrong> – Upload your own custom SVG icons\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Nav Menu Integration\u003C\u002Fstrong> – Add social icons directly to WordPress navigation menus\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Dashboard Widget\u003C\u002Fstrong> – Quick stats overview right on your WordPress dashboard\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Priority Support\u003C\u002Fstrong> – Get help faster with priority email support\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.wpzoom.com\u002Fplugins\u002Fsocial-share\u002F\" rel=\"nofollow ugc\">Learn more about PRO \u003Cspan aria-hidden=\"true\" class=\"wp-exclude-emoji\">→\u003C\u002Fspan>\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>\u003Cstrong>General Features:\u003C\u002Fstrong>\u003Cbr \u002F>\n* 100+ Sites\u002FSocial Networks Supported\u003Cbr \u002F>\n* FontAwesome Integration\u003Cbr \u002F>\n* Academicons Integration: 38 Academia Icons for Academics\u003Cbr \u002F>\n* Supports Email Addresses (mailto:email@example.com)\u003Cbr \u002F>\n* Supports Telephone Numbers (tel:12345)\u003Cbr \u002F>\n* Supports Viber (viber:\u002F\u002Fadd?number=123456)\u003Cbr \u002F>\n* Supports WhatsApp (https:\u002F\u002Fapi.whatsapp.com\u002Fsend?phone=15551234567)\u003C\u002Fp>\n\u003Ch4>Icons\u003C\u002Fh4>\n\u003Cp>Twitter, X, Facebook, Instagram, Pinterest, Snapchat, Threads, Yelp, LinkedIn, Bloglovin’, Lookbook, Feedly, Periscope, SoundCloud, Spotify, Last.fm, YouTube, Vimeo, Flickr, 500px, Tumblr, Blogger, Reddit, Dribbble, Envato, Behance, DeviantArt, GitHub, RSS, Disqus, Stackoverflow, Komoot, Tiktok, Mailchimp, Podcasts, Telegram, TripAdvisor, AirBnb, Baidu, ebay, Medium, Periscope, Snapchat, Bandcamp, Eyem, Viber, Quora, Etsy, Meetup, Linode, IMDB, Overwatch, Strava, Tidal, Deezer, Unsplash, Codered, Udemy, CrunchBase, Angie’s List, App Store, Nextdoor, WhatsApp, ResearchGate, Slack, Songkick, ReverbNation, Bluesky\u003C\u002Fp>\n\u003Ch4>Credits\u003C\u002Fh4>\n\u003Cp>Some Social Icons are provided by the Socicon icon font.\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fjpswalsh.github.io\u002Facademicons\u002F\" rel=\"nofollow ugc\">Academicons\u003C\u002Fa> are provided by James Walsh.\u003C\u002Fp>\n\u003Ch4>GDPR COMPLIANCE\u003C\u002Fh4>\n\u003Cp>Social Icons & Sharing Buttons does not collect any information from your visitors, therefore it’s \u003Cstrong>100% GDPR compliant\u003C\u002Fstrong>.\u003C\u002Fp>\n\u003Ch4>Get Involved\u003C\u002Fh4>\n\u003Cp>Looking to contribute code to this plugin? Go ahead and \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fwpzoom\u002Fsocial-icons-widget\u002F\" rel=\"nofollow ugc\">fork the repository over at GitHub\u003C\u002Fa>.\u003C\u002Fp>\n","Social media icons plugin for WordPress - Add 400+ social icons and share buttons. Gutenberg block, widget & Elementor support. GDPR compliant.",100000,3727901,98,143,"2026-03-12T19:31:00.000Z","7.0","6.5",[149,150,151,152,153],"share-buttons","social-icons","social-media-icons","social-media-widget","social-sharing","https:\u002F\u002Fwww.wpzoom.com\u002Fplugins\u002Fsocial-share\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsocial-icons-widget-by-wpzoom.4.5.9.zip","2026-03-12 20:38:20",{"slug":158,"name":159,"version":160,"author":161,"author_profile":162,"description":163,"short_description":164,"active_installs":141,"downloaded":165,"rating":130,"num_ratings":166,"last_updated":167,"tested_up_to":96,"requires_at_least":168,"requires_php":76,"tags":169,"homepage":173,"download_link":174,"security_score":130,"vuln_count":175,"unpatched_count":26,"last_vuln_date":176,"fetched_at":28},"ultimate-social-media-icons","Social Media Share Buttons & Social Sharing Icons","2.9.7","Inisev","https:\u002F\u002Fprofiles.wordpress.org\u002Finisev\u002F","\u003Cp>\u003Cstrong>Try it out on your free dummy site: Click here => \u003Ca href=\"https:\u002F\u002Ftastewp.com\u002Fplugins\u002Fultimate-social-media-icons\" rel=\"nofollow ugc\">https:\u002F\u002Ftastewp.com\u002Fplugins\u002Fultimate-social-media-icons\u003C\u002Fa>\u003C\u002Fstrong>\u003Cbr \u002F>\n(this trick works for all plugins – just replace “wordpress” with “tastewp” in the plugin’s WP repo URL)\u003C\u002Fp>\n\u003Cp>Social media plugin which let’s you add share icons for RSS, Email, Facebook, Twitter, LinkedIn, Pinterest, Instagram, Youtube, ‘Share’ (covering 200+ other social media platforms) and upload custom share icons of your choice.\u003C\u002Fp>\n\u003Cp>This free plugin has a lot to offer. Even more can be found in the Premium Plugin, please watch this short video:\u003C\u002Fp>\n\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002FxaZ8m5zSYRg?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\n\u003Cp>See \u003Ca href=\"https:\u002F\u002Fwww.ultimatelysocial.com\u002Fusm-premium\u002F\" rel=\"nofollow ugc\">all features of the Premium plugin\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>The free social media plugin includes the following features:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Pick from 16 different designs for your social media share icons\u003C\u002Fli>\n\u003Cli>Give several actions to one social media share icon (e.g. your facebook share icon can lead visitors to your Facebook page, and also give visitors the opportunity to like your page)\u003C\u002Fli>\n\u003Cli>Decide to give your social media icons an animation (e.g. automatic shuffling, mouse-over effects) to make your visitors aware of the share icons, increasing the chance that they follow\u002Fshare your blog\u003C\u002Fli>\n\u003Cli>Make your social media icons ‘float’ or ‘sticky’\u003C\u002Fli>\n\u003Cli>Allow visitors to subscribe to your blog by Email\u003C\u002Fli>\n\u003Cli>Add ‘counts’ to your social media buttons\u003C\u002Fli>\n\u003Cli>Decide to display a pop-up (on all or only on selected pages) asking people to follow\u002Fshare you via your social media icons\u003C\u002Fli>\n\u003Cli>Decide to display sharing-buttons and social media icons at the end of every post\u003C\u002Fli>\n\u003Cli>Select from many other customization features for your socialmedia icons!\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>For GDPR compliance, please have a look at our \u003Ca href=\"https:\u002F\u002Fultimatelysocial.com\u002Fgdpr\u002F\" rel=\"nofollow ugc\">Social Media GDPR Compliance page\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>The social media plugin is very easy to use as it takes you through all the steps:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Step 1: Choose which social media icons you want to display\u003C\u002Fli>\n\u003Cli>Step 2: Define what actions your social media icons should perform\u003C\u002Fli>\n\u003Cli>Step 3: Pick design & animation options for your social media icons\u003C\u002Fli>\n\u003Cli>Step 4: Add counts to your social media icons (optional)\u003C\u002Fli>\n\u003Cli>Step 5: Select from various other social share options, e.g. make your social media icons ‘float’\u003C\u002Fli>\n\u003Cli>Step 6: Add sharing\u002Flinking icons next to each blog post (optional)\u003C\u002Fli>\n\u003Cli>Step 7: Add a customized pop-up asking people to follow or share (optional)\u003C\u002Fli>\n\u003Cli>Step 8: Add a subscription form on your site (optional)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>In case of issues or questions please ask in the \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fsupport\u002Fplugin\u002Fultimate-social-media-icons\" rel=\"ugc\">Support forum\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>We hope you enjoy the free social media plugin!\u003C\u002Fp>\n\u003Ch4>New premium social share plugin\u003C\u002Fh4>\n\u003Cp>We released a premium social share plugin with many more exciting features:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Many more social networks\u003C\u002Fstrong> supported, including Snapchat share buttons, Whatsapp share buttons, Yummly share buttons, Phone button, Yelp share buttons, Soundcloud share buttons, Skype share buttons Flickr share buttons, Blogger share buttons, Reddit share buttons, Vimeo share buttons, Tumblr share buttons, Xing share buttons, Xhenta, Vkontakte share buttons (VK), Telegram share buttons, Amazon share buttons, Goodreads share buttons, Angies list share buttons, Steam share buttons, Twitch share buttons, Spotify share buttons, Odnoklassniki share buttons (OK), Buffer share buttons, Weibo share buttons, Pocket share buttons, Meneame share buttons, Frype share buttons, LiveJournal share buttons, Patreon share buttons, Dloky share buttons, Discord share buttons, Github share buttons, WordPress buttons, Etsy share buttons, Better Business Bureau share buttons, Digg share buttons, Delicious share buttons, Print share buttons, and many other share buttons!\u003C\u002Fli>\n\u003Cli>\u003Cstrong>More design styles\u003C\u002Fstrong> to make your social share icons look really cool & matching the design of your website\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Themed design styles\u003C\u002Fstrong>, e.g. if you have a website about cats you can pick from social media logos which look like cats etc.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Better social sharing and following features\u003C\u002Fstrong>, e.g. you can define the Tweet-texts better (e.g. pull the post titles into your Tweets automatically), let people follow you on Facebook directly without leaving your site etc.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Place the social icons on specific pages\u003C\u002Fstrong>, i.e. you can define on which pages the icons to the social media sites should not show\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Position the social icons by anchor and margins\u003C\u002Fstrong>, i.e. you can define the margins where your share icons should be displayed (from top\u002Fbottom\u002Fleft\u002Fright), and then have them floating, or stick, still visible when user scrolls down or not etc.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Optimized for mobile\u003C\u002Fstrong> – you can define separate selections for your social network icons for mobile\u003C\u002Fli>\n\u003Cli>\u003Cstrong>More functions for email icon\u003C\u002Fstrong>, such as Share (by email), Contact you, Link to a certain page etc.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Social media counters optimized\u003C\u002Fstrong> to encourage more social media sharing from your visitors\u003C\u002Fli>\n\u003Cli>\u003Cstrong>More pop up options\u003C\u002Fstrong> which contain your social media buttons, e.g. define a limit to how often the pop-up is shown to the same user, show pop-up only when people try to leave your website etc.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Friendly support\u003C\u002Fstrong> in case you’re stuck\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Many more settings and options\u003C\u002Fstrong> for your social media network icons\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Have a look at the \u003Ca href=\"https:\u002F\u002Fwww.ultimatelysocial.com\u002Fusm-premium\u002F\" rel=\"nofollow ugc\">Premium Plugin features\u003C\u002Fa>\u003C\u002Fp>\n","Share buttons and pop up share icons for social media sharing",12164049,5332,"2026-02-06T13:36:00.000Z","3.5",[170,171,172,126,22],"share","share-icons","social","https:\u002F\u002Fultimatelysocial.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fultimate-social-media-icons.2.9.7.zip",11,"2024-10-31 00:00:00",{"attackSurface":178,"codeSignals":223,"taintFlows":247,"riskAssessment":248,"analyzedAt":261},{"hooks":179,"ajaxHandlers":213,"restRoutes":214,"shortcodes":215,"cronEvents":221,"entryPointCount":222,"unprotectedCount":26},[180,186,189,192,196,200,205,209],{"type":181,"name":182,"callback":183,"file":184,"line":185},"action","wp_enqueue_scripts","load_icon_font","src\\Enqueue.php",20,{"type":181,"name":187,"callback":183,"file":184,"line":188},"admin_print_styles",21,{"type":181,"name":187,"callback":190,"file":184,"line":191},"load_admin_styles",22,{"type":181,"name":193,"callback":194,"file":184,"line":195},"admin_enqueue_scripts","load_admin_scripts",23,{"type":181,"name":197,"callback":198,"file":199,"line":195},"widgets_init","register_widget","src\\Hooks.php",{"type":181,"name":201,"callback":202,"file":203,"line":204},"admin_menu","add_admin_menu","src\\Settings.php",31,{"type":181,"name":206,"callback":207,"file":203,"line":208},"admin_init","settings_init",32,{"type":181,"name":210,"callback":211,"file":212,"line":195},"init","load_textdomain","src\\Textdomain.php",[],[],[216],{"tag":217,"callback":218,"file":219,"line":220},"icon_widget","add_shortcode","src\\Shortcode.php",30,[],1,{"dangerousFunctions":224,"sqlUsage":225,"outputEscaping":227,"fileOperations":26,"externalRequests":26,"nonceChecks":26,"capabilityChecks":26,"bundledLibraries":246},[],{"prepared":26,"raw":26,"locations":226},[],{"escaped":228,"rawEcho":229,"locations":230},109,7,[231,234,236,238,240,242,244],{"file":232,"line":60,"context":233},"src\\Widget.php","raw output",{"file":232,"line":235,"context":233},278,{"file":232,"line":237,"context":233},280,{"file":232,"line":239,"context":233},311,{"file":232,"line":241,"context":233},312,{"file":232,"line":243,"context":233},339,{"file":232,"line":245,"context":233},341,[],[],{"summary":249,"deductions":250},"The icon-widget plugin version 1.4.0 presents a mixed security posture.  On the positive side, the static analysis reveals strong adherence to secure coding practices in several key areas. All identified SQL queries are properly prepared, and a very high percentage (94%) of output is correctly escaped, significantly mitigating the risk of cross-site scripting vulnerabilities originating from direct code execution. The plugin also exhibits a limited attack surface with only one entry point (a shortcode), and importantly, this entry point appears to be free of direct unauthenticated access vectors like unprotected AJAX handlers or REST API routes.\n\nHowever, the plugin's vulnerability history is a significant concern. The existence of two medium-severity CVEs, both related to Cross-site Scripting (XSS), and the most recent one being in April 2024, suggests recurring issues with input sanitization or output escaping. While the current static analysis indicates good output escaping, the past vulnerabilities imply that either the checks performed were not exhaustive, or that the issues were previously introduced and only recently identified and patched (though the data states 0 currently unpatched). The absence of nonce checks and capability checks, even with a small attack surface, leaves room for potential authorization bypasses or unintended actions if the shortcode's functionality were to be extended or if future vulnerabilities were introduced.\n\nIn conclusion, while the current version of icon-widget demonstrates some solid security foundations, particularly regarding SQL and output handling, the historical pattern of XSS vulnerabilities cannot be ignored. The lack of explicit nonce and capability checks, even for a single shortcode, is a weakness. Users should be aware of the past issues and monitor for any new disclosures, while developers should ensure rigorous security testing, especially for input validation and output encoding, to prevent recurrence of past vulnerabilities.",[251,254,257,259],{"reason":252,"points":253},"Medium severity CVEs in history",15,{"reason":255,"points":256},"No nonce checks",5,{"reason":258,"points":256},"No capability checks",{"reason":260,"points":131},"Minor output escaping concerns (6% unescaped)","2026-03-16T18:10:34.685Z",{"wat":263,"direct":272},{"assetPaths":264,"generatorPatterns":269,"scriptPaths":270,"versionParams":271},[265,266,267,268],"\u002Fwp-content\u002Fplugins\u002Ficon-widget\u002Fassets\u002Fcss\u002Fbootstrap.min.css","\u002Fwp-content\u002Fplugins\u002Ficon-widget\u002Fassets\u002Fcss\u002Fbootstrap-select.min.css","\u002Fwp-content\u002Fplugins\u002Ficon-widget\u002Fassets\u002Fjs\u002Fbootstrap.min.js","\u002Fwp-content\u002Fplugins\u002Ficon-widget\u002Fassets\u002Fjs\u002Fbootstrap-select.min.js",[],[267,268],[],{"cssClasses":273,"htmlComments":275,"htmlAttributes":276,"restEndpoints":279,"jsGlobals":280,"shortcodeOutput":281},[4,274],"widget-title",[],[277,278],"data-toggle","data-live-search",[],[],[282,283,284,284,285,286,287,288,289,290,291,292,293,294,295,296,297,298,299,300,301],"\u003Cdiv class=\"icon-widget\"","\u003Ci class=\"fa "," fa-","\" style=\"","color:","background-color:","padding:","border-radius:","\" > \u003C\u002Fi>","\u003Cbr>","\u003Ch4 class=\"widget-title\">","\u003C\u002Fh4>","\u003Cp class=\"widget-title\">","\u003C\u002Fp>","\u003Cspan class=\"widget-title\">","\u003C\u002Fspan>","\u003Cb class=\"widget-title\">","\u003C\u002Fb>","\u003Cstrong class=\"widget-title\">","\u003C\u002Fstrong>"]