[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fj9FfakRuyGBZYbzGHSl6n-lY73Hsata1WgtMxcphirI":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":22,"download_link":23,"security_score":24,"vuln_count":13,"unpatched_count":13,"last_vuln_date":25,"fetched_at":26,"vulnerabilities":27,"developer":28,"crawl_stats":25,"alternatives":33,"analysis":121,"fingerprints":179},"my-quicktags","My Quicktags","1.0.2","tnorberg","https:\u002F\u002Fprofiles.wordpress.org\u002Ftnorberg\u002F","\u003Cp>This a basic quicktag addition for “two” quicktags that I needed for my plugin and then some. But anyway its a html encoder and an easier way to generate shortcode for my MP3 Player Plugin for WordPress.\u003C\u002Fp>\n","This plugin generates two quicktags on the post\u002Fpage editors. One is the easy html encoder and the other is the easy mp3 code embed tag.",60,10108,0,"2009-10-03T04:18:00.000Z","2.8.4","2.6","",[19,20,21],"html-encoder","mp3-player-plugin-for-wordpress-quicktag","quicktags","http:\u002F\u002Fwww.thomasnorberg.com\u002Fsitemap\u002Fmy-quicktags\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fmy-quicktags.zip",85,null,"2026-03-15T15:16:48.613Z",[],{"slug":7,"display_name":7,"profile_url":8,"plugin_count":29,"total_installs":11,"avg_security_score":24,"avg_patch_time_days":30,"trust_score":31,"computed_at":32},1,30,84,"2026-04-04T15:11:46.595Z",[34,54,72,91,106],{"slug":35,"name":36,"version":37,"author":38,"author_profile":39,"description":40,"short_description":41,"active_installs":42,"downloaded":43,"rating":44,"num_ratings":45,"last_updated":46,"tested_up_to":47,"requires_at_least":17,"requires_php":17,"tags":48,"homepage":17,"download_link":52,"security_score":53,"vuln_count":13,"unpatched_count":13,"last_vuln_date":25,"fetched_at":26},"wp-quicktags","Quicktags for WP","1.4.5","David Klhufek","https:\u002F\u002Fprofiles.wordpress.org\u002Fbrtak\u002F","\u003Cp>This simple plugin adds useful buttons to the native WordPress HTML editor (Classic Editor).\u003C\u002Fp>\n\u003Cp>Currently adds:\u003Cbr \u002F>\nh1, h2, h3, h4, h5, span, hr, nbsp, mox\u003C\u002Fp>\n\u003Cp>The “mox” button adds a nice responsive CSS class which you can use to highlight pictures or other elements in your posts.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Note:\u003C\u002Fstrong> This plugin works only with the Classic Editor. It does not support the new Gutenberg (Block Editor).\u003C\u002Fp>\n\u003Ch3>Compatibility\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Requires the Classic Editor to be active.  \u003C\u002Fli>\n\u003Cli>Designed specifically for the \u003Cstrong>HTML mode\u003C\u002Fstrong> of the editor.\u003C\u002Fli>\n\u003C\u002Ful>\n","This simple plugin adds useful buttons to the native WordPress HTML editor.",200,7838,80,4,"2025-12-08T07:25:00.000Z","6.9.4",[49,50,51,21],"classic-editor","edit","html-editor","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-quicktags.1.4.5.zip",100,{"slug":55,"name":56,"version":57,"author":58,"author_profile":59,"description":60,"short_description":61,"active_installs":53,"downloaded":62,"rating":53,"num_ratings":63,"last_updated":64,"tested_up_to":65,"requires_at_least":66,"requires_php":17,"tags":67,"homepage":70,"download_link":71,"security_score":24,"vuln_count":13,"unpatched_count":13,"last_vuln_date":25,"fetched_at":26},"marctv-quicktags","Simple Comment Quicktags","3.0.5","Marc Tönsing","https:\u002F\u002Fprofiles.wordpress.org\u002Fmarcdk\u002F","\u003Cp>This plugin displays the most basic of quicktag buttons on your comment forms, using the Quicktag API built into WordPress (as of 3.3). No jQuery needed.\u003C\u002Fp>\n\u003Cp>Contribute on \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fmtoensing\u002Fmarctv-quicktags\" rel=\"nofollow ugc\">GitHub\u003C\u002Fa>.\u003C\u002Fp>\n","Make commenting easier with bold, italic, add link and quote buttons on top of the form.",8939,2,"2023-12-22T21:14:00.000Z","6.4.8","4.6",[68,21,69],"comments","wysiwyg","https:\u002F\u002Fmarc.tv\u002Fmarctv-wordpress-plugins\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fmarctv-quicktags.3.0.5.zip",{"slug":73,"name":74,"version":75,"author":76,"author_profile":77,"description":78,"short_description":79,"active_installs":53,"downloaded":80,"rating":13,"num_ratings":13,"last_updated":81,"tested_up_to":82,"requires_at_least":83,"requires_php":17,"tags":84,"homepage":89,"download_link":90,"security_score":24,"vuln_count":13,"unpatched_count":13,"last_vuln_date":25,"fetched_at":26},"wp-syntax-integration","WP-Syntax Editor Integration Plugin","0.2","diekleinehexe","https:\u002F\u002Fprofiles.wordpress.org\u002Fdiekleinehexe\u002F","\u003Cp>This plugin will add a button to both the visual and HTML WordPress Editor panel allowing you to easily insert code for WP-Syntax. WP-Syntax is a syntax highlighting plugin for WordPress which can be downloaded from https:\u002F\u002Fwordpress.org\u002Fextend\u002Fplugins\u002Fwp-syntax\u002F\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Usage\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Col>\n\u003Cli>Select the text you want to have highlighted by WP-Syntax\u003C\u002Fli>\n\u003Cli>Click the button pre (WP-Syntax) in HTML editing mode or the icon with colored lines in visual editing mode\u003C\u002Fli>\n\u003Cli>Enter the language and starting line separated by a comma. The later is optional.\u003C\u002Fli>\n\u003C\u002Fol>\n","Adds new buttons to the visual and html editor window which allow to use WP-Syntax.",12332,"2013-11-14T19:52:00.000Z","3.7.41","3.3",[85,21,86,87,88],"highlighter","syntax","tinymce","wp-syntax","http:\u002F\u002Fwww.effinger.org\u002Fblog\u002F2009\u002F12\u002F30\u002Fwp-syntax-editor-integration-plugin-wp-syntax-im-wordpress-editor-nutzen\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-syntax-integration.zip",{"slug":92,"name":93,"version":94,"author":95,"author_profile":96,"description":97,"short_description":98,"active_installs":44,"downloaded":99,"rating":13,"num_ratings":13,"last_updated":100,"tested_up_to":101,"requires_at_least":102,"requires_php":17,"tags":103,"homepage":104,"download_link":105,"security_score":24,"vuln_count":13,"unpatched_count":13,"last_vuln_date":25,"fetched_at":26},"comment-form-quicktags","Comment Form Quicktags","1.3.2","regen","https:\u002F\u002Fprofiles.wordpress.org\u002Fregen\u002F","\u003Cp>This plugin inserts quicktags of the admin page to the upper part of textarea of the comment form.\u003C\u002Fp>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>You can edit tags in the admin page.\u003C\u002Fli>\n\u003Cli>You can limit quicktags by user roles.\u003C\u002Fli>\n\u003C\u002Ful>\n","This plugin inserts a quicktag toolbar on the comment form.",27245,"2011-07-12T07:57:00.000Z","3.2.1","2.9",[68,21],"http:\u002F\u002Frp.exadge.com\u002F2009\u002F01\u002F08\u002Fcomment-form-quicktags\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcomment-form-quicktags.1.3.2.zip",{"slug":107,"name":108,"version":109,"author":110,"author_profile":111,"description":112,"short_description":113,"active_installs":11,"downloaded":114,"rating":53,"num_ratings":45,"last_updated":115,"tested_up_to":116,"requires_at_least":117,"requires_php":17,"tags":118,"homepage":119,"download_link":120,"security_score":53,"vuln_count":13,"unpatched_count":13,"last_vuln_date":25,"fetched_at":26},"wp-russian-quicktags","WP Russian Quicktags","1.04","Flector","https:\u002F\u002Fprofiles.wordpress.org\u002Fflector\u002F","\u003Cp>Плагин выводит панель с кнопками форматирования текста в комментариях (Жирный, Курсив, Код, Цитата, Ссылка и Закрыть Теги). В современных шаблонах плагин умеет встраивать панель автоматически сразу после своей активации. Для более старых шаблонов предусмотрен вызов специальной функции, которая и будет выводить панель.\u003C\u002Fp>\n\u003Cp>Помимо этого плагин позволяет вывести в комментариях ссылку “\u003Cstrong>Цитировать\u003C\u002Fstrong>“, при клике на которую выделенный пользователем текст будет автоматически взят в теги цитаты. Данная возможность плагина очень помогает в случае, если ваш шаблон не позволяет вам выводить комментарии в древовидном стиле.\u003C\u002Fp>\n\u003Cp>PS Этот плагин был написан на основе плагина \u003Ca href=\"http:\u002F\u002Flmbbox.com\u002Fprojects\u002Flmbbox-comment-quicktags\u002Fwp-comment-quicktags-plus\u002F\" rel=\"nofollow ugc\">WP Comment Quicktags Plus\u003C\u002Fa> от \u003Ca href=\"http:\u002F\u002Flmbbox.com\u002F\" rel=\"nofollow ugc\">Thomas Montague \u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>Если вам понравился мой плагин, то \u003Cstrong>пожалуйста\u003C\u002Fstrong> поставьте ему 5 звезд.\u003C\u002Fp>\n","Плагин выводит панель с русскими кнопками форматирования текста в комментариях.",4469,"2025-05-19T09:41:00.000Z","6.8.5","2.3",[68,21],"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fwp-russian-quicktags\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-russian-quicktags.zip",{"attackSurface":122,"codeSignals":151,"taintFlows":166,"riskAssessment":167,"analyzedAt":178},{"hooks":123,"ajaxHandlers":143,"restRoutes":144,"shortcodes":145,"cronEvents":150,"entryPointCount":29,"unprotectedCount":13},[124,130,133,138],{"type":125,"name":126,"callback":127,"file":128,"line":129},"action","admin_print_scripts","my_quicktags","myquicktags.php",69,{"type":125,"name":131,"callback":132,"file":128,"line":44},"wp_head","html_encoder_css",{"type":125,"name":134,"callback":135,"priority":136,"file":128,"line":137},"after_plugin_row","my_quicktags_check_version",10,121,{"type":139,"name":140,"callback":141,"priority":136,"file":128,"line":142},"filter","plugin_row_meta","my_quicktags_add_meta_links",137,[],[],[146],{"tag":147,"callback":148,"file":128,"line":149},"html_encoded","html_encoder_shortcode",95,[],{"dangerousFunctions":152,"sqlUsage":153,"outputEscaping":155,"fileOperations":13,"externalRequests":13,"nonceChecks":13,"capabilityChecks":13,"bundledLibraries":165},[],{"prepared":13,"raw":13,"locations":154},[],{"escaped":13,"rawEcho":156,"locations":157},3,[158,161,163],{"file":128,"line":159,"context":160},77,"raw output",{"file":128,"line":162,"context":160},115,{"file":128,"line":164,"context":160},116,[],[],{"summary":168,"deductions":169},"The 'my-quicktags' plugin v1.0.2 presents a mixed security profile. On the positive side, it exhibits strong adherence to secure coding practices regarding database interactions, utilizing prepared statements exclusively and demonstrating no external HTTP requests or file operations.  Furthermore, the plugin has no known historical vulnerabilities, which suggests a generally stable and well-maintained codebase.\n\nHowever, significant concerns arise from the static analysis results, particularly the complete absence of output escaping. This means any dynamic data processed by the plugin and displayed to users is not being properly sanitized, opening the door to cross-site scripting (XSS) vulnerabilities.  The lack of nonce and capability checks, while not directly contributing to the limited attack surface identified (0 unprotected entry points), indicates a lack of robust authorization and integrity verification mechanisms that could be exploited if new entry points were introduced or discovered.\n\nIn conclusion, while the plugin benefits from a clean vulnerability history and secure database practices, the critical flaw of unescaped output is a major security weakness that requires immediate attention. The absence of security checks on its single entry point, the shortcode, is also a point of concern.",[170,173,176],{"reason":171,"points":172},"Unescaped output",8,{"reason":174,"points":175},"Missing nonce checks",5,{"reason":177,"points":175},"Missing capability checks","2026-03-16T21:45:45.808Z",{"wat":180,"direct":185},{"assetPaths":181,"generatorPatterns":182,"scriptPaths":183,"versionParams":184},[],[],[],[],{"cssClasses":186,"htmlComments":187,"htmlAttributes":188,"restEndpoints":189,"jsGlobals":190,"shortcodeOutput":191},[],[],[],[],[],[]]