[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fOVjXjEGSw_vTnH5wpxh3U_xoPWRrFKMrLVRvGNRnWzk":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":23,"download_link":24,"security_score":25,"vuln_count":26,"unpatched_count":26,"last_vuln_date":27,"fetched_at":28,"vulnerabilities":29,"developer":30,"crawl_stats":27,"alternatives":36,"analysis":138,"fingerprints":181},"mooontes-comments-media-upload","mooontes Comments Media Upload","0.1","montesjmm","https:\u002F\u002Fprofiles.wordpress.org\u002Fmooontes\u002F","\u003Cp>This plugin allows to attach pictures and multimedia files to comments (the same types allowed in wordpress’ multimedia library).\u003C\u002Fp>\n\u003Cp>This plugin has been tested with Twenty-Eleven and Twenty-Twelve themes.\u003C\u002Fp>\n","This plugin allows to attach pictures and multimedia files to comments (the same types allowed in wordpress' multimedia library).",20,2570,60,2,"2013-01-27T23:17:00.000Z","3.5.2","3.0.1","",[20,21,22],"attachments","comments","pictures","http:\u002F\u002Fmooontes.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fmooontes-comments-media-upload.zip",85,0,null,"2026-03-15T15:16:48.613Z",[],{"slug":31,"display_name":7,"profile_url":8,"plugin_count":32,"total_installs":11,"avg_security_score":25,"avg_patch_time_days":33,"trust_score":34,"computed_at":35},"mooontes",1,30,84,"2026-04-04T07:07:58.348Z",[37,57,78,95,114],{"slug":38,"name":39,"version":40,"author":41,"author_profile":42,"description":43,"short_description":44,"active_installs":45,"downloaded":46,"rating":34,"num_ratings":47,"last_updated":48,"tested_up_to":49,"requires_at_least":50,"requires_php":51,"tags":52,"homepage":55,"download_link":56,"security_score":25,"vuln_count":26,"unpatched_count":26,"last_vuln_date":27,"fetched_at":28},"comment-image","Comment Image","1.2.3","Stefano Lissa","https:\u002F\u002Fprofiles.wordpress.org\u002Fsatollo\u002F","\u003Cp>Comment Image enables blog readers to attach an image while leaving their comments.\u003Cbr \u002F>\nSupported formats are JPG, PNG, GIF.\u003C\u002Fp>\n\u003Cp>Uploaded images are inserted below the comment text as thumbnail (of configurable max dimensions) and linked to the original pictures.\u003C\u002Fp>\n\u003Cp>File selection field can be injected automatically or added manually.\u003C\u002Fp>\n\u003Cp>Original pictures and their thumbnails are stored in a separate folder for easy management.\u003C\u002Fp>\n\u003Cp>See the official \u003Ca href=\"http:\u002F\u002Fwww.satollo.net\u002Fplugins\u002Fcomment-image\" rel=\"nofollow ugc\">Comment Image\u003C\u002Fa> page for more.\u003C\u002Fp>\n\u003Cp>Other plugins by Stefano Lissa:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.satollo.net\u002Fplugins\u002Fhyper-cache\" rel=\"nofollow ugc\">Hyper Cache\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.thenewsletterplugin.com\" rel=\"nofollow ugc\">Newsletter\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.satollo.net\u002Fplugins\u002Fheader-footer\" rel=\"nofollow ugc\">Header and Footer\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.satollo.net\u002Fplugins\u002Fthumbnails\" rel=\"nofollow ugc\">Thumbnails\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"http:\u002F\u002Fwww.satollo.net\u002Fplugins\u002Finclude-me\" rel=\"nofollow ugc\">Include Me\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n","Enable readers to attach an image to their comments.",1000,40981,6,"2021-08-28T08:40:00.000Z","5.8.13","4.6","5.6",[20,21,53,54,22],"gif","images","http:\u002F\u002Fwww.satollo.net\u002Fplugins\u002Fcomment-image","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcomment-image.1.2.3.zip",{"slug":58,"name":59,"version":60,"author":61,"author_profile":62,"description":63,"short_description":64,"active_installs":65,"downloaded":66,"rating":67,"num_ratings":14,"last_updated":68,"tested_up_to":69,"requires_at_least":70,"requires_php":71,"tags":72,"homepage":76,"download_link":77,"security_score":25,"vuln_count":26,"unpatched_count":26,"last_vuln_date":27,"fetched_at":28},"disable-comments-on-attachments","Disable Comments on Media Attachments","0.2.2","M Asif Rahman","https:\u002F\u002Fprofiles.wordpress.org\u002Fasif2bd\u002F","\u003Cp>This is a simple plugin, does a very simple task. But does it nicely. Activate this plugin, it will disable comments on all Attachment Pages.\u003C\u002Fp>\n\u003Cp>Sometimes you see massive spam in your Attachment Pages, it’s tiresome to handle those manually, and comments on Media Attachment does not make sense for most of the website, so this plugin let’t you turn of comments on Attachments entirely.\u003C\u002Fp>\n\u003Cp>Just activate the plugin, the comment form on the Media Attachment Pages will be disabled.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Basic Features:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>[New]\u003C\u002Fstrong> Disable Comments on Attachments Pages\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>Check My Other Plugins:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fessential-addons-for-elementor-lite\u002F\" rel=\"ugc\">Essential Addons for Elementor\u003C\u002Fa>\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fnotificationx\u002F\" rel=\"ugc\">NotificationX\u003C\u002Fa>\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Ftwitter-cards-meta\u002F\" rel=\"ugc\">Twitter Cards Meta\u003C\u002Fa>\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fwp-analytify\u002F\" rel=\"ugc\">Analytify – Ultimate Google Analytics Dashboard\u003C\u002Fa>\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fwp-scheduled-posts\u002F\" rel=\"ugc\">WP Scheduled Posts\u003C\u002Fa>\u003C\u002Fstrong>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Donation\u003C\u002Fh3>\n\u003Cp>You may donate to WordPress Foundation.\u003C\u002Fp>\n","Disable Comments on Media Attachments Pages, Sitewide, Just Activate The Plugin.",400,8486,100,"2022-06-02T04:01:00.000Z","6.0.11","2.5.0","5.4",[20,73,21,74,75],"attachments-comment","disable-attachment-comments","disable-comments","https:\u002F\u002Fasif.im\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fdisable-comments-on-attachments.0.2.2.zip",{"slug":79,"name":80,"version":81,"author":82,"author_profile":83,"description":84,"short_description":85,"active_installs":33,"downloaded":86,"rating":26,"num_ratings":26,"last_updated":87,"tested_up_to":88,"requires_at_least":89,"requires_php":18,"tags":90,"homepage":93,"download_link":94,"security_score":25,"vuln_count":26,"unpatched_count":26,"last_vuln_date":27,"fetched_at":28},"attachment-page-comment-control","Attachment Page Comment Control","1.0.2","laceous","https:\u002F\u002Fprofiles.wordpress.org\u002Flaceous\u002F","\u003Cp>Just like regular posts and pages, attachments have their own \u003Ca href=\"https:\u002F\u002Fcodex.wordpress.org\u002FUsing_Image_and_File_Attachments#Inserting_Images\" rel=\"nofollow ugc\">pages\u003C\u002Fa> where guests can leave comments (and can also accept trackbacks\u002Fpingbacks).  Unlike regular posts and pages, attachment pages don’t offer any UI controls that let you choose (on an individual basis) which attachment pages should allow comments and pings.\u003C\u002Fp>\n\u003Cp>This plugin corrects this issue by giving you the ability to turn comments and pings on or off for individual attachment pages within your media library.\u003C\u002Fp>\n\u003Cp>The global setting to allow comments or pings by default already applies to attachment pages.\u003C\u002Fp>\n","Gives you the ability to turn comments and pings on or off for individual attachment pages within your media library.",3509,"2010-06-03T19:42:00.000Z","3.0.5","2.5",[20,21,91,92],"media-library","pings","http:\u002F\u002Fmoggy.laceous.com\u002F2010\u002F04\u002F04\u002Fattachment-page-comment-control\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fattachment-page-comment-control.zip",{"slug":96,"name":97,"version":98,"author":99,"author_profile":100,"description":101,"short_description":102,"active_installs":103,"downloaded":104,"rating":26,"num_ratings":26,"last_updated":105,"tested_up_to":106,"requires_at_least":107,"requires_php":18,"tags":108,"homepage":112,"download_link":113,"security_score":25,"vuln_count":26,"unpatched_count":26,"last_vuln_date":27,"fetched_at":28},"favicon-images-for-comments","Favicon Images for Comments","1.0","Amit Agarwal","https:\u002F\u002Fprofiles.wordpress.org\u002Flabnol\u002F","\u003Cp>Favicon Images for WordPress Comments lets you add favicon images to your blog comments using the URL of your visitor’s website.\u003C\u002Fp>\n\u003Cp>See a live demo at \u003Ca href=\"http:\u002F\u002Fwww.labnol.org\u002F\" rel=\"nofollow ugc\">Digital Inspiration\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>The favicon image is generated dynamically using Google Favicon generator.\u003C\u002Fp>\n","Favicon Images for WordPress Comments lets you add favicons next to your blog comments using the site URL of the commentator.",10,2910,"2008-09-04T04:41:00.000Z","2.6.1","2.0",[21,109,110,22,111],"favicon","gravatar","userpics","http:\u002F\u002Fwww.labnol.org\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Ffavicon-images-for-comments.zip",{"slug":115,"name":116,"version":51,"author":117,"author_profile":118,"description":119,"short_description":120,"active_installs":121,"downloaded":122,"rating":123,"num_ratings":124,"last_updated":125,"tested_up_to":126,"requires_at_least":127,"requires_php":128,"tags":129,"homepage":134,"download_link":135,"security_score":136,"vuln_count":14,"unpatched_count":26,"last_vuln_date":137,"fetched_at":28},"akismet","Akismet Anti-spam: Spam Protection","Automattic","https:\u002F\u002Fprofiles.wordpress.org\u002Fautomattic\u002F","\u003Cp>The best anti-spam protection to block spam comments and spam in a contact form. The most trusted antispam solution for WordPress and WooCommerce.\u003C\u002Fp>\n\u003Cp>Akismet checks your comments and contact form submissions against our global database of spam to prevent your site from publishing malicious content. You can review the comment spam it catches on your blog’s “Comments” admin screen.\u003C\u002Fp>\n\u003Cp>Major features in Akismet include:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Automatically checks all comments and filters out the ones that look like spam.\u003C\u002Fli>\n\u003Cli>Each comment has a status history, so you can easily see which comments were caught or cleared by Akismet and which were spammed or unspammed by a moderator.\u003C\u002Fli>\n\u003Cli>URLs are shown in the comment body to reveal hidden or misleading links.\u003C\u002Fli>\n\u003Cli>Moderators can see the number of approved comments for each user.\u003C\u002Fli>\n\u003Cli>A discard feature that outright blocks the worst spam, saving you disk space and speeding up your site.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>PS: You’ll be prompted to get an Akismet.com API key to use it, once activated. Keys are free for personal blogs; paid subscriptions are available for businesses and commercial sites.\u003C\u002Fp>\n","The best anti-spam protection to block spam comments and spam in a contact form. The most trusted antispam solution for WordPress and WooCommerce.",6000000,386405930,94,1173,"2025-11-12T16:31:00.000Z","6.9.4","5.8","7.2",[130,131,21,132,133],"anti-spam","antispam","contact-form","spam","https:\u002F\u002Fakismet.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fakismet.5.6.zip",99,"2015-10-13 00:00:00",{"attackSurface":139,"codeSignals":164,"taintFlows":171,"riskAssessment":172,"analyzedAt":180},{"hooks":140,"ajaxHandlers":160,"restRoutes":161,"shortcodes":162,"cronEvents":163,"entryPointCount":26,"unprotectedCount":26},[141,147,152,156],{"type":142,"name":143,"callback":144,"file":145,"line":146},"action","wp_enqueue_scripts","enqueue_scripts","mooontes-comments-media-upload.php",22,{"type":148,"name":149,"callback":150,"file":145,"line":151},"filter","comment_form_defaults","add_upload_input_to_comment_form",23,{"type":142,"name":153,"callback":154,"file":145,"line":155},"comment_post","save_uploaded_picture",24,{"type":148,"name":157,"callback":158,"file":145,"line":159},"comment_text","set_img_tag",25,[],[],[],[],{"dangerousFunctions":165,"sqlUsage":166,"outputEscaping":168,"fileOperations":26,"externalRequests":26,"nonceChecks":26,"capabilityChecks":26,"bundledLibraries":170},[],{"prepared":26,"raw":26,"locations":167},[],{"escaped":26,"rawEcho":26,"locations":169},[],[],[],{"summary":173,"deductions":174},"The static analysis of mooontes-comments-media-upload v0.1 reveals a remarkably secure codebase with no identified vulnerabilities or risky practices. The absence of dangerous functions, the exclusive use of prepared statements for SQL queries, and proper output escaping all contribute to a strong security posture. Furthermore, the plugin demonstrates a commitment to security by having zero recorded CVEs and no history of past vulnerabilities.\n\nThis lack of any identified attack surface points, combined with the absence of sensitive code signals like file operations or external HTTP requests, suggests that this plugin is very well-contained and unlikely to introduce common web vulnerabilities. The complete lack of taint flows, even with zero flows analyzed, further reinforces the impression of clean code. However, it is worth noting that the analysis also shows zero capability checks and zero nonce checks. While not immediately concerning given the absence of an attack surface, this could become a risk if the plugin were to be extended or modified in the future without proper security considerations.\n\nIn conclusion, mooontes-comments-media-upload v0.1 presents an excellent security profile based on the provided data. Its well-written code, free from known vulnerabilities and risky patterns, makes it a very safe choice. The only minor area for attention is the absence of capability and nonce checks, which, while not a current issue, is a practice to be mindful of for future development or integration.",[175,178],{"reason":176,"points":177},"No capability checks found",5,{"reason":179,"points":177},"No nonce checks found","2026-03-16T22:45:09.532Z",{"wat":182,"direct":187},{"assetPaths":183,"generatorPatterns":184,"scriptPaths":185,"versionParams":186},[],[],[],[],{"cssClasses":188,"htmlComments":189,"htmlAttributes":190,"restEndpoints":191,"jsGlobals":192,"shortcodeOutput":193},[],[],[],[],[],[]]