[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fETbLtv1KpQF1PKTzH1TBdnQKyF6fOBfVIp1Pwhxv0h4":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":24,"download_link":25,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28,"vulnerabilities":29,"developer":30,"crawl_stats":27,"alternatives":35,"analysis":124,"fingerprints":185},"intelligencebank-connector","IntelligenceBank Connector","1.2.6","IntelligenceBank","https:\u002F\u002Fprofiles.wordpress.org\u002Fintelligencebank\u002F","\u003Cp>The IntelligenceBank Connector for WordPress lets users connect to their IntelligenceBank digital asset management platform content directly from within the WordPress Media management interface. Click \u003Ca href=\"https:\u002F\u002Fhelp.intelligencebank.com\u002Fhc\u002Fen-us\u002Farticles\u002F360000469223-About-the-IntelligenceBank-Connector-for-Wordpress\" rel=\"nofollow ugc\">here\u003C\u002Fa> to learn more.\u003C\u002Fp>\n","The IntelligenceBank Connector for WordPress.",30,2588,0,"2024-09-25T12:41:00.000Z","6.6.5","4.4","",[19,20,21,22,23],"asset","assets","dam","digital","management","https:\u002F\u002Fhelp.intelligencebank.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fintelligencebank-connector.1.2.6.zip",92,null,"2026-03-15T15:16:48.613Z",[],{"slug":31,"display_name":7,"profile_url":8,"plugin_count":32,"total_installs":11,"avg_security_score":26,"avg_patch_time_days":11,"trust_score":33,"computed_at":34},"intelligencebank",1,88,"2026-04-04T21:17:50.084Z",[36,57,74,91,106],{"slug":37,"name":38,"version":39,"author":38,"author_profile":40,"description":41,"short_description":42,"active_installs":43,"downloaded":44,"rating":13,"num_ratings":13,"last_updated":45,"tested_up_to":46,"requires_at_least":47,"requires_php":17,"tags":48,"homepage":52,"download_link":53,"security_score":54,"vuln_count":55,"unpatched_count":32,"last_vuln_date":56,"fetched_at":28},"canto","Canto","3.1.1","https:\u002F\u002Fprofiles.wordpress.org\u002Fflightbycanto\u002F","\u003Cp>Simplify collaboration: Publish media from Canto to WordPress. Browse\u002Fsearch your library directly. Inserted images save to WordPress.\u003C\u002Fp>\n","Find & publish creative assets to WordPress easily, no email or folder search needed, with Canto's digital asset management.",100,14826,"2025-12-23T05:35:00.000Z","6.8.5","5.0",[37,21,49,50,51],"digital-asset-management","file-storage","photo-library","https:\u002F\u002Fwww.canto.com\u002Fintegrations\u002Fwordpress\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcanto.3.1.1.zip",46,8,"2026-03-20 15:13:52",{"slug":58,"name":59,"version":60,"author":61,"author_profile":62,"description":63,"short_description":64,"active_installs":65,"downloaded":66,"rating":13,"num_ratings":13,"last_updated":67,"tested_up_to":46,"requires_at_least":68,"requires_php":69,"tags":70,"homepage":17,"download_link":73,"security_score":43,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"pixx-io","pixx.io","2.1.1","pixx.io GmbH","https:\u002F\u002Fprofiles.wordpress.org\u002Fpixxio\u002F","\u003Cp>Integrate pixx.io DAM Digital Asset Management into WordPress. Use files from your pixx.io media pool with WordPress easily and without any detour.\u003C\u002Fp>\n\u003Ch3>Usage\u003C\u002Fh3>\n\u003Cp>You can easily import image files into your WordPress library with our plugin.\u003C\u002Fp>\n\u003Cp>If you use Gutenberg or the Classic Editor, you can import the images directly from pixx.io into your media library and use them from there.\u003C\u002Fp>\n\u003Cp>Otherwise you can just import the images in the media overview.\u003C\u002Fp>\n\u003Cp>When importing into your WordPress library you can choose the file format. Also, there is a preview to choose from where your image will be imported in JPEG format with a maximum width of 1000px.\u003C\u002Fp>\n","Integrate pixx.io DAM Digital Asset Management into WordPress. Use files from your pixx.io media pool with WordPress easily and without any detour.",90,2261,"2025-11-12T09:48:00.000Z","6.0","7.4",[21,49,71,72],"pixx","pixxio","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fpixx-io.2.1.1.zip",{"slug":75,"name":76,"version":77,"author":75,"author_profile":78,"description":79,"short_description":80,"active_installs":81,"downloaded":82,"rating":13,"num_ratings":13,"last_updated":83,"tested_up_to":84,"requires_at_least":68,"requires_php":85,"tags":86,"homepage":17,"download_link":90,"security_score":43,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"openasset","OpenAsset","5.0.0","https:\u002F\u002Fprofiles.wordpress.org\u002Fopenasset\u002F","\u003Cp>\u003Cstrong>It is possible to use this plugin to just sync images without integrating data, however, if you are looking to sync Project or Employee data to your website, it requires writing code for frontend integration.  It is therefore advised that you do not install directly on your live website.  Install onto a development environment first.  Ensure your integration is fully tested before you deploy live.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Anyone can download this plugin but in order to install and configure, it requires you to be an OpenAsset customer and have a specific OpenAsset license. If you are interested in the obtaining the license please reach out to your OpenAsset Customer Success Manager or \u003Ca href=\"https:\u002F\u002Fpages.openasset.com\u002Fintegrations-contact-us.html\" rel=\"nofollow ugc\">submit this form\u003C\u002Fa>\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>OpenAsset is a leading provider of Digital Asset Management solutions designed to meet the unique needs of the Architecture, Engineering, and Construction (AEC) industries. Our vision is to supercharge productivity of AEC marketing and business pursuit teams so they can win more business.\u003C\u002Fp>\n\u003Cp>OpenAsset’s Website Connector for WordPress enables AEC companies to sync project and employee profiles with relevant details, experience, and marketing-ready images directly from OpenAsset to their public-facing website.  This eliminates data redundancy, ensuring that high-quality assets are maintained centrally, streamlining workflows and boosting efficiency.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Effortless Project Showcase:\u003C\u002Fstrong> Showcase your AEC projects seamlessly on your website with a few clicks. The connector enables display of approved and consistent project details, enhancing your online presence.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Employee Profiles that Stand Out:\u003C\u002Fstrong> Highlight your team’s expertise by effortlessly publishing employee profiles directly from the DAM. Keep your team information up-to-date and impress your clients with the talent behind your projects.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Marketing-Ready Images:\u003C\u002Fstrong> Present your projects with stunning visuals. The connector enables you to select and publish marketing-ready images directly from your DAM, ensuring consistency and professionalism across your web presence.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Data Consistency and Centralization:\u003C\u002Fstrong> Say goodbye to inconsistency. The connector synchronizes with your OpenAsset instance, ensuring that the information on your website is up-to-date and reflective of your latest projects and team members.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Presentation and web design in your control:\u003C\u002Fstrong>  The connector offers a simple UI template that you are free to modify or your web developer is able to integrate the data into your fully custom website UI.\u003C\u002Fp>\n\u003Ch3>Links\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.openasset.com\" rel=\"nofollow ugc\">openasset.com\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fsuccess.openasset.com\u002Fen\u002Farticles\u002F8970283-using-openasset-s-website-connector-for-wordpress\" rel=\"nofollow ugc\">Using OpenAsset’s Website Connector for WordPress\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fsuccess.openasset.com\u002Fen\u002Farticles\u002F8971102-using-the-templates-bundled-with-openasset-s-website-connector-for-wordpress\" rel=\"nofollow ugc\">Using the templates bundled with OpenAsset’s Website Connector for WordPress\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fsuccess.openasset.com\u002Fen\u002Farticles\u002F8971297-creating-a-fully-custom-ui-with-openasset-s-website-connector-for-wordpress\" rel=\"nofollow ugc\">Creating a fully custom UI with OpenAsset’s Website Connector for WordPress\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Support\u003C\u002Fh3>\n\u003Cp>\u003Cstrong>Support OpenAsset’s Website Connector for WordPress is provided directly from OpenAsset’s support team.\u003C\u002Fstrong>\u003Cbr \u002F>\nIf you have questions pertaining to downloading, installing, configuring and syncing the plugin, please reach out to: \u003Ca href=\"mailto:support@openasset.com\" rel=\"nofollow ugc\">support@openasset.com\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Note:\u003C\u002Fstrong> We do not offer support for modifying or customizing your web pages including issues relating to the presentation of your information or images. Please contact your web developer for this.\u003C\u002Fp>\n\u003Ch3>3rd Party Services\u003C\u002Fh3>\n\u003Cp>OpenAsset’s Website Connector for WordPress makes use of OpenAsset’s API to retrieve and display data from your OpenAsset instance. By using this plugin you agree to OpenAsset’s terms of service and privacy policy.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fopenasset.com\u002Fterms-ltd\" rel=\"nofollow ugc\">OpenAsset Terms & Conditions\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.iubenda.com\u002Fprivacy-policy\u002F69272435\" rel=\"nofollow ugc\">OpenAsset Privacy Policy\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Using this plugin means that you do not need to interact with OpenAsset’s API in code but for reference it is \u003Ca href=\"https:\u002F\u002Fdevelopers.openasset.com\" rel=\"nofollow ugc\">documented here\u003C\u002Fa>\u003C\u002Fp>\n","Sync your AEC Project Portfolio, Employees and Images from OpenAsset to your Wordpress Website.",10,5977,"2026-01-12T17:16:00.000Z","6.9.4","8.0",[21,49,87,88,89],"images","projects","team","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fopenasset.5.0.0.zip",{"slug":92,"name":93,"version":94,"author":95,"author_profile":96,"description":97,"short_description":98,"active_installs":13,"downloaded":99,"rating":13,"num_ratings":13,"last_updated":17,"tested_up_to":15,"requires_at_least":100,"requires_php":101,"tags":102,"homepage":103,"download_link":104,"security_score":43,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":105},"hivo-library","HIVO Connector","0.0.4","hivo","https:\u002F\u002Fprofiles.wordpress.org\u002Fhivo\u002F","\u003Cp>This plugin allows users of HIVO to add Assets from their HIVO Library to the WordPress Media Library.\u003C\u002Fp>\n","Login to your HIVO Library and add Assets directly to your Wordpress Media tab.",1252,"4.4.0","4.3.0",[21,49,95],"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fhivo-connector\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fhivo-library.0.0.4.zip","2026-03-15T10:48:56.248Z",{"slug":107,"name":108,"version":109,"author":110,"author_profile":111,"description":112,"short_description":113,"active_installs":13,"downloaded":114,"rating":13,"num_ratings":13,"last_updated":115,"tested_up_to":116,"requires_at_least":68,"requires_php":117,"tags":118,"homepage":122,"download_link":123,"security_score":43,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"vy-bildbank","Vy Bildbank","1.1.1","vybildbank","https:\u002F\u002Fprofiles.wordpress.org\u002Ftingmediabank\u002F","\u003Cp>Access your media assets from your account at the cloud service Vy Bildbank.\u003C\u002Fp>\n","Access your media assets from your account at the cloud service Vy Bildbank.",756,"2026-02-05T12:23:00.000Z","6.7.5","7.0",[21,49,119,120,121],"image-bank","media","media-library","https:\u002F\u002Fbildbank.se\u002Fsv\u002Fsupport\u002Fwordpress","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fvy-bildbank.zip",{"attackSurface":125,"codeSignals":136,"taintFlows":144,"riskAssessment":179,"analyzedAt":184},{"hooks":126,"ajaxHandlers":132,"restRoutes":133,"shortcodes":134,"cronEvents":135,"entryPointCount":13,"unprotectedCount":13},[127],{"type":128,"name":129,"callback":129,"file":130,"line":131},"action","init","inc\\app.php",35,[],[],[],[],{"dangerousFunctions":137,"sqlUsage":138,"outputEscaping":140,"fileOperations":142,"externalRequests":32,"nonceChecks":32,"capabilityChecks":13,"bundledLibraries":143},[],{"prepared":13,"raw":13,"locations":139},[],{"escaped":32,"rawEcho":13,"locations":141},[],5,[],[145,169],{"entryPoint":146,"graph":147,"unsanitizedCount":32,"severity":168},"handleAjaxUpload (inc\\app.php:178)",{"nodes":148,"edges":164},[149,154,158],{"id":150,"type":151,"label":152,"file":130,"line":153},"n0","source","$_POST",198,{"id":155,"type":156,"label":157,"file":130,"line":153},"n1","transform","→ downloadAsset()",{"id":159,"type":160,"label":161,"file":130,"line":162,"wp_function":163},"n2","sink","wp_remote_get() [SSRF]",353,"wp_remote_get",[165,167],{"from":150,"to":155,"sanitized":166},false,{"from":155,"to":159,"sanitized":166},"medium",{"entryPoint":170,"graph":171,"unsanitizedCount":32,"severity":168},"\u003Capp> (inc\\app.php:0)",{"nodes":172,"edges":176},[173,174,175],{"id":150,"type":151,"label":152,"file":130,"line":153},{"id":155,"type":156,"label":157,"file":130,"line":153},{"id":159,"type":160,"label":161,"file":130,"line":162,"wp_function":163},[177,178],{"from":150,"to":155,"sanitized":166},{"from":155,"to":159,"sanitized":166},{"summary":180,"deductions":181},"The intelligencebank-connector plugin v1.2.6 exhibits a generally strong security posture based on the provided static analysis.  The complete absence of unprotected AJAX handlers, REST API routes, shortcodes, and cron events significantly limits the plugin's attack surface.  Furthermore, the code demonstrates good practices by utilizing prepared statements for all SQL queries, proper output escaping, and including nonce checks. The lack of any recorded vulnerabilities (CVEs) is also a positive indicator.\n\nHowever, the static analysis does highlight two taint flows with unsanitized paths. While these did not escalate to critical or high severity, they represent potential areas where user-supplied data could be processed without adequate sanitization, which could lead to unexpected behavior or potential security issues if exploited in conjunction with other factors.  The presence of file operations and external HTTP requests, while not inherently insecure, are points that warrant careful consideration in a broader security audit, especially if they handle user-provided inputs.\n\nIn conclusion, the plugin is well-implemented with a minimal attack surface and good security hygiene in core areas. The primary concern lies with the identified unsanitized taint flows, which, despite not reaching critical severity in this analysis, should be investigated to ensure no hidden risks exist.",[182],{"reason":183,"points":55},"Taint flows with unsanitized paths","2026-03-16T22:22:39.424Z",{"wat":186,"direct":198},{"assetPaths":187,"generatorPatterns":191,"scriptPaths":192,"versionParams":194},[188,189,190],"\u002Fwp-content\u002Fplugins\u002Fintelligencebank-connector\u002Fassets\u002Fcss\u002Fadmin\u002Fapp.css","\u002Fwp-content\u002Fplugins\u002Fintelligencebank-connector\u002Fassets\u002Fjs\u002Fadmin\u002Fclassic.js","\u002Fwp-content\u002Fplugins\u002Fintelligencebank-connector\u002Fassets\u002Fjs\u002Fadmin\u002Fgutenberg.js",[],[193],"\u002Fwp-content\u002Fplugins\u002Fintelligencebank-connector\u002Fassets\u002Fjs\u002Fadmin\u002Fapp.js",[195,196,197],"intelligencebank-connector\u002Fassets\u002Fcss\u002Fadmin\u002Fapp.css?ver=","intelligencebank-connector\u002Fassets\u002Fjs\u002Fadmin\u002Fclassic.js?ver=","intelligencebank-connector\u002Fassets\u002Fjs\u002Fadmin\u002Fgutenberg.js?ver=",{"cssClasses":199,"htmlComments":204,"htmlAttributes":205,"restEndpoints":207,"jsGlobals":209,"shortcodeOutput":211},[200,201,202,203],"wp-block-ibc-embed","wp-block-image","wp-block-video","wp-block-audio",[],[206],"data-ibc-upload",[208],"\u002Fwp-json\u002Fintelligencebank-connector\u002Fv1\u002Fassets",[210],"ibc",[]]