[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f1brjRWq8NGEwnd7zlffuUBAgNzSzqzEAzSJI_wMESf0":3,"$f9DmS1mV8c5F87A3JYoeoKzqzN7MpdCIeusmELI6Gu8w":308,"$fZMDhNVlbcGyiTUozP9bRud_M5MBlOxjFfYNOGbSEEQ4":312},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":18,"download_link":23,"security_score":24,"vuln_count":14,"unpatched_count":25,"last_vuln_date":26,"fetched_at":27,"discovery_status":28,"vulnerabilities":29,"developer":47,"crawl_stats":35,"alternatives":54,"analysis":163,"fingerprints":287},"instant-breaking-news","Instant Breaking News","1.0.1","GeroNikolov","https:\u002F\u002Fprofiles.wordpress.org\u002Fgeronikolov\u002F","\u003Cp>Instant Breaking News or IBN,\u003Cbr \u002F>\nwill allow you to pin posts and feature them as “Breaking News” at the header of your website.\u003C\u002Fp>\n\u003Cp>For a longer documentation check the Plugin GitHub repository \u003Ca href=\"https:\u002F\u002Fgithub.com\u002FGero0Nikolov\u002FIBN-WordPress-Plugin\" rel=\"nofollow ugc\">here\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>How it works ?\u003C\u002Fstrong>\u003Cbr \u002F>\n\u003Cbr \u002F>\nInstant Breaking News plugin will appear in your WP Dashboard menu once it’s activated.\u003Cbr \u002F>\nYou’ll find the plugin Options Page under the name Breaking News.\u003C\u002Fp>\n\u003Cp>From the options page you’ll be able to change the “Breaking News” banner title, background and text colors.\u003Cbr \u002F>\nYou’ll also be able to preview the current pinned post and go to it’s edit page directly from here.\u003Cbr \u002F>\nHowever if you haven’t pinned anything yet, you’ll be able to go to your Posts archive too!\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Pinning your first post:\u003C\u002Fstrong>\u003Cbr \u002F>\n\u003Cbr \u002F>\nOnce you choose which will be your first Breaking News post in its Edit screen you’ll find a newly created metabox under the name of Breaking News Options somewhere at the bottom of the Edit screen.\u003C\u002Fp>\n\u003Cp>There you’ll find the following three options:\u003Cbr \u002F>\n1. \u003Cstrong>Make this post breaking news\u003C\u002Fstrong>: Once checked it’ll pin your post and overwrite previously pinned posts. Sadly at version 1.0 you can have only one pinned post at a time.\u003Cbr \u002F>\n2. \u003Cstrong>Custom breaking news title\u003C\u002Fstrong>: This setting allows you to choose a specific title for your post, which will be presented only in the Breaking News banner.\u003Cbr \u002F>\n3. \u003Cstrong>Set an expiration Date & Time\u003C\u002Fstrong>: This option allows you to choose when the pinned post to disappear from your website automatically.\u003C\u002Fp>\n\u003Cp>There is something that you should remember about the Expiring Pins functionality.\u003Cbr \u002F>\nInstant Breaking News plugin automatically takes your server time and converts it to your WordPress Timezone.\u003Cbr \u002F>\nThat is extremely important to remember when setting the expiration date & time of your post, because if you pick a time which has already passed at your WordPress Timezone that post will be automatically unpinned in order to protect you from pinning expired posts. However if that happens don’t worry! Once you set the new date and time you’ll be able to re-pin it again, just by checking the Make this post breaking news option again.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Note:\u003C\u002Fstrong>\u003Cbr \u002F>\n\u003Cbr \u002F>\nThis plugin will work with almost every standart WordPress theme.\u003Cbr \u002F>\nIf your template has unique structure, the plugin will need a bit of tweeking in order to run properly.\u003Cbr \u002F>\nThe change that’ll be required is at the \u002Fassets\u002Fscripts\u002Fpublic.js file.\u003Cbr \u002F>\nYou’ll have to specify where on your website you would like to attach the Breaking News banner through those two lines:\u003C\u002Fp>\n\u003Cpre>\nlet $firstHeader = jQuery( \"header\" ).first();\njQuery( container ).insertAfter( $firstHeader );\n\u003C\u002Fpre>\n\u003Cp>\n\u003Cstrong>That’s it, let’s start pinning!\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Log:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>1.0.1 – Fix: CSRF and XSS in settings; nonce and capability checks; sanitization and escaping hardening.\u003C\u002Fli>\n\u003Cli>1.1 – Update tested version of WP Core to 6.0.2\u003C\u002Fli>\n\u003Cli>1.0 – Release\u003C\u002Fli>\n\u003C\u002Ful>\n","This plugin will allow you to pin posts and feature them as \"Breaking News\" at the header of your website.",60,3038,100,1,"2025-08-23T16:06:00.000Z","6.8.5","3.0.1","",[20,21,22],"breaking-news","open-source","universal","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Finstant-breaking-news.1.0.1.zip",99,0,"2025-08-27 00:00:00","2026-04-16T10:56:18.058Z","no_bundle",[30],{"id":31,"url_slug":32,"title":33,"description":34,"plugin_slug":4,"theme_slug":35,"affected_versions":36,"patched_in_version":6,"severity":37,"cvss_score":38,"cvss_vector":39,"vuln_type":40,"published_date":26,"updated_date":41,"references":42,"days_to_patch":44,"patch_diff_files":45,"patch_trac_url":35,"research_status":35,"research_verified":46,"research_rounds_completed":25,"research_plan":35,"research_summary":35,"research_vulnerable_code":35,"research_fix_diff":35,"research_exploit_outline":35,"research_model_used":35,"research_started_at":35,"research_completed_at":35,"research_error":35,"poc_status":35,"poc_video_id":35,"poc_summary":35,"poc_steps":35,"poc_tested_at":35,"poc_wp_version":35,"poc_php_version":35,"poc_playwright_script":35,"poc_exploit_code":35,"poc_has_trace":46,"poc_model_used":35,"poc_verification_depth":35},"CVE-2025-58217","instant-breaking-news-cross-site-request-forgery","Instant Breaking News \u003C= 1.0 - Cross-Site Request Forgery","The Instant Breaking News plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.0. This is due to missing or incorrect nonce validation on a function. This makes it possible for unauthenticated attackers to perform an unauthorized action granted they can trick a site administrator into performing an action such as clicking on a link.",null,"\u003C=1.0","medium",4.3,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:N\u002FUI:R\u002FS:U\u002FC:N\u002FI:L\u002FA:N","Cross-Site Request Forgery (CSRF)","2025-09-03 17:38:37",[43],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002F5b39933a-d38e-421b-9fe4-70350e2f3da8?source=api-prod",8,[],false,{"slug":48,"display_name":7,"profile_url":8,"plugin_count":49,"total_installs":50,"avg_security_score":51,"avg_patch_time_days":44,"trust_score":52,"computed_at":53},"geronikolov",10,220,88,86,"2026-05-20T11:56:40.267Z",[55,79,100,124,143],{"slug":56,"name":57,"version":58,"author":59,"author_profile":60,"description":61,"short_description":62,"active_installs":63,"downloaded":64,"rating":65,"num_ratings":66,"last_updated":67,"tested_up_to":68,"requires_at_least":69,"requires_php":70,"tags":71,"homepage":77,"download_link":78,"security_score":13,"vuln_count":25,"unpatched_count":25,"last_vuln_date":35,"fetched_at":27},"cloudflare-flexible-ssl","Flexible SSL for CloudFlare","1.3.1","Paul","https:\u002F\u002Fprofiles.wordpress.org\u002Fpaultgoodchild\u002F","\u003Cp>\u003Ca href=\"https:\u002F\u002Ficwp.io\u002F6z\" rel=\"nofollow ugc\">Click For Full Implementation Guide\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>Using CloudFlare® Flexible SSL on WordPress isn’t as simple as just turning it on.\u003C\u002Fp>\n\u003Cp>This plugin forms an \u003Cstrong>integral part\u003C\u002Fstrong> to enabling Flexible SSL on WordPress and prevents infinite redirect loops when loading WordPress sites under Cloudflare’s Flexible SSL system.\u003C\u002Fp>\n\u003Cp>\u003Cem>Cloudflare is a registered trademark of Cloudflare, Inc.\u003C\u002Fem>\u003C\u002Fp>\n\u003Cp>One Dollar Plugin is not affiliated in any way with Cloudflare, Inc. This plugin provided separately and completely independently.\u003C\u002Fp>\n\u003Cp>Remember: This plugin is just part of the installation process for Flexible SSL. \u003Ca href=\"https:\u002F\u002Ficwp.io\u002F6z\" rel=\"nofollow ugc\">Please follow the full guide\u003C\u002Fa>\u003C\u002Fp>\n","Fix For Redirect Loops on WordPress with CloudFlare's Flexible\u002FUniversal SSL.",100000,1177200,96,51,"2025-12-23T10:10:00.000Z","6.9.4","3.2.0","5.2",[72,73,74,75,76],"cloudflare","flexible-ssl","redirect-loop","ssl","universal-ssl","https:\u002F\u002Ficwp.io\u002Fcloudflaresslpluginauthor","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcloudflare-flexible-ssl.1.3.1.zip",{"slug":80,"name":81,"version":82,"author":83,"author_profile":84,"description":85,"short_description":86,"active_installs":87,"downloaded":88,"rating":89,"num_ratings":90,"last_updated":91,"tested_up_to":68,"requires_at_least":70,"requires_php":92,"tags":93,"homepage":98,"download_link":99,"security_score":13,"vuln_count":25,"unpatched_count":25,"last_vuln_date":35,"fetched_at":27},"t4b-news-ticker","T4B News Ticker – Responsive News Scroller, Slider, and Animations","1.4.4","Realwebcare","https:\u002F\u002Fprofiles.wordpress.org\u002Frealwebcare\u002F","\u003Ch3>Dynamic News Presentation\u003C\u002Fh3>\n\u003Cp>With \u003Cstrong>T4B News Ticker\u003C\u002Fstrong>, you can add dynamic news content to your website in an eye-catching manner. Whether you’re showcasing the latest updates, announcements, or breaking news, this plugin offers a seamless solution. Choose from four captivating animation effects: fade, slide, ticker, and scroll, to suit your website’s aesthetics.\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.realwebcare.com\u002Fdemo\u002Ft4b-news-ticker-responsive-news-scroller-slider-and-animations\u002F\" rel=\"nofollow ugc\">FREE VERSION DEMO\u003C\u002Fa> | \u003Ca href=\"https:\u002F\u002Fwww.realwebcare.com\u002Fdemo\u002F?product_id=t4b-news-ticker-pro\" rel=\"nofollow ugc\">PRO VERSION DEMO\u003C\u002Fa> | \u003Ca href=\"https:\u002F\u002Fwww.realwebcare.com\u002Fitem\u002Fwp-news-ticker-t4b-news-ticker-pro-dynamic-scrolling-plugin\u002F\" rel=\"nofollow ugc\">EXPLORE PRO\u003C\u002Fa> | \u003Ca href=\"https:\u002F\u002Fsandbox.realwebcare.com\u002Fsandbox-demo-creator-t4b-news-ticker\u002F\" rel=\"nofollow ugc\">TEST DRIVE PRO\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch4>Watch Free Version Video Walkthrough\u003C\u002Fh4>\n\u003Cp>\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002FCX72IvU51SY?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\u003C\u002Fp>\n\u003Ch3>Flexible Content Sources\u003C\u002Fh3>\n\u003Cp>What sets T4B News Ticker apart is its flexibility in content sources. You can display tickers based on specific post categories, relevant tags, or even craft custom text messages with associated links. Compose your custom content using the default WordPress post editor.\u003C\u002Fp>\n\u003Ch3>Complete Control Over Appearance\u003C\u002Fh3>\n\u003Cp>Take complete control over the ticker’s appearance and behavior. Adjust the scrolling speed to match your preferences and fine-tune the typography to ensure the ticker seamlessly blends with your website’s design. Easily integrate the ticker into your posts, pages, or theme files using the provided shortcode.\u003C\u002Fp>\n\u003Cblockquote>\n\u003Ch3>Upgrade to Premium\u003C\u002Fh3>\n\u003Cp>Unlock more animation effects, play\u002Fpause option for all animation types, and enhanced customization with dedicated support.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Premium features of T4B News Ticker:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Instantly create news tickers with 12 pre-designed templates.\u003C\u002Fli>\n\u003Cli>Choose from 7 animation effects.\u003C\u002Fli>\n\u003Cli>Display tickers from various categories, RSS feeds, and JSON data.\u003C\u002Fli>\n\u003Cli>Seamless continuous scrolling.\u003C\u002Fli>\n\u003Cli>Effortlessly import\u002Fexport tickers between websites.\u003C\u002Fli>\n\u003Cli>Create multiple news tickers.\u003C\u002Fli>\n\u003Cli>Copy existing tickers for easy replication.\u003C\u002Fli>\n\u003Cli>RTL (Right-to-Left) language support.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.realwebcare.com\u002Fitem\u002Fwp-news-ticker-t4b-news-ticker-pro-dynamic-scrolling-plugin\u002F\" rel=\"nofollow ugc\">Explore Premium features\u003C\u002Fa>\u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.youtube.com\u002Fwatch?v=IR-K0KuQ8Fc\" rel=\"nofollow ugc\">\u003Cstrong>Click to Watch Pro Version Walkthrough\u003C\u002Fstrong>\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch3>Key Features\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Easily create and customize horizontal news tickers.\u003C\u002Fli>\n\u003Cli>Choose from four animation effects: fade, slide, ticker, and scroll.\u003C\u002Fli>\n\u003Cli>Display tickers based on post categories, tags, or custom text.\u003C\u002Fli>\n\u003Cli>Set animation speed and time between fades.\u003C\u002Fli>\n\u003Cli>Control the number and order of displayed posts.\u003C\u002Fli>\n\u003Cli>The scroll type animation includes options for pause, play, next, and previous actions.\u003C\u002Fli>\n\u003Cli>Insert tickers using shortcodes in posts, pages, or theme files.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>License\u003C\u002Fh3>\n\u003Cpre>\u003Ccode>This program is free software; you can redistribute it and\u002For modify\nit under the terms of the GNU General Public License as published by\nthe Free Software Foundation; either version 2 of the License, or\n(at your option) any later version.\n\nThis program is distributed in the hope that it will be useful,\nbut WITHOUT ANY WARRANTY; without even the implied warranty of\nMERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the\nGNU General Public License for more details.\n\nYou should have received a copy of the GNU General Public License\nalong with this program; if not, write to the Free Software\nFoundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA  02110-1301  USA\n\u003C\u002Fcode>\u003C\u002Fpre>\n","T4B News Ticker is a flexible and user-friendly news ticker plugin for WordPress, designed to create horizontal news tickers with 4 unique animations.",7000,127910,90,15,"2026-03-07T01:08:00.000Z","7.4",[20,94,95,96,97],"news-ticker","scroll","ticker","trending","http:\u002F\u002Fwordpress.org\u002Fplugins\u002Ft4b-news-ticker\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Ft4b-news-ticker.1.4.4.zip",{"slug":101,"name":102,"version":103,"author":104,"author_profile":105,"description":106,"short_description":107,"active_installs":108,"downloaded":109,"rating":110,"num_ratings":90,"last_updated":111,"tested_up_to":112,"requires_at_least":113,"requires_php":18,"tags":114,"homepage":120,"download_link":121,"security_score":51,"vuln_count":122,"unpatched_count":25,"last_vuln_date":123,"fetched_at":27},"analytics-cat","Analytics Cat – Google Analytics Made Easy","1.1.3","fatcatapps","https:\u002F\u002Fprofiles.wordpress.org\u002Ffatcatapps\u002F","\u003Cp>\u003Cstrong>This Plugin Will No Longer Work With Google Analytics on July 1, 2023\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cblockquote>\n\u003Cp>Google Analytics 4, is replacing Universal Analytics. On July 1, 2023, standard Universal Analytics properties will stop processing new data. This means that any Universal Analytics data that you’re using in Google Ads campaigns will start to degrade and your ad performance may be impacted. We strongly recommend that you make the switch to \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Ffacebook-conversion-pixel\u002F\" rel=\"ugc\">Google Analytics 4\u003C\u002Fa> as soon as possible.\u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Cp>Analytics Cat – Google Analytics is a lean, fast, simple, no-frills way to add your Google Analytics \u002F Universal Google Analytics code to your WordPress site.\u003C\u002Fp>\n\u003Cp>This bloat-free, simple Google Analytics WordPress plugin doesn’t add tons of features. Instead, Analytics Cat – Google Analytics simply focuses on letting you add your Google Analytics (Universal Analytics) Code to your site in less than 2 minutes, without slowing your site down.\u003C\u002Fp>\n\u003Ch4>Which features does Analytics Cat – Google Analytics have?\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Add the Google Analytics (Universal Analytics) tracking code to your WordPress site with ease.\u003C\u002Fli>\n\u003Cli>Hide your Google Analytics tracking code from logged-in users so you don’t pollute your data.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>How to use Analytics Cat – Google Analytics?\u003C\u002Fh4>\n\u003Cp>There are multiple ways to add the Google Analytics tracking code to your WordPress site.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>1. Pasting your Google Analytics script into your theme\u003C\u002Fstrong>\u003Cbr \u002F>\nThis approach isn’t great for two reasons:\u003Cbr \u002F>\na) If you edit your live site and make a mistake when pasting your Google Analytics script into your theme, you could take down your website.\u003Cbr \u002F>\nb) If your theme is updated with new features or security fixes, your Google Analytics code will be overwritten.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>2. Pasting your Google Analytics script into a header\u002Ffooter script plugin\u003C\u002Fstrong>\u003Cbr \u002F>\nThis is a valid approach, but has some disadvantages. General purposes “header script plugins” aren’t built from the ground-up to support Google Analytics.\u003C\u002Fp>\n\u003Cp>What this means is that :\u003Cbr \u002F>\na) These plugins lack Google Analytics-specific functionality.\u003Cbr \u002F>\nb) These plugins will not adapt if Google Analytics changes again. Since Analytics Cat is a dedicated Google Analytics WordPress plugin, we’ll make sure make sure to stay compatible with future changes to Google Analytics.\u003Cbr \u002F>\nc) These plugins usually don’t support hiding your Google Analytics code from logged-in users.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>3. Using Some Other Google Analytics WordPress Plugin\u003C\u002Fstrong>\u003Cbr \u002F>\nThere are some good Google Analytics plugins out there, but many of them are bloated, have too many settings and are slow.\u003C\u002Fp>\n\u003Cp>You’ll love Analytics Cat – Google Analytics Cat iff what you want is a simple, reliable Google Analytics plugin,\u003C\u002Fp>\n\u003Ch4>Does Analytics Cat – Google Analytics Plugin work with Universal Analytics?\u003C\u002Fh4>\n\u003Cp>Yes. Analytics Cat is built from the ground up to support Universal Analytics.\u003C\u002Fp>\n\u003Cp>Analytics Cat – Google Analytics does not work with the old Google Analytics script that Google deprecated.\u003C\u002Fp>\n\u003Ch4>Can I hide my Google Analytics tracking code from logged in users?\u003C\u002Fh4>\n\u003Cp>Yes. You can hide your Google Analytics code from logged in users by going to Settings -> Google Analytics Manager.\u003C\u002Fp>\n\u003Ch4>Is Analytics Cat – Google Analytics easy to translate?\u003C\u002Fh4>\n\u003Cp>Yes. Analytics Cat – Google Analytics Cat is fully translateable. Please let us know if you’re interested in contributing.\u003C\u002Fp>\n\u003Ch4>Analytics Cat – Google Analytics Feature Roadmap\u003C\u002Fh4>\n\u003Cp>This is just the first version of Analytics Cat – we have tons of new features & improvements lined up. Do you have any suggestions? Please leave a comment in the support forums.\u003C\u002Fp>\n\u003Cp>—\u003Ca href=\"https:\u002F\u002Ffatcatapps.com\u002F\" rel=\"nofollow ugc\">The Fatcat Apps Team\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch3>Privacy Disclosure\u003C\u002Fh3>\n\u003Cp>This plugin can be configured to connect to 3rd party service providers such as Google.\u003C\u002Fp>\n\u003Cp>If you use this plugin to connect to a 3rd party, personal data may also be shared with that party.\u003C\u002Fp>\n\u003Cp>Additional privacy policy information for 3rd party services can be found here:\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fpolicies.google.com\u002Fprivacy\" rel=\"nofollow ugc\">Google\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>Our full privacy policy is available here: \u003Ca href=\"https:\u002F\u002Ffatcatapps.com\u002Flegal\u002Fprivacy-policy\u002F\" rel=\"nofollow ugc\">https:\u002F\u002Ffatcatapps.com\u002Flegal\u002Fprivacy-policy\u002F\u003C\u002Fa>\u003C\u002Fp>\n","Analytics Cat - Google Analytics Lets You Add Your Google Analytics \u002F Universal Analytics Tracking Code To Your Site With Ease.",6000,215094,98,"2024-12-05T03:46:00.000Z","6.2.9","4.0",[115,116,117,118,119],"ga","google-analytics","google-analytics-plugin","google-analytics-wordpress","universal-analytics","https:\u002F\u002Ffatcatapps.com\u002Fanalytics-cat","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fanalytics-cat.zip",4,"2024-12-29 00:00:00",{"slug":125,"name":126,"version":127,"author":128,"author_profile":129,"description":130,"short_description":131,"active_installs":132,"downloaded":133,"rating":25,"num_ratings":25,"last_updated":134,"tested_up_to":16,"requires_at_least":135,"requires_php":136,"tags":137,"homepage":18,"download_link":140,"security_score":141,"vuln_count":14,"unpatched_count":25,"last_vuln_date":142,"fetched_at":27},"live-news-lite","Live News – Responsive News Ticker","1.10","DAEXT","https:\u002F\u002Fprofiles.wordpress.org\u002Fdaext\u002F","\u003Cp>The Live News Lite plugin generates a fixed news ticker that you can use to communicate the latest news, financial news, weather warnings, election results, sports results, etc.\u003C\u002Fp>\n\u003Cp>By default, the news ticker includes a \u003Cstrong>Featured News\u003C\u002Fstrong> section in red and a \u003Cstrong>Sliding News\u003C\u002Fstrong> in black, and it’s similar to the ones used by networks like Fox News, CNN, Sky News, etc.\u003C\u002Fp>\n\u003Cp>In terms of content, the news should be manually added by the website administrator or by users that belong to other configured roles.\u003C\u002Fp>\n\u003Ch3>Pro Version\u003C\u002Fh3>\n\u003Cp>The \u003Ca href=\"https:\u002F\u002Fdaext.com\u002Flive-news\u002F\" rel=\"nofollow ugc\">Pro Version\u003C\u002Fa> of this plugin, allows you to:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Automatically generate news based on the posts\u003C\u002Fli>\n\u003Cli>Automatically generate the news based on a specified RSS feed (E.g., Your own RSS feed, the RSS feed of a tv channel, the RSS feed of a radio station.)\u003C\u002Fli>\n\u003Cli>Control the speed and the delay of the sliding news with advanced options of the news ticker\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cp>This plugin is highly customizable and comes with 46 options per news ticker, 4 options per featured news, 9 options per sliding news, and 4 general options.\u003C\u002Fp>\n\u003Ch4>Customizable Style\u003C\u002Fh4>\n\u003Cp>All the elements displayed in the news ticker are customizable in terms of colors and typography. The images used to represent the open and close buttons and the clock background are replaceable with your custom images.\u003C\u002Fp>\n\u003Ch4>Links in the News Ticker\u003C\u002Fh4>\n\u003Cp>You can optionally apply links to the news and open them in the same tab or new tabs based on your selections.\u003C\u002Fp>\n\u003Ch4>Applicable Globally or Only on Specific URLs\u003C\u002Fh4>\n\u003Cp>The news ticker can be applied to all the pages of your website or only to specific URLs. In case of a setup with news tickers assigned to different URLs, you can create an unlimited number of news tickers.\u003C\u002Fp>\n\u003Ch4>Sliding News Images\u003C\u002Fh4>\n\u003Cp>You can place small images before and after the text of the sliding news. Use this feature to display the news provider’s logo, represent financial trends, categorize different types of communications, and more.\u003C\u002Fp>\n\u003Ch4>Clock\u003C\u002Fh4>\n\u003Cp>The news ticker has an optional clock that displays the time in a custom format defined with \u003Ca href=\"http:\u002F\u002Fmomentjs.com\" rel=\"nofollow ugc\">Moment.js\u003C\u002Fa> token.\u003C\u002Fp>\n\u003Cp>In the plugin options, you can also decide if you want to display the server time, the user time, if you want to apply a time offset, and the frequency of the time updates.\u003C\u002Fp>\n\u003Ch4>Mobile Device Detection\u003C\u002Fh4>\n\u003Cp>The plugin uses the Mobile Detect Js library to detect the device of the user. The resulting value is used to display or hide the news ticker or specific news ticker elements based on the device type. This behavior is defined by the administrator in the news ticker settings.\u003C\u002Fp>\n\u003Ch4>Cached Cycled\u003C\u002Fh4>\n\u003Cp>The news ticker updates the news with AJAX requests at the end of each news cycle. With the \u003Cstrong>Cached Cycled\u003C\u002Fstrong> option, you can define the number of cycles per AJAX request.\u003C\u002Fp>\n\u003Ch4>WordPress Transients API\u003C\u002Fh4>\n\u003Cp>You can optionally store the news ticker data in a WordPress transient and limit the number of queries used to retrieve the news.\u003C\u002Fp>\n\u003Ch4>Support for RTL Layouts\u003C\u002Fh4>\n\u003Cp>We have included the \u003Cstrong>Enable RTL Layout\u003C\u002Fstrong> to allow the use of the plugin in RTL websites.\u003C\u002Fp>\n\u003Ch4>Suitable for Digital Signage Systems\u003C\u002Fh4>\n\u003Cp>You can use the plugin locally in a browser-based digital signage system.\u003C\u002Fp>\n\u003Ch4>Advanced Options\u003C\u002Fh4>\n\u003Cp>Advanced options to further customize the news ticker are also available:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>The \u003Cstrong>Sliding News Margin\u003C\u002Fstrong> option to define the margin between the sliding news\u003C\u002Fli>\n\u003Cli>The \u003Cstrong>Sliding News Padding\u003C\u002Fstrong> option determines the padding on the left and the right of each sliding news. This option is also helpful to control the distance between the sliding news text and the optional images.\u003C\u002Fli>\n\u003Cli>Control the opacity of the news ticker with the \u003Cstrong>Featured News Background Color Opacity\u003C\u002Fstrong> and the \u003Cstrong>Sliding News Background Color Opacity\u003C\u002Fstrong> options\u003C\u002Fli>\n\u003Cli>And more.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Documentation\u003C\u002Fh3>\n\u003Cp>For more information on how to implement this plugin, please see the \u003Ca href=\"https:\u002F\u002Fdaext.com\u002Fdoc\u002Flive-news\u002F\" rel=\"nofollow ugc\">plugin documentation\u003C\u002Fa> published on our website.\u003C\u002Fp>\n\u003Ch3>Credits\u003C\u002Fh3>\n\u003Cp>This plugin makes use of the following resources:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fhgoebl\u002Fmobile-detect.js\" rel=\"nofollow ugc\">Mobile Detect JS\u003C\u002Fa> licensed under the \u003Ca href=\"http:\u002F\u002Fwww.opensource.org\u002Flicenses\u002Fmit-license.php\" rel=\"nofollow ugc\">MIT License\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"http:\u002F\u002Fmomentjs.com\" rel=\"nofollow ugc\">Moment.js\u003C\u002Fa> licensed under the \u003Ca href=\"http:\u002F\u002Fwww.opensource.org\u002Flicenses\u002Fmit-license.php\" rel=\"nofollow ugc\">MIT License\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fselect2.org\u002F\" rel=\"nofollow ugc\">Select2\u003C\u002Fa> licensed under the \u003Ca href=\"http:\u002F\u002Fwww.opensource.org\u002Flicenses\u002Fmit-license.php\" rel=\"nofollow ugc\">MIT License\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n","Generate a news ticker to communicate the latest updates, including financial news, weather warnings, election results, sports scores, and more.",3000,13953,"2025-05-11T09:39:00.000Z","5.0","7.2",[20,138,139,94,96],"live","news","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Flive-news-lite.1.10.zip",92,"2023-09-04 00:00:00",{"slug":144,"name":145,"version":146,"author":147,"author_profile":148,"description":149,"short_description":150,"active_installs":151,"downloaded":152,"rating":51,"num_ratings":153,"last_updated":154,"tested_up_to":155,"requires_at_least":156,"requires_php":18,"tags":157,"homepage":18,"download_link":162,"security_score":13,"vuln_count":25,"unpatched_count":25,"last_vuln_date":35,"fetched_at":27},"amazon-link-engine","Amazon Link Engine","1.4.2","Geniuslink","https:\u002F\u002Fprofiles.wordpress.org\u002Fgeoriot\u002F","\u003Cp>Boost sales and affiliate commissions by converting all your Amazon links into localized links that bring each shopper to the best Amazon store and product for their region in the world. Amazon Link Engine is trusted by thousands of Amazon associates who have been using it to maximize their revenue for years.\u003C\u002Fp>\n\u003Cp>The Amazon Link Engine is a tool by Geniuslink. By signing up for Geniuslink and syncing the Amazon Link Engine to your Geniuslink account, you can also attach your Associates IDs to earn international affiliate commissions from your traffic.\u003C\u002Fp>\n\u003Cp>\u003Cem>Note:\u003C\u002Fem> You are not required to have a Geniuslink account, to use this plugin. However, if you would like to earn international affiliate commissions, you must sign up for a Geniuslink Account. \u003Ca href=\"http:\u002F\u002Fsocial.geni.us\u002FALESignup\" rel=\"nofollow ugc\">Try it out for free\u003C\u002Fa> and check out pricing for the Geniuslink service on \u003Ca href=\"http:\u002F\u002Fsocial.geni.us\u002FlZlZ8AY\" rel=\"nofollow ugc\">our website\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch4>How does the Amazon Link Engine plugin work?\u003C\u002Fh4>\n\u003Cp>As soon as the plugin is installed, your Amazon links are instantly localized every time a user loads the page.  Even if you add new links to your WordPress site, each will be automatically converted without any additional work from you. Nothing else is needed on your part.\u003C\u002Fp>\n\u003Ch4>How do I earn international commissions from my links?\u003C\u002Fh4>\n\u003Cp>To earn international affiliate commissions, you must \u003Ca href=\"http:\u002F\u002Fsocial.geni.us\u002FALESignup\" rel=\"nofollow ugc\">create a Geniuslink account\u003C\u002Fa>, and connect it to your plugin with your API keys (detailed instructions can be found in the \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Famazon-link-engine\u002Ffaq\u002F\" rel=\"ugc\">FAQ\u003C\u002Fa>).\u003C\u002Fp>\n\u003Cp>Once signed up, add and manage your Associates IDs for each of the Amazon affiliate programs you’ve signed up for within the Geniuslink Dashboard. Once your IDs are added, the Amazon Link Engine will automatically add the correct Associates ID per country for each click.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cem>Note:\u003C\u002Fem> The Amazon Link Engine WordPress plugin is free to use and will always localize your links without a paid account. However, in order to earn international affiliate commissions and take advantage of the in-depth reporting, \u003Cstrong>you must have a Geniuslink account\u003C\u002Fstrong>. By default, Geniuslink’s Associates IDs will be used until you have connected your account and added your own via the Geniuslink Dashboard.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>How is Geniuslink different?\u003C\u002Fh4>\n\u003Cp>Most link “localization” plugins only translate a link for an international click when the same product ID exists in both storefronts. However, oftentimes the same item in different storefronts has a completely different product ID, and even if the ID is the same, the product may be an overpriced “import” item or may never be in stock. The Amazon Link Engine and Geniuslink match on more than just the product ID to ensure every click gets to the best possible destination. So instead of sending your users to blank search results, we guarantee the best possible user experience.\u003C\u002Fp>\n\u003Cp>In addition, connecting your Geniuslink account to the Amazon Link Engine, gives you access to comprehensive reporting on clicks and commissions that no other plugin can offer. These reports allow you to review your link’s performance across many metrics including product type, referrer, browser, device, operating system, destination storefront, and geography.\u003C\u002Fp>\n\u003Ch4>Is it safe to use this plugin and Geniuslink with the Amazon Associates program?\u003C\u002Fh4>\n\u003Cp>Yes!\u003C\u002Fp>\n\u003Cp>Geniuslink is safe to use with the Amazon Associate program, and has been trusted by thousands of Amazon associates for years.\u003C\u002Fp>\n\u003Cp>Just be sure to follow the \u003Ca href=\"https:\u002F\u002Faffiliate-program.amazon.com\u002Fhelp\u002Foperating\u002Fpolicies#Associates%20Program%20Participation%20Requirements\" rel=\"nofollow ugc\">program guidelines\u003C\u002Fa> and do not use your links to deceive your visitors.\u003C\u002Fp>\n\u003Cp>Note that you can also enable our “on-click” method in the plugin advanced settings, which preserves your raw Amazon links until the moment they are clicked.  Some users prefer this method because the Amazon Associates Program has additional guidelines for using “short links”, and by using this option your links are shown in their original form.\u003C\u002Fp>\n\u003Ch4>Key Features:\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Pick which Geniuslink group this plugin syncs to. Setup the plugin on multiple WordPress sites and track clicks separately, or set up a specific group just for your WordPress site traffic. Instructions can be found under “How do I change the default group?” in the \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Famazon-link-engine\u002Ffaq\u002F\" rel=\"ugc\">FAQ\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>Already have Affiliated links on your site? The ALE will now honor these existing Associates IDs within your links. You can also choose to overwrite them with the ID within your Geniuslink account if you prefer. Learn more under “Will the ALE honor existing Associates IDs?” in the \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Famazon-link-engine\u002Ffaq\u002F\" rel=\"ugc\">FAQ\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>Automatic localization and translation of all Amazon product links based off a visitor’s location.\u003C\u002Fli>\n\u003Cli>Maximize revenue by earning commissions from all of the Amazon Associates programs.\u003C\u002Fli>\n\u003Cli>Brand your globalized links with your own custom domain. (Note: this requires a paid \u003Ca href=\"http:\u002F\u002Fsocial.geni.us\u002FlZlZ8AY\" rel=\"nofollow ugc\">Geniuslink Account\u003C\u002Fa>)\u003C\u002Fli>\n\u003Cli>Simple, easy setup.\u003C\u002Fli>\n\u003Cli>One time configuration. Simply install the plugin, set up your Geniuslink account, and connect the two with an API key.  We take care of the rest.\u003C\u002Fli>\n\u003Cli>No need to sign up for an Amazon Developer account or apply for any of Amazon’s APIs or web tools.\u003C\u002Fli>\n\u003Cli>Your workflow remains the same.  No need to learn a new linking syntax, or disrupt your current flow.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>What makes the Amazon Link Engine different from other Affiliate WP plugins?\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Most plugins for Amazon links simply try to match based on ASIN (product ID) across foreign storefronts. The Amazon Link Engine uses a patented algorithm to get your users to the best possible destination.\u003C\u002Fli>\n\u003Cli>This in turn helps to both increase conversions and commissions, as well as improve the user experience for your audience.\u003C\u002Fli>\n\u003Cli>Unrivaled support from the Geniuslink team.\u003C\u002Fli>\n\u003Cli>No need to build links manually with a special link format.  All of your Amazon links are automatically converted to localized links when the page loads.\u003C\u002Fli>\n\u003C\u002Ful>\n","Automatically localize and affiliate Amazon product links to improve user experience, increase conversions and earn global commissions.",2000,92120,31,"2026-04-09T16:10:00.000Z","7.0","2.7",[158,159,160,161,22],"affiliate","amazon","associates","localize","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Famazon-link-engine.1.4.2.zip",{"attackSurface":164,"codeSignals":211,"taintFlows":240,"riskAssessment":278,"analyzedAt":286},{"hooks":165,"ajaxHandlers":199,"restRoutes":207,"shortcodes":208,"cronEvents":209,"entryPointCount":210,"unprotectedCount":25},[166,172,175,179,183,187,191,195],{"type":167,"name":168,"callback":169,"file":170,"line":171},"action","admin_init","ibn_is_admin","ibn.php",25,{"type":167,"name":168,"callback":173,"file":170,"line":174},"ibn_register_settings",26,{"type":167,"name":176,"callback":177,"file":170,"line":178},"admin_menu","ibn_dashboard_controller",29,{"type":167,"name":180,"callback":181,"file":170,"line":182},"admin_enqueue_scripts","ibn_add_admin_styles_scripts",32,{"type":167,"name":184,"callback":185,"file":170,"line":186},"add_meta_boxes","ibn_register_metabox",38,{"type":167,"name":188,"callback":189,"file":170,"line":190},"save_post","ibn_save_post",44,{"type":167,"name":192,"callback":193,"file":170,"line":194},"wp_head","ibn_load_breaking_news",47,{"type":167,"name":196,"callback":197,"file":170,"line":198},"wp_enqueue_scripts","ibn_add_public_styles_scripts",50,[200,204],{"action":201,"nopriv":46,"callback":201,"hasNonce":202,"hasCapCheck":202,"file":170,"line":203},"ibn_save_settings",true,35,{"action":205,"nopriv":46,"callback":205,"hasNonce":202,"hasCapCheck":202,"file":170,"line":206},"ibn_pin_post",41,[],[],[],2,{"dangerousFunctions":212,"sqlUsage":213,"outputEscaping":215,"fileOperations":25,"externalRequests":25,"nonceChecks":210,"capabilityChecks":238,"bundledLibraries":239},[],{"prepared":25,"raw":25,"locations":214},[],{"escaped":216,"rawEcho":217,"locations":218},30,9,[219,223,226,228,230,232,234,236,237],{"file":220,"line":221,"context":222},"metaboxes\\breaking-news.php",56,"raw output",{"file":224,"line":225,"context":222},"pages\\dashboard.php",7,{"file":224,"line":227,"context":222},12,{"file":224,"line":229,"context":222},13,{"file":224,"line":231,"context":222},16,{"file":224,"line":233,"context":222},20,{"file":224,"line":235,"context":222},24,{"file":224,"line":174,"context":222},{"file":224,"line":182,"context":222},3,[],[241,259,269],{"entryPoint":242,"graph":243,"unsanitizedCount":25,"severity":258},"ibn_save_settings (ibn.php:131)",{"nodes":244,"edges":256},[245,250],{"id":246,"type":247,"label":248,"file":170,"line":249},"n0","source","$_POST",147,{"id":251,"type":252,"label":253,"file":170,"line":254,"wp_function":255},"n1","sink","update_option() [Settings Manipulation]",162,"update_option",[257],{"from":246,"to":251,"sanitized":202},"low",{"entryPoint":260,"graph":261,"unsanitizedCount":25,"severity":258},"ibn_pin_post (ibn.php:242)",{"nodes":262,"edges":267},[263,265],{"id":246,"type":247,"label":248,"file":170,"line":264},258,{"id":251,"type":252,"label":253,"file":170,"line":266,"wp_function":255},277,[268],{"from":246,"to":251,"sanitized":202},{"entryPoint":270,"graph":271,"unsanitizedCount":25,"severity":258},"\u003Cibn> (ibn.php:0)",{"nodes":272,"edges":276},[273,275],{"id":246,"type":247,"label":274,"file":170,"line":249},"$_POST (x2)",{"id":251,"type":252,"label":253,"file":170,"line":254,"wp_function":255},[277],{"from":246,"to":251,"sanitized":202},{"summary":279,"deductions":280},"The \"instant-breaking-news\" plugin, version 1.0.1, exhibits a generally positive security posture based on the static analysis. The absence of dangerous functions, raw SQL queries, file operations, and external HTTP requests, coupled with the consistent use of prepared statements for SQL, demonstrates good coding practices. The presence of nonce and capability checks on its two AJAX entry points is also a strong indicator of security awareness. The taint analysis shows no high-severity issues, further reinforcing this positive outlook.  However, the plugin is not without potential risks.  The vulnerability history indicates a past medium-severity vulnerability related to Cross-Site Request Forgery (CSRF), and while currently unpatched CVEs are zero, this past issue highlights a potential area of weakness. Furthermore, while 77% of output escaping is good, it's not 100%, leaving a small percentage of outputs potentially vulnerable to cross-site scripting (XSS) if they contain user-supplied data.",[281,283],{"reason":282,"points":49},"Past medium severity CSRF vulnerability",{"reason":284,"points":285},"23% of output is not properly escaped",6,"2026-03-16T21:41:22.160Z",{"wat":288,"direct":297},{"assetPaths":289,"generatorPatterns":292,"scriptPaths":293,"versionParams":294},[290,291],"\u002Fwp-content\u002Fplugins\u002Finstant-breaking-news\u002Fassets\u002Fstyles\u002Fadmin.css","\u002Fwp-content\u002Fplugins\u002Finstant-breaking-news\u002Fassets\u002Fscripts\u002Fadmin.js",[],[291],[295,296],"plugins\u002Finstant-breaking-news\u002Fassets\u002Fstyles\u002Fadmin.css?ver=","plugins\u002Finstant-breaking-news\u002Fassets\u002Fscripts\u002Fadmin.js?ver=",{"cssClasses":298,"htmlComments":300,"htmlAttributes":301,"restEndpoints":303,"jsGlobals":304,"shortcodeOutput":306},[299],"ibn-breaking-news",[],[302],"data-ibn-pin",[],[305],"ibnDefaults",[307],"[instant-breaking-news]",{"error":202,"url":309,"statusCode":310,"statusMessage":311,"message":311},"http:\u002F\u002Flocalhost\u002Fapi\u002Fplugins\u002Finstant-breaking-news\u002Fbundle",404,"no bundle for this plugin yet",{"slug":4,"current_version":6,"total_versions":238,"versions":313},[314,321,326],{"version":315,"download_url":316,"svn_tag_url":317,"released_at":35,"has_diff":46,"diff_files_changed":318,"diff_lines":35,"trac_diff_url":319,"vulnerabilities":320,"is_current":46},"1.1","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Finstant-breaking-news.1.1.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Finstant-breaking-news\u002Ftags\u002F1.1\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Finstant-breaking-news%2Ftags%2F1.0.1&new_path=%2Finstant-breaking-news%2Ftags%2F1.1",[],{"version":6,"download_url":23,"svn_tag_url":322,"released_at":35,"has_diff":46,"diff_files_changed":323,"diff_lines":35,"trac_diff_url":324,"vulnerabilities":325,"is_current":202},"https:\u002F\u002Fplugins.svn.wordpress.org\u002Finstant-breaking-news\u002Ftags\u002F1.0.1\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Finstant-breaking-news%2Ftags%2F1.0&new_path=%2Finstant-breaking-news%2Ftags%2F1.0.1",[],{"version":327,"download_url":328,"svn_tag_url":329,"released_at":35,"has_diff":46,"diff_files_changed":330,"diff_lines":35,"trac_diff_url":35,"vulnerabilities":331,"is_current":46},"1.0","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Finstant-breaking-news.1.0.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Finstant-breaking-news\u002Ftags\u002F1.0\u002F",[],[332],{"id":31,"url_slug":32,"title":33,"severity":37,"cvss_score":38,"vuln_type":40,"patched_in_version":6}]