[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fXOddDBpPJqO3RwJUPFORbskKucYB9326X2jajrgFNh0":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":14,"tags":17,"homepage":23,"download_link":24,"security_score":25,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":27,"vulnerabilities":28,"developer":29,"crawl_stats":26,"alternatives":37,"analysis":149,"fingerprints":321},"plimus-for-wordpress","Bluesnap for WordPress","1.1.3","Vladimir Prelovac","https:\u002F\u002Fprofiles.wordpress.org\u002Ffreediver\u002F","\u003Cp>Bluesnap for WordPress allows seamless Bluesnap Payment Gateway IPN integration for WordPress blogs.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Main Features:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Receive IPN (instant payment notification) directly in your WordPress blog\u003C\u002Fli>\n\u003Cli>Admin dashboard with charts and reports\u003C\u002Fli>\n\u003Cli>Automatically register buyers as users on the blog\u003C\u002Fli>\n\u003Cli>Send the buyers automatic email\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Bluesnap for WordPress relies on Bluesnap IPN (instant payment notification) to provide real time reports about your sales. It can also automatically register new buyers as users on your blog which allows you to for example use membership plugins.\u003C\u002Fp>\n\u003Cp>For more information visit \u003Ca href=\"http:\u002F\u002Fwww.prelovac.com\u002Fvladimir\u002Fwordpress-plugins\u002Fplimus-for-wordpress\" rel=\"nofollow ugc\">Bluesnap for WordPress plugin page\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch3>License\u003C\u002Fh3>\n\u003Cp>This file is part of Bluesnap for WordPress.\u003C\u002Fp>\n\u003Cp>Bluesnap for WordPress is free software: you can redistribute it and\u002For modify it under the terms of the GNU General Public License as published by the Free Software Foundation, either version 3 of the License, or (at your option) any later version.\u003C\u002Fp>\n\u003Cp>Bluesnap for WordPress is distributed in the hope that it will be useful, but WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License for more details.\u003C\u002Fp>\n\u003Cp>You should have received a copy of the GNU General Public License along with Bluesnap for WordPress. If not, see \u003Ca href=\"http:\u002F\u002Fwww.gnu.org\u002Flicenses\u002F\" rel=\"nofollow ugc\">http:\u002F\u002Fwww.gnu.org\u002Flicenses\u002F\u003C\u002Fa>.\u003C\u002Fp>\n","Plimus for WordPress allows seamless Bluesnap Payment Gateway IPN integration for WordPress blogs.",10,4844,0,"","4.2.39","2.8",[18,19,20,21,22],"admin","ipn","payment","plimus","plimus-ipn","http:\u002F\u002Fwww.prelovac.com\u002Fwordpress-plugins\u002Fplimus-for-wordpress","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fplimus-for-wordpress.zip",100,null,"2026-03-15T10:48:56.248Z",[],{"slug":30,"display_name":7,"profile_url":8,"plugin_count":31,"total_installs":32,"avg_security_score":33,"avg_patch_time_days":34,"trust_score":35,"computed_at":36},"freediver",20,1029680,87,2577,70,"2026-04-04T06:25:48.997Z",[38,59,79,103,127],{"slug":39,"name":40,"version":41,"author":42,"author_profile":43,"description":44,"short_description":45,"active_installs":25,"downloaded":46,"rating":31,"num_ratings":47,"last_updated":48,"tested_up_to":49,"requires_at_least":50,"requires_php":14,"tags":51,"homepage":55,"download_link":56,"security_score":57,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":58},"woo-worldpay-hosted-payment-gateway","WorldPay Hosted Payment Gateway","1.0.18","Priyank Patel","https:\u002F\u002Fprofiles.wordpress.org\u002Fpriyankkpatel\u002F","\u003Ch3>Overview\u003C\u002Fh3>\n\u003Cp>Easy plugin to add worldpay hosted payment support in your woocommerce based site. Users now will be given option to pay by card on the checkout page.\u003Cbr \u002F>\nYou can add information of your worldpay account from dashboard. To do so please follow these simple steps.\u003Cbr \u002F>\nStep 1: Go to Admin dashboard > WooCommerce > Settings > Payments > Custom Worldpay.\u003Cbr \u002F>\nStep 2: Please provide all the information in the givenm fields.\u003C\u002Fp>\n\u003Cp>Please refer this link for more information.\u003Cbr \u002F>\nhttp:\u002F\u002Fsupport.worldpay.com\u002Fsupport\u002Fkb\u002Fgg\u002Fcorporate-gateway-guide\u002Fcontent\u002Fhostedintegration\u002Fquickstart.htm\u003C\u002Fp>\n","Custom worldpay payment gateway for your woocommerce based site.",11107,3,"2020-10-05T12:13:00.000Z","5.5.18","4.5",[18,52,53,20,54],"administration","checkout","worldpay","#","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwoo-worldpay-hosted-payment-gateway.1.0.20.zip",85,"2026-03-15T15:16:48.613Z",{"slug":60,"name":61,"version":62,"author":63,"author_profile":64,"description":65,"short_description":66,"active_installs":11,"downloaded":67,"rating":68,"num_ratings":69,"last_updated":14,"tested_up_to":70,"requires_at_least":71,"requires_php":14,"tags":72,"homepage":77,"download_link":78,"security_score":25,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":27},"wp-invoice-ultimate","WP Invoices Ultimate","0.1.6","Lee Mason","https:\u002F\u002Fprofiles.wordpress.org\u002Fnohalfpixels\u002F","\u003Cp>The WP Invoices Ultimate plugin is not an attempt of world domination invoicing system.\u003C\u002Fp>\n\u003Cp>The aim is to provide a system which is:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Simple\u003C\u002Fli>\n\u003Cli>Fast\u003C\u002Fli>\n\u003Cli>Easy to configure\u003C\u002Fli>\n\u003Cli>Set and forget\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>WPIU Has very few options, which include a little bit about you business, notification email subject customisation, and your paypal information.\u003C\u002Fp>\n\u003Cp>WPIU uses Paypal, and manual payments. Right now there is no agenda to add support for other gateways, so if you need multiple gateways please look elsewhere.\u003C\u002Fp>\n\u003Cp>WPIU uses the Paypal IPN system and can update the “paid” amounts on each invoice when a user pays for it (part payments can be made).\u003C\u002Fp>\n\u003Cp>The Paypal transactions are stored with each invoice and can be accessed both in the admin area, and on the invoice page (all paypal data captured).\u003C\u002Fp>\n\u003Cp>Options foreach invoice include:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Title\u003C\u002Fli>\n\u003Cli>Description\u003C\u002Fli>\n\u003Cli>Due Date\u003C\u002Fli>\n\u003Cli>Job Number\u003C\u002Fli>\n\u003Cli>Invoice Number (randomly generated, can be overidden)\u003C\u002Fli>\n\u003Cli>Paid Amount\u003C\u002Fli>\n\u003Cli>Client\u003C\u002Fli>\n\u003Cli>Send Email \u002F Reminder\u003C\u002Fli>\n\u003Cli>Invoice Items (title \u002F qty \u002F unit cost \u002F item total)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>All invoice items are added up when the invoice is saved (not through javascript for accuracy).\u003C\u002Fp>\n\u003Cp>Page template can be overridden by adding a \u003Ccode>single-wpiu-invoices.php\u003C\u002Fcode> file to the current theme.\u003C\u002Fp>\n\u003Cp>Included page template includes and uses the twitter bootstrap css framework http:\u002F\u002Ftwitter.github.com\u002Fbootstrap\u002F for simple styling.\u003C\u002Fp>\n\u003Cp>Plugin is still in beta right now and has a few limitations:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Only global tax rule apply, no per invoice tax percentage – available soon\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Please see my other plugins \u002F projects \u002F portfolio here http:\u002F\u002Fno-half-pixels.com – always on the lookout for new ventures.\u003C\u002Fp>\n","Simple to use invoicing system that can intergrate with Paypal. Very simple, very flexble.",10773,80,1,"3.3.2","3.3",[73,74,20,75,76],"invoicing","money","paypal","paypal-ipn","http:\u002F\u002Fno-half-pixels.com\u002Fportfolio\u002Fwp-invoices-ultimate\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-invoice-ultimate.zip",{"slug":80,"name":81,"version":82,"author":83,"author_profile":84,"description":85,"short_description":86,"active_installs":87,"downloaded":88,"rating":89,"num_ratings":90,"last_updated":91,"tested_up_to":92,"requires_at_least":93,"requires_php":94,"tags":95,"homepage":99,"download_link":100,"security_score":33,"vuln_count":101,"unpatched_count":13,"last_vuln_date":102,"fetched_at":58},"loginizer","Loginizer","2.0.6","Softaculous","https:\u002F\u002Fprofiles.wordpress.org\u002Fsoftaculous\u002F","\u003Cp>Loginizer is a WordPress plugin which helps you fight against bruteforce attack by blocking login for the IP after it reaches maximum retries allowed. You can blacklist or whitelist IPs for login using Loginizer. You can use various other features like Two Factor Auth, reCAPTCHA, PasswordLess Login, etc. to improve security of your website.\u003C\u002Fp>\n\u003Cp>Loginizer is actively used by more than 1000000+ WordPress websites.\u003C\u002Fp>\n\u003Cp>You can find our official documentation at \u003Ca href=\"https:\u002F\u002Floginizer.com\u002Fdocs\" rel=\"nofollow ugc\">https:\u002F\u002Floginizer.com\u002Fdocs\u003C\u002Fa>. We are also active in our community support forums on \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fsupport\u002Fplugin\u002Floginizer\" rel=\"ugc\">wordpress.org\u003C\u002Fa> if you are one of our free users. Our Premium Support Ticket System is at \u003Ca href=\"https:\u002F\u002Floginizer.deskuss.com\" rel=\"nofollow ugc\">https:\u002F\u002Floginizer.deskuss.com\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>Free Features :\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Brute force protection. IPs trying to brute force your website will be blocked for 15 minutes after 3 failed login attempts. After multiple lockouts the IP is blocked for 24 hours. This is the default configuration and can be changed from Loginizer -> Brute force page in WordPress admin panel.\u003C\u002Fli>\n\u003Cli>Failed login attempts logs.\u003C\u002Fli>\n\u003Cli>Blacklist IPs\u003C\u002Fli>\n\u003Cli>Whitelist IPs\u003C\u002Fli>\n\u003Cli>Custom error messages on failed login.\u003C\u002Fli>\n\u003Cli>Permission check for important files and folders.\u003C\u002Fli>\n\u003Cli>Allow only Trusted IP.\u003C\u002Fli>\n\u003Cli>Blocked Screen in place of the Login page.\u003C\u002Fli>\n\u003Cli>Email Notification on successful login.\u003C\u002Fli>\n\u003Cli>Let users login with LinkedIn\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Get Support and Pro Features\u003C\u002Fh4>\n\u003Cp>Get professional support from our experts and pro features to take your site’s security to the next level with \u003Ca href=\"https:\u002F\u002Floginizer.com\u002Fpricing\" rel=\"nofollow ugc\">Loginizer-Security\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>Pro Features :\u003C\u002Fp>\n\u003Cul>\n\u003Cli>MD5 Checksum – of Core WordPress Files. The admin can check and ignore files as well.\u003C\u002Fli>\n\u003Cli>PasswordLess Login – At the time of Login, the username \u002F email address will be asked and an email will be sent to the email address of that account with a temporary link to login.\u003C\u002Fli>\n\u003Cli>Two Factor Auth via Email – On login, an email will be sent to the email address of that account with a temporary 6 digit code to complete the login.\u003C\u002Fli>\n\u003Cli>Two Factor Auth via App – The user can configure the account with a 2FA App like Google Authenticator, Authy, etc.\u003C\u002Fli>\n\u003Cli>Login Challenge Question – The user can setup a Challenge Question and Answer as an additional security layer. After Login, the user will need to answer the question to complete the login.\u003C\u002Fli>\n\u003Cli>reCAPTCHA – Google’s reCAPTCHA v3\u002Fv2, Cloudflare Turnstile, hCAPTCHA can be configured for the Login screen, Comments Section, Registration Form, etc. to prevent automated brute force attacks. Supports WooCommerce as well.\u003C\u002Fli>\n\u003Cli>Rename Login Page – The Admin can rename the login URL (slug) to something different from wp-login.php to prevent automated brute force attacks.\u003C\u002Fli>\n\u003Cli>Rename WP-Admin URL – The Admin area in WordPress is accessed via wp-admin. With loginizer you can change it to anything e.g. site-admin\u003C\u002Fli>\n\u003Cli>CSRF Protection – This helps in preventing CSRF attacks as it updates the admin URL with a session string which makes it difficult and nearly impossible for the attacker to predict the URL.\u003C\u002Fli>\n\u003Cli>Rename Login with Secrecy – If set, then all Login URL’s will still point to wp-login.php and users will have to access the New Login Slug by typing it in the browser.\u003C\u002Fli>\n\u003Cli>Disable XML-RPC – An option to simply disable XML-RPC in WordPress. Most of the WordPress users don’t need XML-RPC and can disable it to prevent automated brute force attacks.\u003C\u002Fli>\n\u003Cli>Rename XML-RPC – The Admin can rename the XML-RPC to something different from xmlrpc.php to prevent automated brute force attacks.\u003C\u002Fli>\n\u003Cli>Username Auto Blacklist – Attackers generally use common usernames like admin, administrator, or variations of your domain name \u002F business name. You can specify such username here and Loginizer will auto-blacklist the IP Address(s) of clients who try to use such username(s).\u003C\u002Fli>\n\u003Cli>New Registration Domain Blacklist – If you would like to ban new registrations from a particular domain, you can use this utility to do so.\u003C\u002Fli>\n\u003Cli>Change the Admin Username – The Admin can rename the admin username to something more difficult.\u003C\u002Fli>\n\u003Cli>Auto Blacklist IPs – IPs will be auto blacklisted, if certain usernames saved by the Admin are used to login by malicious bots \u002F users.\u003C\u002Fli>\n\u003Cli>Disable Pingbacks – Simple way to disable PingBacks.\u003C\u002Fli>\n\u003Cli>SSO – Single Sign-on, let any user access to your WordPress Dashboard without the need to share username or password.\u003C\u002Fli>\n\u003Cli>Limit Concurrent Logins – It prevents user to login from different devices concurrently, you can define how many devices you want to allow, and how you want to restrict the user when concurrent limit is reached.\u003C\u002Fli>\n\u003Cli>Social Login – Users can login or register with their Google, Github, Facebook, X (Twitter), Discord, Twitch, LinkedIn, Microsoft with support for WooCommerce and Ultimate Member.\u003C\u002Fli>\n\u003Cli>Key Less Social Login – Use Loginizer’s Social Auth for easy key less Social login configuration, now supports Google, GitHub, X, LinkedIn more to be added later\u003C\u002Fli>\n\u003Cli>Country Blocking – Block IPs from specific countries to restrict access to your website.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Features in Loginizer include:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Blocks IP after maximum retries allowed\u003C\u002Fli>\n\u003Cli>Extended Lockout after maximum lockouts allowed\u003C\u002Fli>\n\u003Cli>Email notification to admin after max lockouts\u003C\u002Fli>\n\u003Cli>Blacklist IP\u002FIP range\u003C\u002Fli>\n\u003Cli>Whitelist IP\u002FIP range\u003C\u002Fli>\n\u003Cli>Check logs of failed attempts\u003C\u002Fli>\n\u003Cli>Create IP ranges\u003C\u002Fli>\n\u003Cli>Delete IP ranges\u003C\u002Fli>\n\u003Cli>Licensed under LGPLv2.1\u003C\u002Fli>\n\u003Cli>Safe & Secure\u003C\u002Fli>\n\u003C\u002Ful>\n","Loginizer is a WordPress security plugin which helps you fight against bruteforce attacks.",1000000,29791210,96,1020,"2026-03-02T12:38:00.000Z","6.9.4","3.0","5.5",[96,18,97,80,98],"access","login","security","https:\u002F\u002Fwordpress.org\u002Fextend\u002Fplugins\u002Floginizer\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Floginizer.2.0.6.zip",8,"2024-11-04 00:00:00",{"slug":104,"name":105,"version":106,"author":107,"author_profile":108,"description":109,"short_description":110,"active_installs":87,"downloaded":111,"rating":112,"num_ratings":113,"last_updated":114,"tested_up_to":92,"requires_at_least":115,"requires_php":116,"tags":117,"homepage":122,"download_link":123,"security_score":124,"vuln_count":125,"unpatched_count":13,"last_vuln_date":126,"fetched_at":58},"redux-framework","Redux Framework","4.5.10","David Anderson \u002F Team Updraft","https:\u002F\u002Fprofiles.wordpress.org\u002Fdavidanderson\u002F","\u003Cp>Redux was built by developers for developers. We save you months if not years in your development time. Everything we do is to help innovation in the industry.\u003C\u002Fp>\n\u003Ch4>♥️ What the Plugin does?\u003C\u002Fh4>\n\u003Cp>Redux is a simple, genuinely extensible, and fully responsive options framework for WordPress themes and plugins. Built on the WordPress Settings API; Redux supports many field types, custom error handling, custom fields & validation types, and import\u002Fexport functionality.\u003C\u002Fp>\n\u003Cp>But what does Redux actually DO? We don’t believe that theme and plugin developers should have to reinvent the wheel every time they start work on a project. Redux simplifies the development cycle by providing a streamlined, extensible framework for developers to build on. Through a simple, well-documented config file, third-party developers can build out an options panel limited only by their imagination in a fraction of the time it would take to build from the ground up!\u003C\u002Fp>\n\u003Ch4>🚀 What fields does Redux offer?\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Accordion\u003C\u002Fli>\n\u003Cli>ACE Editor\u003C\u002Fli>\n\u003Cli>Background\u003C\u002Fli>\n\u003Cli>Border\u003C\u002Fli>\n\u003Cli>Box Shadow\u003C\u002Fli>\n\u003Cli>Button Set\u003C\u002Fli>\n\u003Cli>Checkbox \u002F Multi-Check\u003C\u002Fli>\n\u003Cli>Color (WordPress Native)\u003C\u002Fli>\n\u003Cli>Color Gradient\u003C\u002Fli>\n\u003Cli>Color Palette\u003C\u002Fli>\n\u003Cli>Color RGBA\u003C\u002Fli>\n\u003Cli>Color Scheme\u003C\u002Fli>\n\u003Cli>Content\u003C\u002Fli>\n\u003Cli>Custom Fonts\u003C\u002Fli>\n\u003Cli>Customizer\u003C\u002Fli>\n\u003Cli>Date\u003C\u002Fli>\n\u003Cli>Date\u002FTime\u003C\u002Fli>\n\u003Cli>Dimensions (Height\u002FWidth)\u003C\u002Fli>\n\u003Cli>Divide (Divider)\u003C\u002Fli>\n\u003Cli>Editor (WordPress Native)\u003C\u002Fli>\n\u003Cli>Gallery (WordPress Native)\u003C\u002Fli>\n\u003Cli>Google Maps\u003C\u002Fli>\n\u003Cli>Icon Select\u003C\u002Fli>\n\u003Cli>Image Select (Patterns\u002FPresets)\u003C\u002Fli>\n\u003Cli>Import\u002FExport\u003C\u002Fli>\n\u003Cli>Info (Header\u002FNotice)\u003C\u002Fli>\n\u003Cli>JS Button\u003C\u002Fli>\n\u003Cli>Link Color\u003C\u002Fli>\n\u003Cli>Media (WordPress Native)\u003C\u002Fli>\n\u003Cli>Metaboxes\u003C\u002Fli>\n\u003Cli>Multi Media\u003C\u002Fli>\n\u003Cli>Multi-Text\u003C\u002Fli>\n\u003Cli>Palette\u003C\u002Fli>\n\u003Cli>Password\u003C\u002Fli>\n\u003Cli>Radio (w\u002F WordPress Data)\u003C\u002Fli>\n\u003Cli>Raw (HTML\u002FPHP\u002FMarkDown)\u003C\u002Fli>\n\u003Cli>Repeater\u003C\u002Fli>\n\u003Cli>Section (Indent and Group Fields)\u003C\u002Fli>\n\u003Cli>Select (Select\u002FMulti-Select w\u002F Select2 & WordPress Data)\u003C\u002Fli>\n\u003Cli>Select Image\u003C\u002Fli>\n\u003Cli>Slider (Drag a Handle)\u003C\u002Fli>\n\u003Cli>Slides (Multiple Images, Titles, and Descriptions)\u003C\u002Fli>\n\u003Cli>Social Profiles\u003C\u002Fli>\n\u003Cli>Sortable (Drag\u002FDrop Checkbox\u002FInput Fields)\u003C\u002Fli>\n\u003Cli>Sorter (Drag\u002FDrop Manager – Works great for content blocks)\u003C\u002Fli>\n\u003Cli>Spacing (Margin\u002FPadding\u002FAbsolute)\u003C\u002Fli>\n\u003Cli>Spinner\u003C\u002Fli>\n\u003Cli>Switch\u003C\u002Fli>\n\u003Cli>Tabbed\u003C\u002Fli>\n\u003Cli>Taxonomy Metaboxes\u003C\u002Fli>\n\u003Cli>Text\u003C\u002Fli>\n\u003Cli>Textarea\u003C\u002Fli>\n\u003Cli>Typography\u003C\u002Fli>\n\u003Cli>User Profile Metaboxes\u003C\u002Fli>\n\u003Cp> * The most advanced typography module complete with preview, Google fonts, and auto-css output!\u003C\u002Fp>\n\u003Cli>User Profile Metaboxes\u003C\u002Fli>\n\u003Cli>Widget Areas (Classic Widgets only)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>🎉Additional Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Full value escaping\u003C\u002Fli>\n\u003Cli>Required – Link visibility from parent fields. Set this to affect the visibility of the field on the parent’s value. Fully nested with multiple required parents possible.\u003C\u002Fli>\n\u003Cli>Output CSS Automatically – Redux generates CSS and the appropriate Google Fonts stylesheets for you on select fields. You need to only specify the CSS selector to apply the CSS to (limited to certain fields).\u003C\u002Fli>\n\u003Cli>Compiler integration! A custom hook runs when any fields with the argument `compile => true` are changed.\u003C\u002Fli>\n\u003Cli>Field validation and sanitization\u003C\u002Fli>\n\u003Cli>Field and section disabling\u003C\u002Fli>\n\u003Cli>Oh, and did we mention a fully integrated Google Fonts setup that will make you so happy you’ll want to cry?\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>👍 BE A CONTRIBUTOR\u003C\u002Fh4>\n\u003Cp>If you want to help with translations, \u003Ca href=\"https:\u002F\u002Ftranslate.wordpress.org\u002Fprojects\u002Fwp-plugins\u002Fredux-framework\" rel=\"nofollow ugc\">go to the Translation Portal at translate.wordpress.org\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>You can also contribute code via our \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Freduxframework\u002Fredux-framework\u002F\" rel=\"nofollow ugc\">GitHub Repository\u003C\u002Fa>. Be sure to use our develop branch to submit pull requests.\u003C\u002Fp>\n\u003Ch4>📝 Documentation and Support\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>We have extremely extensive docs. Please visit [https:\u002F\u002Fdevs.redux.io\u002F](https:\u002F\u002Fdevs.redux.io). If that doesn’t solve your issue, search [the issue tracker on GitHub](https:\u002F\u002Fgithub.com\u002Freduxframework\u002Fredux-framework\u002Fissues). If you can’t locate any topics that pertain to your particular problem, [post a new issue](https:\u002F\u002Fgithub.com\u002Freduxframework\u002Fredux-framework\u002Fissues\u002Fnew) for it. Before you submit an issue, please read [our contributing requirements](https:\u002F\u002Fgithub.com\u002Fredux-framework\u002Fredux-framework\u002Fblob\u002Fmaster\u002FCONTRIBUTING.md). We build on the dev version and push it to WordPress.org when we confirm Redux is stable and ready for release.\u003C\u002Fli>\n\u003Cli>If you have additional questions, reach out to us at support@redux.io\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>⚡ Like the Redux Plugin?\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Follow us on \u003Ca href=\"https:\u002F\u002Fwww.facebook.com\u002Freduxframework\" rel=\"nofollow ugc\">Facebook 💬\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Rate us 5 ⭐ stars\u003C\u002Fstrong> on \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fsupport\u002Fplugin\u002Fredux-framework\u002Freviews\u002F?filter=5\u002F#new-post\" rel=\"ugc\">WordPress.org\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>Follow us on Twitter 🐦: \u003Ca href=\"https:\u002F\u002Ftwitter.com\u002Freduxframework\" rel=\"nofollow ugc\">@ReduxFramework\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>🔐 Privacy\u003C\u002Fh4>\n\u003Cp>Redux does not interact with end users on your website. If a product is using Redux, the option panel will cease to function without Redux.\u003C\u002Fp>\n\u003Cp>For more details on our privacy policy: \u003Ca href=\"https:\u002F\u002Fredux.io\u002Fprivacy\" rel=\"nofollow ugc\">https:\u002F\u002Fredux.io\u002Fprivacy\u003C\u002Fa>\u003Cbr \u002F>\nFor more details on our terms and conditions: \u003Ca href=\"https:\u002F\u002Fredux.io\u002Fterms\" rel=\"nofollow ugc\">https:\u002F\u002Fredux.io\u002Fterms\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>NOTE: Redux is not intended to be used on its own. It requires a config file provided by a third-party theme or plugin developer to actually do anything cool!\u003C\u002Fp>\n","Redux is a simple, truly extensible, and fully responsive options framework for WordPress themes and plugins. It ships with an integrated demo.",31507478,88,272,"2026-01-07T21:08:00.000Z","5.0","7.4",[18,118,119,120,121],"options","options-framework","plugin-options","theme-options","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fredux-framework","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fredux-framework.4.5.10.zip",89,6,"2025-12-12 00:00:00",{"slug":128,"name":129,"version":130,"author":131,"author_profile":132,"description":133,"short_description":134,"active_installs":135,"downloaded":136,"rating":137,"num_ratings":138,"last_updated":139,"tested_up_to":92,"requires_at_least":140,"requires_php":116,"tags":141,"homepage":145,"download_link":146,"security_score":147,"vuln_count":125,"unpatched_count":13,"last_vuln_date":148,"fetched_at":58},"woocommerce-payments","WooPayments: Integrated WooCommerce Payments","10.6.0","WooCommerce","https:\u002F\u002Fprofiles.wordpress.org\u002Fwoocommerce\u002F","\u003Cp>\u003Cstrong>Payments made simple, with no monthly fees – designed exclusively for WooCommerce stores.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>Securely accept major credit and debit cards, and allow customers to pay you directly without leaving your WooCommerce store. View and manage transactions from one convenient place – your WordPress dashboard.\u003C\u002Fp>\n\u003Cp>See payments, track cash flow into your bank account, manage refunds, and stay on top of disputes without the hassle of having to log into a separate payment processor.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Manage transactions from the comfort of your store\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>Features previously only available on your payment provider’s website are now part of your store’s \u003Cstrong>integrated payments dashboard\u003C\u002Fstrong>. This enables you to:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>View the details of \u003Ca href=\"https:\u002F\u002Fwoocommerce.com\u002Fdocument\u002Fwoopayments\u002Fmanaging-money\u002F\" rel=\"nofollow ugc\">payments, refunds, and other transactions\u003C\u002Fa>.\u003C\u002Fli>\n\u003Cli>View and respond to \u003Ca href=\"https:\u002F\u002Fwoocommerce.com\u002Fdocument\u002Fwoopayments\u002Ffraud-and-disputes\u002Fmanaging-disputes\u002F\" rel=\"nofollow ugc\">disputes and chargebacks\u003C\u002Fa>.\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwoocommerce.com\u002Fdocument\u002Fwoopayments\u002Fpayouts\u002F\" rel=\"nofollow ugc\">Track payouts\u003C\u002Fa> into your bank account or debit card.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>Pay as you go\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>WooPayments is \u003Cstrong>free to install\u003C\u002Fstrong>, with \u003Cstrong>no setup fees or monthly fees\u003C\u002Fstrong>. Our pay-as-you-go pricing model means we’re incentivized to help you succeed! \u003Ca href=\"https:\u002F\u002Fwoocommerce.com\u002Fdocument\u002Fwoopayments\u002Ffees\u002F\" rel=\"nofollow ugc\">Read more about transaction fees\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Supported by the WooCommerce team\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>Our global support team is available to answer questions you may have about WooPayments installation, setup, or use. For assistance, \u003Ca href=\"https:\u002F\u002Fwoocommerce.com\u002Fmy-account\u002Fcontact-support\u002F?select=5278104\" rel=\"nofollow ugc\">open a ticket on woocommerce.com\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch3>Getting Started\u003C\u002Fh3>\n\u003Ch4>Requirements\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>WordPress 6.0 or newer.\u003C\u002Fli>\n\u003Cli>WooCommerce 7.6 or newer.\u003C\u002Fli>\n\u003Cli>PHP 7.3 or newer.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Try it now\u003C\u002Fh4>\n\u003Cp>To try WooPayments (previously WooCommerce Payments) on your store, simply \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fwoocommerce-payments\u002F#installation\" rel=\"ugc\">install it\u003C\u002Fa> and follow the prompts. Please see our \u003Ca href=\"https:\u002F\u002Fwoocommerce.com\u002Fdocument\u002Fwoopayments\u002Fstartup-guide\u002F\" rel=\"nofollow ugc\">Startup Guide\u003C\u002Fa> for a full walkthrough of the process.\u003C\u002Fp>\n","Securely accept credit and debit cards on your WooCommerce store. Manage payments without leaving your WordPress dashboard. Only with WooPayments.",900000,42264155,62,134,"2026-03-11T15:29:00.000Z","6.0",[142,143,144,20,128],"apple-pay","credit-card","google-pay","https:\u002F\u002Fwoocommerce.com\u002Fpayments\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwoocommerce-payments.10.6.0.zip",97,"2023-12-27 00:00:00",{"attackSurface":150,"codeSignals":170,"taintFlows":255,"riskAssessment":303,"analyzedAt":320},{"hooks":151,"ajaxHandlers":166,"restRoutes":167,"shortcodes":168,"cronEvents":169,"entryPointCount":13,"unprotectedCount":13},[152,158,162],{"type":153,"name":154,"callback":155,"file":156,"line":157},"action","admin_print_styles","pn_admin_styles","plimus-pn.php",638,{"type":153,"name":159,"callback":160,"file":156,"line":161},"admin_menu","pn_admin_menu_pages",639,{"type":153,"name":163,"callback":164,"file":156,"line":165},"admin_print_scripts","pn_admin_print_scripts",640,[],[],[],[],{"dangerousFunctions":171,"sqlUsage":172,"outputEscaping":189,"fileOperations":125,"externalRequests":13,"nonceChecks":13,"capabilityChecks":13,"bundledLibraries":250},[],{"prepared":173,"raw":174,"locations":175},4,5,[176,179,182,184,187],{"file":156,"line":177,"context":178},21,"$wpdb->get_var() with variable interpolation",{"file":156,"line":180,"context":181},175,"$wpdb->get_results() with variable interpolation",{"file":156,"line":183,"context":181},192,{"file":185,"line":186,"context":178},"plimusipn.php",105,{"file":185,"line":188,"context":178},109,{"escaped":13,"rawEcho":190,"locations":191},30,[192,195,197,199,201,203,205,207,209,211,213,215,217,219,220,222,224,225,226,228,230,232,234,236,238,240,242,244,246,248],{"file":156,"line":193,"context":194},112,"raw output",{"file":156,"line":196,"context":194},115,{"file":156,"line":198,"context":194},117,{"file":156,"line":200,"context":194},118,{"file":156,"line":202,"context":194},123,{"file":156,"line":204,"context":194},125,{"file":156,"line":206,"context":194},129,{"file":156,"line":208,"context":194},135,{"file":156,"line":210,"context":194},136,{"file":156,"line":212,"context":194},137,{"file":156,"line":214,"context":194},141,{"file":156,"line":216,"context":194},147,{"file":156,"line":218,"context":194},554,{"file":156,"line":218,"context":194},{"file":156,"line":221,"context":194},557,{"file":156,"line":223,"context":194},559,{"file":156,"line":223,"context":194},{"file":156,"line":223,"context":194},{"file":156,"line":227,"context":194},568,{"file":156,"line":229,"context":194},575,{"file":156,"line":231,"context":194},576,{"file":156,"line":233,"context":194},577,{"file":156,"line":235,"context":194},578,{"file":156,"line":237,"context":194},579,{"file":156,"line":239,"context":194},580,{"file":156,"line":241,"context":194},582,{"file":156,"line":243,"context":194},585,{"file":156,"line":245,"context":194},597,{"file":156,"line":247,"context":194},601,{"file":156,"line":249,"context":194},605,[251],{"name":252,"version":253,"knownCves":254},"jQuery","1.4.3",[],[256,273,290],{"entryPoint":257,"graph":258,"unsanitizedCount":69,"severity":272},"pn_handle_pdf_page (plimus-pn.php:59)",{"nodes":259,"edges":269},[260,264],{"id":261,"type":262,"label":263,"file":156,"line":137},"n0","source","$_SERVER",{"id":265,"type":266,"label":267,"file":156,"line":198,"wp_function":268},"n1","sink","echo() [XSS]","echo",[270],{"from":261,"to":265,"sanitized":271},false,"medium",{"entryPoint":274,"graph":275,"unsanitizedCount":173,"severity":272},"pn_handle_options_page (plimus-pn.php:152)",{"nodes":276,"edges":287},[277,280,281,285],{"id":261,"type":262,"label":278,"file":156,"line":279},"$_SERVER (x2)",155,{"id":265,"type":266,"label":267,"file":156,"line":227,"wp_function":268},{"id":282,"type":262,"label":283,"file":156,"line":284},"n2","$_POST (x2)",164,{"id":286,"type":266,"label":267,"file":156,"line":241,"wp_function":268},"n3",[288,289],{"from":261,"to":265,"sanitized":271},{"from":282,"to":286,"sanitized":271},{"entryPoint":291,"graph":292,"unsanitizedCount":174,"severity":302},"\u003Cplimus-pn> (plimus-pn.php:0)",{"nodes":293,"edges":299},[294,296,297,298],{"id":261,"type":262,"label":295,"file":156,"line":137},"$_SERVER (x3)",{"id":265,"type":266,"label":267,"file":156,"line":198,"wp_function":268},{"id":282,"type":262,"label":283,"file":156,"line":284},{"id":286,"type":266,"label":267,"file":156,"line":241,"wp_function":268},[300,301],{"from":261,"to":265,"sanitized":271},{"from":282,"to":286,"sanitized":271},"low",{"summary":304,"deductions":305},"The security posture of the \"plimus-for-wordpress\" v1.1.3 plugin presents a mixed bag of good practices and significant concerns. On the positive side, the plugin has no known CVEs, indicating a relatively clean history. Furthermore, its limited attack surface with zero AJAX handlers, REST API routes, shortcodes, or cron events that are accessible without authentication is a strong point. The absence of external HTTP requests and a focus on file operations rather than direct user interaction in those areas can also be seen as positive security considerations.\n\nHowever, the static analysis reveals critical areas of weakness. The most concerning finding is that 0% of the 30 total outputs are properly escaped. This opens the door to potential cross-site scripting (XSS) vulnerabilities, where malicious code could be injected and executed in users' browsers. Additionally, while 44% of SQL queries use prepared statements, a significant portion still does not, posing a risk of SQL injection if these queries handle user-supplied input without proper sanitization. The presence of 3 taint flows with unsanitized paths, even without a critical or high severity classification, suggests potential pathways for data to be misused or lead to unexpected behavior.\n\nThe lack of nonce checks and capability checks, combined with the absence of authentication on any identified entry points (even though the number of entry points is zero), suggests a potential oversight in securing actions that might be triggered indirectly. The use of a very outdated jQuery v1.4.3 library is another significant concern, as older library versions are often known to contain security vulnerabilities that have since been patched in newer releases. In conclusion, while the plugin avoids common pitfalls like numerous unauthenticated entry points or known CVEs, the severe lack of output escaping, potential for SQL injection, and outdated bundled library present substantial security risks that require immediate attention.",[306,309,311,313,315,318],{"reason":307,"points":308},"Outputs are not properly escaped",15,{"reason":310,"points":101},"SQL queries are not always prepared",{"reason":312,"points":174},"Taint flows with unsanitized paths",{"reason":314,"points":173},"Bundled outdated library (jQuery v1.4.3)",{"reason":316,"points":317},"No nonce checks implemented",7,{"reason":319,"points":317},"No capability checks implemented","2026-03-16T23:19:09.941Z",{"wat":322,"direct":329},{"assetPaths":323,"generatorPatterns":326,"scriptPaths":327,"versionParams":328},[324,325],"\u002Fwp-content\u002Fplugins\u002Fplimus-for-wordpress\u002Fimages\u002Fplimus_logo.png","\u002Fwp-content\u002Fplugins\u002Fplimus-for-wordpress\u002Fimages\u002Fpn_plugin_icon.png",[],[],[],{"cssClasses":330,"htmlComments":332,"htmlAttributes":333,"restEndpoints":335,"jsGlobals":336,"shortcodeOutput":337},[331],"plimus-logo",[],[334],"id=\"plimus-logo\"",[],[],[]]