[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f_-bkL5keYN9_wclfp3yuGcfdbhIujKHXZHyXr_jGoQc":3,"$fCofhoLeAmwAdFJx58NJ2ZMEQ_fM2WNct8qmRgXum6JY":225,"$fxLItukUDaDC7fQ7eqz3Qh7TI1r7BKUIzQ7RsqMZHy5A":229},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":17,"download_link":23,"security_score":24,"vuln_count":13,"unpatched_count":13,"last_vuln_date":25,"fetched_at":26,"discovery_status":27,"vulnerabilities":28,"developer":29,"crawl_stats":25,"alternatives":36,"analysis":137,"fingerprints":201},"likecheese","Like Cheese","2.0","sageshilling","https:\u002F\u002Fprofiles.wordpress.org\u002Fsageshilling\u002F","\u003Cp>Like Cheese provides a number and an image of a heart beneath site \u003Cstrong>images\u003C\u002Fstrong>;\u003Cbr \u002F>\nhover on the number to see the display names of past visitors that liked the image.\u003Cbr \u002F>\nVisitors can register like\u002Funlike your site images; heart image changes accordingly.\u003Cbr \u002F>\nUses Nextend-Facebook-Connect to allow for easy Facebook login and gain approved valuable site visitor information.\u003Cbr \u002F>\nProvides additonal image fields in the media uploader.\u003C\u002Fp>\n\u003Cp>demo \u003Ca href=\"http:\u002F\u002Fpeaceoftheocean.com\u002Fshesellsseashells\" rel=\"nofollow ugc\">http:\u002F\u002Fpeaceoftheocean.com\u002Fshesellsseashells\u003C\u002Fa>\u003Cbr \u002F>\n\u003Ca href=\"http:\u002F\u002Fwww.orcawebperformance.com\u002Flike-cheese-a-wordpress-plugin\u002F\" rel=\"nofollow ugc\">http:\u002F\u002Fwww.orcawebperformance.com\u002Flike-cheese-a-wordpress-plugin\u002F\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>*currently this version allows for adding likes to posts\u003Cbr \u002F>\n*3.0 coming soon to allow for gallery image likes, shortcodes\u003C\u002Fp>\n","Like Cheese lets your site visitors 'like' your site images.",10,2187,0,"2016-12-04T16:08:00.000Z","4.5.33","3.0","",[19,20,21,22],"fun","images","instagram","likes","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Flikecheese.2.0.zip",85,null,"2026-04-16T10:56:18.058Z","no_bundle",[],{"slug":7,"display_name":7,"profile_url":8,"plugin_count":30,"total_installs":31,"avg_security_score":32,"avg_patch_time_days":33,"trust_score":34,"computed_at":35},3,20,90,30,87,"2026-05-20T02:36:41.157Z",[37,60,79,100,116],{"slug":38,"name":39,"version":40,"author":41,"author_profile":42,"description":43,"short_description":44,"active_installs":45,"downloaded":46,"rating":47,"num_ratings":48,"last_updated":49,"tested_up_to":50,"requires_at_least":51,"requires_php":17,"tags":52,"homepage":17,"download_link":57,"security_score":24,"vuln_count":58,"unpatched_count":13,"last_vuln_date":59,"fetched_at":26},"meks-easy-instagram-widget","Meks Easy Photo Feed Widget","1.2.8","Meks","https:\u002F\u002Fprofiles.wordpress.org\u002Fmekshq\u002F","\u003Cp>Meks Easy Photo Feed (formerly Instagram) Widget WordPress plugin is made to help you display good looking Instagram photos with a few clicks of the button. Several smart options are provided to fine-tune the widget appearance in order to match your personal taste as well as match any WordPress theme style out of the box.\u003C\u002Fp>\n\u003Ch3>Features\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Pull Instagram images by username\u003C\u002Fli>\n\u003Cli>Multiple usernames\u003C\u002Fli>\n\u003Cli>Choose number of Instagram photos to pull\u003C\u002Fli>\n\u003Cli>Choose in how many columns you would like to display your Instagram photos\u003C\u002Fli>\n\u003Cli>Specify spacing between Instagram images\u003C\u002Fli>\n\u003Cli>Fine-tune widget container size to pull the most optimized Instagram image size and match the current theme layout\u003C\u002Fli>\n\u003Cli>Automatically display the “Follow me” link\u003C\u002Fli>\n\u003Cli>Built-in caching (via transients) for optimized performance\u003C\u002Fli>\n\u003Cli>Shortcode [meks_easy_photo_feed title=”Your Feed Title” username=”your_username” container_size=2000 columns=6 photo_space=5 photos_number=12 link_text=”your_username”]\u003C\u002Fli>\n\u003Cli>Instagram authorization required since Instagram “Basic Permission” API is now Legacy API\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Meks Easy Photo Feed Widget plugin is created by \u003Ca href=\"https:\u002F\u002Fmekshq.com\" rel=\"nofollow ugc\">Meks\u003C\u002Fa>\u003C\u002Fp>\n","Easily display Instagram photos as a widget that looks good in (almost) any WordPress theme.",20000,407782,76,12,"2023-09-11T11:53:00.000Z","6.3.8","3.7",[21,53,54,55,56],"instagram-feed","instagram-gallery","instagram-images","instagram-widget","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fmeks-easy-instagram-widget.zip",1,"2021-11-10 00:00:00",{"slug":61,"name":62,"version":63,"author":64,"author_profile":65,"description":66,"short_description":67,"active_installs":32,"downloaded":68,"rating":13,"num_ratings":13,"last_updated":69,"tested_up_to":70,"requires_at_least":71,"requires_php":17,"tags":72,"homepage":77,"download_link":78,"security_score":24,"vuln_count":13,"unpatched_count":13,"last_vuln_date":25,"fetched_at":26},"wp-get-post-image","WP Get Post Image","0.2","thewebist","https:\u002F\u002Fprofiles.wordpress.org\u002Fthewebist\u002F","\u003Cp>This plugin provides the template tag \u003Ccode>wp_get_post_image()\u003C\u002Fcode>. Use it to call dynamically created images uploaded via the WordPress media uploader.\u003C\u002Fp>\n\u003Cp>NOTE: This plugin is intended for use by WordPress developers and theme builders only.\u003C\u002Fp>\n\u003Ch4>Usage\u003C\u002Fh4>\n\u003Cpre>\u003Ccode>\u003C?php wp_get_post_image($args); ?>\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Ch4>Default Usage\u003C\u002Fh4>\n\u003Cpre>\u003Ccode>\u003C?php $args = array(\n    'width' => null,\n    'height' => null,\n    'css' => '',\n    'parent_id' => '',\n    'post_id' => '',\n    'filename' => '',\n    'return_html' => true       \n); ?>\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Cp>By default, the function returns:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>The last uploaded image wrapped in an image tag (\u003Ccode>\u003Cimg \u002F>\u003C\u002Fcode>).\u003C\u002Fli>\n\u003Cli>A proportionately sized image with a \u003Ccode>width\u003C\u002Fcode> no greater than \u003Ccode>200px\u003C\u002Fcode>.\u003C\u002Fli>\n\u003Cli>The CSS class \u003Ccode>wp-image-*ID*\u003C\u002Fcode> and no other classes.\u003C\u002Fli>\n\u003Cli>If you add \u003Ccode>thickbox\u003C\u002Fcode> via \u003Ccode>css\u003C\u002Fcode>, the appropriate anchor \u003Ccode>\u003Ca>\u003C\u002Fcode> tag will be added for Thickbox compatibility.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Parameters\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\n\u003Cp>\u003Cstrong>width\u003C\u002Fstrong> (\u003Cem>integer\u003C\u002Fem>) – Width of image.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>height\u003C\u002Fstrong> (\u003Cem>integer\u003C\u002Fem>) – Height of image.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>parent_id\u003C\u002Fstrong> (\u003Cem>integer\u003C\u002Fem>) – The ID of the \u003Ccode>post_parent\u003C\u002Fcode> for the attachment. Specifying the \u003Ccode>parent_id\u003C\u002Fcode> returns the first image attached to the parent post according to \u003Ccode>menu_order\u003C\u002Fcode>.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>post_id\u003C\u002Fstrong> (\u003Cem>integer\u003C\u002Fem>) – The ID of the attachment.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>filename\u003C\u002Fstrong> (\u003Cem>string\u003C\u002Fem>) – The filename that corresponds to the \u003Ccode>post_name\u003C\u002Fcode> of the attachment.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>return_html\u003C\u002Fstrong> (\u003Cem>boolean\u003C\u002Fem>) – \u003Ccode>true\u003C\u002Fcode> returns the image wrapped in an XHTML image tag. \u003Ccode>false\u003C\u002Fcode> returns the image’s URL.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Example\u003C\u002Fh4>\n\u003Cpre>\u003Ccode>\u003C?php \n\u002F\u002F use this example wherever you have access to $post->ID, e.g. the WordPress loop\nif(function_exists('wp_get_post_image'))\n    echo wp_get_post_image('width=450&css=alignleft&parent_id='.$post->ID);  \n?>\n\u003C\u002Fcode>\u003C\u002Fpre>\n","Adds the function wp_get_post_image(), giving theme builders easy access to images associated with a post or page.",10609,"2010-06-26T10:36:00.000Z","3.0.5","2.8.4",[73,74,20,75,76],"attachments","function","post-image","template-tag","http:\u002F\u002Fmichaelwender.com\u002Fwordpress\u002Fplugins\u002Fwp-get-post-image\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-get-post-image.zip",{"slug":80,"name":81,"version":82,"author":83,"author_profile":84,"description":85,"short_description":86,"active_installs":11,"downloaded":87,"rating":13,"num_ratings":13,"last_updated":88,"tested_up_to":89,"requires_at_least":16,"requires_php":17,"tags":90,"homepage":98,"download_link":99,"security_score":24,"vuln_count":13,"unpatched_count":13,"last_vuln_date":25,"fetched_at":26},"keyring-reactions-importer","Keyring Reactions Importer","1.1","petermolnar","https:\u002F\u002Fprofiles.wordpress.org\u002Fcadeyrn\u002F","\u003Cp>A \u003Ca href=\"http:\u002F\u002Findiewebcamp.com\u002Fbackfeed\" rel=\"nofollow ugc\">backfeed\u003C\u002Fa> plugin to have all the reaction from all the social networks you have a copy of your post at.\u003C\u002Fp>\n\u003Ch4>Required plugins\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fkeyring\" rel=\"ugc\">Keyring\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>note: to use 500px, you’ll need a \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fpetermolnar\u002Fkeyring\u002Fblob\u002Fmaster\u002Fincludes\u002Fservices\u002Fextended\u002F500px.php\" rel=\"nofollow ugc\">not-yet-merged addition to Keyring for 500px\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fkeyring\u002F\" rel=\"ugc\">Keyring\u003C\u002Fa> is a dependency; the plugin will not function without it!\u003C\u002Fp>\n\u003Ch4>How it works\u003C\u002Fh4>\n\u003Cp>The plugin checks the \u003Ccode>syndication_urls\u003C\u002Fcode> post meta field populated either by the \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fsyndication-links\u002F\" rel=\"ugc\">Syndication Links\u003C\u002Fa> plugin or by hand: one syndicated url per line.\u003C\u002Fp>\n\u003Cp>For example, it should look like:\u003C\u002Fp>\n\u003Cpre>\u003Ccode>https:\u002F\u002Fwww.facebook.com\u002Fyour-facebook-user\u002Fposts\u002Ffacebook-post-id https:\u002F\u002Fwww.flickr.com\u002Fphotos\u002Fyour-flickr-user\u002Fflickr-post-id \u003C\u002Fcode>\u003C\u002Fpre>\n\u003Cp>In case the auto-import is enabled it will fire up scheduled cron job once every day ( not changeable currently ) for each network auto-import is enabled on. The job will query X ( depending on the service it’s querying ) posts per request, then fire up a new cron in the background until all posts are processed.\u003C\u002Fp>\n\u003Ch4>Known issues\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>due to the nature of the plugin it’s highly recommended to use \u003Ca href=\"https:\u002F\u002Fsupport.hostgator.com\u002Farticles\u002Fspecialized-help\u002Ftechnical\u002Fwordpress\u002Fhow-to-replace-wordpress-cron-with-a-real-cron-job\" rel=\"nofollow ugc\">system cron\u003C\u002Fa> for WordPress instead of the built-in version\u003C\u002Fli>\n\u003Cli>the plugin can be heavy on load; in this case please consider limiting the import date range on the settings page.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Currently supported networks\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002F500px.com\u002F\" rel=\"nofollow ugc\">500px\u003C\u002Fa> – comments, favs, likes\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fflickr.com\u002F\" rel=\"nofollow ugc\">Flickr\u003C\u002Fa> – comments, favs\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Ffacebook.com\u002F\" rel=\"nofollow ugc\">Facebook\u003C\u002Fa> – comments, likes\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Finstagram.com\" rel=\"nofollow ugc\">Instagram\u003C\u002Fa> – comments, likes\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Credit\u003C\u002Fh4>\n\u003Cp>Countless thanks for the \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fkeyring-social-importers\u002F\" rel=\"ugc\">Keyring Social Importers\u003C\u002Fa> and the Keyring plugin from \u003Ca href=\"http:\u002F\u002Fdentedreality.com.au\u002F\" rel=\"nofollow ugc\">Beau Lebens\u003C\u002Fa>.\u003C\u002Fp>\n","A social reactions ( comments, like, favs, etc. ) importer.",1770,"2015-05-26T09:36:00.000Z","4.2.39",[91,92,93,94,95,96,97,21,22],"500px","backfeed","comments","facebook","favorites","flickr","indieweb","https:\u002F\u002Fgithub.com\u002Fpetermolnar\u002Fkeyring-reactions-importer","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fkeyring-reactions-importer.1.1.zip",{"slug":101,"name":102,"version":103,"author":104,"author_profile":105,"description":106,"short_description":107,"active_installs":11,"downloaded":108,"rating":109,"num_ratings":58,"last_updated":110,"tested_up_to":17,"requires_at_least":17,"requires_php":17,"tags":111,"homepage":114,"download_link":115,"security_score":24,"vuln_count":13,"unpatched_count":13,"last_vuln_date":25,"fetched_at":26},"vintagejs","Vintage.js","1.0","modemlooper","https:\u002F\u002Fprofiles.wordpress.org\u002Fmodemlooper\u002F","\u003Cp>VintageJS allows you to apply a custom retro, vintage look to WordPress post images.\u003C\u002Fp>\n\u003Cp>This jQuery-Plugin was tested and worked fine in the following browsers:\u003C\u002Fp>\n\u003Cp>Mozilla FireFox 3.16.14\u003Cbr \u002F>\nGoogle Chrome 9.0.597.107\u003Cbr \u002F>\nApple Safari 5.0.3\u003Cbr \u002F>\nOpera 11.01\u003Cbr \u002F>\nInternet Explorer 9\u003C\u002Fp>\n\u003Cp>Javascript by R. Fleischmann http:\u002F\u002Fvintagejs.com\u003C\u002Fp>\n\u003Ch3>Instructions\u003C\u002Fh3>\n\u003Cp>To add vintage effect to an image you just need to uploaded image then choose to add the filter before inserting image into post.\u003C\u002Fp>\n\u003Ch3>Notes\u003C\u002Fh3>\n\u003Cp>License.txt – contains the licensing details for this component.\u003C\u002Fp>\n","VintageJS allows you to apply a custom retro, vintage look to WordPress post images.",2854,100,"2012-06-02T02:49:00.000Z",[20,21,112,113],"photo-filters","vintage","http:\u002F\u002Fvintagejs.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fvintagejs.1.0.zip",{"slug":117,"name":118,"version":119,"author":120,"author_profile":121,"description":122,"short_description":123,"active_installs":11,"downloaded":124,"rating":109,"num_ratings":58,"last_updated":125,"tested_up_to":126,"requires_at_least":127,"requires_php":17,"tags":128,"homepage":134,"download_link":135,"security_score":24,"vuln_count":13,"unpatched_count":13,"last_vuln_date":25,"fetched_at":136},"wp-clean-up-deo","WP Cleanup and base Functions","1.0.0","deodev","https:\u002F\u002Fprofiles.wordpress.org\u002Fdeodev\u002F","\u003Cp>WordPress Cleanup and Basic Options Functions is a utility plugin, even though it’s was developed with a  focus on developers as many functionalities are what you might just add to every new website you build, it’s really easy to use, just check the boxes corresponding to the set up you want.\u003Cbr \u002F>\nIt will help you:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Cleanup your website head and also some markup included with shortcodes section.\u003C\u002Fli>\n\u003Cli>Prettify the search url, ex: http:\u002F\u002Fyourwebsite.com\u002Fsearch\u002Fsearch-terms.\u003C\u002Fli>\n\u003Cli>Load jQuery from Google CDN(default) or form your chosen cdn provider instead of using the hosted version.\u003C\u002Fli>\n\u003Cli>Change the p to figure tag to surround your images.\u003C\u002Fli>\n\u003Cli>Add Retina support for your images.\u003C\u002Fli>\n\u003Cli>Add additional images sizes and modify those.\u003C\u002Fli>\n\u003Cli>Setup a Logo and background color for your login page\u003C\u002Fli>\n\u003Cli>Hide Administration menu items with a simple checkbox setup\u003C\u002Fli>\n\u003Cli>Add some more privacy adding a “referrer” meta tag\u003C\u002Fli>\n\u003Cli>If Yoast SEO is activated, can remove Yoast comments in head\u003C\u002Fli>\n\u003Cli>Set up your SMTP emails settings\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>And actually many other things.\u003Cbr \u002F>\nAlso besides the retina options(where you will be able to choose whether add the script from CDN or not), this plugin won’t add any scritp or styles to your website frontend\u003C\u002Fp>\n\u003Cp>Stay tuned as it will get updated possibly often with new features\u003C\u002Fp>\n","Here is a short description of the plugin.  This should be no more than 150 characters.  No markup here.",1559,"2016-08-28T20:00:00.000Z","4.3.34","3.0.1",[129,130,131,132,133],"cleanup","developers-common-functions","images-settings","privacy-settings","wordpress-head-cleanup","https:\u002F\u002Fgithub.com\u002Famadeobrands\u002FWP-CleanupBase-DEO","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-clean-up-deo.zip","2026-04-06T09:54:40.288Z",{"attackSurface":138,"codeSignals":186,"taintFlows":194,"riskAssessment":195,"analyzedAt":200},{"hooks":139,"ajaxHandlers":177,"restRoutes":183,"shortcodes":184,"cronEvents":185,"entryPointCount":58,"unprotectedCount":13},[140,146,151,155,159,162,165,168,171,174],{"type":141,"name":142,"callback":143,"file":144,"line":145},"action","template_redirect","likecheese_add_js_likes","like-cheese.php",23,{"type":147,"name":148,"callback":149,"file":144,"line":150},"filter","the_content","ecs_owp_content",181,{"type":147,"name":152,"callback":153,"file":144,"line":154},"attachment_fields_to_edit","likecheese_add_ecs_owp_copyright_field_to_media_uploader",195,{"type":147,"name":156,"callback":157,"file":144,"line":158},"attachment_fields_to_save","likecheese_add_ecs_owp_copyright_field_to_media_uploader_save",202,{"type":147,"name":152,"callback":160,"file":144,"line":161},"likecheese_add_like_count_field_to_media_uploader",213,{"type":147,"name":156,"callback":163,"file":144,"line":164},"likecheese_add_ecs_owp_like_count_field_to_media_uploader_save",220,{"type":147,"name":152,"callback":166,"file":144,"line":167},"likecheese_add_ecs_owp_count_field_to_media_uploader",233,{"type":147,"name":156,"callback":169,"file":144,"line":170},"likecheese_add_ecs_owp_count_field_to_media_uploader_save",240,{"type":147,"name":152,"callback":172,"file":144,"line":173},"likecheese_add_ecs_owp_icon_field_to_media_uploader",253,{"type":147,"name":156,"callback":175,"file":144,"line":176},"likecheese_add_ecs_owp_icon_field_to_media_uploader_save",260,[178],{"action":179,"nopriv":180,"callback":179,"hasNonce":181,"hasCapCheck":180,"file":144,"line":182},"likecheese_ali_ajax_like_image",false,true,269,[],[],[],{"dangerousFunctions":187,"sqlUsage":188,"outputEscaping":190,"fileOperations":13,"externalRequests":13,"nonceChecks":58,"capabilityChecks":13,"bundledLibraries":193},[],{"prepared":13,"raw":13,"locations":189},[],{"escaped":191,"rawEcho":13,"locations":192},8,[],[],[],{"summary":196,"deductions":197},"The 'likecheese' v2.0 plugin exhibits a strong security posture based on the provided static analysis.  A significant strength is the complete absence of dangerous functions, raw SQL queries, and unescaped output.  All SQL queries utilize prepared statements, and all identified output is properly escaped, which are critical good practices for preventing common web vulnerabilities.  The presence of a nonce check on its single AJAX handler further bolsters its security by mitigating CSRF attacks.  The lack of any recorded vulnerability history, including CVEs, suggests a history of secure development or effective patching.\n\nWhile the static analysis reveals no immediate critical vulnerabilities such as unsanitized taint flows or raw SQL, the limited attack surface is entirely protected by a nonce check on its sole AJAX handler. However, a notable concern is the complete absence of capability checks on this entry point. This means any authenticated user, regardless of their role or permissions, can trigger the AJAX action. This could lead to unintended functionality or even privilege escalation if the AJAX action performs sensitive operations.  The plugin's overall security is good, but this lack of granular access control on the AJAX handler represents a potential weakness that could be exploited in certain contexts.",[198],{"reason":199,"points":191},"AJAX handler missing capability checks","2026-04-16T12:23:43.594Z",{"wat":202,"direct":211},{"assetPaths":203,"generatorPatterns":206,"scriptPaths":207,"versionParams":208},[204,205],"\u002Fwp-content\u002Fplugins\u002Flikecheese\u002Fcss\u002Fstyle.css","\u002Fwp-content\u002Fplugins\u002Flikecheese\u002Fjs\u002Fajax_like_image.js",[],[],[209,210],"likecheese-style","likecheese_ajax_like_image",{"cssClasses":212,"htmlComments":215,"htmlAttributes":216,"restEndpoints":221,"jsGlobals":222,"shortcodeOutput":224},[213,214],"likecheese_ali_like","elizabethneedsabignap",[],[217,218,219,220],"data-id","data-likecheeseusername","data-nonce","data-sitepath",[],[223],"likecheese_params",[],{"error":181,"url":226,"statusCode":227,"statusMessage":228,"message":228},"http:\u002F\u002Flocalhost\u002Fapi\u002Fplugins\u002Flikecheese\u002Fbundle",404,"no bundle for this plugin yet",{"slug":4,"current_version":6,"total_versions":230,"versions":231},2,[232,237],{"version":6,"download_url":23,"svn_tag_url":233,"released_at":25,"has_diff":180,"diff_files_changed":234,"diff_lines":25,"trac_diff_url":235,"vulnerabilities":236,"is_current":181},"https:\u002F\u002Fplugins.svn.wordpress.org\u002Flikecheese\u002Ftags\u002F2.0\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Flikecheese%2Ftags%2F1.5.4&new_path=%2Flikecheese%2Ftags%2F2.0",[],{"version":238,"download_url":239,"svn_tag_url":240,"released_at":25,"has_diff":180,"diff_files_changed":241,"diff_lines":25,"trac_diff_url":25,"vulnerabilities":242,"is_current":180},"1.5.4","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Flikecheese.1.5.4.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Flikecheese\u002Ftags\u002F1.5.4\u002F",[],[]]