[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fsBKNXdWaAN2YI4H1UrDnNRmlLQXqDbnAaNNMBBl8GsI":3,"$fN2AF9KgZv2adszhfp5MuPlSapAzE7C1u_CoHmNbX_ps":237,"$fsUsLyv_HZZer9UsuMZoLGo648DuMxkDxvhy79kf0u_g":242},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":24,"download_link":25,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28,"discovery_status":29,"vulnerabilities":30,"developer":31,"crawl_stats":27,"alternatives":37,"analysis":130,"fingerprints":196},"indeed-apply-shortcode","Indeed Apply Shortcode","1.6","Indeed.com","https:\u002F\u002Fprofiles.wordpress.org\u002Findeedcom\u002F","\u003Cp>Privately and securely accept job applications by email with Indeed Apply using a simple shortcode.\u003C\u002Fp>\n\u003Cp>Indeed Apply is the way \u003Ca href=\"http:\u002F\u002Fwww.indeed.com\u002F\" title=\"Indeed | one search. all jobs.\" rel=\"nofollow ugc\">Indeed\u003C\u002Fa>, the world’s leading search engine for jobs, accepts applications from job seekers across the globe.\u003C\u002Fp>\n\u003Cp>With Indeed Apply Shortcode, candidates on your website can easily apply to jobs from any device, including mobile, using a simple and user-friendly form.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>It’s completely free and easy to set-up\u003C\u002Fli>\n\u003Cli>Millions of job seekers use Indeed Apply\u003C\u002Fli>\n\u003Cli>Indeed Apply works on desktop and mobile devices\u003C\u002Fli>\n\u003Cli>Provides best experience for job seekers and employers alike\u003C\u002Fli>\n\u003Cli>Your email addressed is never exposed to job seekers or bots\u003C\u002Fli>\n\u003Cli>Requires no change to your hiring process\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Basic Shortcode Usage:\u003C\u002Fp>\n\u003Cp>[indeed-apply jobtitle=”Interaction Designer” emailapplicationto=”apply@yourdomain.com”]\u003C\u002Fp>\n\u003Ch4>More Information About Indeed Apply\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Ca href=\"http:\u002F\u002Fwww.indeed.com\u002Fhire\u002Findeed-apply\" title=\"About Indeed Apply\" rel=\"nofollow ugc\">Add Indeed Apply to your jobs | Easily apply to jobs from anywhere\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"http:\u002F\u002Fblog.indeed.com\u002F2013\u002F03\u002F25\u002Fyour-candidates-are-mobile-are-you\u002F\" title=\"Indeed Blog\" rel=\"nofollow ugc\">Your candidates are mobile. Are you? | Indeed Blog Post\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"http:\u002F\u002Fblog.indeed.com\u002F2012\u002F07\u002F26\u002Findeed-apply-boosts-applications-on-web-and-mobile\u002F\" title=\"Indeed Blog\" rel=\"nofollow ugc\">Indeed Apply boosts applications on web and mobile | Indeed Blog Post\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n","Easily accept job applications from any device, including mobile.",100,5984,0,"2015-12-13T23:42:00.000Z","4.4.34","3.2","",[19,20,21,22,23],"application","apply","indeed","job","jobs","http:\u002F\u002Fwww.indeed.com\u002Fhire\u002Findeed-apply","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Findeed-apply-shortcode.1.6.zip",85,null,"2026-04-16T10:56:18.058Z","no_bundle",[],{"slug":32,"display_name":7,"profile_url":8,"plugin_count":33,"total_installs":11,"avg_security_score":26,"avg_patch_time_days":34,"trust_score":35,"computed_at":36},"indeedcom",1,30,84,"2026-05-20T10:12:12.475Z",[38,55,75,94,112],{"slug":39,"name":40,"version":41,"author":42,"author_profile":43,"description":44,"short_description":45,"active_installs":46,"downloaded":47,"rating":13,"num_ratings":13,"last_updated":48,"tested_up_to":49,"requires_at_least":50,"requires_php":17,"tags":51,"homepage":53,"download_link":54,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"indeed-jobs-shortcode","Indeed Jobs Shortcode","1.0.0","jackchuka","https:\u002F\u002Fprofiles.wordpress.org\u002Fjackchuka\u002F","\u003Cp>Indeed Jobs Shortcode allows users to add shortcode for indeed job API.\u003C\u002Fp>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Real-time Indeed jobs query\u003C\u002Fli>\n\u003Cli>Customizable template\u003C\u002Fli>\n\u003Cli>Easy to setup\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Examples\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Ccode>[indeed q=\"Sales\" limit=\"10\"]\u003C\u002Fcode>\u003C\u002Fli>\n\u003Cli>\u003Ccode>[indeed q=\"Engineer\" co=\"us\"]\u003C\u002Fcode>\u003C\u002Fli>\n\u003Cli>\u003Ccode>[indeed q=\"Programmer\" limit=\"10\" l=\"ca\" co=\"us\"]\u003C\u002Fcode>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Options\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>q – Query to search. \u003Cem>required\u003C\u002Fem>\u003C\u002Fli>\n\u003Cli>limit – Number of post to show\u003C\u002Fli>\n\u003Cli>l – Location to search\u003C\u002Fli>\n\u003Cli>co – Counter to search\u003C\u002Fli>\n\u003Cli>sort – Sort by relevance or date\u003C\u002Fli>\n\u003Cli>For more options please visit \u003Ca href=\"https:\u002F\u002Fads.indeed.com\u002Fjobroll\u002Fxmlfeed\" title=\"Indeed Publisher API\" rel=\"nofollow ugc\">indeed publisher API website\u003C\u002Fa>.\u003C\u002Fli>\n\u003C\u002Ful>\n","This plugin allows users to add shortcode for indeed job API.",10,1755,"2016-06-20T23:58:00.000Z","4.7.33","4.5.2",[52,21,23],"import","http:\u002F\u002Fmasanoriuehara.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Findeed-jobs-shortcode.zip",{"slug":56,"name":57,"version":58,"author":59,"author_profile":60,"description":61,"short_description":62,"active_installs":46,"downloaded":63,"rating":11,"num_ratings":64,"last_updated":65,"tested_up_to":66,"requires_at_least":67,"requires_php":17,"tags":68,"homepage":73,"download_link":74,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"jobs-ajax-feed-widget","Jobs Ajax Feed Widget","1.0","Calen Fretts","https:\u002F\u002Fprofiles.wordpress.org\u002Ffrettsy\u002F","\u003Cp>Display job listings in an Ajax-powered RSS feed widget. Uses Google AJAX Feed API. Based on Google AJAX Feed Widget by M Naveed Akram.\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"http:\u002F\u002Fpipes.yahoo.com\u002Fpipes\u002Fpipe.info?_id=73cfb93650ba001eca64ccec9e892944\" rel=\"nofollow ugc\">\u003Cstrong>Indeed job listings RSS feed\u003C\u002Fstrong>\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>=PARAMS=\u003C\u002Fp>\n\u003Cp>q   Query. By default terms are ANDed. ex: Accounting OR title:Accounting\u003Cbr \u002F>\nl   Location. Use a postal code or a “city, state\u002Fprovince\u002Fregion” combination. ex: New York, NY\u003Cbr \u002F>\nsort    Sort by relevance or date. Default is date.\u003Cbr \u002F>\nradius  Distance from search location (“as the crow flies”). Default is 25.\u003Cbr \u002F>\njt  Job type. Allowed values: “fulltime”, “parttime”, “contract”, “internship”, “temporary”.\u003Cbr \u002F>\nstart   Start results at this result number, beginning with 0. Default is 0.\u003Cbr \u002F>\nlimit   Maximum number of results returned per query. Default is 10.\u003Cbr \u002F>\nfromage     Number of days back to search.\u003Cbr \u002F>\nhighlight   Setting this value to 1 will bold terms in the snippet that are also present in q. Default is 0.\u003Cbr \u002F>\nfilter  Filter duplicate results. 0 turns off duplicate job filtering. Default is 1.\u003Cbr \u002F>\nco  Search within country specified. Default is us. See here for a complete list of supported countries: http:\u002F\u002Fsnipt.org\u002FzNK1\u003Cbr \u002F>\nchnl    Channel Name: Group API requests to a specific channel\u003Cbr \u002F>\npublisher Publisher ID. This is assigned when you register as a publisher.\u003Cbr \u002F>\nkey RSS feed access key.\u003C\u002Fp>\n","Display job listings in an Ajax-powered RSS feed widget.",1904,2,"2014-02-02T07:51:00.000Z","3.7.41","2.0.2",[69,70,71,23,72],"ajax","feed","indeed-com","rss","https:\u002F\u002Fgithub.com\u002Finfiniteschema\u002FJobs-Ajax-Feed-Widget","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fjobs-ajax-feed-widget.zip",{"slug":76,"name":77,"version":41,"author":78,"author_profile":79,"description":80,"short_description":81,"active_installs":46,"downloaded":82,"rating":13,"num_ratings":13,"last_updated":83,"tested_up_to":84,"requires_at_least":85,"requires_php":86,"tags":87,"homepage":17,"download_link":92,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":93},"service-tracker","Service Tracker","BuckLIT","https:\u002F\u002Fprofiles.wordpress.org\u002Fbucklit\u002F","\u003Cp>Service Tracker is a simple “plugin” and “mobile application” designed for business or organisations to add service requests, link the work to a customer, assign a worker or technician , set a booking time and finally update status on job progress.\u003C\u002Fp>\n\u003Cp>After activation of the plugin, you’ll find Services on the WordPress admin screen menu. The services or jobs can be added in the admin. With Service Tracker, you are no longer need to manually manage the jobs assigned to staffs, technicians or workers. This tool allows their employees to add a job or work, link the work to a customer, assign a worker or technician , set a booking time and finally update status on job progress.\u003C\u002Fp>\n\u003Ch4>All features\u003C\u002Fh4>\n\u003Cp>WP Admin or Manager will be able to:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Add Service Requests (it can anything related to job or work)\u003C\u002Fli>\n\u003Cli>Add and select the customer who requested the work and assign a job to a suitable worker.\u003C\u002Fli>\n\u003Cli>Select a date and time the job has to be completed.\u003C\u002Fli>\n\u003Cli>The worker can keep track of the works assigned to them and update the status + add additional notes about the work.\u003C\u002Fli>\n\u003Cli>Under Users> Add new user. Plugin adds a new role ‘technician’. So when a user is created select role ‘technician’ for the worker and ‘subscriber’ for the customer. \u003C\u002Fli>\n\u003Cli>That’s it. Now you can add a service, select a customer, assign it to the technician, select date and time of the work, update the service or work status.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Mobile Application\u003C\u002Fh3>\n\u003Ch4>Prerequisites\u003C\u002Fh4>\n\u003Cp>Mobile application requires \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fjwt-authentication-for-wp-rest-api\u002F\" rel=\"ugc\">JWT Authentication\u003C\u002Fa>\u003Cbr \u002F>\n for WP-API WordPress Plugin to be installed in your website.\u003C\u002Fp>\n\u003Ch4>Configuration in wp-config.php\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\n\u003Cp>The JWT requires a secret key – define(‘JWT_AUTH_SECRET_KEY’, ‘SECRET KEY’) (the secret key can be generated here at https:\u002F\u002Fapi.wordpress.org\u002Fsecret-key\u002F1.1\u002Fsalt\u002F)\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Add the above code in wp-config.php\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Configure CORS support in wp-config.php\u003C\u002Fh4>\n\u003Cp>define(‘JWT_AUTH_CORS_ENABLE’, true);\u003C\u002Fp>\n\u003Ch4>Test if configuration is working\u003C\u002Fh4>\n\u003Cp>Use Postman or any REST CLIENT to test\u003C\u002Fp>\n\u003Cul>\n\u003Cli>JWT AUTH URL is working \u002Fwp-json\u002Fjwt-auth\u002Fv1\u002Ftoken (POST)\u003C\u002Fli>\n\u003Cli>SERVICES REST API is working \u002Fwp-json\u002Fwp\u002Fv2\u002Fservices\u002F\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Install the Mobile Application\u003C\u002Fh4>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fplay.google.com\u002Fstore\u002Fapps\u002Fdetails?id=com.bucklit.servicetracker\" rel=\"nofollow ugc\">Available in the Google Play Store\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>The application is ready to use on Android Phone. For iPhone application or any type of customisation, feel free to \u003Ca href=\"info@bucklit.com.au\" rel=\"nofollow ugc\">email us\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch4>Mobile application usage\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Install application on your Phone\u003C\u002Fli>\n\u003Cli>Application loads with Spalsh screen and redirects to Login screen\u003C\u002Fli>\n\u003Cli>In order to login and access services type Website URL- , Customer or Technician login details.\u003C\u002Fli>\n\u003Cli>On successful login, user is redirected to DashBoard screen. Click Services to access the services.\u003C\u002Fli>\n\u003Cli>The Services is a list of services with Service Title, Service Booking Date and Time & Status. \u003C\u002Fli>\n\u003Cli>When a service is clicked, user is redirected to Service Details Screen, with service, customer and technicain details.\u003C\u002Fli>\n\u003Cli>Technician or Customer can change the service status and post additional comments.\u003C\u002Fli>\n\u003Cli>The comments posted is viewable to administrator or manager only. The history of comments are saved.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>For more detailed information, please refer to the page \u003Ca href=\"https:\u002F\u002Fbucklit.com.au\u002Fproducts\u002Fservice-tracker\u002F\" rel=\"nofollow ugc\">contact us\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch4>Installation Video\u003C\u002Fh4>\n\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002FbSj5gJ6aW9I?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\n\u003Ch4>Configuration and Working Video\u003C\u002Fh4>\n\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002FhjSnbAEHg58?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\n","A simple plugin and mobile application designed for business or organisations to add service requests, link the work to a customer, assign a worker or &hellip;",1063,"2021-08-24T02:20:00.000Z","5.8.13","4.7","7.0",[23,88,89,90,91],"manage-services","mobile-application","service","technician","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fservice-tracker.1.0.0.zip","2026-04-06T09:54:40.288Z",{"slug":95,"name":96,"version":41,"author":97,"author_profile":98,"description":99,"short_description":96,"active_installs":46,"downloaded":100,"rating":101,"num_ratings":64,"last_updated":102,"tested_up_to":103,"requires_at_least":104,"requires_php":17,"tags":105,"homepage":110,"download_link":111,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"simple-indeed-jobroll-widget","Simple Indeed Jobroll Widget","Reza","https:\u002F\u002Fprofiles.wordpress.org\u002Frezaurc\u002F","\u003Cp>This is a simple widget to show Indeed Jobroll widget on a publisher site. It’s a simple widget that can earn money for you.\u003Cbr \u002F>\nPlease read about \u003Ca href=\"https:\u002F\u002Fads.indeed.com\u002Fjobroll\u002F\" rel=\"nofollow ugc\">Indeed Publisher\u003C\u002Fa>.\u003Cbr \u002F>\nYou can see a \u003Ca href=\"http:\u002F\u002Frezaur.net\" rel=\"nofollow ugc\">Live Demo\u003C\u002Fa>.\u003Cbr \u002F>\nPlease let me know if you have any issue regarding this Plugin at \u003Ca href=\"http:\u002F\u002Frezaur.net\u002Fcontact\" rel=\"nofollow ugc\">rezaur.net\u003C\u002Fa>.\u003Cbr \u002F>\nI Will be very happy if this Plugin helps anyway. Reviews will inspire me to add new features and more customize able.\u003C\u002Fp>\n",2430,90,"2014-09-04T15:16:00.000Z","4.0.38","3.0",[21,106,107,108,109],"indeed-jobs","job-search","jobroll","widget","http:\u002F\u002Frezaur.net","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsimple-indeed-jobroll-widget.1.0.0.zip",{"slug":113,"name":114,"version":115,"author":116,"author_profile":117,"description":118,"short_description":119,"active_installs":46,"downloaded":120,"rating":121,"num_ratings":33,"last_updated":122,"tested_up_to":123,"requires_at_least":124,"requires_php":17,"tags":125,"homepage":127,"download_link":128,"security_score":129,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"zij-indeed-jobs","Zij Indeed Jobs","1.2","Shoaib Rehmat","https:\u002F\u002Fprofiles.wordpress.org\u002Fzijsoft\u002F","\u003Cp>Zij indeed jobs provide the easy solution to show indeed jobs into your website easily.\u003C\u002Fp>\n\u003Cp>Zij indeed jobs requires the following parameters to work properly\u003C\u002Fp>\n\u003Cp>A few notes about the sections above:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Api Key indeed jobs api key e.g 4523189466224463 (Test API Key)\u003C\u002Fli>\n\u003Cli>Category which category jobs you want to show e.g PHP Developer\u003C\u002Fli>\n\u003Cli>Location which city jobs you want to show e.g austin\u003C\u002Fli>\n\u003Cli>Job type which job type jobs you want to show e.g Full-time\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Pro version features\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Changeable colors\u003C\u002Fli>\n\u003Cli>Font color\u003C\u002Fli>\n\u003Cli>Background color\u003C\u002Fli>\n\u003Cli>Border color\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Ca href=\"http:\u002F\u002Fzijsoft.com\u002Fwordpress\u002Fplugins\u002Fzij-indeed-jobs-pro.html\" title=\"Zij indeed jobs pro\" rel=\"nofollow ugc\">Zij Indeed Jobs Pro\u003C\u002Fa>\u003C\u002Fp>\n","Zij indeed jobs. Let you show the indeed jobs into your wordpress installation easily.",1579,20,"2024-12-09T18:35:00.000Z","4.5.33","3.0.1",[21,126,106],"indeed-job-integration","http:\u002F\u002Fzijsoft.com\u002Fwordpress\u002Fzijindeedjobs","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fzij-indeed-jobs.zip",92,{"attackSurface":131,"codeSignals":168,"taintFlows":186,"riskAssessment":187,"analyzedAt":195},{"hooks":132,"ajaxHandlers":157,"restRoutes":158,"shortcodes":159,"cronEvents":167,"entryPointCount":64,"unprotectedCount":13},[133,139,143,146,149,153],{"type":134,"name":135,"callback":136,"file":137,"line":138},"action","admin_menu","add_menu_page","wp-indeed-apply.php",91,{"type":140,"name":141,"callback":142,"priority":46,"file":137,"line":129},"filter","plugin_action_links","add_link",{"type":134,"name":144,"callback":144,"file":137,"line":145},"admin_init",93,{"type":134,"name":144,"callback":147,"file":137,"line":148},"restrict_options_page",94,{"type":134,"name":150,"callback":151,"file":137,"line":152},"admin_notices","unconfigured_error",110,{"type":134,"name":154,"callback":155,"file":137,"line":156},"wp_footer","add_ia_script",129,[],[],[160,164],{"tag":161,"callback":162,"file":137,"line":163},"indeed-apply","shortcode",43,{"tag":165,"callback":162,"file":137,"line":166},"indeedapply",45,[],{"dangerousFunctions":169,"sqlUsage":170,"outputEscaping":172,"fileOperations":13,"externalRequests":13,"nonceChecks":13,"capabilityChecks":64,"bundledLibraries":185},[],{"prepared":13,"raw":13,"locations":171},[],{"escaped":173,"rawEcho":174,"locations":175},3,4,[176,179,181,183],{"file":137,"line":177,"context":178},312,"raw output",{"file":137,"line":180,"context":178},314,{"file":137,"line":182,"context":178},398,{"file":137,"line":184,"context":178},408,[],[],{"summary":188,"deductions":189},"The \"indeed-apply-shortcode\" v1.6 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of any known CVEs, critical taint flows, raw SQL queries, or dangerous function usage is a significant positive.  Furthermore, the presence of capability checks on its entry points, the shortcodes, suggests an intent to enforce access control. The complete lack of file operations and external HTTP requests also reduces the attack surface in those common areas.\n\nHowever, there are notable areas for improvement. A significant concern is the low percentage (43%) of properly escaped outputs. This indicates a potential for Cross-Site Scripting (XSS) vulnerabilities, especially since the taint analysis did not cover any flows, which might miss subtle XSS vectors. The absence of nonce checks, even on shortcodes, leaves the plugin susceptible to Cross-Site Request Forgery (CSRF) attacks if any actions performed by the shortcodes can be manipulated by an attacker.\n\nOverall, while the plugin is free of known critical vulnerabilities and demonstrates good practices in areas like SQL handling, the unescaped output and lack of nonce checks represent real, albeit potentially lower-severity, risks. The history of zero vulnerabilities is encouraging but should not be a reason to neglect diligent security practices, especially in areas with identified weaknesses.",[190,193],{"reason":191,"points":192},"Low percentage of properly escaped outputs",6,{"reason":194,"points":174},"Missing nonce checks","2026-03-16T20:58:59.901Z",{"wat":197,"direct":207},{"assetPaths":198,"generatorPatterns":202,"scriptPaths":203,"versionParams":204},[199,200,201],"\u002Fwp-content\u002Fplugins\u002Findeed-apply-shortcode\u002Findeed-apply-shortcode.php","\u002Fwp-content\u002Fplugins\u002Findeed-apply-shortcode\u002Fincludes\u002FpadCrypt.php","\u002Fwp-content\u002Fplugins\u002Findeed-apply-shortcode\u002Fincludes\u002FAES_Encryption.php",[],[],[205,206],"indeed-apply-shortcode\u002Fstyle.css?ver=","indeed-apply-shortcode\u002Fjs\u002Fscript.js?ver=",{"cssClasses":208,"htmlComments":210,"htmlAttributes":211,"restEndpoints":223,"jsGlobals":224,"shortcodeOutput":225},[209],"indeed-apply-widget",[],[212,213,214,215,216,217,218,219,220,221,222],"data-indeed-apply-apiToken","data-indeed-apply-jobUrl","data-indeed-apply-allow-apply-on-indeed","data-indeed-apply-jobMeta","data-indeed-apply-jobTitle","data-indeed-apply-email","data-indeed-apply-jobCompanyName","data-indeed-apply-jobLocation","data-indeed-apply-phone","data-indeed-apply-coverletter","data-indeed-apply-continueUrl",[],[],[226,227,228,229,230,231,232,233,234,235,236],"\u003Cspan class=\"indeed-apply-widget\" data-indeed-apply-apiToken=\""," data-indeed-apply-jobUrl=\""," data-indeed-apply-allow-apply-on-indeed=\"0\""," data-indeed-apply-jobMeta=\"WordPress\""," data-indeed-apply-jobTitle=\""," data-indeed-apply-email=\""," data-indeed-apply-jobCompanyName=\""," data-indeed-apply-jobLocation=\""," data-indeed-apply-phone=\""," data-indeed-apply-coverletter=\""," data-indeed-apply-continueUrl=\"",{"error":238,"url":239,"statusCode":240,"statusMessage":241,"message":241},true,"http:\u002F\u002Flocalhost\u002Fapi\u002Fplugins\u002Findeed-apply-shortcode\u002Fbundle",404,"no bundle for this plugin yet",{"slug":4,"current_version":6,"total_versions":243,"versions":244},7,[245,251,258,265,272,278,285],{"version":6,"download_url":25,"svn_tag_url":246,"released_at":27,"has_diff":247,"diff_files_changed":248,"diff_lines":27,"trac_diff_url":249,"vulnerabilities":250,"is_current":238},"https:\u002F\u002Fplugins.svn.wordpress.org\u002Findeed-apply-shortcode\u002Ftags\u002F1.6\u002F",false,[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Findeed-apply-shortcode%2Ftags%2F1.5&new_path=%2Findeed-apply-shortcode%2Ftags%2F1.6",[],{"version":252,"download_url":253,"svn_tag_url":254,"released_at":27,"has_diff":247,"diff_files_changed":255,"diff_lines":27,"trac_diff_url":256,"vulnerabilities":257,"is_current":247},"1.5","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Findeed-apply-shortcode.1.5.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Findeed-apply-shortcode\u002Ftags\u002F1.5\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Findeed-apply-shortcode%2Ftags%2F1.4&new_path=%2Findeed-apply-shortcode%2Ftags%2F1.5",[],{"version":259,"download_url":260,"svn_tag_url":261,"released_at":27,"has_diff":247,"diff_files_changed":262,"diff_lines":27,"trac_diff_url":263,"vulnerabilities":264,"is_current":247},"1.4","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Findeed-apply-shortcode.1.4.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Findeed-apply-shortcode\u002Ftags\u002F1.4\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Findeed-apply-shortcode%2Ftags%2F1.3&new_path=%2Findeed-apply-shortcode%2Ftags%2F1.4",[],{"version":266,"download_url":267,"svn_tag_url":268,"released_at":27,"has_diff":247,"diff_files_changed":269,"diff_lines":27,"trac_diff_url":270,"vulnerabilities":271,"is_current":247},"1.3","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Findeed-apply-shortcode.1.3.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Findeed-apply-shortcode\u002Ftags\u002F1.3\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Findeed-apply-shortcode%2Ftags%2F1.2&new_path=%2Findeed-apply-shortcode%2Ftags%2F1.3",[],{"version":115,"download_url":273,"svn_tag_url":274,"released_at":27,"has_diff":247,"diff_files_changed":275,"diff_lines":27,"trac_diff_url":276,"vulnerabilities":277,"is_current":247},"https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Findeed-apply-shortcode.1.2.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Findeed-apply-shortcode\u002Ftags\u002F1.2\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Findeed-apply-shortcode%2Ftags%2F1.1&new_path=%2Findeed-apply-shortcode%2Ftags%2F1.2",[],{"version":279,"download_url":280,"svn_tag_url":281,"released_at":27,"has_diff":247,"diff_files_changed":282,"diff_lines":27,"trac_diff_url":283,"vulnerabilities":284,"is_current":247},"1.1","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Findeed-apply-shortcode.1.1.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Findeed-apply-shortcode\u002Ftags\u002F1.1\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Findeed-apply-shortcode%2Ftags%2F1.0&new_path=%2Findeed-apply-shortcode%2Ftags%2F1.1",[],{"version":58,"download_url":286,"svn_tag_url":287,"released_at":27,"has_diff":247,"diff_files_changed":288,"diff_lines":27,"trac_diff_url":27,"vulnerabilities":289,"is_current":247},"https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Findeed-apply-shortcode.1.0.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Findeed-apply-shortcode\u002Ftags\u002F1.0\u002F",[],[]]