[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fkE19tqEAzzxh4D8QzgjBTawmKblGoPDkw7hAHUaNWko":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":25,"download_link":26,"security_score":27,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30,"vulnerabilities":31,"developer":32,"crawl_stats":29,"alternatives":39,"analysis":139,"fingerprints":291},"monage","Monage","1.46","raspi0124","https:\u002F\u002Fprofiles.wordpress.org\u002Fraspi0124\u002F","\u003Cp>Let\\’s make monage (giving monacoin) to wordpress blog more easier!\u003Cbr \u002F>\nThis plugin will make monage more easier.\u003C\u002Fp>\n","Let\\'s make monage (giving monacoin) to wordpress blog more easier!",10,1571,100,1,"2018-01-22T22:00:00.000Z","5.0.25","4.7","5.3",[20,21,22,23,24],"crypto-currency","mona","monacoin","virtual-currency","%e4%bb%ae%e6%83%b3%e9%80%9a%e8%b2%a8","","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fmonage.zip",85,0,null,"2026-03-15T15:16:48.613Z",[],{"slug":7,"display_name":7,"profile_url":8,"plugin_count":33,"total_installs":34,"avg_security_score":35,"avg_patch_time_days":36,"trust_score":37,"computed_at":38},2,10010,93,30,89,"2026-04-05T17:20:47.416Z",[40,60,83,102,122],{"slug":41,"name":42,"version":43,"author":44,"author_profile":45,"description":46,"short_description":47,"active_installs":11,"downloaded":48,"rating":49,"num_ratings":14,"last_updated":50,"tested_up_to":51,"requires_at_least":52,"requires_php":25,"tags":53,"homepage":58,"download_link":59,"security_score":27,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"cryptocurrency-shortcode","Crypto-Currency Shortcode","1.4","KAZApocrypha","https:\u002F\u002Fprofiles.wordpress.org\u002Fkazapocrypha\u002F","\u003Cp>This plugin adds the shortcode [ccsc] to embed a coinwidget.com donation button.\u003Cbr \u002F>\nSupports bitcoin, litecoin, monacoin, kumacoin, ringo and dogecoin.\u003C\u002Fp>\n\u003Ch3>Usage\u003C\u002Fh3>\n\u003Cp>Embed the short [ccsc] anywhere in your posts or template to include a coinbase button that, when clicked, will display a address for users to send coins.\u003C\u002Fp>\n\u003Cp>Supported attributes as documented here http:\u002F\u002Fcoinwidget.com\u002F\u003C\u002Fp>\n\u003Cul>\n\u003Cli>address – default “”\u003C\u002Fli>\n\u003Cli>currency – default “monacoin”\u003C\u002Fli>\n\u003Cli>counter – default “count”\u003C\u002Fli>\n\u003Cli>alignment – default “bl”\u003C\u002Fli>\n\u003Cli>qrcode – default “true” \u003C\u002Fli>\n\u003Cli>auto_show – default “false”\u003C\u002Fli>\n\u003Cli>decimals – default “4”\u003C\u002Fli>\n\u003Cli>lbl_button – default “Donate”\u003C\u002Fli>\n\u003Cli>lbl_address – default “My Monacoin Address:”\u003C\u002Fli>\n\u003Cli>lbl_count – default “donations”\u003C\u002Fli>\n\u003Cli>lbl_amount – default “MONA”\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Example:\u003C\u002Fp>\n\u003Cpre>\u003Ccode>[ccsc \n    address=\"MHXo5e1fRqgvxuBMKyhUxPSntRUDMJxi9q\"\n    currency=\"monacoin\" counter=\"count\"\n    alignment=\"bl\" qrcode=\"true\" auto_show=\"false\"\n    lbl_button=\"Donate\" lbl_address=\"My Monacoin Address:\"\n    lbl_count=\"donations\" lbl_amount=\"MONA\"]\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Cp>Enjoy!\u003C\u002Fp>\n","Defines a shortcode for embeddeding the standard donation button on your WordPress blog.",6742,80,"2014-05-25T13:56:00.000Z","3.9.40","3.0",[54,55,56,57,22],"bitcoin","coinwidget","kumacoin","litecoin","http:\u002F\u002Fapocrypha.jp\u002Fsoftware","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcryptocurrency-shortcode.1.4.zip",{"slug":61,"name":62,"version":63,"author":64,"author_profile":65,"description":66,"short_description":67,"active_installs":68,"downloaded":69,"rating":13,"num_ratings":70,"last_updated":71,"tested_up_to":72,"requires_at_least":73,"requires_php":74,"tags":75,"homepage":81,"download_link":82,"security_score":27,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"gg-monarch-sidebar-minimized-on-mobile","Monarch Sidebar Minimized on Mobile","1.2.5","Tomáš Groulík","https:\u002F\u002Fprofiles.wordpress.org\u002Ftomasgroulik\u002F","\u003Cp>The plugin adjusts the behavior of the Monarch plugin (elegantthemes) for cell phones. It sets the initial state of the social share sidebar as a nice minimized button (instead of the annoying sticky bottom bar with the text Share This).\u003C\u002Fp>\n\u003Cp>LIGHT-WEIGHT PLUGIN\u003Cbr \u002F>\nNO CONFIGURATION\u003C\u002Fp>\n\u003Cblockquote>\n\u003Cp>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fdeeppresentation.com\u002Fplugins\" rel=\"nofollow ugc\">Wanna check our other plugins?\u003C\u002Fa>\u003C\u002Fstrong>\u003Cbr \u002F>\n  \u003Cstrong>\u003Ca href=\"https:\u002F\u002Fdeeppresentation.com\u002Fcontact\" rel=\"nofollow ugc\">Contact us\u003C\u002Fa>\u003C\u002Fstrong> for Support\u003Cbr \u002F>\n  \u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwww.paypal.me\u002Ftomasgroulik\u002F5USD\" rel=\"nofollow ugc\">Donation helps to keep improving and updating \u003C\u002Fa>\u003C\u002Fstrong>\u003C\u002Fp>\n\u003C\u002Fblockquote>\n","The plugin adjusts the behavior of the Monarch plugin (elegantthemes) for cell phones",200,8994,4,"2023-11-20T12:52:00.000Z","6.4.8","5.2","7.2",[76,77,78,79,80],"elegantthemes","mobile","monarch","sidebar","social","https:\u002F\u002Fdeeppresentation.com\u002Fplugins","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fgg-monarch-sidebar-minimized-on-mobile.zip",{"slug":84,"name":85,"version":86,"author":87,"author_profile":88,"description":89,"short_description":90,"active_installs":91,"downloaded":92,"rating":28,"num_ratings":28,"last_updated":93,"tested_up_to":94,"requires_at_least":95,"requires_php":25,"tags":96,"homepage":100,"download_link":101,"security_score":27,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"callback-for-monarch-by-logic-hop","Callback for Monarch by Logic Hop","1.0.0","Logic Hop","https:\u002F\u002Fprofiles.wordpress.org\u002Flogichop\u002F","\u003Cp>Callback for Monarch by Logic Hop adds a Javascript callback to the Monarch Social Sharing Plugin. Simply install the plugin and a callback is automatically available when any Monarch social share or follow button is clicked.\u003C\u002Fp>\n\u003Cp>Now you can trigger custom events when a social share or follow button has been clicked. The callback is available for use in your pages, posts or Javascript files – Simply add the following code:\u003C\u002Fp>\n\u003Cpre>\u003Ccode>\u003Cscript>\n    function logichop_monarch_callback (stats) {\n        console.log( 'logichop_monarch_callback' );\n        console.log( stats );\n        \u002F\u002F Your Javascript code here\n    } \n\u003C\u002Fscript>\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Cp>When a Monarch event is triggered the \u003Cstrong>stats\u003C\u002Fstrong> parameter is sent to the \u003Cem>logichop_monarch_callback\u003C\u002Fem> function with the following values:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>action\u003C\u002Fstrong>\n\u003Cul>\n\u003Cli>\u003Cem>The action performed. Typically ‘share’, ‘follow’ or ‘media’.\u003C\u002Fem>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\u003Cstrong>network\u003C\u002Fstrong>\n\u003Cul>\n\u003Cli>\u003Cem>The network for which the action was triggered. ‘Facebook’, ‘Twitter’, etc.\u003C\u002Fem>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\u003Cstrong>media_url\u003C\u002Fstrong>\n\u003Cul>\n\u003Cli>\u003Cem>Image URL when media is shared.\u003C\u002Fem>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\u003Cstrong>post_id\u003C\u002Fstrong>\n\u003Cul>\n\u003Cli>\u003Cem>ID of the page or post where the button was triggered.\u003C\u002Fem>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>Interested in Content Personalization for WordPress?\u003C\u002Fstrong> See how we’re using Monarch with Logic Hop – Check out our tutorial at: https:\u002F\u002Flogichop.com\u002Ftrack-social-shares\u002F\u003C\u002Fp>\n","Callback for Monarch by Logic Hop adds a Javascript callback to the Monarch Social Sharing Plugin. Simply install the plugin and a callback is automat &hellip;",20,2974,"2016-12-01T16:41:00.000Z","4.6.30","4.0.1",[97,78,98,99,80],"javascript","share","sharing","https:\u002F\u002Flogichop.com\u002Fresources\u002Fcallback-for-monarch-plugin\u002F?ref=wp-plugins-menu","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcallback-for-monarch-by-logic-hop.1.0.0.zip",{"slug":103,"name":104,"version":105,"author":106,"author_profile":107,"description":108,"short_description":109,"active_installs":91,"downloaded":110,"rating":13,"num_ratings":14,"last_updated":111,"tested_up_to":112,"requires_at_least":113,"requires_php":114,"tags":115,"homepage":25,"download_link":121,"security_score":13,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"dblocks-codepro","DBlocks CodePro","1.4.4","DPlugins","https:\u002F\u002Fprofiles.wordpress.org\u002Fdplugins\u002F","\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002FJec4l5h6pwQ?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\n\u003Cp>\u003Cstrong>Enhanced Code Editor for WordPress\u003C\u002Fstrong> transforms the default WordPress block editor into a powerful development environment tailored for coding and content creation. Built on the robust Monaco Editor, this plugin brings advanced code editing features directly into WordPress, making it an essential tool for developers, designers, and content creators who frequently work with code.\u003C\u002Fp>\n\u003Ch3>Key Features:\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>Rich Code Editing\u003C\u002Fstrong>: Leverage the power of Monaco Editor, renowned for its extensive capabilities including syntax highlighting, intelligent code completion, and seamless user experience.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Emmet Integration\u003C\u002Fstrong>: Speed up your HTML\u002FCSS workflow with built-in Emmet support, allowing you to use shorthand for rapid coding.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Theme Customization\u003C\u002Fstrong>: Toggle between light and dark themes to suit your preference or match your working environment, enhancing visibility and reducing eye strain.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Dynamic Syntax Highlighting\u003C\u002Fstrong>: Easily enable or disable syntax highlighting and choose between light or dark themes to best fit the context of your content.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Flexible Editor Configuration\u003C\u002Fstrong>: Adjust font sizes and choose from various programming languages such as HTML, CSS, JavaScript, PHP, and more, catering to diverse development needs.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Multiple Viewing Modes\u003C\u002Fstrong>: Includes ‘Code’, ‘Preview’, and ‘Split View’ modes, enabling you to code and preview content simultaneously or separately, optimizing your workflow.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Ideal Use Cases:\u003C\u002Fh3>\n\u003Cp>This plugin is perfect for:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Developers\u003C\u002Fstrong> embedding custom code directly into posts or pages.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Educational platforms\u003C\u002Fstrong> that feature coding tutorials.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Tech bloggers\u003C\u002Fstrong> showcasing programming tips and snippets.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Why Choose Enhanced Code Editor?\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>Improved Usability\u003C\u002Fstrong>: With an intuitive interface and adjustable settings, this plugin is designed to enhance productivity and ease of use.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Responsive and Adaptive\u003C\u002Fstrong>: Works seamlessly across different devices and screen sizes, ensuring a consistent editing experience everywhere.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Persistent Settings\u003C\u002Fstrong>: Customizations and settings are saved per user, so your environment is the same each time you log in.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Embrace a superior coding experience within WordPress with \u003Cstrong>Enhanced Code Editor\u003C\u002Fstrong>. Whether you’re a professional developer or a hobbyist, this plugin adapts to your needs, making coding within WordPress a delight.\u003C\u002Fp>\n","Advanced Custom HTML Block and Code Syntax Highlightering for sharing code snippets and running code.",2332,"2025-09-29T19:16:00.000Z","6.8.5","6.3","7.4",[116,117,118,119,120],"block","code","code-block","html","monaco-editor","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fdblocks-codepro.1.4.4.zip",{"slug":123,"name":123,"version":124,"author":125,"author_profile":126,"description":127,"short_description":128,"active_installs":11,"downloaded":129,"rating":49,"num_ratings":14,"last_updated":130,"tested_up_to":131,"requires_at_least":132,"requires_php":25,"tags":133,"homepage":137,"download_link":138,"security_score":27,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"slogan-widget","2.1.0","tobig","https:\u002F\u002Fprofiles.wordpress.org\u002Ftobig\u002F","\u003Cp>With this plugin you can create slogans fpr month or year. A Widget show this slogans for the actual month or year.\u003C\u002Fp>\n\u003Cp>It is possible to export and import and create, delete, edit a slogan.\u003C\u002Fp>\n\u003Cp>Dieses Plugin speichert mit Hilfe der Custom Post Types Sprüche in der Datenbank die mit einem Datum, auf Basis von mm.yyyy, versehen sind. Mit einem Widget können diese dann entsprechend der aktuellen Zeit angezeigt werden.\u003C\u002Fp>\n\u003Cp>Funktionen des Plugins:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Widget zum Anzeigen der Sprüche (Anzeige erfolgt auf aktuellem Monat und Jahr)\u003C\u002Fli>\n\u003Cli>Export \u002F Import Funktion der Sprüche über die WordPress Export \u002F Import Schnittstelle\u003C\u002Fli>\n\u003Cli>Übersichtsseite\u003C\u002Fli>\n\u003Cli>Erstellen und Bearbeiten Seite\u003C\u002Fli>\n\u003Cli>Löschfunktion\u003C\u002Fli>\n\u003C\u002Ful>\n","Dieses Plugin speichert mit Hilfe der Custom Post Types Sprüche in der Datenbank die mit einem Datum, auf Basis von mm.yyyy, versehen sind.",2342,"2022-11-21T20:10:00.000Z","6.1.10","4.0.0",[134,135,136],"jahresspruch","monatsspruch","slogan","http:\u002F\u002Fgnetos.de","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fslogan-widget.2.1.1.zip",{"attackSurface":140,"codeSignals":184,"taintFlows":191,"riskAssessment":280,"analyzedAt":290},{"hooks":141,"ajaxHandlers":157,"restRoutes":158,"shortcodes":159,"cronEvents":182,"entryPointCount":183,"unprotectedCount":28},[142,148,152],{"type":143,"name":144,"callback":145,"file":146,"line":147},"action","admin_menu","monage_add_pages","monage.php",116,{"type":143,"name":149,"callback":150,"file":146,"line":151},"admin_notices","monage_adnot_error",171,{"type":153,"name":154,"callback":155,"file":146,"line":156},"filter","the_content","monage_addafterpost",257,[],[],[160,164,168,171,174,178],{"tag":161,"callback":162,"file":146,"line":163},"monage_twid","monage_post_twitterid",109,{"tag":165,"callback":166,"file":146,"line":167},"monage_imgloc","monage_img_location",110,{"tag":169,"callback":169,"file":146,"line":170},"monage_picwi",111,{"tag":172,"callback":172,"file":146,"line":173},"monage_default_mona",112,{"tag":175,"callback":176,"file":146,"line":177},"monage_bf","monage_beforesentence",113,{"tag":179,"callback":180,"file":146,"line":181},"monage_af","monage_aftersentence",114,[],6,{"dangerousFunctions":185,"sqlUsage":186,"outputEscaping":188,"fileOperations":28,"externalRequests":28,"nonceChecks":28,"capabilityChecks":28,"bundledLibraries":190},[],{"prepared":28,"raw":28,"locations":187},[],{"escaped":33,"rawEcho":28,"locations":189},[],[],[192,254],{"entryPoint":193,"graph":194,"unsanitizedCount":252,"severity":253},"monage_options_page (monage.php:135)",{"nodes":195,"edges":243},[196,201,206,210,212,216,218,222,224,228,230,234,236,240],{"id":197,"type":198,"label":199,"file":146,"line":200},"n0","source","$_POST['monage_twitter_account']",139,{"id":202,"type":203,"label":204,"file":146,"line":200,"wp_function":205},"n1","sink","update_option() [Settings Manipulation]","update_option",{"id":207,"type":198,"label":208,"file":146,"line":209},"n2","$_POST['monage_picture_width']",140,{"id":211,"type":203,"label":204,"file":146,"line":209,"wp_function":205},"n3",{"id":213,"type":198,"label":214,"file":146,"line":215},"n4","$_POST['monage_default_mona']",141,{"id":217,"type":203,"label":204,"file":146,"line":215,"wp_function":205},"n5",{"id":219,"type":198,"label":220,"file":146,"line":221},"n6","$_POST['monage_beforesentence']",142,{"id":223,"type":203,"label":204,"file":146,"line":221,"wp_function":205},"n7",{"id":225,"type":198,"label":226,"file":146,"line":227},"n8","$_POST['monage_aftersentence']",143,{"id":229,"type":203,"label":204,"file":146,"line":227,"wp_function":205},"n9",{"id":231,"type":198,"label":232,"file":146,"line":233},"n10","$_POST['monage_payway']",144,{"id":235,"type":203,"label":204,"file":146,"line":233,"wp_function":205},"n11",{"id":237,"type":198,"label":238,"file":146,"line":239},"n12","$_POST",146,{"id":241,"type":203,"label":204,"file":146,"line":242,"wp_function":205},"n13",147,[244,246,247,248,249,250,251],{"from":197,"to":202,"sanitized":245},false,{"from":207,"to":211,"sanitized":245},{"from":213,"to":217,"sanitized":245},{"from":219,"to":223,"sanitized":245},{"from":225,"to":229,"sanitized":245},{"from":231,"to":235,"sanitized":245},{"from":237,"to":241,"sanitized":245},7,"low",{"entryPoint":255,"graph":256,"unsanitizedCount":252,"severity":253},"\u003Cmonage> (monage.php:0)",{"nodes":257,"edges":272},[258,259,260,261,262,263,264,265,266,267,268,269,270,271],{"id":197,"type":198,"label":199,"file":146,"line":200},{"id":202,"type":203,"label":204,"file":146,"line":200,"wp_function":205},{"id":207,"type":198,"label":208,"file":146,"line":209},{"id":211,"type":203,"label":204,"file":146,"line":209,"wp_function":205},{"id":213,"type":198,"label":214,"file":146,"line":215},{"id":217,"type":203,"label":204,"file":146,"line":215,"wp_function":205},{"id":219,"type":198,"label":220,"file":146,"line":221},{"id":223,"type":203,"label":204,"file":146,"line":221,"wp_function":205},{"id":225,"type":198,"label":226,"file":146,"line":227},{"id":229,"type":203,"label":204,"file":146,"line":227,"wp_function":205},{"id":231,"type":198,"label":232,"file":146,"line":233},{"id":235,"type":203,"label":204,"file":146,"line":233,"wp_function":205},{"id":237,"type":198,"label":238,"file":146,"line":239},{"id":241,"type":203,"label":204,"file":146,"line":242,"wp_function":205},[273,274,275,276,277,278,279],{"from":197,"to":202,"sanitized":245},{"from":207,"to":211,"sanitized":245},{"from":213,"to":217,"sanitized":245},{"from":219,"to":223,"sanitized":245},{"from":225,"to":229,"sanitized":245},{"from":231,"to":235,"sanitized":245},{"from":237,"to":241,"sanitized":245},{"summary":281,"deductions":282},"The 'monage' plugin v1.46 exhibits a generally strong security posture based on the static analysis provided. There are no identified dangerous functions, all SQL queries utilize prepared statements, and all identified outputs are properly escaped. The absence of file operations and external HTTP requests further reduces the potential attack surface.  However, the presence of unsanitized paths in two taint flows, despite the lack of critical or high severity, warrants attention as it indicates potential pathways for malicious input to reach sensitive operations, even if not currently exploited or leading to severe outcomes.\n\nThe plugin has no recorded vulnerability history, including CVEs, which is a significant positive indicator. This lack of past issues, combined with good coding practices observed in the static analysis, suggests a commitment to security by the developers. Nonetheless, the identified taint flows represent a weakness that could be exploited if a vulnerability is introduced in the future or if these paths are leveraged in conjunction with other system weaknesses. The absence of nonce and capability checks on the identified entry points (shortcodes) is also a concern, as it means these shortcodes could be triggered by unauthenticated users, potentially leading to unexpected behavior or information leakage if the shortcode's internal logic is not robustly secured.",[283,285,288],{"reason":284,"points":11},"Taint flows with unsanitized paths",{"reason":286,"points":287},"No nonce checks on shortcodes",5,{"reason":289,"points":287},"No capability checks on shortcodes","2026-03-17T01:05:44.662Z",{"wat":292,"direct":298},{"assetPaths":293,"generatorPatterns":295,"scriptPaths":296,"versionParams":297},[294],"\u002Fwp-content\u002Fplugins\u002Fmonage\u002Fmonage.png",[],[],[],{"cssClasses":299,"htmlComments":301,"htmlAttributes":302,"restEndpoints":303,"jsGlobals":304,"shortcodeOutput":305},[300],"monage_1",[],[],[],[],[306,307,308,309,310,311],"[monage_twid]","[monage_imgloc]","[monage_picwi]","[monage_default_mona]","[monage_bf]","[monage_af]"]