[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fsnLujabK0twC37US_SBBzVdG6P7cVc8O8PCtvlOhclY":3,"$fPv3VewjAaMRIMDtaZanLtb2GPa66Riz4CeE4YUwCFAg":265,"$fkhKQAUhbDBZUuBjCcVQGCpaFbkIN5Z1_theuweRxEtg":270},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":24,"download_link":25,"security_score":26,"vuln_count":11,"unpatched_count":11,"last_vuln_date":27,"fetched_at":28,"discovery_status":29,"vulnerabilities":30,"developer":31,"crawl_stats":27,"alternatives":38,"analysis":147,"fingerprints":242},"loop-cards","Loop Cards","1.1.0","Arshad Shah","https:\u002F\u002Fprofiles.wordpress.org\u002Farshadwpdev\u002F","\u003Cp>Display your posts in style with customizable post cards using our shortcode plugin. Easily showcase content with unique layouts and personalized designs.\u003C\u002Fp>\n","Custom Post Cards Designs Provider",0,917,100,1,"2024-11-15T12:20:00.000Z","6.7.5","5.2","7.2",[20,21,22,23],"cpt","custom-post-type","post-cards","posts","","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Floop-cards.1.1.0.zip",92,null,"2026-07-22T17:31:50.256Z","no_bundle",[],{"slug":32,"display_name":7,"profile_url":8,"plugin_count":33,"total_installs":11,"avg_security_score":34,"avg_patch_time_days":35,"trust_score":36,"computed_at":37},"arshadwpdev",2,96,30,91,"2026-08-29T05:41:54.366Z",[39,62,88,110,129],{"slug":40,"name":41,"version":42,"author":43,"author_profile":44,"description":45,"short_description":46,"active_installs":47,"downloaded":48,"rating":11,"num_ratings":11,"last_updated":49,"tested_up_to":50,"requires_at_least":51,"requires_php":52,"tags":53,"homepage":57,"download_link":58,"security_score":59,"vuln_count":14,"unpatched_count":11,"last_vuln_date":60,"fetched_at":61},"mihdan-public-post-preview","Mihdan: Public Post Preview","1.9.12.1","mihdan","https:\u002F\u002Fprofiles.wordpress.org\u002Fmihdan\u002F","\u003Cp>Позволяет просматривать посты по красивому URL у черновиков в WordPress\u003C\u002Fp>\n","Позволяет просматривать посты по красивому URL у черновиков в WordPress",10,2036,"2022-11-25T10:31:00.000Z","6.1.10","4.9","5.6.20",[20,54,55,23,56],"custom-post-types","post","public-preview","https:\u002F\u002Fgithub.com\u002Fmihdan\u002Fmihdan-public-post-preview\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fmihdan-public-post-preview.1.9.12.1.zip",85,"2022-10-17 00:00:00","2026-04-06T09:54:40.288Z",{"slug":63,"name":64,"version":65,"author":66,"author_profile":67,"description":68,"short_description":69,"active_installs":70,"downloaded":71,"rating":72,"num_ratings":73,"last_updated":74,"tested_up_to":75,"requires_at_least":76,"requires_php":24,"tags":77,"homepage":83,"download_link":84,"security_score":85,"vuln_count":86,"unpatched_count":11,"last_vuln_date":87,"fetched_at":28},"intuitive-custom-post-order","Intuitive Custom Post Order","3.2.0","hijiri","https:\u002F\u002Fprofiles.wordpress.org\u002Fhijiri\u002F","\u003Cp>Intuitively reorder Posts, Pages, Custom Post Types, Taxonomies, and Sites with a simple drag-and-drop interface.\u003C\u002Fp>\n\u003Cp>Intuitive Custom Post Order lets you reorder items with simple drag and drop in the WordPress admin.\u003Cbr \u002F>\nYou can sort Posts, Pages, Custom Post Types, Taxonomies, and (on Multisite) Sites.\u003C\u002Fp>\n\u003Cp>Go to \u003Cstrong>Settings \u003Cspan aria-hidden=\"true\" class=\"wp-exclude-emoji\">→\u003C\u002Fspan> Intuitive CPO\u003C\u002Fstrong> and select which content types you want to make sortable.\u003Cbr \u002F>\nOnce enabled, just drag and drop items in the list tables—no extra setup is required.\u003C\u002Fp>\n\u003Cp>If you create custom queries in your theme or plugins, set \u003Ccode>orderby=menu_order\u003C\u002Fcode> and \u003Ccode>order=ASC\u003C\u002Fcode> to respect the drag-and-drop order.\u003Cbr \u002F>\nTo keep the default WordPress order (by date), explicitly set \u003Ccode>orderby=date\u003C\u002Fcode> and \u003Ccode>order=DESC\u003C\u002Fcode>.\u003C\u002Fp>\n\u003Cp>Source code and development are available on \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fhijiriworld\u002Fintuitive-custom-post-order\" rel=\"nofollow ugc\">GitHub\u003C\u002Fa>.\u003C\u002Fp>\n","Intuitively reorder Posts, Pages, Custom Post Types, Taxonomies, and Sites with a simple drag-and-drop interface.",400000,3055727,88,140,"2025-09-16T03:37:00.000Z","6.8.6","3.5.0",[78,79,80,81,82],"custom-post-type-order","order-post","order-posts","post-order","posts-order","http:\u002F\u002Fhijiriworld.com\u002Fweb\u002Fplugins\u002Fintuitive-custom-post-order\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fintuitive-custom-post-order.3.2.0.zip",99,4,"2023-01-25 00:00:00",{"slug":89,"name":90,"version":91,"author":92,"author_profile":93,"description":94,"short_description":95,"active_installs":96,"downloaded":97,"rating":72,"num_ratings":98,"last_updated":99,"tested_up_to":100,"requires_at_least":101,"requires_php":102,"tags":103,"homepage":108,"download_link":109,"security_score":13,"vuln_count":11,"unpatched_count":11,"last_vuln_date":27,"fetched_at":28},"gravity-forms-custom-post-types","Gravity Forms + Custom Post Types","3.1.31","Dave from Gravity Wiz","https:\u002F\u002Fprofiles.wordpress.org\u002Fspivurno\u002F","\u003Cp>This plugin is an add-on for \u003Ca href=\"http:\u002F\u002Fgravityforms.com\" rel=\"nofollow ugc\">Gravity Forms\u003C\u002Fa>. Make sure you visit \u003Ca href=\"http:\u002F\u002Fgravitywiz.com\u002Fplugins\u002F\" rel=\"nofollow ugc\">GravityWiz.com\u003C\u002Fa> for more \u003Cstrong>free\u003C\u002Fstrong> Gravity Forms resources. And if you’re looking to the largest collection of Gravity Forms plugins, check out \u003Ca href=\"http:\u002F\u002Fgravityperks.com\" rel=\"nofollow ugc\">Gravity Perks\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>Gravity Forms allows you to create posts from a form submission using special Post Fields. By default, the submitted form will be created as a standard WordPress post. This plugin allows you to change the post type of the generated post. \u003Cstrong>No code required!\u003C\u002Fstrong> This plugin also provides the ability to assign the generated post to a custom taxonomy.\u003C\u002Fp>\n\u003Cp>Need to update posts? Learn \u003Ca href=\"https:\u002F\u002Fgravitywiz.com\u002Fhow-to-update-posts-with-gravity-forms\u002F\" rel=\"nofollow ugc\">how to update posts with Gravity Forms\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Map posts to a custom post type\u003C\u002Fli>\n\u003Cli>Map posts to a custom taxonomy (via Drop Down, Multi-select, Radio Button or Checkbox field)\u003C\u002Fli>\n\u003Cli>Map posts to multiple taxonomies\u003C\u002Fli>\n\u003Cli>Visual hierarchy support for hierarchical taxonomies (Drop Down field only)\u003C\u002Fli>\n\u003Cli>Populate a Drop Down with posts\u003C\u002Fli>\n\u003Cli>Assign parent post for generated post (Drop Down field only)\u003C\u002Fli>\n\u003Cli>Single Line Text field support for taxonomies (enter as a comma-delimited list: term a, term b, term c)\u003C\u002Fli>\n\u003Cli>Enhanced UI support for Single Line Text fields (see screenshots)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>How to map a form to a custom post type\u003C\u002Fh4>\n\u003Col>\n\u003Cli>Add a Post Title field to your form and click on it to open the field settings.\u003C\u002Fli>\n\u003Cli>Below the “Description” field setting, you will find the “Post Type” setting.\u003C\u002Fli>\n\u003Cli>Select the desired post type from the drop down (default is “Posts”).\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch4>How to link a field to a custom taxonomy\u003C\u002Fh4>\n\u003Col>\n\u003Cli>Add the desired field to which the custom taxonomy should be mapped. Drop Down, Multi Select, Radio Buttons and Checkboxes fields are current supported.\u003C\u002Fli>\n\u003Cli>Open the field settings by clicking on the field and click on the “Advanced” tab.\u003C\u002Fli>\n\u003Cli>Check the “Populate with a Taxonomy” checkbox.\u003C\u002Fli>\n\u003Cli>Select the desired taxonomy from the drop down that appears.\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch4>How to link the saved post to taxonomies using a single line text field\u003C\u002Fh4>\n\u003Cp>Single Line Text fields are a great way to allow users to select existing taxonomy terms and to also add new terms.\u003C\u002Fp>\n\u003Col>\n\u003Cli>Add a Single Line Text field to your form.\u003C\u002Fli>\n\u003Cli>Open the field settings by clicking on the field and click on the “Advanced” tab.\u003C\u002Fli>\n\u003Cli>Check the “Save to Taxonomy” checkbox.\u003C\u002Fli>\n\u003Cli>Select the desired taxonomy from the drop down that appears.\u003C\u002Fli>\n\u003Cli>(optional) Check the “Enable Enhanced UI” checkbox to enable an awesome tag-input style UI (see screenshots).\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Cp>Note: If the user inputs exising term names, the generated post will be assigned these terms. If the user inputs term names that do not exist, these terms will be added to the selected taxonomy and the generated post will also be assigned these terms.\u003C\u002Fp>\n\u003Ch4>How to set a parent post with the drop down field\u003C\u002Fh4>\n\u003Cp>When populating a Drop Down field with a post type, you may wish to set the selected post as the parent post for the generated post.\u003C\u002Fp>\n\u003Col>\n\u003Cli>Add A Drop Down field to your form.\u003C\u002Fli>\n\u003Cli>Click on the field to open the field settings. Then click on the “Advanced” tab.\u003C\u002Fli>\n\u003Cli>Check the “Populate with Post Type” checkbox.\u003C\u002Fli>\n\u003Cli>Select the desired post type from the drop down that appears. Be sure to select the \u003Cstrong>same post type\u003C\u002Fstrong> for which the post is being generated.\u003C\u002Fli>\n\u003C\u002Fol>\n","Map your Gravity-Forms-generated posts to a custom post type and\u002For custom taxonomies.",10000,538660,46,"2026-04-14T14:26:00.000Z","6.9.5","3.0.1","5.6",[54,104,105,106,107],"custom-taxonomy","gravity-forms","gravity-forms-posts","taxonomy","https:\u002F\u002Fgravitywiz.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fgravity-forms-custom-post-types.3.1.31.zip",{"slug":111,"name":112,"version":113,"author":114,"author_profile":115,"description":116,"short_description":117,"active_installs":96,"downloaded":118,"rating":13,"num_ratings":119,"last_updated":120,"tested_up_to":75,"requires_at_least":121,"requires_php":122,"tags":123,"homepage":24,"download_link":127,"security_score":85,"vuln_count":33,"unpatched_count":11,"last_vuln_date":128,"fetched_at":28},"no-page-comment","No Page Comment","1.3.1","Seth Alling","https:\u002F\u002Fprofiles.wordpress.org\u002Fsethta\u002F","\u003Cp>Up until recently, WordPress gave two options: You could either disable comments and trackbacks by default for all pages and posts, or you could have them active by default. In WordPress version 4.3, this finally changed so comments are always disabled on new pages.\u003C\u002Fp>\n\u003Cp>While the new change makes it easier for many of the sites, it make it harder for people who need to get the reverse and enable comments on all pages, or if they need to change the default for a custom post type. This plugin allows you to choose whether comments are enabled or disabled by default on all new posts, pages and custom post types, while still giving the ability to individually enable comments on posts or pages.\u003C\u002Fp>\n\u003Cp>Also, this plugin provides a way to quickly disable all comments or pingbacks for a specific custom post type. It directly interacts with your database to modify the status, so it is highly recommended that you backup your database first. There shouldn’t be any issues using this feature, but it’s always good to play it safe.\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fsethta\u002Fno-page-comment\" title=\"No Page Comment Development on Github\" rel=\"nofollow ugc\">View No Page Comment Development on Github\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fsethta\u002Fno-page-comment\u002Fissues\" title=\"Report an Issue about No Page Comment on Github\" rel=\"nofollow ugc\">Please Report any Issues about No Page Comment on Github\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.paypal.com\u002Fcgi-bin\u002Fwebscr?cmd=_s-xclick&hosted_button_id=5WWP2EDSCAJR4\" title=\"Donate to support the No Page Comment Plugin development\" rel=\"nofollow ugc\">Donate to Support No Page Comment Development\u003C\u002Fa>\u003C\u002Fp>\n","An admin interface to control the default comment and trackback settings on new posts, pages and custom post types.",253498,22,"2025-11-17T15:09:00.000Z","6.2","7.4",[124,54,125,126,23],"comments","discussion","pages","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fno-page-comment.zip","2022-09-21 00:00:00",{"slug":130,"name":131,"version":132,"author":133,"author_profile":134,"description":135,"short_description":136,"active_installs":96,"downloaded":137,"rating":13,"num_ratings":138,"last_updated":139,"tested_up_to":100,"requires_at_least":140,"requires_php":122,"tags":141,"homepage":145,"download_link":146,"security_score":13,"vuln_count":11,"unpatched_count":11,"last_vuln_date":27,"fetched_at":28},"post-types-unlimited","Post Types Unlimited","1.2.9","WPExplorer","https:\u002F\u002Fprofiles.wordpress.org\u002Fwpexplorer\u002F","\u003Cp>Post Types Unlimited is an easy way to add \u003Cstrong>custom post types\u003C\u002Fstrong> and \u003Cstrong>custom taxonomies\u003C\u002Fstrong> to your WordPress site (the right way). The plugin works with any theme and is easily translatable. With Post Types Unlimited you can:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Create custom post types.\u003C\u002Fli>\n\u003Cli>Create custom taxonomies.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Post Types Unlimited makes use of core WordPress functionality for the admin screens and post type, taxonomy registration. This means the plugin is fast, slim and uses the familiar WordPress UI.\u003C\u002Fp>\n\u003Cp>Additionally you won’t find any upsell or advertisements in the plugin because there isn’t a “Pro” version. It’s the perfect plugin for adding post types and\u002For taxonomies to any site (including your client sites) without worrying about extra bloat or annoying ads.\u003C\u002Fp>\n\u003Cp>The design of your post types and taxonomies created with the Post Types Unlimited plugin are controlled by your theme. The plugin doesn’t do any hacking or advanced modifications to your templates and thus works great with ANY theme.\u003C\u002Fp>\n\u003Cp>If you are using our amazing \u003Ca href=\"https:\u002F\u002Ftotalwptheme.com\u002F\" rel=\"nofollow ugc\">Total WordPress Theme\u003C\u002Fa> you will have access to many extra settings that will give you full control over the display of your post types and taxonomies.\u003C\u002Fp>\n\u003Cp>This plugin doesn’t have any upsells, banners or other marketing strategies. This makes it perfect for use with any site, including client websites.\u003C\u002Fp>\n","Create unlimited custom post types and custom taxonomies.",153689,9,"2026-05-13T20:01:00.000Z","5.7",[20,54,142,143,144],"post-types","taxonomies","types","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fpost-types-unlimited\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fpost-types-unlimited.1.2.9.zip",{"attackSurface":148,"codeSignals":181,"taintFlows":229,"riskAssessment":230,"analyzedAt":241},{"hooks":149,"ajaxHandlers":170,"restRoutes":171,"shortcodes":172,"cronEvents":180,"entryPointCount":33,"unprotectedCount":11},[150,156,160,165],{"type":151,"name":152,"callback":153,"file":154,"line":155},"action","admin_enqueue_scripts","lpcd_admin_enqueue_files","includes\\admin\\lpcd-class-admin-menu.php",18,{"type":151,"name":157,"callback":158,"file":154,"line":159},"admin_menu","lpcd_admin_menu_options",19,{"type":151,"name":161,"callback":162,"file":163,"line":164},"wp_enqueue_scripts","lpcd_load_scripts","includes\\lpcd-class-plugin.php",44,{"type":151,"name":166,"callback":167,"file":168,"line":169},"plugins_loaded","lpcd_plugin_load","loop-cards.php",33,[],[],[173,178],{"tag":174,"callback":175,"file":176,"line":177},"lpcd_basic_loopcard_shortcode","lpcd_basic_loop_shortcode","includes\\shortcodes\\lpcd-class-cpt-shortcodes.php",17,{"tag":179,"callback":179,"file":176,"line":155},"lpcd_list_loopcard_shortcode",[],{"dangerousFunctions":182,"sqlUsage":183,"outputEscaping":185,"fileOperations":11,"externalRequests":11,"nonceChecks":11,"capabilityChecks":11,"bundledLibraries":228},[],{"prepared":11,"raw":11,"locations":184},[],{"escaped":186,"rawEcho":187,"locations":188},48,20,[189,192,193,195,197,199,201,203,205,207,208,210,212,214,217,219,221,223,225,227],{"file":190,"line":177,"context":191},"templates\\adminmenu\\lpcd-settings-template.php","raw output",{"file":190,"line":155,"context":191},{"file":190,"line":194,"context":191},21,{"file":190,"line":196,"context":191},25,{"file":190,"line":198,"context":191},28,{"file":190,"line":200,"context":191},31,{"file":190,"line":202,"context":191},34,{"file":190,"line":204,"context":191},35,{"file":190,"line":206,"context":191},43,{"file":190,"line":98,"context":191},{"file":190,"line":209,"context":191},49,{"file":190,"line":211,"context":191},52,{"file":190,"line":213,"context":191},53,{"file":215,"line":216,"context":191},"templates\\loop-cards\\lpcd-basic-loop-card.php",37,{"file":215,"line":218,"context":191},50,{"file":215,"line":220,"context":191},55,{"file":215,"line":222,"context":191},62,{"file":215,"line":224,"context":191},64,{"file":226,"line":216,"context":191},"templates\\loop-cards\\lpcd-secondary-loop-card.php",{"file":226,"line":164,"context":191},[],[],{"summary":231,"deductions":232},"The \"loop-cards\" plugin v1.1.0 exhibits a generally good security posture based on the static analysis provided. The plugin has a very small attack surface, with only two shortcodes and no unprotected AJAX handlers or REST API routes. The absence of dangerous functions, raw SQL queries, file operations, and external HTTP requests further bolsters its security. The fact that all SQL queries utilize prepared statements is a significant strength.\n\nHowever, there are areas for improvement. A considerable portion of output (29%) is not properly escaped, which could lead to cross-site scripting (XSS) vulnerabilities if the output contains user-supplied data. Additionally, the absence of nonce checks and capability checks on its entry points (shortcodes in this case) is a notable concern. While the vulnerability history is clean, this does not guarantee future safety and the identified code signals should still be addressed.\n\nIn conclusion, while \"loop-cards\" v1.1.0 has a strong foundation with minimal attack vectors and secure database practices, the lack of output escaping and authorization checks on its shortcodes presents tangible risks that should be remediated to achieve a robust security posture.",[233,236,239],{"reason":234,"points":235},"Unescaped output detected",6,{"reason":237,"points":238},"Missing nonce checks on entry points",5,{"reason":240,"points":238},"Missing capability checks on entry points","2026-03-17T06:16:55.320Z",{"wat":243,"direct":254},{"assetPaths":244,"generatorPatterns":248,"scriptPaths":249,"versionParams":250},[245,246,247],"\u002Fwp-content\u002Fplugins\u002Floop-cards\u002Fincludes\u002Fpublic\u002Fcss\u002Fbasicloopcards.css","\u002Fwp-content\u002Fplugins\u002Floop-cards\u002Fincludes\u002Fadmin\u002Fcss\u002Fstyle.css","\u002Fwp-content\u002Fplugins\u002Floop-cards\u002Fincludes\u002Fadmin\u002Fjs\u002Fmain.js",[],[],[251,252,253],"loop-cards\u002Fincludes\u002Fpublic\u002Fcss\u002Fbasicloopcards.css?ver=","loop-cards\u002Fincludes\u002Fadmin\u002Fcss\u002Fstyle.css?ver=","loop-cards\u002Fincludes\u002Fadmin\u002Fjs\u002Fmain.js?ver=",{"cssClasses":255,"htmlComments":258,"htmlAttributes":259,"restEndpoints":260,"jsGlobals":261,"shortcodeOutput":262},[256,257],"lpcd-loop-cards-wrapper","lpcd-list-cards-wrapper",[],[],[],[],[263,264],"[lpcd_basic_loopcard_shortcode]","[lpcd_list_loopcard_shortcode]",{"error":266,"url":267,"statusCode":268,"statusMessage":269,"message":269},true,"http:\u002F\u002Flocalhost\u002Fapi\u002Fplugins\u002Floop-cards\u002Fbundle",404,"no bundle for this plugin yet",{"slug":4,"current_version":6,"total_versions":14,"versions":271},[272],{"version":6,"download_url":25,"svn_tag_url":273,"released_at":27,"has_diff":274,"diff_files_changed":275,"diff_lines":27,"trac_diff_url":27,"vulnerabilities":276,"is_current":266},"https:\u002F\u002Fplugins.svn.wordpress.org\u002Floop-cards\u002Ftags\u002F1.1.0\u002F",false,[],[]]