[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fQZEGbrzfGosPfRrYPEF1ObvH_gNbGojZC0l8HAMe3aE":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":23,"download_link":24,"security_score":25,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27,"vulnerabilities":28,"developer":29,"crawl_stats":26,"alternatives":33,"analysis":130,"fingerprints":325},"newer-tag-cloud","Newer Tag Cloud","1.1.2","mallardduck","https:\u002F\u002Fprofiles.wordpress.org\u002Fmallardduck\u002F","\u003Cp>Newer Tag Cloud is a WordPress plugin that generates a tag clouds. This plugin was inspired by the original New Tag Cloud.\u003C\u002Fp>\n\u003Cp>Newer Tag Cloud uses the WordPress own tagging feature, so that you don’t need any tagging plugin. You can use New Tag Cloud directly as a shortcode in any post\u002Fpage, as a widget, or in the theme as PHP code. Use it however you’d like, it’s flexible!\u003C\u002Fp>\n\u003Cp>The original New Tag Cloud had been without updates for 7 years this caused issues with modern WordPress versions. Due to the issues, for a short time, a privately updated version was created at Liquid Web. Now this small fix has been  turned into a complete code refactor. The results are now being released to the  community!\u003C\u002Fp>\n\u003Cp>Configurebale options\u003Cbr \u002F>\n* widget box title\u003Cbr \u002F>\n* how many tags should be shown\u003Cbr \u002F>\n* biggest font size\u003Cbr \u002F>\n* smallest font size\u003Cbr \u002F>\n* font size stepping\u003Cbr \u002F>\n* font size type (px, em, rem, etc)\u003Cbr \u002F>\n* filtering\u003Cbr \u002F>\n* caching\u003C\u002Fp>\n","A small plugin providing a neat tag cloud feature. Inspired by New Tag Cloud.",0,1358,20,1,"2017-07-31T22:53:00.000Z","4.7.32","3.0.1","",[20,21,22],"cloud","tag","widget","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fnewer-tag-cloud\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fnewer-tag-cloud.1.1.2.zip",85,null,"2026-03-15T15:16:48.613Z",[],{"slug":7,"display_name":7,"profile_url":8,"plugin_count":14,"total_installs":11,"avg_security_score":25,"avg_patch_time_days":30,"trust_score":31,"computed_at":32},30,84,"2026-04-04T14:15:25.219Z",[34,55,74,96,114],{"slug":35,"name":36,"version":37,"author":38,"author_profile":39,"description":40,"short_description":41,"active_installs":42,"downloaded":43,"rating":44,"num_ratings":45,"last_updated":46,"tested_up_to":47,"requires_at_least":48,"requires_php":18,"tags":49,"homepage":53,"download_link":54,"security_score":25,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27},"ultimate-tag-cloud-widget","Ultimate Tag Cloud Widget","2.7.2","Rickard Andersson","https:\u002F\u002Fprofiles.wordpress.org\u002Fexz\u002F","\u003Cp>This is the highly configurable tag cloud widget, the main features for this plugin is:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>All, single author or multiple authors per cloud\u003C\u002Fli>\n\u003Cli>Select which taxonomies or post types to show tags for\u003C\u002Fli>\n\u003Cli>Rules for which posts to include when fetching tags\u003C\u002Fli>\n\u003Cli>Inclusion\u002Fexclusion functions\u003C\u002Fli>\n\u003Cli>A bunch of ordering, coloring and styling options\u003C\u002Fli>\n\u003Cli>Multiple strategies for selecting terms with the option to \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Frickard2\u002Futcw\u002Fblob\u002Fmaster\u002FSTRATEGY.md\" rel=\"nofollow ugc\">create your own\u003C\u002Fa>. Built in strategies for most popular, random, recently added, from current list of posts\u003C\u002Fli>\n\u003Cli>Short code and API for developers\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>The development of this plugin has stopped. I will make sure that the basic features still work with upcoming WordPress versions, but no new features or changes will be made.\u003C\u002Fp>\n\u003Cp>The \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Frickard2\u002Futcw\" rel=\"nofollow ugc\">code is available on github\u003C\u002Fa> and if you’re in need of new features, you’re welcome to submit a pull request for it.\u003C\u002Fp>\n\u003Cp>Quick links:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Short code information: https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fultimate-tag-cloud-widget\u002Fother_notes\u002F#Theme-integration-\u002F-Shortcode\u003C\u002Fli>\n\u003Cli>Short code configuration options: https:\u002F\u002Fgithub.com\u002Frickard2\u002Futcw\u002Fblob\u002Fmaster\u002FCONFIG.md\u003C\u002Fli>\n\u003Cli>Playground which shows some configuration options: https:\u002F\u002F0x539.se\u002Fwordpress\u002Ftag-cloud-playground\u002F\u003C\u002Fli>\n\u003Cli>Custom selection strategy documentation: https:\u002F\u002Fgithub.com\u002Frickard2\u002Futcw\u002Fblob\u002Fmaster\u002FSTRATEGY.md\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Feedback\u003C\u002Fh3>\n\u003Cp>This plugin is under active development and my goal is to try to help everyone who have issues or suggestions for this plugin. If you find bugs or have feature requests please use \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Frickard2\u002Futcw\u002Fissues\" rel=\"nofollow ugc\">GitHub issues\u003C\u002Fa>, if you need support please use the \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fsupport\u002Fplugin\u002Fultimate-tag-cloud-widget\" rel=\"ugc\">WordPress forums\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>My contact information is\u003C\u002Fp>\n\u003Cul>\n\u003Cli>rickard (a) 0x539.se (email, hangouts, you name it)\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"http:\u002F\u002Ftwitter.com\u002Frickard2\" rel=\"nofollow ugc\">twitter.com\u002Frickard2\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>If you use this plugin and like it, please consider \u003Ca href=\"https:\u002F\u002F0x539.se\u002Fdonations\u002F\" rel=\"nofollow ugc\">leaving a donation\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch3>Theme integration \u002F Shortcode\u003C\u002Fh3>\n\u003Cp>You can integrate the widget within your own theme even if you’re not using standard WordPress widgets. Just install and load the plugin as described and use the function\u003C\u002Fp>\n\u003Cpre>\u003Ccode>\u003C?php do_utcw($args); ?>\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Cp>…with \u003Ccode>$args\u003C\u002Fcode> being a array of \u003Ccode>key => value\u003C\u002Fcode> pairs for the options you would like to set. For example if you’d like to change the title of the widget:\u003C\u002Fp>\n\u003Cpre>\u003Ccode>\u003C?php\n$args = array( \"title\" => \"Most awesome title ever\" );\n\ndo_utcw( $args );\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Cp>To use multiple configuration options just separate them with a comma:\u003C\u002Fp>\n\u003Cpre>\u003Ccode>\u003C?php\n$args = array( \"title\" => \"Most awesome title ever\", \"max\" => 10 );\n\ndo_utcw( $args );\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Cp>If you’re not able to change your theme you can also use the shortcode \u003Ccode>[utcw]\u003C\u002Fcode> anywhere in your posts or pages. You can pass any of the settings along with the shortcode in the format of \u003Ccode>key=\"value\"\u003C\u002Fcode>, for instance if you’d like to change the widget title:\u003C\u002Fp>\n\u003Cpre>\u003Ccode>[utcw title=\"Most awesome title ever\"]\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Cp>The plugin also uses a couple of filters for you to be able to alter the output. These are documented in the \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Frickard2\u002Futcw\u002Fblob\u002Fmaster\u002FFILTERS.md\" rel=\"nofollow ugc\">filters documentation at GitHub\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>As of version 2.6 you can create custom selection strategies, more information can be found in the \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Frickard2\u002Futcw\u002Fblob\u002Fmaster\u002FSTRATEGY.md\" rel=\"nofollow ugc\">strategy documentation at GitHub\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch3>Configuration\u003C\u002Fh3>\n\u003Cp>All the configuration options can be found in the \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Frickard2\u002Futcw\u002Fblob\u002Fmaster\u002FCONFIG.md\" rel=\"nofollow ugc\">configuration documentation at GitHub\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch3>Breaking changes in version 2.0\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Tags lists with named tags will not work in version 2.0, only tags lists with IDs.\u003C\u002Fli>\n\u003Cli>The configuration option for text case has been renamed from case to text_transform\u003C\u002Fli>\n\u003Cli>The styles for links aren’t marked as \u003Ccode>!important\u003C\u002Fcode> in the CSS longer, this might change the cloud presentation in some cases\u003C\u002Fli>\n\u003Cli>The shortcode and theme integration function call no longer accepts the widget arguments \u003Ccode>before_widget\u003C\u002Fcode>, \u003Ccode>after_widget\u003C\u002Fcode>, \u003Ccode>before_title\u003C\u002Fcode> and \u003Ccode>after_title\u003C\u002Fcode>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Thanks\u003C\u002Fh3>\n\u003Cp>The power of the open source community is being able to help out and submitting patches when bugs are found. I would like to thank the following contributors for submitting patches and helping out with the development:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Andreas Bogavcic\u003C\u002Fli>\n\u003Cli>Fabian Reck\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>With your help this list will hopefully grow in the future 😉\u003C\u002Fp>\n","This plugin aims to be the most configurable tag cloud widget out there, able to suit all your weird tag cloud needs.",4000,245340,92,49,"2017-11-28T10:39:00.000Z","3.9.40","3.0",[50,51,52,22],"configurable","tag-cloud","tags","https:\u002F\u002Fwww.0x539.se\u002Fwordpress\u002Fultimate-tag-cloud-widget\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fultimate-tag-cloud-widget.2.7.2.zip",{"slug":56,"name":57,"version":58,"author":59,"author_profile":60,"description":61,"short_description":62,"active_installs":63,"downloaded":64,"rating":65,"num_ratings":66,"last_updated":67,"tested_up_to":68,"requires_at_least":69,"requires_php":18,"tags":70,"homepage":71,"download_link":72,"security_score":25,"vuln_count":14,"unpatched_count":11,"last_vuln_date":73,"fetched_at":27},"configurable-tag-cloud-widget","Configurable Tag Cloud (CTC)","5.3","Keith S.","https:\u002F\u002Fprofiles.wordpress.org\u002Fzarathos\u002F","\u003Cp>The best new feature in WordPress 2.3 is the integration of tagging into the core of WordPress. However, the tag cloud widget & functions that are included leaves a lot to be desired. So, with time on my hands, I decided to whip up my own version of the tag cloud that lets you configure the tag cloud with all the customizations (well, almost, see below) the tag cloud template tag allows.\u003C\u002Fp>\n\u003Cp>You can find the plugin home page (and leave comments) \u003Ca href=\"http:\u002F\u002Fkeithsolomon.net\u002Fctc\u002F\" rel=\"nofollow ugc\">here\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch3>NOTE\u003C\u002Fh3>\n\u003Cp>Development on this plugin has STOPPED!  I am looking for someone to take it over.  Find more info \u003Ca href=\"http:\u002F\u002Fwp.me\u002Fp4xrG-7q\" rel=\"nofollow ugc\">here\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch3>Upgrade\u003C\u002Fh3>\n\u003Cp>I suggest using the built-in WordPress plugin update feature, but to manually upgrade, follow these instructions:\u003Cbr \u002F>\n1. Deactivate the plugin in the WordPress admin menu.\u003Cbr \u002F>\n2. Delete the existing \u003Ccode>tag-cloud.php\u003C\u002Fcode> file from the \u003Ccode>\u002Fwp-content\u002Fplugins\u003C\u002Fcode> folder.\u003Cbr \u002F>\n3. Upload the \u003Ccode>tag_cloud\u003C\u002Fcode> folder to the \u003Ccode>\u002Fwp-content\u002Fplugins\u002F\u003C\u002Fcode> directory.\u003Cbr \u002F>\n4. Activate \u003Ccode>Configurable Tag Cloud\u003C\u002Fcode> through the ‘Plugins’ menu in WordPress and add the widget to your sidebar.\u003Cbr \u002F>\n5. (Optional) Add \u003Ccode>ctc()\u003C\u002Fcode> template tag to your theme.  Can be configured either via the Options menu, or via parameters in the template tag.\u003C\u002Fp>\n","Display a tag cloud customized with your preferences in the sidebar.",2000,137349,74,10,"2023-03-29T14:21:00.000Z","6.1.10","2.8",[51,52,22],"http:\u002F\u002Fkeithsolomon.net\u002Fctc\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fconfigurable-tag-cloud-widget.zip","2023-03-30 00:00:00",{"slug":75,"name":76,"version":77,"author":78,"author_profile":79,"description":80,"short_description":81,"active_installs":82,"downloaded":83,"rating":84,"num_ratings":85,"last_updated":86,"tested_up_to":87,"requires_at_least":88,"requires_php":18,"tags":89,"homepage":94,"download_link":95,"security_score":25,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27},"most-popular-tags","Most Popular Tags","5.1","maxpagels","https:\u002F\u002Fprofiles.wordpress.org\u002Fmaxpagels\u002F","\u003Cp>Most Popular Tags is a WordPress plugin that allows you to display your blog’s most popular tags or categories as a sidebar widget. The plugin takes advantage of the new Widget API introduced in WordPress 2.8, allowing multiple instances of the same widget, each with it’s own unique configuration. You can specify how many tags\u002Fcategories\u002Flink categories to show, the size of the smallest and largest ones, which unit and format to use as well as advanced ordering options.\u003C\u002Fp>\n","Most Popular Tags is a plugin that displays your WordPress site's most popular tags, categories and custom taxonomies as a sidebar widget.",300,38008,100,2,"2015-07-30T12:16:00.000Z","4.2.39","2.9",[90,91,92,52,93],"categories","popular","tagcloud","widgets","http:\u002F\u002Fwww.maxpagels.com\u002Fprojects\u002Fmptags","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fmost-popular-tags.zip",{"slug":97,"name":98,"version":99,"author":100,"author_profile":101,"description":102,"short_description":103,"active_installs":104,"downloaded":105,"rating":11,"num_ratings":11,"last_updated":106,"tested_up_to":107,"requires_at_least":108,"requires_php":18,"tags":109,"homepage":112,"download_link":113,"security_score":25,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27},"random-tags-cloud-widget","Random Tags Cloud Widget","1.2","yakuphan","https:\u002F\u002Fprofiles.wordpress.org\u002Fyakuphan\u002F","\u003Cp>Random Tag Cloud allows you to display your site’s tags. It works just like a regular tags cloud, but you can customize it. If you set, it gets your tags by selecting randomly.\u003Cbr \u002F>\nOf course, you can set other settings; font sizes, number of tags to display, how to order etc.\u003Cbr \u002F>\nNow, you can add a link to your tags archive page by writing its ID. It adds a ‘Show All Tags’ link.\u003C\u002Fp>\n\u003Ch3>Options\u003C\u002Fh3>\n\u003Cp>Widget’s options allow you to change your tag cloud’s displaying.\u003C\u002Fp>\n\u003Ch4>Title\u003C\u002Fh4>\n\u003Cp>Your tag cloud’s title on your sidebar.\u003C\u002Fp>\n\u003Ch4>Number of Tags\u003C\u002Fh4>\n\u003Cp>Controls the total number of tags in your cloud.\u003C\u002Fp>\n\u003Ch4>Font Unit\u003C\u002Fh4>\n\u003Cp>What unit to use for font sizes.\u003C\u002Fp>\n\u003Ch4>Smallest Font Size\u003C\u002Fh4>\n\u003Cp>Tags will be displayed no smaller than this value.\u003C\u002Fp>\n\u003Ch4>Largest Font Size\u003C\u002Fh4>\n\u003Cp>Tags will be displayed no larger that this value.\u003C\u002Fp>\n\u003Ch4>Cloud Format\u003C\u002Fh4>\n\u003Cp>How to display the cloud.\u003C\u002Fp>\n\u003Ch4>Select Tags Randomly\u003C\u002Fh4>\n\u003Cp>Select your tags randomly from database.\u003C\u002Fp>\n\u003Ch4>Sort by\u003C\u002Fh4>\n\u003Cp>What field to sort by.\u003C\u002Fp>\n\u003Ch4>Sort Order\u003C\u002Fh4>\n\u003Cp>Direction of sort.\u003C\u002Fp>\n\u003Ch4>Exclude Tags\u003C\u002Fh4>\n\u003Cp>These tags won’t display in cloud.\u003C\u002Fp>\n\u003Ch4>Include Tags\u003C\u002Fh4>\n\u003Cp>Only these tags will display in cloud.\u003C\u002Fp>\n\u003Ch4>Your Tags Page ID\u003C\u002Fh4>\n\u003Cp>If you want to add a link to your tags archive page, write its page id.\u003C\u002Fp>\n\u003Cp>You can format ‘Show All Tags’ link by adding ‘alltags_link’ class in your style.css.\u003C\u002Fp>\n\u003Ch3>Version history\u003C\u002Fh3>\n\u003Ch4>Version 1.2\u003C\u002Fh4>\n\u003Cp>Compatible up to 2.7\u003C\u002Fp>\n\u003Ch4>Version 1.1\u003C\u002Fh4>\n\u003Cp>Add an option to add ‘Show All Tags’ link.\u003C\u002Fp>\n\u003Ch4>Version 1.0\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Initial release version.\u003C\u002Fli>\n\u003C\u002Ful>\n","Random Tags Cloud displays your tags by selecting randomly. Of course, you can customize other tag cloud's settings.",200,13039,"2008-12-15T20:22:00.000Z","2.7","2.3",[110,111,51,52,22],"random-tags","random-tags-cloud","http:\u002F\u002Fwww.yakupgovler.com\u002F?p=402","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Frandom-tags-cloud-widget.zip",{"slug":115,"name":116,"version":117,"author":118,"author_profile":119,"description":120,"short_description":121,"active_installs":84,"downloaded":122,"rating":123,"num_ratings":124,"last_updated":125,"tested_up_to":16,"requires_at_least":126,"requires_php":18,"tags":127,"homepage":128,"download_link":129,"security_score":25,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27},"muki-tag-cloud","Muki Tag Cloud","2.1.4","Muki Wu","https:\u002F\u002Fprofiles.wordpress.org\u002Fmuki\u002F","\u003Cul>\n\u003Cli>Another wordpress tag cloud plugin based on jQCloud plugin, which is creative, beauty and colorful.\u003C\u002Fli>\n\u003Cli>If has any suggestion of design thought, please visit and leave comments in \u003Ca href=\"http:\u002F\u002Fmuki.tw\u002Ftech\u002Fwordpress-plugin-muki-tag-cloud\u002F\" rel=\"nofollow ugc\">MUKI space*\u003C\u002Fa>, who is the authoer about plugin design, front-end, and creative;\u003C\u002Fli>\n\u003Cli>\n\u003Cp>About plugin program discuss, you can visit to \u003Ca href=\"http:\u002F\u002Fmesak.tw\u002Fcode\u002Fphp\u002F3817\u002Fwordpress-plugin-muki-tag-cloud\" rel=\"nofollow ugc\">MesakTW\u003C\u002Fa>, who is the author about plugin development, and back-end.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>可以在側邊欄或是支援小工具的位置加入這個標籤雲外掛。他跟一般標籤雲最大的差別是不規則的排列形狀，而且顏色豐富多彩，非常的有質感。\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Ful>\n","Another wordpress tag cloud plugin based on jQCloud, which is creative, beauty and colorful.",10377,80,7,"2017-04-15T07:37:00.000Z","3.5",[51,52,22],"http:\u002F\u002Fwww.mukispace.com\u002Fwordpress-plugin-muki-tag-cloud","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fmuki-tag-cloud.2.1.4.zip",{"attackSurface":131,"codeSignals":143,"taintFlows":276,"riskAssessment":311,"analyzedAt":324},{"hooks":132,"ajaxHandlers":139,"restRoutes":140,"shortcodes":141,"cronEvents":142,"entryPointCount":11,"unprotectedCount":11},[133],{"type":134,"name":135,"callback":136,"file":137,"line":138},"action","plugins_loaded","anonymous","newer-tag-cloud.php",67,[],[],[],[],{"dangerousFunctions":144,"sqlUsage":157,"outputEscaping":159,"fileOperations":11,"externalRequests":11,"nonceChecks":11,"capabilityChecks":85,"bundledLibraries":275},[145,150,153,155],{"fn":146,"file":147,"line":148,"context":149},"unserialize","admin\\class-newer-tag-cloud-admin.php",154,"$instanceName = unserialize($globalOptions['instances']);",{"fn":146,"file":147,"line":151,"context":152},230,"$instances = unserialize($options['instances']);",{"fn":146,"file":147,"line":154,"context":152},278,{"fn":146,"file":147,"line":156,"context":152},299,{"prepared":11,"raw":11,"locations":158},[],{"escaped":160,"rawEcho":161,"locations":162},14,73,[163,166,169,171,172,174,176,178,180,182,185,186,188,190,191,193,194,195,197,198,199,200,202,203,204,206,207,208,210,211,212,214,215,216,218,219,220,222,223,224,225,226,227,229,230,231,232,233,235,236,237,238,240,242,243,244,245,247,248,249,251,252,253,255,257,259,261,263,265,267,269,271,273],{"file":147,"line":164,"context":165},103,"raw output",{"file":167,"line":168,"context":165},"admin\\partials\\newer-tag-cloud-admin-display.php",21,{"file":167,"line":170,"context":165},26,{"file":167,"line":30,"context":165},{"file":167,"line":173,"context":165},34,{"file":167,"line":175,"context":165},38,{"file":167,"line":177,"context":165},43,{"file":167,"line":179,"context":165},50,{"file":167,"line":181,"context":165},54,{"file":183,"line":184,"context":165},"admin\\partials\\newer-tag-cloud-instances-display.php",19,{"file":183,"line":168,"context":165},{"file":183,"line":187,"context":165},28,{"file":183,"line":189,"context":165},29,{"file":183,"line":173,"context":165},{"file":183,"line":192,"context":165},39,{"file":183,"line":192,"context":165},{"file":183,"line":192,"context":165},{"file":183,"line":196,"context":165},44,{"file":183,"line":196,"context":165},{"file":183,"line":196,"context":165},{"file":183,"line":196,"context":165},{"file":183,"line":201,"context":165},48,{"file":183,"line":201,"context":165},{"file":183,"line":201,"context":165},{"file":183,"line":205,"context":165},53,{"file":183,"line":205,"context":165},{"file":183,"line":205,"context":165},{"file":183,"line":209,"context":165},57,{"file":183,"line":209,"context":165},{"file":183,"line":209,"context":165},{"file":183,"line":213,"context":165},61,{"file":183,"line":213,"context":165},{"file":183,"line":213,"context":165},{"file":183,"line":217,"context":165},65,{"file":183,"line":217,"context":165},{"file":183,"line":217,"context":165},{"file":183,"line":221,"context":165},69,{"file":183,"line":221,"context":165},{"file":183,"line":221,"context":165},{"file":183,"line":161,"context":165},{"file":183,"line":161,"context":165},{"file":183,"line":161,"context":165},{"file":183,"line":228,"context":165},77,{"file":183,"line":228,"context":165},{"file":183,"line":228,"context":165},{"file":183,"line":228,"context":165},{"file":183,"line":228,"context":165},{"file":183,"line":234,"context":165},81,{"file":183,"line":234,"context":165},{"file":183,"line":234,"context":165},{"file":183,"line":234,"context":165},{"file":183,"line":239,"context":165},86,{"file":183,"line":241,"context":165},94,{"file":183,"line":241,"context":165},{"file":183,"line":241,"context":165},{"file":183,"line":241,"context":165},{"file":183,"line":246,"context":165},98,{"file":183,"line":246,"context":165},{"file":183,"line":246,"context":165},{"file":183,"line":250,"context":165},99,{"file":183,"line":250,"context":165},{"file":183,"line":84,"context":165},{"file":183,"line":254,"context":165},101,{"file":183,"line":256,"context":165},109,{"file":183,"line":258,"context":165},110,{"file":183,"line":260,"context":165},114,{"file":183,"line":262,"context":165},115,{"file":183,"line":264,"context":165},121,{"file":183,"line":266,"context":165},126,{"file":183,"line":268,"context":165},127,{"file":183,"line":270,"context":165},136,{"file":272,"line":184,"context":165},"front\\partials\\newer-tag-cloud-public-display.php",{"file":137,"line":274,"context":165},104,[],[277,301],{"entryPoint":278,"graph":279,"unsanitizedCount":14,"severity":300},"instance_options_page (admin\\class-newer-tag-cloud-admin.php:116)",{"nodes":280,"edges":296},[281,286,290],{"id":282,"type":283,"label":284,"file":147,"line":285},"n0","source","$_POST[?]",135,{"id":287,"type":288,"label":289,"file":147,"line":285},"n1","transform","→ update_newertagcloud_instanceoptions()",{"id":291,"type":292,"label":293,"file":147,"line":294,"wp_function":295},"n2","sink","update_option() [Settings Manipulation]",283,"update_option",[297,299],{"from":282,"to":287,"sanitized":298},false,{"from":287,"to":291,"sanitized":298},"low",{"entryPoint":302,"graph":303,"unsanitizedCount":14,"severity":300},"\u003Cclass-newer-tag-cloud-admin> (admin\\class-newer-tag-cloud-admin.php:0)",{"nodes":304,"edges":308},[305,306,307],{"id":282,"type":283,"label":284,"file":147,"line":285},{"id":287,"type":288,"label":289,"file":147,"line":285},{"id":291,"type":292,"label":293,"file":147,"line":294,"wp_function":295},[309,310],{"from":282,"to":287,"sanitized":298},{"from":287,"to":291,"sanitized":298},{"summary":312,"deductions":313},"The \"newer-tag-cloud\" plugin version 1.1.2 presents a mixed security profile. On the positive side, it boasts no reported vulnerabilities (CVEs) and a seemingly small attack surface with no AJAX handlers, REST API routes, shortcodes, or cron events.  Crucially, all SQL queries utilize prepared statements, a strong indicator of good database security practices.  However, several concerning code signals warrant attention. The presence of four instances of the `unserialize` function is a significant red flag, as this function is notoriously dangerous if used with untrusted input, potentially leading to Remote Code Execution (RCE) vulnerabilities.  Furthermore, only 16% of output is properly escaped, leaving the plugin susceptible to Cross-Site Scripting (XSS) attacks through unsanitized data displayed to users. Taint analysis reveals two flows with unsanitized paths, which, when combined with the `unserialize` function and poor output escaping, indicate a potential for serious security flaws, even if no critical or high severity issues were flagged in this specific analysis.  The lack of nonce checks on potential entry points and limited capability checks (only 2) suggest that authentication and authorization mechanisms might be weak, further exacerbating the risks posed by the identified code signals.",[314,317,319,321],{"reason":315,"points":316},"Presence of 'unserialize' function",15,{"reason":318,"points":124},"Low output escaping percentage (16%)",{"reason":320,"points":66},"Unsanitized paths in taint flows",{"reason":322,"points":323},"Lack of nonce checks",5,"2026-03-17T06:14:37.048Z",{"wat":326,"direct":339},{"assetPaths":327,"generatorPatterns":332,"scriptPaths":333,"versionParams":334},[328,329,330,331],"\u002Fwp-content\u002Fplugins\u002Fnewer-tag-cloud\u002Fadmin\u002Fcss\u002Fnewer-tag-cloud-admin.css","\u002Fwp-content\u002Fplugins\u002Fnewer-tag-cloud\u002Fadmin\u002Fjs\u002Fnewer-tag-cloud-admin.js","\u002Fwp-content\u002Fplugins\u002Fnewer-tag-cloud\u002Fpublic\u002Fcss\u002Fnewer-tag-cloud-public.css","\u002Fwp-content\u002Fplugins\u002Fnewer-tag-cloud\u002Fpublic\u002Fjs\u002Fnewer-tag-cloud-public.js",[],[329,331],[335,336,337,338],"newer-tag-cloud\u002Fadmin\u002Fcss\u002Fnewer-tag-cloud-admin.css?ver=","newer-tag-cloud\u002Fadmin\u002Fjs\u002Fnewer-tag-cloud-admin.js?ver=","newer-tag-cloud\u002Fpublic\u002Fcss\u002Fnewer-tag-cloud-public.css?ver=","newer-tag-cloud\u002Fpublic\u002Fjs\u002Fnewer-tag-cloud-public.js?ver=",{"cssClasses":340,"htmlComments":343,"htmlAttributes":344,"restEndpoints":346,"jsGlobals":347,"shortcodeOutput":349},[341,342],"newer-tag-cloud-widget","newer-tag-cloud-admin-wrap",[],[345],"data-instance-id",[],[348],"newerTagCloud",[350],"[newertagcloud]"]