[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$frXXvkz_xj1idro-tNEA0vrawakAJQ3_VLFpZM_Fn_D0":3,"$fUkt5KvFxXvk3mW5EDJMj23gAtvHcNNsY1ZU51Un4U-M":189,"$fsDvWqRShh3kcaPIz0oKbqjAmtveVb7moeytbs0iT7xw":194},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":24,"download_link":25,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28,"discovery_status":29,"vulnerabilities":30,"developer":31,"crawl_stats":27,"alternatives":37,"analysis":112,"fingerprints":163},"play-songs","Play Songs","1.1","dlozano","https:\u002F\u002Fprofiles.wordpress.org\u002Fdlozano\u002F","\u003Cp>Este es un plugin que te permitira tener un boton en la parte lateral de tu web el cual muestra un reproductor mp3. Tambien se muestra un menu con 22 generos musicales y miles de canciones que las podras escuchar gratuitamente. Mientras navegas puedes convertir tu reproductor en un popup y escuchar musica sin interrupciones cuando pasas de una pagina a otra.\u003C\u002Fp>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Escucha musica sin interrupciones.\u003C\u002Fli>\n\u003Cli>Selecciona los generos que desees.\u003C\u002Fli>\n\u003Cli>Abre en un popup el reproductor.\u003C\u002Fli>\n\u003Cli>Playlist de las canciones.\u003C\u002Fli>\n\u003Cli>Tus visitantes escucharan musica mientras visitan tu web.\u003C\u002Fli>\n\u003Cli>No modifica ni altera tu tema.\u003C\u002Fli>\n\u003Cli>No ocupa espacio.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Usage\u003C\u002Fh3>\n\u003Cp>Una demo del plugin lo encontraras en http:\u002F\u002Fbumbablog.com\u003C\u002Fp>\n","Play Songs es un plugin de WordPress que permite visualizar un reproductor de música que aparece y desaparece automáticamente.",10,6064,0,"2012-10-03T15:41:00.000Z","3.3.2","3.0","",[19,20,21,22,23],"bar","control","music","song","widget","http:\u002F\u002Fbumbablog.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fplay-songs.zip",85,null,"2026-04-06T09:54:40.288Z","no_bundle",[],{"slug":7,"display_name":7,"profile_url":8,"plugin_count":32,"total_installs":33,"avg_security_score":26,"avg_patch_time_days":34,"trust_score":35,"computed_at":36},6,70,30,84,"2026-05-20T10:48:30.142Z",[38,48,64,80,97],{"slug":39,"name":40,"version":41,"author":7,"author_profile":8,"description":17,"short_description":42,"active_installs":11,"downloaded":43,"rating":13,"num_ratings":13,"last_updated":44,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":45,"homepage":24,"download_link":46,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":47},"music-bar","Music Bar","1.0","Music Bar te ayuda a administrar una barra de musica en la parte inferior de tu web site. Aprovecha las miles de canciones de BUMBABlog gratuitamente.",11688,"2012-06-14T17:22:00.000Z",[19,20,21,22,23],"https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fmusic-bar.zip","2026-04-16T10:56:18.058Z",{"slug":49,"name":50,"version":51,"author":7,"author_profile":8,"description":52,"short_description":53,"active_installs":11,"downloaded":54,"rating":55,"num_ratings":56,"last_updated":57,"tested_up_to":58,"requires_at_least":59,"requires_php":17,"tags":60,"homepage":61,"download_link":62,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":63},"play-video-of-song","Play Video of Song","2.01","\u003Cp>Este plugin te permitira tener un boton en la parte lateral de tu web el cual muestra un reproductor de video de musica. Aprovecha la API de GOODFIDELITY para administrar contenido relevante.\u003C\u002Fp>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>En un boton tienes una web site.\u003C\u002Fli>\n\u003Cli>Mira y escucha videos musicales.\u003C\u002Fli>\n\u003Cli>Selecciona tus artistas favoritos.\u003C\u002Fli>\n\u003Cli>No modifica ni altera tu tema.\u003C\u002Fli>\n\u003Cli>No ocupa espacio.\u003C\u002Fli>\n\u003Cli>Mejora la experiencia de tus usuarios.\u003C\u002Fli>\n\u003Cli>Utiliza Ajax para cargar la pagina\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Usage\u003C\u002Fh3>\n\u003Cp>Una demo del plugin lo encontraras en http:\u002F\u002Fbumbablog.com\u003C\u002Fp>\n","Este plugin permite tener un reproductor de audio y video en la parte lateral de tu web site el cual aparece y desaparece sin alterar tu tema.",5164,100,1,"2013-06-28T18:49:00.000Z","3.5.2","3.4",[19,20,21,22,23],"http:\u002F\u002Fbumbablog.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fplay-video-of-song.2.01.zip","2026-03-15T15:16:48.613Z",{"slug":65,"name":66,"version":67,"author":68,"author_profile":69,"description":70,"short_description":71,"active_installs":34,"downloaded":72,"rating":13,"num_ratings":13,"last_updated":73,"tested_up_to":15,"requires_at_least":74,"requires_php":17,"tags":75,"homepage":78,"download_link":79,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":47},"wp-spotify","WP-Spotify","2.0","NEOLiNES","https:\u002F\u002Fprofiles.wordpress.org\u002Fneolines\u002F","\u003Cp>Link Spotify tracks to your posts and pages using uri-based shortcodes.\u003C\u002Fp>\n\u003Cp>Ex.\u003Cbr \u002F>\n[spotify:track:2lBpN5CZ3zLyVIPejUhN6Y]\u003C\u002Fp>\n\u003Cp>Attention!\u003Cbr \u002F>\nAt this moment you can NOT link albums, playlists or artists, just tracks.\u003C\u002Fp>\n","Link Spotify tracks to your posts and pages. Including widget.",8524,"2012-02-06T20:36:00.000Z","2.0.2",[21,76,22,77,23],"post","spotify","http:\u002F\u002Fhermanssondavid.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-spotify.2.0.zip",{"slug":81,"name":82,"version":83,"author":84,"author_profile":85,"description":86,"short_description":87,"active_installs":11,"downloaded":88,"rating":13,"num_ratings":13,"last_updated":89,"tested_up_to":90,"requires_at_least":74,"requires_php":17,"tags":91,"homepage":95,"download_link":96,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":47},"plastic-tunes","Plastic Tunes","1.4","unalignedcoder","https:\u002F\u002Fprofiles.wordpress.org\u002Funalignedcoder\u002F","\u003Cp>Plastic Tunes is a “now-playing” plugin that allows your blog to display informations about the music you play in your media player, and most importantly, to insert them into your database. Artists, titles, albums and pretty much any information included in your digital music files goes into your database for real-time or later use, ready to be displayed on your sidebar, on a dedicated page or wherever you want.\u003Cbr \u002F>\nThe concept of this plugin, and quite a few lines of code were originally taken from version 0.1 of the \u003Ca href=\"http:\u002F\u002Fwww.thesmithsplace.com\u002Fmutunes\" rel=\"nofollow ugc\">muTunes\u003C\u002Fa> plugin, made by Ken Smith — although Plastic Tunes grew a lot since then.\u003C\u002Fp>\n","A Multi-User \"Now Playing\" plugin that accepts input from iTunes, WinAmp, and many more. Saves your information to your DB and will accomodate multiple users. Widget compatible and highly customizable.",5588,"2009-09-09T11:32:00.000Z","2.5",[92,21,93,94,23],"media","nowplaying","sidebar","http:\u002F\u002Funalignedcode.wordpress.com\u002Fplastic_tunes\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fplastic-tunes.1.4.zip",{"slug":98,"name":99,"version":100,"author":101,"author_profile":102,"description":103,"short_description":104,"active_installs":11,"downloaded":105,"rating":13,"num_ratings":13,"last_updated":106,"tested_up_to":58,"requires_at_least":107,"requires_php":17,"tags":108,"homepage":110,"download_link":111,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"pledgemusic","PledgeMusic","1.2.1","45PRESS","https:\u002F\u002Fprofiles.wordpress.org\u002F45press\u002F","\u003Cp>PledgeMusic is a platform that provides artists the resources they need to build successful long-term careers.\u003Cbr \u002F>\nThrough our easy to use direct-to-fan model, we’ve fuzed advanced technologies and social media techniques with decades of music business expertise to create the most effective music fundraising, marketing, and sales tool in the world.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Plugin Features:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Connect your PledgeMusic campaign to your WordPress site.\u003C\u002Fli>\n\u003Cli>Two display options: Sidebar widget, or lightbox popup.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>Sign up with \u003Ca href=\"http:\u002F\u002Fwww.pledgemusic.com\u002Fsign_up\u002Fartist?referrer=wpplugin\" title=\"PledgeMusic\" rel=\"nofollow ugc\">PledgeMusic\u003C\u002Fa> now!\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Plugin developed by \u003Ca href=\"http:\u002F\u002Fwww.45press.com\" title=\"45PRESS\" rel=\"nofollow ugc\">45PRESS\u003C\u002Fa> – a digital marketing agency that specializes in website creation, development, hosting, & video production.\u003C\u002Fstrong>\u003C\u002Fp>\n","Provides the ability to display your PledgeMusic campaign on your WordPress site.",3161,"2013-08-10T19:27:00.000Z","3.0.1",[21,109,98,94,23],"pledge-music","http:\u002F\u002Fwww.pledgemusic.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fpledgemusic.1.2.1.zip",{"attackSurface":113,"codeSignals":130,"taintFlows":147,"riskAssessment":148,"analyzedAt":162},{"hooks":114,"ajaxHandlers":126,"restRoutes":127,"shortcodes":128,"cronEvents":129,"entryPointCount":13,"unprotectedCount":13},[115,121],{"type":116,"name":117,"callback":118,"file":119,"line":120},"action","wp_enqueue_scripts","bottom_bar_enqueue","play-songs.php",17,{"type":122,"name":123,"callback":124,"file":119,"line":125},"filter","wp_footer","play_songs",55,[],[],[],[],{"dangerousFunctions":131,"sqlUsage":132,"outputEscaping":134,"fileOperations":13,"externalRequests":13,"nonceChecks":13,"capabilityChecks":13,"bundledLibraries":142},[],{"prepared":13,"raw":13,"locations":133},[],{"escaped":13,"rawEcho":135,"locations":136},2,[137,140],{"file":119,"line":138,"context":139},27,"raw output",{"file":119,"line":141,"context":139},51,[143],{"name":144,"version":145,"knownCves":146},"jQuery","1.7.2",[],[],{"summary":149,"deductions":150},"The 'play-songs' v1.1 plugin exhibits a strong security posture in several key areas, particularly regarding its limited attack surface and the absence of known historical vulnerabilities. The static analysis indicates zero entry points like AJAX handlers, REST API routes, shortcodes, or cron events, which significantly reduces the potential for external exploitation. Furthermore, the plugin demonstrates good practice by exclusively using prepared statements for its SQL queries, eliminating a common source of SQL injection vulnerabilities.  The lack of known CVEs and a clean vulnerability history suggest a well-maintained and secure development process for this plugin.\n\nHowever, there are significant concerns arising from the static analysis. The most critical issue is that 100% of its output is not properly escaped. This presents a high risk of Cross-Site Scripting (XSS) vulnerabilities, where malicious scripts could be injected and executed within the WordPress admin area or on the frontend, depending on where the output is displayed. Additionally, the complete absence of nonce checks and capability checks on any potential, albeit currently non-existent, entry points is a concern. While there are no entry points reported, if any were to be introduced or discovered, their lack of security checks would make them immediately vulnerable. The bundling of an outdated jQuery v1.7.2 library also introduces a potential risk if any JavaScript functionality relies on it and its known vulnerabilities haven't been mitigated elsewhere.",[151,154,157,160],{"reason":152,"points":153},"Output not properly escaped",8,{"reason":155,"points":156},"Bundled outdated library: jQuery v1.7.2",3,{"reason":158,"points":159},"No capability checks",5,{"reason":161,"points":159},"No nonce checks","2026-04-16T11:44:04.786Z",{"wat":164,"direct":171},{"assetPaths":165,"generatorPatterns":168,"scriptPaths":169,"versionParams":170},[166,167],"\u002Fwp-content\u002Fplugins\u002Fplay-songs\u002Fjs\u002Fplay-songs.js","\u002Fwp-content\u002Fplugins\u002Fplay-songs\u002Fcss\u002Fplay-songs.css",[],[166],[],{"cssClasses":172,"htmlComments":175,"htmlAttributes":176,"restEndpoints":180,"jsGlobals":181,"shortcodeOutput":183},[173,174],"recent-posts","primer-div",[],[177,178,179],"id=\"bottom-bar\"","id=\"mainpanel\"","id=\"latest-posts\"",[],[182],"primer-div.style.display",[184,185,186,187,188],"\u003Cdiv id=\"bottom-bar\">","\u003Cdiv id=\"mainpanel\">","\u003Cdiv id='latest-posts'","\u003Cdiv class=\"primer-div\">","\u003Ciframe src=\"http:\u002F\u002Fbumbablog.com\u002Fradio\u002Frock-clasico\"",{"error":190,"url":191,"statusCode":192,"statusMessage":193,"message":193},true,"http:\u002F\u002Flocalhost\u002Fapi\u002Fplugins\u002Fplay-songs\u002Fbundle",404,"no bundle for this plugin yet",{"slug":4,"current_version":6,"total_versions":13,"versions":195},[]]