[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fsPg2Ezx1F4p4pbz9MdgJ2WswUnr-oqGN0I5_5auhoG4":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":25,"download_link":26,"security_score":27,"vuln_count":28,"unpatched_count":29,"last_vuln_date":30,"fetched_at":31,"vulnerabilities":32,"developer":47,"crawl_stats":38,"alternatives":54,"analysis":157,"fingerprints":556},"oa-social-login","Social Login","5.10.0","Claude","https:\u002F\u002Fprofiles.wordpress.org\u002Fclaudeschlesser\u002F","\u003Ch4>Social Login Plugin\u003C\u002Fh4>\n\u003Cp>Social Login is a \u003Cstrong>professionally developed\u003C\u002Fstrong> and free WordPress plugin that allows your visitors to \u003Cstrong>comment, login and register with 40+ Social Networks\u003C\u002Fstrong> like for example Facebook, Twitter \u002F X, TikTok, Google, LinkedIn, PayPal, LiveJournal, Instagram, Вконтакте or Yahoo amongst other.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Data Protection Guarantee\u003C\u002Fstrong>\u003Cbr \u002F>\nSocial Login is fully compliant with all European and U.S. data protection laws. As required by the General Data Protection Regulation (GDPR) the OneAll Terms of Service include a Data Processing Agreement that we can countersign on request.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Seamless Integration\u003C\u002Fstrong>\u003Cbr \u002F>\nSocial Login is fully customizable and seamlessly integrates with your existing login\u002Fregistration system so that your users don’t have to start from scratch. Existing existing accounts can add\u002Fremove their social network accounts in their WordPress profile settings and then also use the linked social networks to login.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Eliminates Spam and Bot Registrations\u003C\u002Fstrong>\u003Cbr \u002F>\nGet rid of long and complicated forms, improve your data quality and instantly eliminate spam and bot registrations. Social Login increases registration rates by up to 50% and provides permission-based access to users’ social network profile data, allowing you to start delivering a personalized experience.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Maintenance Free\u003C\u002Fstrong>\u003Cbr \u002F>\nDo not take the risk of losing any users or customers due to outdated social network integrations. Unlike other Social Login providers we monitor the APIs and technologies of the different social networks and update our service as soon as changes arise.\u003C\u002Fp>\n\u003Cp>By using OneAll you can be sure that your social media integration will always run smoothly and with the most up-to-date calls.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Fully Customizable\u003C\u002Fstrong>\u003Cbr \u002F>\nYou can easily configure which social accounts to enable\u002Fdisable for social login and on which areas of the website the social login icons should be displayed:\u003Cbr \u002F>\n* On the comment formular\u003Cbr \u002F>\n* On the login page\u003Cbr \u002F>\n* On the registration page\u003Cbr \u002F>\n* In your sidebar\u003Cbr \u002F>\n* With a shortcode\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Fully Compatible With Other Plugins\u003C\u002Fstrong>\u003Cbr \u002F>\nSocial Login uses standard WordPress hooks and is compatible with all plugins that follow WordPress coding conventions,\u003Cbr \u002F>\nlike per example BuddyPress or WooCommerce amongst others.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Data Export\u003C\u002Fstrong>\u003Cbr \u002F>\nEasily export your users or automatically push data of users that login using Social Login to Mailchimp or Campaign Monitor.\u003Cbr \u002F>\nThis feature is available in the premium version of Social Login and can be enabled in your OneAll account.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>45+ Social Networks\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Apple\u003C\u002Fli>\n\u003Cli>Amazon\u003C\u002Fli>\n\u003Cli>Battle.net\u003C\u002Fli>\n\u003Cli>Blogger\u003C\u002Fli>\n\u003Cli>Discord\u003C\u002Fli>\n\u003Cli>Draugiem\u003C\u002Fli>\n\u003Cli>Dribbble\u003C\u002Fli>\n\u003Cli>Epic Games\u003C\u002Fli>\n\u003Cli>Facebook\u003C\u002Fli>\n\u003Cli>Foursquare\u003C\u002Fli>\n\u003Cli>Github.com\u003C\u002Fli>\n\u003Cli>Google\u003C\u002Fli>\n\u003Cli>Instagram\u003C\u002Fli>\n\u003Cli>Line\u003C\u002Fli>\n\u003Cli>LinkedIn\u003C\u002Fli>\n\u003Cli>LiveJournal\u003C\u002Fli>\n\u003Cli>Mail.ru\u003C\u002Fli>\n\u003Cli>Meetup\u003C\u002Fli>\n\u003Cli>Mixer\u003C\u002Fli>\n\u003Cli>Odnoklassniki\u003C\u002Fli>\n\u003Cli>OpenID\u003C\u002Fli>\n\u003Cli>Patreon\u003C\u002Fli>\n\u003Cli>PayPal\u003C\u002Fli>\n\u003Cli>Pinterest\u003C\u002Fli>\n\u003Cli>PixelPin \u003C\u002Fli>\n\u003Cli>Reddit\u003C\u002Fli>\n\u003Cli>Skyrock.com\u003C\u002Fli>\n\u003Cli>SoundCloud        \u003C\u002Fli>\n\u003Cli>Spotify\u003C\u002Fli>\n\u003Cli>StackExchange\u003C\u002Fli>\n\u003Cli>Steam\u003C\u002Fli>\n\u003Cli>Strava\u003C\u002Fli>\n\u003Cli>TikTok\u003C\u002Fli>\n\u003Cli>Tumblr\u003C\u002Fli>\n\u003Cli>Twitch.tv\u003C\u002Fli>\n\u003Cli>Twitter \u002F X\u003C\u002Fli>\n\u003Cli>Vimeo\u003C\u002Fli>\n\u003Cli>VKontakte\u003C\u002Fli>\n\u003Cli>Weibo\u003C\u002Fli>\n\u003Cli>Windows Live\u003C\u002Fli>\n\u003Cli>WordPress.com\u003C\u002Fli>\n\u003Cli>XING\u003C\u002Fli>\n\u003Cli>Yahoo\u003C\u002Fli>\n\u003Cli>Yandex\u003C\u002Fli>\n\u003Cli>YouTube\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>Social Login Features\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>GDPR compliant\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Social Link\u003C\u002Fstrong> – Users can use social login to link multiple social network accounts to their WordPress account.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Woocommerce Connect\u003C\u002Fstrong> – Automatic integration of the social login icons on the Woocommerce checkout, login and registration pages.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Woocommerce Profile\u003C\u002Fstrong> – Fill the user’s billing address with the first name, last name and email address received from the social network.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>BuddyPress Connect\u003C\u002Fstrong> – Automatic integration of the social login icons on the BuddyPress account and registration pages.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>BuddyPress Profile\u003C\u002Fstrong> – Use the social network avatar as BuddyPress avatar and fill out custom fields.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>User Insights\u003C\u002Fstrong> – Access the analytics dashboard to discover which social networks your users prefer.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Automatic Emails\u003C\u002Fstrong> – Send emails to users that register using social login.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Automatic Notifications\u003C\u002Fstrong> – Send notifications to admins for every users that registers using social login.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Comment Approval\u003C\u002Fstrong> – Automatically approve comments left by users that connected by using social login.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Email Retrieval\u003C\u002Fstrong>  – Ask users to enter their email when social login did not receive it from the social network.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Custom Redirections\u003C\u002Fstrong> – Fully customize the page to redirect user to after having connected using social login.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Integrated Widget\u003C\u002Fstrong> – Simply use the social login widget to display the icons wherever you want.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>ShortCodes\u003C\u002Fstrong> – Easily embed social login anywhere by using the available shortcodes.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Hook\u003C\u002Fstrong> – Customize the social login behaviour by using the integrated hooks.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Icon Themes\u003C\u002Fstrong> – Choose amongst three different social login icon themes.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Documentation\u003C\u002Fstrong> – Access a \u003Ca href=\"https:\u002F\u002Fdocs.oneall.com\u002Fplugins\u002Fguide\u002Fsocial-login-wordpress\u002F\" rel=\"nofollow ugc\">complete documentation\u003C\u002Fa> on the available Social Login hooks and filters for WordPress.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Support\u003C\u002Fstrong> – Any questions about Social Login? Our support team is there to assist you. \u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>Social Login Premium Features\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Authentication Filters\u003C\u002Fstrong> – Use customisable filters to restrict which users may login with social login.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Data Export\u003C\u002Fstrong> – Automatically export social login data to Campaign Monitor or MailChimp or export as CSV.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>User Insights\u003C\u002Fstrong> – Access analytics and get demographic information about your social login users.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Icon Themes\u003C\u002Fstrong> – Choose amongst twenty different social login icon themes or use you own icons.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>Professionally Developed and Maintained\u003C\u002Fstrong>\u003Cbr \u002F>\nSocial Login is maintained by \u003Ca href=\"https:\u002F\u002Fwww.oneall.com\" rel=\"nofollow ugc\">OneAll\u003C\u002Fa>, a technology company offering a set of web-delivered tools to simplify the integration of 40+ social networks into business and personal websites and apps.\u003C\u002Fp>\n\u003Cp>The OneAll API unifies 40+ Social Networks and consolidates the most powerful social network features in a single solution. You can work with multiple social networks at once and you will obtain a standardized field structure for data received from any of the social networks. Save time and development resources and focus on your core business.\u003C\u002Fp>\n\u003Ch3>Testimonials\u003C\u002Fh3>\n\u003Cp>\u003Cstrong>Used by thousands of users around the world!\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cem>The plugin in is one of the best I’ve seen so far. Extremely easy to implement and run. The support is great too.\u003Cbr \u002F>\nNo concerns on my side. Keep it up!\u003C\u002Fem>\u003Cbr \u002F>\n\u003Cstrong>livia\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cem>Loving the service, seen a massive increase in painless signups to my blog. Thanks!\u003C\u002Fem>\u003Cbr \u002F>\n\u003Cstrong>Richard B.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cem>You have no idea how it THRILLED me to integrate oneall. It was SO amazingly easy, your team has simplified the whole process of signing up for\u003Cbr \u002F>\nauthorization on multiple social media sites. I HAD NO QUESTIONS\u002FSTEPS THAT YOU HADN’T ALREADY ANTICIPATED. It saved me HOURS of work!\u003C\u002Fem>\u003Cbr \u002F>\n\u003Cstrong>Kelly C.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cem>This is cool. Nice work. I’m VERY impressed. You’ve made this about as painless as it gets and the value it adds is incredible.\u003C\u002Fem>\u003Cbr \u002F>\n\u003Cstrong>Jason M.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cem>This service is simply remarkable, I’ve tried integrating logins before and it has never been this easy!\u003C\u002Fem>\u003Cbr \u002F>\n\u003Cstrong>Andrew C.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cem>I found it extremely straightforward. I just figured it out easily and make my website capable of connecting\u003Cbr \u002F>\nto many social networks by your plugin.\u003C\u002Fem>\u003Cbr \u002F>\n\u003Cstrong>Deha K.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cem>Just wanted to let you know how happy i am that i stumbled onto your service. This was the 6 Facebook\u002FTwitter integration\u003Cbr \u002F>\ni tried and was starting to lose hope that i could actually find one that worked for me.\u003C\u002Fem>\u003Cbr \u002F>\n\u003Cstrong>Kyle L.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cem>I would like to thank YOU! Seriously, the WordPress plugin has been a huge life saver for me.\u003C\u002Fem>\u003Cbr \u002F>\n\u003Cstrong>Piero B.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cem>Thank you for the wonderful plugin\u003C\u002Fem>\u003Cbr \u002F>\n\u003Cstrong>Martin P.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cem>The service is excellent for what i need, simple to set up. All situations about seting up are well explained, so\u003Cbr \u002F>\nthere are no difficulties\u003C\u002Fem>\u003Cbr \u002F>\n\u003Cstrong>Facundo S.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cem>I really like the plugin, the capabilities you provide for management and your prompt reply for support.\u003C\u002Fem>\u003Cbr \u002F>\n\u003Cstrong>Tom B.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cem>It was extremely easy to set up and use.  The documentation to set up the FB and twitter API\u003Cbr \u002F>\nwas easy to follow and implement. I was struggling with a couple of other plugins till I stumbled on this one.\u003C\u002Fem>\u003Cbr \u002F>\n\u003Cstrong>Deepa V.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cem>Works like a charm!\u003C\u002Fem>\u003Cbr \u002F>\n\u003Cstrong>Fredrik L.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cem>Not sure how you can improve it’s a Damn! Good product. 100% User friendly easy to setup. Thanks!\u003C\u002Fem>\u003Cbr \u002F>\n\u003Cstrong>Cody L.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cem>So far oneall.com is the perfect solution for my site and works flawlessly.  I am extremely impressed and grateful.\u003C\u002Fem>\u003Cbr \u002F>\n\u003Cstrong>Terry P.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cem>I’ve gone in and tweaked it, tested it and it’s good to go now! Wonderful, I feel like a grown up blogger now.\u003C\u002Fem>\u003Cbr \u002F>\n\u003Cstrong>Brian J.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cem>I am really impressed with your product! Its very dynamic and its gives me the flexibility I need for integration into my own business.\u003C\u002Fem>\u003Cbr \u002F>\n\u003Cstrong>Braxton D.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cem>Your delivery is superb. You should change your name to WONall because you won it all with me. You are awesome, stay that way please.\u003C\u002Fem>\u003Cbr \u002F>\n\u003Cstrong>Nicholas L.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cem>I especially enjoy the step by step process that guides you through the Social website App creation process. In the end I would like to thank you\u003Cbr \u002F>\nfor putting together such a great product that so many users can implement with ease.\u003C\u002Fem>\u003Cbr \u002F>\n\u003Cstrong>Stefan C.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cem>Thanks for a such a great plugin! I was really impressed with the simplicity of the installation directions and the clean design.\u003C\u002Fem>\u003Cbr \u002F>\n\u003Cstrong>Janae S.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cem>I love your service the way it is, it’s amazing how easy the logging-in-via-social-network is integrated into a wordpress website!\u003C\u002Fem>\u003Cbr \u002F>\n\u003Cstrong>Martin S.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cem>The site and the plugin are working magnificently. Thank you one million times for making your products\u002Fservices available in the manner that you have.\u003C\u002Fem>\u003Cbr \u002F>\n\u003Cstrong>Herman G.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cem>Very user friendly, there are guides and screenshot on how to set things up. Thank you so much for this awesome plugin!\u003C\u002Fem>\u003Cbr \u002F>\n\u003Cstrong>Cebututs\u003C\u002Fstrong>\u003C\u002Fp>\n","With Social Login your users can login, register and comment with 40+ Social Networks. Maintenance Free. Uptime Guarantee. Fulltime devs",5000,942142,86,364,"2024-12-02T15:57:00.000Z","6.7.5","3.0","5.4",[20,21,22,23,24],"facebook-login","linkedin-login","social-login","tiktok-login","twitter-login","http:\u002F\u002Fwww.oneall.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Foa-social-login.zip",89,1,0,"2024-11-22 15:08:42","2026-03-15T15:16:48.613Z",[33],{"id":34,"url_slug":35,"title":36,"description":37,"plugin_slug":4,"theme_slug":38,"affected_versions":39,"patched_in_version":6,"severity":40,"cvss_score":41,"cvss_vector":42,"vuln_type":43,"published_date":30,"updated_date":44,"references":45,"days_to_patch":27},"CVE-2024-10961","social-login-authentication-bypass-via-disqus-oauth-provider","Social Login \u003C= 5.9.0 - Authentication Bypass via Disqus OAuth provider","The Social Login plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 5.9.0. This is due to insufficient verification on the user being returned by the social login token. This makes it possible for unauthenticated attackers to log in as any existing user on the site, such as an administrator, if they have access to the email and the user does not have an already-existing account for the service returning the token.",null,"\u003C=5.9.0","critical",9.8,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:N\u002FUI:N\u002FS:U\u002FC:H\u002FI:H\u002FA:H","Authentication Bypass Using an Alternate Path or Channel","2025-02-19 17:40:25",[46],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002F43a64074-ca64-4c34-b467-06d1ad8c5aa0?source=api-prod",{"slug":48,"display_name":7,"profile_url":8,"plugin_count":49,"total_installs":50,"avg_security_score":51,"avg_patch_time_days":27,"trust_score":52,"computed_at":53},"claudeschlesser",2,5010,87,79,"2026-04-04T03:55:14.135Z",[55,76,99,117,139],{"slug":56,"name":57,"version":58,"author":59,"author_profile":60,"description":61,"short_description":62,"active_installs":63,"downloaded":64,"rating":65,"num_ratings":66,"last_updated":67,"tested_up_to":68,"requires_at_least":69,"requires_php":70,"tags":71,"homepage":73,"download_link":74,"security_score":75,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"userswp-social-login","UsersWP – Social Login","1.5.6","Stiofan","https:\u002F\u002Fprofiles.wordpress.org\u002Fstiofansisland\u002F","\u003Cp>Social Login addon for \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fuserswp\u002F\" rel=\"ugc\">UsersWP\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>This addon lets your user to register and login with popular sites like Facebook, Google, Twitter, LinkedIn, Instagram, Yahoo, WordPress, vkontakte etc.\u003C\u002Fp>\n\u003Cp>100% translatable.\u003C\u002Fp>\n","Social Login addon for UsersWP.",2000,129473,66,4,"2026-01-20T12:42:00.000Z","6.9.4","6.1","",[20,72,21,22,24],"google-login","https:\u002F\u002Fuserswp.io\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fuserswp-social-login.1.5.6.zip",100,{"slug":77,"name":78,"version":79,"author":80,"author_profile":81,"description":82,"short_description":83,"active_installs":84,"downloaded":85,"rating":86,"num_ratings":87,"last_updated":88,"tested_up_to":89,"requires_at_least":90,"requires_php":70,"tags":91,"homepage":94,"download_link":95,"security_score":96,"vuln_count":97,"unpatched_count":28,"last_vuln_date":98,"fetched_at":31},"heateor-social-login","Heateor Social Login WordPress","1.1.39","Heateor Support","https:\u002F\u002Fprofiles.wordpress.org\u002Fheateor\u002F","\u003Cp>Integrate Facebook login, Twitter login, Linkedin login, Google login, Vkontakte login, Steam login, Line login, Instagram login, Microsoft login (Windows Live login), WordPress login, Yahoo login, Dribbble login, Spotify login, Dropbox login, Foursquare login, Disqus login, Reddit login, Kakao login, Discord login, Amazon login, Stack Overflow login, Github login, Mail.ru login, Odnoklassniki login, Yandex login and Youtube login buttons with the login page, register page and comment form of your WordPress website within a few minutes\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Note:\u003C\u002Fstrong>\u003Cbr \u002F>\n1. Plugin will not work on local server. You should have an online website for the plugin to function properly.\u003Cbr \u002F>\n2. If you want to integrate Facebook Comments, you should install \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Ffancy-facebook-comments\u002F\" rel=\"ugc\">Fancy Comments\u003C\u002Fa>\u003Cbr \u002F>\n3. If you want to integrate only Facebook Login button, you should install \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fheateor-login\u002F\" rel=\"ugc\">Heateor Login\u003C\u002Fa>\u003Cbr \u002F>\n4. If you want to integrate Social Share icons, you should install \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fsassy-social-share\" rel=\"ugc\">Sassy Social Share\u003C\u002Fa>\u003Cbr \u002F>\n5. If you want to integrate Social Share icons and Social Commenting along with Social Login, you should install \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fsuper-socializer\" rel=\"ugc\">Super Socializer\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch4>Feature list\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Integrate Facebook login, Twitter login, Linkedin login, Google login, Vkontakte login, Steam login, Line login, Instagram login, Microsoft login (Windows Live login), WordPress login, Yahoo login, Dribbble login, Spotify login, Kakao login, Twitch login, Dropbox login, Foursquare login, Disqus login, Reddit login, Discord login, Amazon login, Stack Overflow login, Github login, Mail.ru login, Odnoklassniki login, Yandex login and Youtube login buttons with login page, register page and comment form\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"http:\u002F\u002Fsupport.heateor.com\u002Fgdpr-and-our-plugins\u002F\" rel=\"nofollow ugc\">GDPR Compliant\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>Compatible with Gutenberg editor\u003C\u002Fli>\n\u003Cli>Compatible with WPML\u003C\u002Fli>\n\u003Cli>Syncs user’s basic social profile data with WordPress profile\u003C\u002Fli>\n\u003Cli>Enable Social Login at WooCommerce checkout page and customer login form\u003C\u002Fli>\n\u003Cli>Syncs user’s basic social profile data with WooCommerce profile\u003C\u002Fli>\n\u003Cli>Use user’s social profile avatar as profile picture at your website\u003C\u002Fli>\n\u003Cli>Customizable login\u002Fpost-registration redirection\u003C\u002Fli>\n\u003Cli>Widget and shortcode\u003C\u002Fli>\n\u003Cli>Compatible with BuddyPress, BBPress, WooCommerce\u003C\u002Fli>\n\u003Cli>Multisite Compatible\u003C\u002Fli>\n\u003Cli>Supports HTTPS enabled websites\u003C\u002Fli>\n\u003Cli>24\u002F7 quickest customer support\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Detailed Overview:\u003C\u002Fp>\n\u003Ch4>Social Login\u003C\u002Fh4>\n\u003Cp>Enables users to login to your website via their social media accounts\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Benefits\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Col>\n\u003Cli>\n\u003Cp>\u003Cstrong>Rapid signup\u002Flogin\u003C\u002Fstrong>: When using Social network for login, users do not need to type anything (most of the users are already logged into their social accounts) . It helps in boosting signup\u002Flogin rate at your blog.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Profile Data\u003C\u002Fstrong>: User’s profile data will be saved in your blog database. This data also includes users’ email, enabling you to communicate with them.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Spam Reduction\u003C\u002Fstrong>: Because social networks authenticate individuals and generally don’t allow multiple accounts, the likelihood of false identities and spammers goes down.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch4>What makes this plugin different and why should I choose this plugin when there are many other social plugins?\u003C\u002Fh4>\n\u003Col>\n\u003Cli>\u003Cstrong>Free\u003C\u002Fstrong>: Yea, right. It is a free plugin. You need not pay single penny to use the features of this plugin.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>No need to register anywhere\u003C\u002Fstrong>: Unlike other third party Social plugins, you do not need to create an account at third party website.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Absolutely Simple\u003C\u002Fstrong>: Plugin configuration is kept dead simple. Screenshots are provided with options wherever required.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Trendy Icon Theme\u003C\u002Fstrong>: Trendy theme is used for social login icon which also complies with the branding guidelines of social networks.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Optimal performance\u003C\u002Fstrong>: Plugin just does what it’s supposed to do. It does not contain any tracking or advertisement scripts.\u003C\u002Fli>\n\u003Cli>We promise to provide \u003Cstrong>best quality\u003C\u002Fstrong> among other similar plugins. If you find our plugin is lacking some feature, you can email us and we will do our best to include that feature in our plugin as soon as possible.\u003C\u002Fli>\n\u003Cli>Our \u003Cstrong>support team is working 24\u002F7\u003C\u002Fstrong> to answer your queries and assist you. You will find us the quickest to respond.\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch4>Important links\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.facebook.com\u002Fheateor\" rel=\"nofollow ugc\">Our Facebook Page\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Ftwitter.com\u002Fheateor\" rel=\"nofollow ugc\">Our Twitter Page\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Ca href=\"http:\u002F\u002Fsupport.heateor.com\" rel=\"nofollow ugc\">Support Documentation\u003C\u002Fa> | \u003Ca href=\"https:\u002F\u002Fwww.heateor.com\u002Fadd-ons\" rel=\"nofollow ugc\">Add-ons\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>You can provide your feedback at hello[at]heateor[dot]com\u003C\u002Fp>\n","One click login and registration via Facebook, Twitter, Linkedin, Google and 23 others.",1000,34565,88,18,"2025-09-17T08:22:00.000Z","6.8.5","2.5.0",[20,21,24,92,93],"x","x-login","https:\u002F\u002Fwww.heateor.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fheateor-social-login.1.1.39.zip",62,6,"2025-12-26 00:00:00",{"slug":100,"name":101,"version":102,"author":103,"author_profile":104,"description":105,"short_description":106,"active_installs":75,"downloaded":107,"rating":108,"num_ratings":109,"last_updated":110,"tested_up_to":16,"requires_at_least":111,"requires_php":112,"tags":113,"homepage":70,"download_link":115,"security_score":116,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"happy-social-login","Happy Social Login","1.5.0","WPFOLK","https:\u002F\u002Fprofiles.wordpress.org\u002Fwpfolk\u002F","\u003Cp>Let your users signup and login to your WordPress website using their favorite social media accounts Facebook, Google, LinkedIn, Github and 42+ more. Happy Social Login is a free, easy-to-use WordPress plugin that makes registration and login a breeze. With just its social profiles (like Facebook, Google, or X (formerly Twitter)), your visitors can quickly sign up and log in to your site. No lengthy forms, no waiting for validation emails, and no more forgotten passwords. It’s simple, fast, and user-friendly!\u003C\u002Fp>\n\u003Ch3>🔗 Useful Links\u003C\u002Fh3>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwpfolk.com\u002Fplugins\u002Fhappy-social-login\" rel=\"nofollow ugc\">Official Page\u003C\u002Fa> || \u003Ca href=\"https:\u002F\u002Fplayground.wordpress.net\u002F?plugin=happy-social-login\" rel=\"nofollow ugc\">Demo\u003C\u002Fa> || \u003Ca href=\"https:\u002F\u002Fwpfolk.com\u002Fdocs\u002Fhappy-social-login\" rel=\"nofollow ugc\">Documentation\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch3>Key Features:\u003C\u002Fh3>\n\u003Col>\n\u003Cli>Quick registration and login via Facebook, Google, LinkedIn, and Github\u003C\u002Fli>\n\u003Cli>Easy integration with WordPress user accounts\u003C\u002Fli>\n\u003Cli>Customizable redirect URLs after registration and login\u003C\u002Fli>\n\u003Cli>Display social profile pictures as avatars\u003C\u002Fli>\n\u003Cli>Simple setup and user-friendly interface\u003C\u002Fli>\n\u003Cli>Helpful support for any questions or issues\u003C\u002Fli>\n\u003Cli>Additional Features in the Pro Version:\u003C\u002Fli>\n\u003Cli>Compatibility with WooCommerce, BuddyPress, UserPro, and more\u003C\u002Fli>\n\u003Cli>Access to additional providers like Amazon, PayPal, and more\u003C\u002Fli>\n\u003Cli>Control over email and username collection during registration\u003C\u002Fli>\n\u003Cli>Different login layouts and button styles\u003C\u002Fli>\n\u003Cli>Role-based access control for social logins\u003C\u002Fli>\n\u003Cli>Automatic assignment of user roles based on social login provider\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch3>Disclaimer\u003C\u002Fh3>\n\u003Cp>Happy Social Login is an independent plugin and is not affiliated with or endorsed by\u003Cbr \u002F>\nany of the third-party services mentioned in this documentation, including but not limited\u003Cbr \u002F>\nto Facebook, Google, Twitter, LinkedIn, GitHub, and others. All trademarks, service marks,\u003Cbr \u002F>\nand company names are the property of their respective owners. We do not hold any copyright\u003Cbr \u002F>\nover the APIs or services provided by these third parties. Any use of these services is subject\u003Cbr \u002F>\nto their respective terms of use and privacy policies. Users are responsible for complying with\u003Cbr \u002F>\nthe terms of the third-party services they choose to enable through this plugin.\u003C\u002Fp>\n\u003Cp>Happy Social Login relies on third-party services for authentication. When a user logs in using a\u003Cbr \u002F>\nsocial media account, their data is sent to the respective third-party service for authentication.\u003Cbr \u002F>\nBelow is a list of the services used, along with their respective links to privacy policies:\u003C\u002Fp>\n\u003Ch3>🔗 Privacy Policy Links\u003C\u002Fh3>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Ftwitter.com\u002Fen\u002Fprivacy\" rel=\"nofollow ugc\">X\u003C\u002Fa> || \u003Ca href=\"https:\u002F\u002Fpolicies.google.com\u002Fprivacy\" rel=\"nofollow ugc\">Google\u003C\u002Fa> || \u003Ca href=\"https:\u002F\u002Fwww.facebook.com\u002Fpolicy.php\" rel=\"nofollow ugc\">Facebook\u003C\u002Fa>\u003C\u002Fp>\n","Enables user authentication through various social media accounts. Login through Google, Facebook, LinkedIn, GitHub and more.",10069,80,5,"2025-01-09T10:48:00.000Z","6.0","7.4",[20,114,72,21,22],"github-login","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fhappy-social-login.1.5.0.zip",92,{"slug":118,"name":119,"version":120,"author":121,"author_profile":122,"description":123,"short_description":124,"active_installs":125,"downloaded":126,"rating":86,"num_ratings":127,"last_updated":128,"tested_up_to":129,"requires_at_least":130,"requires_php":70,"tags":131,"homepage":135,"download_link":136,"security_score":137,"vuln_count":109,"unpatched_count":28,"last_vuln_date":138,"fetched_at":31},"wp-fb-autoconnect","WP Social AutoConnect","4.6.4","JK","https:\u002F\u002Fprofiles.wordpress.org\u002Fjustin_k\u002F","\u003Cp>The simple concept behind WP-FB AutoConnect is to offer an easy-to-use widget that lets readers login to your blog with either their Facebook account or local WordPress credentials. Although many “Facebook Connect” plugins do exist, most of them are either overly complex and difficult to customize, or fail to provide a seamless experience for new  visitors. I wrote this plugin to provide what the others didn’t:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Full support for both WordPress and Buddypress.\u003C\u002Fli>\n\u003Cli>No user interaction is required – the login process is transparent to new and returning users alike.\u003C\u002Fli>\n\u003Cli>Existing users who connect with FB retain the same local user accounts as before (matched via e-mail).\u003C\u002Fli>\n\u003Cli>New visitors will be given new user accounts, which can be retained even if you remove the plugin.\u003C\u002Fli>\n\u003Cli>Facebook profile pictures can be used as avatars.\u003C\u002Fli>\n\u003Cli>No contact with the Facebook API after the login completes – so no slow pageloads.\u003C\u002Fli>\n\u003Cli>No 3rd party services: your site talks directly to Facebook, through an app created and owned by you.\u003C\u002Fli>\n\u003Cli>Won’t bloat your database with duplicate user accounts, extra fields, or unnecessary complications.\u003C\u002Fli>\n\u003Cli>Custom logging options can notify you whenever someone connects with Facebook.\u003C\u002Fli>\n\u003Cli>A powerful set of hooks and filters allow developers to easily tailor the login process to their personal needs: redirect to a custom page, fill xProfile data with information from Facebook, setup permissions based on social connections, and more.\u003C\u002Fli>\n\u003Cli>Fully HTML\u002FCSS valid.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Donate\u003C\u002Fh3>\n\u003Cp>Countless hours have gone into developing, maintaining, & supporting this plugin. Just keeping it running requires ongoing work due to Facebook’s ever-changing API & WordPress’ frequent updates. If you find it useful, please consider supporting its continued development by \u003Ca href=\"https:\u002F\u002Fwww.justin-klein.com\u002Fprojects\u002Fwp-fb-autoconnect\u002F#donate\" rel=\"nofollow ugc\">making a donation\u003C\u002Fa> of any amount.\u003C\u002Fp>\n\u003Ch3>Privacy\u003C\u002Fh3>\n\u003Cp>This plugin uses the Facebook API to fetch data from Facebook. The data is used to automate user logins, and\u002For to automate the creation of new local WordPress user accounts. The data may therefore be copied & stored in the WordPress database, and can be removed by deleting any Facebook-linked user accounts. Usage of this plugin means the site administrator is consenting to \u003Ca href=\"https:\u002F\u002Fwww.facebook.com\u002Fpolicy.php\" rel=\"nofollow ugc\">Facebook’s data policy\u003C\u002Fa>. Note that using the Facebook API requires loading some JS from Facebook, which may track visitors. This plugin does not use any 3rd party intermediary for processing logins or otherwise – all data is exchanged directly between your site & Facebook.\u003C\u002Fp>\n\u003Ch3>Support\u003C\u002Fh3>\n\u003Cp>Please direct all support requests \u003Ca href=\"https:\u002F\u002Fwww.justin-klein.com\u002Fprojects\u002Fwp-fb-autoconnect#feedback\" rel=\"nofollow ugc\">here\u003C\u002Fa>\u003C\u002Fp>\n","A lightweight but powerful Facebook login plugin, easy to setup and transparent to new and returning users alike.  Supports Buddypress.",500,384887,13,"2025-08-13T02:43:00.000Z","6.3.8","2.5",[132,133,20,134,22],"buddypress","facebook-connect","login-with-facebook","https:\u002F\u002Fwww.justin-klein.com\u002Fprojects\u002Fwp-fb-autoconnect","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-fb-autoconnect.4.6.4.zip",74,"2025-06-19 00:00:00",{"slug":140,"name":141,"version":142,"author":80,"author_profile":81,"description":143,"short_description":144,"active_installs":145,"downloaded":146,"rating":75,"num_ratings":147,"last_updated":148,"tested_up_to":89,"requires_at_least":90,"requires_php":70,"tags":149,"homepage":153,"download_link":154,"security_score":155,"vuln_count":28,"unpatched_count":29,"last_vuln_date":156,"fetched_at":31},"heateor-login","Heateor Login – Social Login Plugin","1.1.10","\u003Cp>Integrate Facebook Login button at login page, register page and comment form of your WordPress website in minutes\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Note:\u003C\u002Fstrong>\u003Cbr \u002F>\n1. Plugin will not work on local server. You should have an online website for the plugin to function properly.\u003Cbr \u002F>\n2. If you want to integrate Facebook Comments, you should install \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Ffancy-facebook-comments\u002F\" rel=\"ugc\">Fancy Comments\u003C\u002Fa>\u003Cbr \u002F>\n3. If you want to integrate Social Share icons, you should install \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fsassy-social-share\" rel=\"ugc\">Sassy Social Share\u003C\u002Fa>\u003Cbr \u002F>\n4. If you want to integrate Windows Live Login (Microsoft Login), WordPress login, Yahoo login, Spotify login, Dribbble login, Kakao login and Github login along with the Facebook login, you should install \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fheateor-social-login\u002F\" rel=\"ugc\">Heateor Social Login\u003C\u002Fa>\u003Cbr \u002F>\n5. If you want to integrate social share and social commenting along with social login you should install \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fsuper-socializer\" rel=\"ugc\">Super Socializer\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch4>Feature list\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Ca href=\"http:\u002F\u002Fsupport.heateor.com\u002Fgdpr-and-our-plugins\u002F\" rel=\"nofollow ugc\">GDPR Compliant\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>Compatible with Gutenberg editor\u003C\u002Fli>\n\u003Cli>Integrate Facebook Login button at login page, register page and comment form\u003C\u002Fli>\n\u003Cli>Syncs user’s basic social profile data with WordPress profile\u003C\u002Fli>\n\u003Cli>Enable Social Login at WooCommerce checkout page and customer login form\u003C\u002Fli>\n\u003Cli>Syncs user’s basic social profile data with WooCommerce profile\u003C\u002Fli>\n\u003Cli>Use user’s social profile avatar as profile picture at your website\u003C\u002Fli>\n\u003Cli>Customizable login\u002Fpost-registration redirection\u003C\u002Fli>\n\u003Cli>Widget and shortcode\u003C\u002Fli>\n\u003Cli>Compatible with BuddyPress, BBPress, WooCommerce\u003C\u002Fli>\n\u003Cli>Multisite Compatible\u003C\u002Fli>\n\u003Cli>Supports HTTPS enabled websites\u003C\u002Fli>\n\u003Cli>24\u002F7 quickest customer support\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Detailed Overview:\u003C\u002Fp>\n\u003Ch4>Facebook Login\u003C\u002Fh4>\n\u003Cp>Enables users to login to your website via their Facebook account\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Benefits\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Col>\n\u003Cli>\n\u003Cp>\u003Cstrong>Rapid signup\u002Flogin\u003C\u002Fstrong>: When using Social network for login, users do not need to type anything (most of the users are already logged into their social accounts). It helps in boosting signup\u002Flogin rate at your blog.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Profile Data\u003C\u002Fstrong>: User’s profile data will be saved in your blog database. This data also includes users’ email, enabling you to communicate with them.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Spam Reduction\u003C\u002Fstrong>: Because social networks authenticate individuals and generally don’t allow multiple accounts, the likelihood of false identities and spammers goes down.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch4>What makes this plugin different and why should I choose this plugin when there are many other social plugins?\u003C\u002Fh4>\n\u003Col>\n\u003Cli>\u003Cstrong>Free\u003C\u002Fstrong>: Yea, right. It is a free plugin. You need not pay single penny to use the features of this plugin.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>No need to register anywhere\u003C\u002Fstrong>: Unlike other third party Social plugins, you do not need to create an account at third party website.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Absolutely Simple\u003C\u002Fstrong>: Plugin configuration is kept dead simple. Screenshots are provided with options wherever required.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Trendy Icon Theme\u003C\u002Fstrong>: Trendy theme is used for Facebook login icon which also complies with Facebook branding guidelines.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Optimal performance\u003C\u002Fstrong>: Plugin just does what it’s supposed to do. It does not contain any tracking or advertisement scripts.\u003C\u002Fli>\n\u003Cli>We promise to provide \u003Cstrong>best quality\u003C\u002Fstrong> among other similar plugins. If you find our plugin is lacking some feature, you can email us and we will do our best to include that feature in our plugin as soon as possible.\u003C\u002Fli>\n\u003Cli>Our \u003Cstrong>support team is working 24\u002F7\u003C\u002Fstrong> to answer your queries and assist you. You will find us the quickest to respond.\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch4>Important links\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.facebook.com\u002Fheateor\" rel=\"nofollow ugc\">Company Facebook Page\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Ftwitter.com\u002Fheateor\" rel=\"nofollow ugc\">Company Twitter Page\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Ca href=\"http:\u002F\u002Fsupport.heateor.com\" rel=\"nofollow ugc\">Support Documentation\u003C\u002Fa> | \u003Ca href=\"https:\u002F\u002Fwww.heateor.com\u002Fadd-ons\" rel=\"nofollow ugc\">Add-ons\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>You can provide your feedback at hello[at]heateor[dot]com\u003C\u002Fp>\n","Allow your website visitors to login to your website via their Facebook accounts",10,5889,3,"2025-09-06T11:59:00.000Z",[20,150,151,22,152],"profile-data","social-analytics","social-plugin","https:\u002F\u002Fheateor.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fheateor-login.1.1.10.zip",99,"2025-09-09 17:52:04",{"attackSurface":158,"codeSignals":333,"taintFlows":485,"riskAssessment":543,"analyzedAt":555},{"hooks":159,"ajaxHandlers":309,"restRoutes":320,"shortcodes":321,"cronEvents":332,"entryPointCount":109,"unprotectedCount":29},[160,166,171,174,178,182,186,189,193,197,202,205,208,209,212,215,219,223,227,231,235,238,242,245,248,252,256,259,262,265,268,272,276,279,283,287,290,294,299,304],{"type":161,"name":162,"callback":163,"file":164,"line":165},"filter","manage_users_columns","oa_social_login_admin_user_column_add","includes\\admin.php",19,{"type":167,"name":168,"callback":169,"priority":145,"file":164,"line":170},"action","manage_users_custom_column","oa_social_login_admin_user_colum_display",85,{"type":161,"name":172,"callback":173,"file":164,"line":13},"manage_users_sortable_columns","oa_social_login_admin_user_colum_sort",{"type":167,"name":175,"callback":176,"file":164,"line":177},"admin_enqueue_scripts","oa_social_login_admin_js",112,{"type":167,"name":179,"callback":180,"file":164,"line":181},"admin_init","oa_register_social_login_settings",113,{"type":167,"name":183,"callback":184,"file":164,"line":185},"admin_notices","oa_social_login_admin_message",114,{"type":167,"name":183,"callback":187,"file":164,"line":188},"oa_social_login_admin_ask_review",115,{"type":167,"name":190,"callback":191,"file":164,"line":192},"admin_menu","oa_social_login_admin_menu",118,{"type":167,"name":194,"callback":195,"file":164,"line":196},"pre_comment_approved","oa_social_login_admin_pre_comment_approved",153,{"type":167,"name":198,"callback":199,"file":200,"line":201},"login_head","oa_social_login_add_javascripts","includes\\user_interface.php",69,{"type":167,"name":203,"callback":199,"file":200,"line":204},"wp_head",70,{"type":167,"name":198,"callback":206,"file":200,"line":207},"oa_social_login_add_css",73,{"type":167,"name":203,"callback":206,"file":200,"line":137},{"type":167,"name":210,"callback":199,"file":200,"line":211},"show_user_profile",77,{"type":167,"name":210,"callback":213,"file":200,"line":214},"oa_social_login_add_social_link",400,{"type":167,"name":216,"callback":217,"file":200,"line":218},"oa_social_link","oa_social_login_link_action_handler",437,{"type":161,"name":220,"callback":221,"priority":145,"file":200,"line":222},"bp_core_fetch_avatar","oa_social_login_bp_custom_fetch_avatar",575,{"type":161,"name":224,"callback":225,"priority":145,"file":200,"line":226},"get_avatar","oa_social_login_custom_avatar",658,{"type":161,"name":228,"callback":229,"file":200,"line":230},"comment_form_defaults","oa_social_login_filter_comment_form_defaults",684,{"type":167,"name":232,"callback":233,"file":200,"line":234},"comment_form_top","oa_social_login_render_login_form_comments",707,{"type":167,"name":236,"callback":233,"file":200,"line":237},"thesis_hook_comment_form_top",710,{"type":167,"name":239,"callback":240,"file":200,"line":241},"after_signup_form","oa_social_login_render_login_form_registration",734,{"type":167,"name":243,"callback":240,"file":200,"line":244},"bp_before_account_details_fields",737,{"type":167,"name":246,"callback":240,"file":200,"line":247},"woocommerce_register_form_end",740,{"type":167,"name":249,"callback":250,"file":200,"line":251},"woocommerce_before_checkout_form","oa_social_login_render_custom_form_login",743,{"type":167,"name":253,"callback":254,"file":200,"line":255},"wppb_before_login","oa_social_login_render_login_form_login",763,{"type":167,"name":257,"callback":254,"file":200,"line":258},"bp_before_sidebar_login_form",766,{"type":167,"name":260,"callback":254,"file":200,"line":261},"va_after_admin_bar_login_form",769,{"type":167,"name":263,"callback":254,"file":200,"line":264},"sidebar_login_widget_logged_out_content_end",772,{"type":167,"name":266,"callback":254,"file":200,"line":267},"woocommerce_login_form_end",775,{"type":167,"name":269,"callback":270,"file":200,"line":271},"login_form","oa_social_login_render_login_form_wp_login",816,{"type":167,"name":273,"callback":274,"file":200,"line":275},"register_form","oa_social_login_render_login_form_wp_registration",865,{"type":167,"name":277,"callback":250,"file":200,"line":278},"oa_social_login",879,{"type":161,"name":280,"callback":281,"file":200,"line":282},"oa_social_login_custom","oa_social_login_filter_login_form_custom",890,{"type":167,"name":284,"callback":285,"file":200,"line":286},"wp_footer","oa_social_login_request_email",1200,{"type":167,"name":288,"callback":285,"file":200,"line":289},"admin_footer",1201,{"type":167,"name":291,"callback":292,"file":200,"line":293},"wp_loaded","oa_social_login_request_email_cancel",1243,{"type":167,"name":295,"callback":296,"file":297,"line":298},"widgets_init","oa_social_login_init_widget","includes\\widget.php",132,{"type":161,"name":300,"callback":301,"priority":145,"file":302,"line":303},"plugin_action_links","oa_social_login_add_setup_link","oa-social-login.php",59,{"type":167,"name":305,"callback":306,"priority":307,"file":302,"line":308},"init","oa_social_login_init",11,96,[310,316],{"action":311,"nopriv":312,"callback":313,"hasNonce":314,"hasCapCheck":312,"file":164,"line":315},"oa_social_login_autodetect_api_connection_handler",false,"oa_social_login_admin_autodetect_api_connection_handler",true,296,{"action":317,"nopriv":312,"callback":318,"hasNonce":314,"hasCapCheck":312,"file":164,"line":319},"oa_social_login_check_api_settings","oa_social_login_admin_check_api_settings",404,[],[322,325,328],{"tag":216,"callback":323,"file":200,"line":324},"oa_social_login_link_shortcode_handler",418,{"tag":277,"callback":326,"file":200,"line":327},"oa_social_login_shortcode_handler",458,{"tag":329,"callback":330,"file":200,"line":331},"oa_social_login_test","oa_social_login_shortcode_test",505,[],{"dangerousFunctions":334,"sqlUsage":335,"outputEscaping":337,"fileOperations":29,"externalRequests":49,"nonceChecks":147,"capabilityChecks":29,"bundledLibraries":484},[],{"prepared":97,"raw":29,"locations":336},[],{"escaped":97,"rawEcho":338,"locations":339},81,[340,343,345,347,349,351,352,354,356,357,359,361,363,365,367,369,371,373,375,377,379,381,383,385,387,389,390,391,393,394,396,397,399,401,403,405,407,409,411,413,415,417,419,421,423,425,427,429,431,433,435,437,439,441,443,445,447,449,451,453,455,457,459,461,463,464,465,466,467,468,470,471,472,473,474,475,476,477,479,480,482],{"file":164,"line":341,"context":342},166,"raw output",{"file":164,"line":344,"context":342},232,{"file":164,"line":346,"context":342},721,{"file":164,"line":348,"context":342},723,{"file":164,"line":350,"context":342},725,{"file":164,"line":244,"context":342},{"file":164,"line":353,"context":342},738,{"file":164,"line":355,"context":342},739,{"file":164,"line":247,"context":342},{"file":164,"line":358,"context":342},751,{"file":164,"line":360,"context":342},752,{"file":164,"line":362,"context":342},757,{"file":164,"line":364,"context":342},767,{"file":164,"line":366,"context":342},768,{"file":164,"line":368,"context":342},773,{"file":164,"line":370,"context":342},783,{"file":164,"line":372,"context":342},784,{"file":164,"line":374,"context":342},789,{"file":164,"line":376,"context":342},813,{"file":164,"line":378,"context":342},815,{"file":164,"line":380,"context":342},817,{"file":164,"line":382,"context":342},852,{"file":164,"line":384,"context":342},856,{"file":164,"line":386,"context":342},1126,{"file":164,"line":388,"context":342},1127,{"file":164,"line":388,"context":342},{"file":164,"line":388,"context":342},{"file":164,"line":392,"context":342},1131,{"file":164,"line":392,"context":342},{"file":164,"line":395,"context":342},1132,{"file":164,"line":395,"context":342},{"file":164,"line":398,"context":342},1139,{"file":164,"line":400,"context":342},1171,{"file":164,"line":402,"context":342},1173,{"file":164,"line":404,"context":342},1175,{"file":164,"line":406,"context":342},1232,{"file":164,"line":408,"context":342},1247,{"file":164,"line":410,"context":342},1250,{"file":164,"line":412,"context":342},1253,{"file":164,"line":414,"context":342},1317,{"file":164,"line":416,"context":342},1473,{"file":164,"line":418,"context":342},1530,{"file":164,"line":420,"context":342},1575,{"file":164,"line":422,"context":342},1593,{"file":200,"line":424,"context":342},63,{"file":200,"line":426,"context":342},398,{"file":200,"line":428,"context":342},433,{"file":200,"line":430,"context":342},702,{"file":200,"line":432,"context":342},728,{"file":200,"line":434,"context":342},758,{"file":200,"line":436,"context":342},812,{"file":200,"line":438,"context":342},859,{"file":200,"line":440,"context":342},876,{"file":200,"line":442,"context":342},1154,{"file":200,"line":444,"context":342},1166,{"file":200,"line":446,"context":342},1183,{"file":297,"line":448,"context":342},28,{"file":297,"line":450,"context":342},34,{"file":297,"line":452,"context":342},41,{"file":297,"line":454,"context":342},46,{"file":297,"line":456,"context":342},52,{"file":297,"line":458,"context":342},57,{"file":297,"line":460,"context":342},83,{"file":297,"line":462,"context":342},84,{"file":297,"line":462,"context":342},{"file":297,"line":462,"context":342},{"file":297,"line":51,"context":342},{"file":297,"line":86,"context":342},{"file":297,"line":86,"context":342},{"file":297,"line":469,"context":342},95,{"file":297,"line":308,"context":342},{"file":297,"line":308,"context":342},{"file":297,"line":308,"context":342},{"file":297,"line":155,"context":342},{"file":297,"line":75,"context":342},{"file":297,"line":75,"context":342},{"file":297,"line":75,"context":342},{"file":297,"line":478,"context":342},103,{"file":297,"line":478,"context":342},{"file":297,"line":481,"context":342},104,{"file":302,"line":483,"context":342},30,[],[486,505,513,533],{"entryPoint":487,"graph":488,"unsanitizedCount":28,"severity":504},"oa_social_login_callback (includes\\communication.php:6)",{"nodes":489,"edges":502},[490,496],{"id":491,"type":492,"label":493,"file":494,"line":495},"n0","source","$_GET","includes\\communication.php",532,{"id":497,"type":498,"label":499,"file":494,"line":500,"wp_function":501},"n1","sink","wp_redirect() [Open Redirect]",549,"wp_redirect",[503],{"from":491,"to":497,"sanitized":312},"medium",{"entryPoint":506,"graph":507,"unsanitizedCount":28,"severity":504},"\u003Ccommunication> (includes\\communication.php:0)",{"nodes":508,"edges":511},[509,510],{"id":491,"type":492,"label":493,"file":494,"line":495},{"id":497,"type":498,"label":499,"file":494,"line":500,"wp_function":501},[512],{"from":491,"to":497,"sanitized":312},{"entryPoint":514,"graph":515,"unsanitizedCount":28,"severity":532},"oa_social_login_render_link_form (includes\\user_interface.php:89)",{"nodes":516,"edges":529},[517,520,523],{"id":491,"type":492,"label":518,"file":200,"line":519},"$_POST",174,{"id":497,"type":521,"label":522,"file":200,"line":519},"transform","→ oa_social_login_get_userid_by_token()",{"id":524,"type":498,"label":525,"file":526,"line":527,"wp_function":528},"n2","get_var() [SQLi]","includes\\toolbox.php",267,"get_var",[530,531],{"from":491,"to":497,"sanitized":312},{"from":497,"to":524,"sanitized":312},"high",{"entryPoint":534,"graph":535,"unsanitizedCount":28,"severity":532},"\u003Cuser_interface> (includes\\user_interface.php:0)",{"nodes":536,"edges":540},[537,538,539],{"id":491,"type":492,"label":518,"file":200,"line":519},{"id":497,"type":521,"label":522,"file":200,"line":519},{"id":524,"type":498,"label":525,"file":526,"line":527,"wp_function":528},[541,542],{"from":491,"to":497,"sanitized":312},{"from":497,"to":524,"sanitized":312},{"summary":544,"deductions":545},"The \"oa-social-login\" v5.10.0 plugin exhibits a mixed security posture. On the positive side, it demonstrates good practices by exclusively using prepared statements for its SQL queries and implementing nonce checks for its AJAX endpoints. The absence of file operations and bundled libraries is also a good indicator. However, several significant concerns emerge from the static analysis. A critical weakness lies in the output escaping, with only 7% of outputs being properly escaped, suggesting a high risk of Cross-Site Scripting (XSS) vulnerabilities. Furthermore, the taint analysis reveals two high-severity flows with unsanitized paths, indicating potential for insecure data handling or privilege escalation. The plugin's history of one critical, albeit now patched, vulnerability of the \"Authentication Bypass Using an Alternate Path or Channel\" type is also a concern, hinting at past design flaws that could be re-introduced. While the plugin is actively maintained and current vulnerabilities are patched, the ongoing presence of high-severity taint flows and a very low rate of proper output escaping present immediate risks that require attention.",[546,549,552],{"reason":547,"points":548},"High severity taint flows with unsanitized paths",12,{"reason":550,"points":551},"Very low percentage of properly escaped output",15,{"reason":553,"points":554},"History of a critical authentication bypass vulnerability",17,"2026-03-16T18:06:55.844Z",{"wat":557,"direct":570},{"assetPaths":558,"generatorPatterns":563,"scriptPaths":564,"versionParams":565},[559,560,561,562],"\u002Fwp-content\u002Fplugins\u002Foa-social-login\u002Fassets\u002Fcss\u002Fadmin.css","\u002Fwp-content\u002Fplugins\u002Foa-social-login\u002Fassets\u002Fcss\u002Ffrontend.css","\u002Fwp-content\u002Fplugins\u002Foa-social-login\u002Fassets\u002Fjs\u002Fadmin.js","\u002Fwp-content\u002Fplugins\u002Foa-social-login\u002Fassets\u002Fjs\u002Ffrontend.js",[],[561,562],[566,567,568,569],"oa-social-login\u002Fassets\u002Fcss\u002Fadmin.css?ver=","oa-social-login\u002Fassets\u002Fcss\u002Ffrontend.css?ver=","oa-social-login\u002Fassets\u002Fjs\u002Fadmin.js?ver=","oa-social-login\u002Fassets\u002Fjs\u002Ffrontend.js?ver=",{"cssClasses":571,"htmlComments":574,"htmlAttributes":580,"restEndpoints":586,"jsGlobals":588,"shortcodeOutput":590},[572,573],"oa_social_login_widget_container","oa_social_login_user_provider",[575,576,577,578,579],"\u003C!-- Social Login - Default Theme -->","\u003C!-- Start: Social Login -->","\u003C!-- End: Social Login -->","\u003C!-- Social Login Settings -->","\u003C!-- Social Login Widget -->",[581,582,583,584,585],"data-provider-login-url","data-login-url","data-dialog-login-url","data-dialog-register-url","data-redirect-url",[587],"\u002Fwp-json\u002Foa-social-login\u002Fv1\u002Fnonce",[589],"oa_social_login_vars",[591,592,593,594,595,596,597,598,599,600,601,602,603,604,605,606,607,608,609,610],"[oa_social_login]","[oa_social_login login_url=","[oa_social_login register_url=","[oa_social_login providers=","[oa_social_login icons=","[oa_social_login text=","[oa_social_login align=","[oa_social_login login_text=","[oa_social_login register_text=","[oa_social_login redirect_url=","[oa_social_login","[oa_social_login login_url","[oa_social_login register_url","[oa_social_login providers","[oa_social_login icons","[oa_social_login text","[oa_social_login align","[oa_social_login login_text","[oa_social_login register_text","[oa_social_login redirect_url"]