[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f9yTM-qkLCWyBX0jyNvInuYwJ4_GkI5qXTnOc6YM-EdA":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":25,"download_link":26,"security_score":27,"vuln_count":28,"unpatched_count":29,"last_vuln_date":30,"fetched_at":31,"vulnerabilities":32,"developer":61,"crawl_stats":38,"alternatives":68,"analysis":172,"fingerprints":403},"popup-addon-for-ninja-forms","Popup addon for Ninja Forms","3.5.2","Aman","https:\u002F\u002Fprofiles.wordpress.org\u002Faman086\u002F","\u003Cp>Popup Addon for Ninja Forms allows you to show any Ninja Forms in Popup\u002FModal.\u003Cbr \u002F>\nYou can create beautiful popups with live preview in customizer.\u003Cbr \u002F>\nIt allows you add additional content before & after the form in popup.\u003Cbr \u002F>\nPopup can be triggered by click or can be opened on page load using the shortocde.\u003C\u002Fp>\n\u003Ch3>Top Features:\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Option to set Popup Cookie to hide it after opened certain number of times.\u003C\u002Fli>\n\u003Cli>Option to set Popup Animations.\u003C\u002Fli>\n\u003Cli>Option to set Popup Container Width for mobile.\u003C\u002Fli>\n\u003Cli>Option to set Popup Container Height for mobile.\u003C\u002Fli>\n\u003Cli>Option to set Overlay color.\u003C\u002Fli>\n\u003Cli>Option to set Overlay opacity.\u003C\u002Fli>\n\u003Cli>Option to set Popup Container opacity.\u003C\u002Fli>\n\u003Cli>Option to set Popup Container background color.\u003C\u002Fli>\n\u003Cli>Option to set Popup Container Padding.\u003C\u002Fli>\n\u003Cli>Option to set Popup Container Border.\u003C\u002Fli>\n\u003Cli>Option to set Popup Container Rounded Corners.\u003C\u002Fli>\n\u003Cli>Option to set Popup Container Width.\u003C\u002Fli>\n\u003Cli>Option to set Popup Container Height.\u003C\u002Fli>\n\u003Cli>Option to open popup by any link using class or ID.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Get more features in \u003Ca href=\"https:\u002F\u002Fwebholics.org\u002Fdownloads\u002Fpopup-add-on-for-ninja-forms-pro\u002F?utm_source=wordpress-plugin-repo&utm_medium=popup-addon-for-ninja-forms&utm_campaign=popup-addon-for-ninja-form-lite-version\" rel=\"nofollow ugc\">Pro version\u003C\u002Fa>\u003Cbr \u002F>\n* Advanced Animations\u003Cbr \u002F>\n* Exit Intent\u003Cbr \u002F>\n* Hide Popup on Mobile\u002FDesktop.\u003Cbr \u002F>\n\u003Ca href=\"https:\u002F\u002Fwebholics.org\u002Fdownloads\u002Fpopup-add-on-for-ninja-forms-pro\u002F?utm_source=wordpress-plugin-repo&utm_medium=popup-addon-for-ninja-forms&utm_campaign=popup-addon-for-ninja-form-lite-version\" rel=\"nofollow ugc\">Get Popup Addon for Ninja Forms PRO!\u003C\u002Fa>\u003C\u002Fp>\n","Popup\u002FModal addon for Ninja Forms. Create beautiful popups using Ninja Forms for newsletters, login, registration forms.",1000,37205,76,6,"2025-11-04T12:25:00.000Z","6.8.5","4.4","",[20,21,22,23,24],"contact-form","modal","newsletter","ninja-forms","popup","https:\u002F\u002Fwebholics.org\u002Fdownloads\u002Fpopup-add-on-for-ninja-forms-pro\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fpopup-addon-for-ninja-forms.3.5.2.zip",98,2,0,"2025-10-31 00:00:00","2026-03-15T15:16:48.613Z",[33,48],{"id":34,"url_slug":35,"title":36,"description":37,"plugin_slug":4,"theme_slug":38,"affected_versions":39,"patched_in_version":6,"severity":40,"cvss_score":41,"cvss_vector":42,"vuln_type":43,"published_date":30,"updated_date":44,"references":45,"days_to_patch":47},"CVE-2025-64264","popup-addon-for-ninja-forms-authenticated-administrator-stored-cross-site-scripting","Popup addon for Ninja Forms \u003C= 3.5.1 - Authenticated (Administrator+) Stored Cross-Site Scripting","The Popup addon for Ninja Forms plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 3.5.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrator-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. This only affects multi-site installations and installations where unfiltered_html has been disabled.",null,"\u003C=3.5.1","medium",4.4,"CVSS:3.1\u002FAV:N\u002FAC:H\u002FPR:H\u002FUI:N\u002FS:C\u002FC:L\u002FI:L\u002FA:N","Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","2025-11-17 18:14:10",[46],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002F3b3c2a72-8a8d-4b9a-98e8-f982e34cebb5?source=api-prod",18,{"id":49,"url_slug":50,"title":51,"description":52,"plugin_slug":4,"theme_slug":38,"affected_versions":53,"patched_in_version":54,"severity":40,"cvss_score":55,"cvss_vector":56,"vuln_type":43,"published_date":57,"updated_date":58,"references":59,"days_to_patch":14},"CVE-2025-53279","popup-addon-for-ninja-forms-authenticated-contributor-stored-cross-site-scripting","Popup addon for Ninja Forms \u003C= 3.4 - Authenticated (Contributor+) Stored Cross-Site Scripting","The Popup addon for Ninja Forms plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 3.4 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","\u003C=3.4","3.5",6.4,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:L\u002FUI:N\u002FS:C\u002FC:L\u002FI:L\u002FA:N","2025-06-27 00:00:00","2025-07-02 19:38:45",[60],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002Fad0e684a-6bae-44cb-a43c-6bc402217f20?source=api-prod",{"slug":62,"display_name":7,"profile_url":8,"plugin_count":63,"total_installs":64,"avg_security_score":65,"avg_patch_time_days":66,"trust_score":13,"computed_at":67},"aman086",11,7590,95,138,"2026-04-05T03:02:18.092Z",[69,92,112,128,152],{"slug":70,"name":71,"version":72,"author":73,"author_profile":74,"description":75,"short_description":76,"active_installs":77,"downloaded":78,"rating":79,"num_ratings":80,"last_updated":81,"tested_up_to":16,"requires_at_least":82,"requires_php":83,"tags":84,"homepage":87,"download_link":88,"security_score":89,"vuln_count":90,"unpatched_count":29,"last_vuln_date":91,"fetched_at":31},"easy-popups","Easy Popups – Beautiful, Responsive Popups for Lead Capture & Announcements","1.5.2","Rock Solid","https:\u002F\u002Fprofiles.wordpress.org\u002Fmikewire_rocksolid\u002F","\u003Ch4>A lightweight and straightforward Popup Builder for WordPress\u003C\u002Fh4>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fdemo2024.rocksolidplugins.io\u002Feasy-popup-demos\u002F\" rel=\"nofollow ugc\">View demos\u003C\u002Fa> | \u003Ca href=\"https:\u002F\u002Fwww.rocksolidplugins.io\u002Fdocs\u002Feasy-popups\u002F\" rel=\"nofollow ugc\">View docs\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwww.rocksolidplugins.io\u002Fplugins\u002Feasy-popups\u002F?utm_source=wordpressorg&utm_medium=link\" rel=\"nofollow ugc\">Easy Popups\u003C\u002Fa>\u003C\u002Fstrong> is a lightweight plugin that allows you to create multiple popups across your website.\u003C\u002Fp>\n\u003Cp>From the makers of \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fbulletin-announcements\u002F\" rel=\"ugc\">Bulletin\u003C\u002Fa>, an Announcement Banner plugin with a solid 5-star rating!\u003C\u002Fp>\n\u003Cp>Here are a few of the typical scenarios when you would use Easy Popups:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\n\u003Cp>🚀 \u003Cstrong>Promoting a Special Offer\u003C\u002Fstrong>: Use an easy popup to highlight a limited-time discount, promotional code, or flash sale to encourage visitors to make a purchase.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>✉️ \u003Cstrong>Building Email Subscriptions\u003C\u002Fstrong>: Employ an easy popup to capture visitors’ email addresses and encourage them to subscribe to your newsletter or mailing list.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>📣 \u003Cstrong>Announcing New Product or Service\u003C\u002Fstrong>: Use an easy popup to inform visitors about a new product launch, service offering, or significant update to generate interest and drive conversions.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>💬 \u003Cstrong>Increasing Social Media Engagement\u003C\u002Fstrong>: Utilize an easy popup to encourage visitors to follow your social media accounts, like your Facebook page, or join your community on other platforms.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>🤝 \u003Cstrong>Collecting User Feedback\u003C\u002Fstrong>: Implement an easy popup to gather feedback or conduct surveys, enabling you to gather valuable insights and improve your website or business offerings.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>How it works\u003C\u002Fh4>\n\u003Cp>Watch a quick video of how it works here:\u003C\u002Fp>\n\u003Cp>\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002FNbamBC6VDYg?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\u003C\u002Fp>\n\u003Cp>You simply install the plugin and create your first popup. Then configure the settings while checking the instant preview. Once you’re ready, you can publish the popup for everyone to see!\u003C\u002Fp>\n\u003Cp>You can also check out the \u003Ca href=\"https:\u002F\u002Fwww.rocksolidplugins.io\u002Fdocs\u002Feasy-popups\u002F?utm_source=wordpressorg&utm_medium=link\" rel=\"nofollow ugc\">docs on our site\u003C\u002Fa>, which are extended regularly.\u003C\u002Fp>\n\u003Ch3>Full Easy Popups features\u003C\u002Fh3>\n\u003Cp>The basic Easy Popups plugin allows you to add unlimited Popups with buttons and various styling options\u003C\u002Fp>\n\u003Cp>The Pro version of Easy Popups comes packed with features:\u003C\u002Fp>\n\u003Cp>\u003Cstrong>📝 Form Integrations\u003C\u002Fstrong>\u003Cbr \u002F>\nShow a form directly on the popup\u003C\u002Fp>\n\u003Cp>\u003Cstrong>👉 Advanced Triggers\u003C\u002Fstrong>\u003Cbr \u002F>\nSet the ability for the Popup to show after a % of the page has been scrolled. Or scrolled until a certain CSS selector. You can also set it to appear manually (e.g. when a button is clicked)\u003C\u002Fp>\n\u003Cp>\u003Cstrong>🖼️ Image slider and video ability\u003C\u002Fstrong>\u003Cbr \u002F>\nAdd an image slider or video on your popup\u003C\u002Fp>\n\u003Cp>\u003Cstrong>🚀 Fancy animations and Google fonts\u003C\u002Fstrong>\u003Cbr \u002F>\nCustomize the popup further by adding a eye-catching animation and Google fonts\u003C\u002Fp>\n\u003Cp>\u003Cstrong>🚦Advanced visibility options\u003C\u002Fstrong>\u003Cbr \u002F>\nShow a Popup only on selected pages on your site. Or only for logged-in users.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>🕑 Schedule and expiry functions\u003C\u002Fstrong>\u003Cbr \u002F>\nAbility to schedule + expire the Popup.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>🕺 WordPress Network support\u003C\u002Fstrong>\u003Cbr \u002F>\nSpecify Popups to show on all your sub-sites\u003C\u002Fp>\n\u003Cp>\u003Cstrong>🃏Advanced CSS\u003C\u002Fstrong>\u003Cbr \u002F>\nAbility to add your own CSS with each Popup\u003C\u002Fp>\n\u003Cp>View demos below:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fdemo2024.rocksolidplugins.io\u002Feasy-popup-demos\u002Fnewsletter-popup\u002F\" rel=\"nofollow ugc\">Newsletter popup\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fdemo2024.rocksolidplugins.io\u002Feasy-popup-demos\u002Ftop-image-popup-with-scroll-trigger\u002F\" rel=\"nofollow ugc\">Top-image popup with scroll-trigger\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fdemo2024.rocksolidplugins.io\u002Feasy-popup-demos\u002Fpopup-with-image-slider-that-zooms-in\u002F\" rel=\"nofollow ugc\">Popup with image slider that zooms in\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fdemo2024.rocksolidplugins.io\u002Feasy-popup-demos\u002Fno-image-popup-that-hides-for-1-hour-after-closing\u002F\" rel=\"nofollow ugc\">No-image popup that hides for 1 hour after closing\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fdemo2024.rocksolidplugins.io\u002Feasy-popup-demos\u002Fpopup-with-video\u002F\" rel=\"nofollow ugc\">Popup with video\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Credits\u003C\u002Fh4>\n\u003Cp>This plugin is created by \u003Ca href=\"https:\u002F\u002Fwww.rocksolidplugins.io\u002F?utm_source=wordpressorg&utm_medium=link\" title=\"Rock Solid Plugins\" rel=\"friend nofollow ugc\">Rock Solid Plugins\u003C\u002Fa>.\u003C\u002Fp>\n","Create beautiful, responsive popups in minutes. Add forms, videos, smart triggers, and precise display rules — all inside WordPress.",30,5194,94,7,"2025-10-06T05:08:00.000Z","5.0","7.2",[21,22,85,86,24],"opt-in","pop-up","https:\u002F\u002Fwww.rocksolidplugins.io\u002Fplugins\u002Feasy-popups\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Feasy-popups.1.5.2.zip",99,1,"2025-02-14 00:00:00",{"slug":93,"name":94,"version":95,"author":96,"author_profile":97,"description":98,"short_description":99,"active_installs":100,"downloaded":101,"rating":29,"num_ratings":29,"last_updated":102,"tested_up_to":16,"requires_at_least":103,"requires_php":83,"tags":104,"homepage":18,"download_link":110,"security_score":111,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"result-popups-for-cf7","Result Popups for CF7","1.0.0","Azamat","https:\u002F\u002Fprofiles.wordpress.org\u002Fazamat88\u002F","\u003Cp>Contact Form 7 is a staple for WordPress sites—but the default confirmation messages? Not so much.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Result Popups for CF7\u003C\u002Fstrong> replaces those inline alerts with beautiful, customizable SweetAlert modals. It just works out of the box—no settings required—but if you’re a power user, you’ll find plenty to tweak.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Why use Result Popups?\u003C\u002Fstrong>\u003Cbr \u002F>\n– It looks amazing.\u003Cbr \u002F>\n– It improves form UX.\u003Cbr \u002F>\n– It makes your site feel more modern.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Use cases:\u003C\u002Fstrong>\u003Cbr \u002F>\n– Alert users when their form was submitted successfully.\u003Cbr \u002F>\n– Show styled error or spam messages in a modal window.\u003Cbr \u002F>\n– Replace native CF7 alerts with a modern visual experience.\u003C\u002Fp>\n\u003Ch3>Features\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>✅ Works automatically—no configuration needed  \u003C\u002Fli>\n\u003Cli>🎨 Optional settings panel with popup behavior and style options  \u003C\u002Fli>\n\u003Cli>💬 Handles all CF7 statuses: success, validation errors, spam, and failures  \u003C\u002Fli>\n\u003Cli>🌐 Translation-ready and lightweight  \u003C\u002Fli>\n\u003Cli>🔄 Graceful fallback to native messages if plugin is deactivated  \u003C\u002Fli>\n\u003Cli>⚙️ Lightweight, flexible, and easy to set up\u003C\u002Fli>\n\u003Cli>🔌 Works as a native Contact Form 7 extension — no complex setup required\u003C\u002Fli>\n\u003C\u002Ful>\n","Modernize your Contact Form 7 messages with clean, customizable SweetAlert2 popups. No config needed. Just activate and enjoy.",20,321,"2025-07-14T10:04:00.000Z","5.2",[105,106,107,108,109],"alerts","contact-form-7","modals","popups","sweetalert2","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fresult-popups-for-cf7.1.0.0.zip",100,{"slug":113,"name":114,"version":115,"author":116,"author_profile":117,"description":118,"short_description":119,"active_installs":29,"downloaded":120,"rating":29,"num_ratings":29,"last_updated":121,"tested_up_to":122,"requires_at_least":82,"requires_php":123,"tags":124,"homepage":18,"download_link":127,"security_score":111,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"asap-popups-studio","Asap – Popups Studio","1.0","Piyush Asthana","https:\u002F\u002Fprofiles.wordpress.org\u002Fpiyushmultidots\u002F","\u003Cp>Asap – Popups Studio lets you create and manage multiple popups from the WordPress admin. Each popup has its own settings for when and where it appears.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Features:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Multiple popups\u003C\u002Fstrong> – Create as many popups as you need; each is a separate post with its own content and settings.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Display control\u003C\u002Fstrong> – Enable\u002Fdisable per popup; choose trigger (page load with delay, scroll percentage, or exit intent).\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Visibility\u003C\u002Fstrong> – Show on all pages, pages only, posts only, or selected pages.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Show once\u003C\u002Fstrong> – Limit to once per session, per day, per week, or per month using cookies.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Custom HTML\u003C\u002Fstrong> – Optional custom HTML (replacing the main editor content) with allowed tags only; no script insertion.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Animations\u003C\u002Fstrong> – None, fade in, or slide up.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Width\u003C\u002Fstrong> – Set popup width in pixels or percentage.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Quick toggle\u003C\u002Fstrong> – Enable\u002Fdisable popups from the list screen with a toggle switch.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>For site-wide or per-page custom CSS, use the WordPress Customizer or theme\u002Fblock editor. Uses the block editor (or classic editor) for popup content; optional custom HTML overrides that for a single popup. All user-facing strings are translation-ready (text domain: \u003Ccode>asap-popups-studio\u003C\u002Fcode>).\u003C\u002Fp>\n","Create and manage multiple custom popups with individual settings and display rules.",139,"2026-03-13T06:17:00.000Z","6.9.4","7.4",[125,126,21,22,24],"exit-intent","lightbox","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fasap-popups-studio.1.0.zip",{"slug":129,"name":130,"version":131,"author":132,"author_profile":133,"description":134,"short_description":135,"active_installs":136,"downloaded":137,"rating":138,"num_ratings":139,"last_updated":140,"tested_up_to":141,"requires_at_least":142,"requires_php":143,"tags":144,"homepage":148,"download_link":149,"security_score":138,"vuln_count":150,"unpatched_count":29,"last_vuln_date":151,"fetched_at":31},"creative-mail-by-constant-contact","Creative Mail – Easier WordPress & WooCommerce Email Marketing","1.6.9","Constant Contact","https:\u002F\u002Fprofiles.wordpress.org\u002Fconstantcontact\u002F","\u003Cp>Creative Mail was designed specifically for WordPress and WooCommerce.\u003C\u002Fp>\n\u003Cp>Our intelligent (and super fun) email editor simplifies email marketing campaign creation and pulls your WordPress blog posts, website images and WooCommerce products right into your email content. Leads from your WordPress website, ecommerce store and contact forms are automatically captured and routed into our included Contacts CRM and synced with your email marketing lists.\u003C\u002Fp>\n\u003Cp>It’s perfect for automatic blog post syndication, newsletters and announcements, event promotion, WooCommerce product specials, retargeting ecommerce shoppers, sending postcards, providing updates and more.\u003C\u002Fp>\n\u003Cp>Create awesome email marketing campaigns right from your WordPress Admin Dashboard that are all powered by the award-winning & rock-solid reliability of Newfold Digital.\u003C\u002Fp>\n\u003Ch3>CREATIVE MAIL IS:\u003C\u002Fh3>\n\u003Col>\n\u003Cli>Incredibly easy WordPress email marketing\u003C\u002Fli>\n\u003Cli>Deeply connected to your website & WooCommerce store\u003C\u002Fli>\n\u003Cli>Accessed from within your WP Admin Dashboard\u003C\u002Fli>\n\u003Cli>Automatically syncing your contacts and building your marketing lists\u003C\u002Fli>\n\u003Cli>Fun, which makes life way better\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch3>\u003Ca href=\"https:\u002F\u002Fwww.creativemail.com\u002Fplans\" rel=\"nofollow ugc\">VIEW OUR DETAILED FEATURES\u003C\u002Fa>\u003C\u002Fh3>\n\u003Ch3>\u003Ca href=\"https:\u002F\u002Fwww.creativemail.com\" rel=\"nofollow ugc\">WOOCOMMERCE & WORDPRESS INTEGRATION\u003C\u002Fa>:\u003C\u002Fh3>\n\u003Cp>Turn your WooCommerce store and your WordPress site into efficient marketing engines. All ecommerce contacts and form entries are all captured in our included CRM and synced automatically with Creative Mail.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Enhanced Ecommerce:\u003C\u002Fstrong> WooCommerce store customers and ecommerce interactions are all captured automatically within your email marketing list. Retarget and re-engage your customers. Sell more stuff.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Beautiful Transactional Emails:\u003C\u002Fstrong> Standard WooCommerce triggered emails can be replaced to match your branding and style. Build one, and then all your other WooCommerce emails managed by Creative will inherit the same branded look. Hey, style matters.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Jetpack Forms Integration:\u003C\u002Fstrong> Collect, sync, and manage opt-in subscribers directly from Jetpack forms into Creative Mail.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Build Better Branding:\u003C\u002Fstrong> Creative Mail includes our free LogoBuilder and image editing suite to enhance your brand.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Amazing Stock Images:\u003C\u002Fstrong> You get free access to the completely integrated photo library (in addition to your own WordPress media library) to make amazing email marketing campaigns with award-winning images.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Get Better Deliverability:\u003C\u002Fstrong> Other email marketing solutions require complex SMTP solutions, external gateways or have you sending from their less than stellar IPs. As a result, your emails can get bounced or never delivered. Creative Mail is an all-in-one solution that uses a rock solid infrastructure, for superior deliverability. Boom! ‘nuff said.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Live Support:\u003C\u002Fstrong> With our paid plans (Awesome & Ultimate) you get access to phone and chat support to help you get answers from real live, helpful humans. Imagine that!\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>\u003Ca href=\"https:\u002F\u002Fwww.creativemail.com\" rel=\"nofollow ugc\">OPT-IN  EMAIL FORMS\u003C\u002Fa>:\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>Jetpack Newsletter Form:\u003C\u002Fstrong> Jetpack has a JMML (join my mailing list) Newsletter Signup form. When activated, contacts who sign up for your Newsletter through the Jetpack form are brought right into your Newsletter email marketing list. Easy-peasy.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Other WordPress Website Forms:\u003C\u002Fstrong> Creative Mail detects the current website forms used on your site, and automatically adds contacts to your email marketing lists. Automagically awesome!\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Creative Mail Form:\u003C\u002Fstrong> If you are not using a form on your site, you can easily add your Creative Mail Gutenberg form to start collecting email addresses of your site visitors\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>\u003Ca href=\"https:\u002F\u002Fwww.creativemail.com\" rel=\"nofollow ugc\">EMAIL AUTOMATIONS\u003C\u002Fa>:\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>Scheduled Sends:\u003C\u002Fstrong> Schedule the time and date of outgoing email marketing campaigns based on your business or organization’s preferences.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Single-Step Triggered Emails:\u003C\u002Fstrong> Replace your non-branded WooCommerce order notification triggered emails with on-brand Creative Mail emails for deeper customer engagement.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Abandoned Cart:\u003C\u002Fstrong> With Creative Mail and a WooCommerce store you can send emails to customers who abandon their WooCommerce shopping cart. They’ll get an email that reminds them of the items they were considering before they left.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Multi-Step Marketing Journeys:\u003C\u002Fstrong> Develop sophisticated CLM (that’s marketing speak for – customer lifecycle marketing) campaigns by leveraging our “if this, then that” campaign automation engine that responds to a customer’s actions, birthdays or purchases. Welcome your customers with email automation.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>\u003Ca href=\"https:\u002F\u002Fwww.creativemail.com\" rel=\"nofollow ugc\">ANALYTICS & INSIGHTS\u003C\u002Fa>:\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>Realtime Email Marketing Statistics:\u003C\u002Fstrong> Bounces, opens, clicks, forwards, complaints, unsubscribes and more are easily tracked and managed. Be a control freak, it’s OK.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Marketing Campaign Mapview:\u003C\u002Fstrong> With our mapview you can see who’s opening your  emails on what devices on an awesome, interactive visual map.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>\u003Ca href=\"https:\u002F\u002Fwww.creativemail.com\" rel=\"nofollow ugc\">CONTACTS CRM\u003C\u002Fa>:\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>Contact Lists:\u003C\u002Fstrong> Within the Creative Mail Contacts CRM you can quickly and easily manage all your Contacts, Subscribers and Unsubscribes.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Contact Activity:\u003C\u002Fstrong> Drill into the purchases and behaviors of your contacts.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>List Sources:\u003C\u002Fstrong> You’ll know where your contacts come from whether it’s a manual entry, your Jetpack forms, WooCommerce Store, or another defined source.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Custom Labels:\u003C\u002Fstrong> Further refine your marketing by adding custom labels to subscribers or customers (ex. Truck Buyers, Concert Attendee, Dog Owners, etc.).\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>\u003Ca href=\"https:\u002F\u002Fwww.creativemail.com\" rel=\"nofollow ugc\">IMPORT & EXPORT\u003C\u002Fa>:\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>Contacts Sync & Import:\u003C\u002Fstrong> No need anymore for complex integrations between your WordPress site and your email marketing provider. With Creative Mail it all simply works with WordPress out of the box. We do the heavy lifting to sync and import your Jetpack, WordPress, WooCommerce and most used Contact form plugins contacts automatically.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Import & Export Via CSV:\u003C\u002Fstrong> Import bulk email marketing lists (limits may apply), add subscribers one by one, or export your contacts into a CSV file.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>\u003Ca href=\"https:\u002F\u002Fwww.creativemail.com\" rel=\"nofollow ugc\">CAMPAIGNS\u003C\u002Fa>:\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>AI Emails:\u003C\u002Fstrong> Forget templates, let our A.I. build your email marketing campaigns for you. Pull in WordPress posts or WooCommerce products for sale, and you’re good to go. Let our robots do your bidding!\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Email Campaign Creation:\u003C\u002Fstrong> Build your email marketing campaigns in seconds from your WordPress admin dashboard.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Awesome Deliverability:\u003C\u002Fstrong> All email marketing campaigns are sent and delivered by the award-winning power of Newfold Digital technology. We got you.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Automated Email Marketing:\u003C\u002Fstrong> Send multistep email campaigns automatically, with triggers you define, whether that’s based on time, a customer birthday or behavioral actions. Create a flow to welcome your customers and send a special discount and reminder on their birthday.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>\u003Ca href=\"https:\u002F\u002Fwww.creativemail.com\" rel=\"nofollow ugc\">EMAIL LIST MANAGEMENT\u003C\u002Fa>:\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>Contact List Growth:\u003C\u002Fstrong> Creative Mail collects leads from Jetpack forms or the top WordPress lead capture forms and adds them directly to your email lists.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Automate Emails:\u003C\u002Fstrong> With our “Welcome” email trigger you can send a Creative Mail welcome email series to new subscribers and blog readers.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Auto List Updater:\u003C\u002Fstrong> Creative Mail automatically updates your contact lists for unsubscribes.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>ADD ONS\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>Social Campaigns:\u003C\u002Fstrong> Connect your social media accounts with your Creative Mail account to share your newsletters with your followers on social.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Marketing Calendar:\u003C\u002Fstrong> With your socials connected we give you an overview of all the newsletters and posts that you’ve sent and scheduled. An easy overview to engage with your audience.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Booking:\u003C\u002Fstrong> Set up Bookings for your business with the Bookings tool. Give clients and customers an easy, quick way to set up appointments with you.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>LogoBuilder:\u003C\u002Fstrong> Create an amazing logo for your business or social with LogoBuilder and add it to your email campaigns.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>TERMS OF SERVICE & PRIVACY NOTICE\u003C\u002Fh3>\n\u003Cp>On behalf of our lawyers (seriously, they’re nice people), please feel free to review our:\u003C\u002Fp>\n\u003Cp>Creative Mail \u003Ca href=\"https:\u002F\u002Fwww.bluehost.com\u002Fterms\u002Fuser-agreement\" rel=\"nofollow ugc\">Terms of Service\u003C\u002Fa>\u003Cbr \u002F>\nCreative Mail \u003Ca href=\"https:\u002F\u002Fnewfold.com\u002Fprivacy-center\" rel=\"nofollow ugc\">Privacy Notice\u003C\u002Fa>\u003C\u002Fp>\n","Creative Mail was designed specifically for WordPress and WooCommerce. Our intelligent (and super fun) email editor simplifies email marketing campaig &hellip;",300000,21790763,90,391,"2024-05-06T20:38:00.000Z","6.5.8","4.9","7.3",[20,145,146,22,147],"email","marketing","subscribe","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fcreative-mail-by-constant-contact\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcreative-mail-by-constant-contact.1.6.9.zip",3,"2022-10-28 00:00:00",{"slug":153,"name":154,"version":155,"author":156,"author_profile":157,"description":158,"short_description":159,"active_installs":160,"downloaded":161,"rating":162,"num_ratings":79,"last_updated":163,"tested_up_to":122,"requires_at_least":164,"requires_php":18,"tags":165,"homepage":168,"download_link":169,"security_score":79,"vuln_count":170,"unpatched_count":29,"last_vuln_date":171,"fetched_at":31},"foobox-image-lightbox","Lightbox & Modal Popup WordPress Plugin – FooBox","2.7.41","FooPlugins","https:\u002F\u002Fprofiles.wordpress.org\u002Ffooplugins\u002F","\u003Cp>FooBox adds a lightbox to your WordPress site, so images are loaded in a modal or popup instead of redirecting your visitors away from your site.\u003C\u002Fp>\n\u003Cp>Some people often refer to a lightbox as an “Image Zoom” effect. It’s really just a modal overlay or popup that showcases your images.\u003C\u002Fp>\n\u003Cp>FooBox was the first lightbox to take responsive layout seriously. Not only does it scale images to look better on phones, but it rearranges it’s button controls to look great in both portrait or landscape orientation.\u003C\u002Fp>\n\u003Cp>Add a modal popup to your website images with no setup. FooBox will automatically add modals to WordPress galleries, WordPress images with captions, and attachment images.\u003C\u002Fp>\n\u003Cp>Works with most image gallery plugins, but works best with our \u003Ca href=\"https:\u002F\u002Ffooplugins.com\u002Ffoogallery-wordpress-gallery-plugin\u002F\" rel=\"nofollow ugc\">FooGallery Gallery WordPress Plugin\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>FULL GUTENBERG SUPPORT\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>Within Gutenberg, FooBox lightbox will automatically add a modal popup to images and galleries that have the “Link To” setting set to “Media File”.\u003Cbr \u002F>\nImage captions set in the editor are also automatically picked up in the FooBox modal popup.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>FooBox Image Lightbox Features:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Responsive lightbox design\u003C\u002Fli>\n\u003Cli>Modern lightbox design\u003C\u002Fli>\n\u003Cli>Zero configuration!\u003C\u002Fli>\n\u003Cli>Works with WordPress galleries\u003C\u002Fli>\n\u003Cli>Works with WordPress captioned images\u003C\u002Fli>\n\u003Cli>Control when to exclude \u002F include FooBox JS & CSS assets\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>Includes a 7-day free trial of FooBox Pro Lightbox!\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>You can try the PRO version for free for 7 days.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Ffooplugins.com\u002Ffoobox\u002F?utm_source=fooboxfreeplugin&utm_medium=fooboxfreeprolink&utm_campaign=foobox_free_wprepo\" rel=\"nofollow ugc\">FooBox PRO\u003C\u002Fa> Features:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Social sharing (10+ networks)\u003C\u002Fli>\n\u003Cli>Video lightbox support\u003C\u002Fli>\n\u003Cli>HTML lightbox support\u003C\u002Fli>\n\u003Cli>iFrame support\u003C\u002Fli>\n\u003Cli>Deeplinking\u003C\u002Fli>\n\u003Cli>Fullscreen and slideshow modes\u003C\u002Fli>\n\u003Cli>Glass lightbox theme (including custom color pickers)\u003C\u002Fli>\n\u003Cli>Metro lightbox theme\u003C\u002Fli>\n\u003Cli>Flat lightbox theme\u003C\u002Fli>\n\u003Cli>5 color schemes, 12 button icons and 11 loader icons\u003C\u002Fli>\n\u003Cli>12 animation effects\u003C\u002Fli>\n\u003Cli>85+ settings to customize\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>\u003Ca href=\"https:\u002F\u002Ffooplugins.com\u002Ffoobox\u002F?utm_source=fooboxfreeplugin&utm_medium=fooboxfreeprolink&utm_campaign=foobox_free_wprepo\" rel=\"nofollow ugc\">FooBox PRO\u003C\u002Fa> Works With:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Ffooplugins.com\u002Ffoogallery-wordpress-gallery-plugin\u002F\" rel=\"nofollow ugc\">The Best Image Gallery Plugin for WordPress\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>NextGen\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fcodecanyon.net\u002Fitem\u002Fjustified-image-grid-premium-wordpress-gallery\u002F2594251\" rel=\"nofollow ugc\">Justified Image Grid\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>Envira Gallery\u003C\u002Fli>\n\u003Cli>WooCommerce product images (Works with WooCommerce v3+)\u003C\u002Fli>\n\u003Cli>JetPack Tiled Gallery\u003C\u002Fli>\n\u003Cli>AutOptimize\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Check out the \u003Ca href=\"https:\u002F\u002Ffooplugins.com\u002Ffoobox-feature-comparison\u002F?utm_source=fooboxfreeplugin&utm_medium=fooboxcomparelink&utm_campaign=foobox_free_wprepo\" rel=\"nofollow ugc\">full feature comparison\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Complete FooBox Asset Control\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>By default, FooBox lightbox includes javascript and stylesheet assets into all your pages. We do this, because we do not know if the page content contains media or not.\u003Cbr \u002F>\nIf you want more control over when FooBox assets are included, you can now exclude the assets by default, by enabling a setting. Then on each page, you can choose to include them when required.\u003Cbr \u002F>\nAlternatively, you can leave the setting disabled, and then choose to exclude the FooBox assets from particular pages. A new metabox is now available when editing your pages or posts.\u003Cbr \u002F>\nThis new feature was only available in the PRO version beforehand, but we feel control over your website performance is something you should not have to pay for. Enjoy!\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Translations\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.webhostinghub.com\u002F\" rel=\"nofollow ugc\">Serbo-Croatian by Borisa Djuraskovic\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n","A responsive image lightbox for WordPress galleries, WordPress attachments & FooGallery",100000,2831671,78,"2026-01-21T16:36:00.000Z","3.5.1",[166,167,126,21,24],"gallery","images","https:\u002F\u002Ffooplugins.com\u002Ffoobox\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Ffoobox-image-lightbox.2.7.41.zip",5,"2025-07-07 16:14:43",{"attackSurface":173,"codeSignals":263,"taintFlows":368,"riskAssessment":394,"analyzedAt":402},{"hooks":174,"ajaxHandlers":255,"restRoutes":256,"shortcodes":257,"cronEvents":262,"entryPointCount":90,"unprotectedCount":29},[175,181,186,191,194,197,201,205,209,213,217,220,224,228,232,235,239,244,247,251],{"type":176,"name":177,"callback":178,"file":179,"line":180},"action","customize_register","customizer_settings","inc\\admin\\class-nf-popups-customizer.php",19,{"type":182,"name":177,"callback":183,"priority":184,"file":179,"line":185},"filter","remove_sections",600,29,{"type":182,"name":187,"callback":188,"priority":189,"file":179,"line":190},"customize_loaded_components","remove_widget_panels",60,32,{"type":182,"name":187,"callback":192,"priority":189,"file":179,"line":193},"remove_nav_menus_panels",33,{"type":182,"name":177,"callback":195,"priority":189,"file":179,"line":196},"remove_panels",35,{"type":176,"name":177,"callback":198,"priority":199,"file":179,"line":200},"customizer_sections",40,38,{"type":176,"name":177,"callback":202,"priority":203,"file":179,"line":204},"customizer_controls",50,39,{"type":182,"name":206,"callback":207,"priority":208,"file":179,"line":199},"customize_control_active","control_filter",10,{"type":182,"name":210,"callback":211,"file":179,"line":212},"query_vars","add_query_vars",42,{"type":176,"name":214,"callback":215,"file":179,"line":216},"customize_preview_init","enqueue_customizer_script",46,{"type":176,"name":218,"callback":219,"file":179,"line":203},"template_redirect","load_popup_template",{"type":176,"name":221,"callback":222,"file":179,"line":223},"admin_notices","missing_notice",56,{"type":176,"name":225,"callback":226,"priority":29,"file":179,"line":227},"plugins_loaded","nf_popups_customizer_init",253,{"type":176,"name":229,"callback":230,"file":231,"line":170},"admin_menu","register_menu","inc\\admin\\class-nf-popups-licenses.php",{"type":176,"name":233,"callback":234,"file":231,"line":80},"admin_init","setting_fields",{"type":176,"name":236,"callback":237,"file":238,"line":170},"init","create_posttype","inc\\admin\\class-nf-popups-postype.php",{"type":176,"name":240,"callback":241,"file":242,"line":243},"add_meta_boxes","register_meta_boxes","inc\\admin\\class-nf-popups-settings-metabox.php",9,{"type":176,"name":245,"callback":246,"file":242,"line":208},"save_post","save_meta_box",{"type":176,"name":248,"callback":249,"file":250,"line":204},"wp_enqueue_scripts","nf_popups_scripts","nf-popups.php",{"type":176,"name":252,"callback":253,"file":250,"line":254},"admin_enqueue_scripts","nf_popups_admin_scripts",49,[],[],[258],{"tag":259,"callback":260,"file":261,"line":243},"nf-popup","nf_popup_shortcode","inc\\shortcode.php",[],{"dangerousFunctions":264,"sqlUsage":265,"outputEscaping":267,"fileOperations":29,"externalRequests":29,"nonceChecks":90,"capabilityChecks":28,"bundledLibraries":367},[],{"prepared":29,"raw":29,"locations":266},[],{"escaped":268,"rawEcho":223,"locations":269},45,[270,273,275,277,278,279,280,282,284,286,288,290,292,293,296,297,299,301,303,305,307,309,311,313,315,317,319,321,323,325,326,327,328,329,331,333,334,335,336,337,338,339,341,343,345,347,349,351,353,355,356,358,360,361,363,365],{"file":179,"line":271,"context":272},225,"raw output",{"file":179,"line":274,"context":272},238,{"file":242,"line":276,"context":272},27,{"file":242,"line":268,"context":272},{"file":242,"line":203,"context":272},{"file":242,"line":13,"context":272},{"file":242,"line":281,"context":272},77,{"file":242,"line":283,"context":272},108,{"file":242,"line":285,"context":272},109,{"file":242,"line":287,"context":272},125,{"file":242,"line":289,"context":272},146,{"file":242,"line":291,"context":272},174,{"file":242,"line":291,"context":272},{"file":294,"line":295,"context":272},"inc\\admin\\views\\html-popup-template-preview.php",12,{"file":294,"line":281,"context":272},{"file":294,"line":298,"context":272},80,{"file":294,"line":300,"context":272},81,{"file":294,"line":302,"context":272},82,{"file":294,"line":304,"context":272},83,{"file":294,"line":306,"context":272},84,{"file":294,"line":308,"context":272},85,{"file":294,"line":310,"context":272},86,{"file":294,"line":312,"context":272},87,{"file":294,"line":314,"context":272},88,{"file":294,"line":316,"context":272},89,{"file":294,"line":318,"context":272},91,{"file":294,"line":320,"context":272},92,{"file":294,"line":322,"context":272},93,{"file":294,"line":324,"context":272},97,{"file":294,"line":27,"context":272},{"file":294,"line":89,"context":272},{"file":294,"line":283,"context":272},{"file":294,"line":285,"context":272},{"file":294,"line":330,"context":272},110,{"file":294,"line":332,"context":272},111,{"file":261,"line":302,"context":272},{"file":261,"line":322,"context":272},{"file":261,"line":89,"context":272},{"file":261,"line":285,"context":272},{"file":261,"line":285,"context":272},{"file":261,"line":332,"context":272},{"file":261,"line":340,"context":272},117,{"file":261,"line":342,"context":272},119,{"file":261,"line":344,"context":272},121,{"file":261,"line":346,"context":272},130,{"file":261,"line":348,"context":272},134,{"file":261,"line":350,"context":272},136,{"file":261,"line":352,"context":272},137,{"file":261,"line":354,"context":272},144,{"file":261,"line":354,"context":272},{"file":261,"line":357,"context":272},152,{"file":261,"line":359,"context":272},154,{"file":261,"line":359,"context":272},{"file":261,"line":362,"context":272},155,{"file":261,"line":364,"context":272},156,{"file":261,"line":366,"context":272},157,[],[369,386],{"entryPoint":370,"graph":371,"unsanitizedCount":90,"severity":385},"__construct (inc\\admin\\class-nf-popups-customizer.php:15)",{"nodes":372,"edges":382},[373,377],{"id":374,"type":375,"label":376,"file":179,"line":276},"n0","source","$_REQUEST['popup_id']",{"id":378,"type":379,"label":380,"file":179,"line":276,"wp_function":381},"n1","sink","update_option() [Settings Manipulation]","update_option",[383],{"from":374,"to":378,"sanitized":384},false,"low",{"entryPoint":387,"graph":388,"unsanitizedCount":90,"severity":385},"\u003Cclass-nf-popups-customizer> (inc\\admin\\class-nf-popups-customizer.php:0)",{"nodes":389,"edges":392},[390,391],{"id":374,"type":375,"label":376,"file":179,"line":276},{"id":378,"type":379,"label":380,"file":179,"line":276,"wp_function":381},[393],{"from":374,"to":378,"sanitized":384},{"summary":395,"deductions":396},"The 'popup-addon-for-ninja-forms' plugin v3.5.2 presents a mixed security posture.  While it demonstrates good practices such as using prepared statements for all SQL queries and implementing nonce and capability checks on some entry points, significant concerns remain regarding output escaping and historical vulnerabilities.  The static analysis reveals that a substantial portion of output (55%) is not properly escaped, indicating a potential risk of Cross-Site Scripting (XSS) vulnerabilities.  Despite the absence of critical or high severity taint flows in this analysis, the history of two medium severity XSS vulnerabilities, with the last occurring in late 2025, suggests a recurring pattern of input sanitization issues.  The lack of unpatched CVEs is positive, but the ongoing presence of medium severity issues in the past warrants attention. The plugin has a small attack surface with only one shortcode, and it appears to be protected. However, the unescaped output is the most prominent risk, and the historical trend of XSS vulnerabilities, even if currently patched, suggests a need for more robust input validation and output sanitization.",[397,400],{"reason":398,"points":399},"Insufficient output escaping",8,{"reason":401,"points":208},"History of medium severity XSS vulnerabilities","2026-03-16T19:04:07.962Z",{"wat":404,"direct":416},{"assetPaths":405,"generatorPatterns":413,"scriptPaths":414,"versionParams":415},[406,407,408,409,410,411,412],"\u002Fwp-content\u002Fplugins\u002Fpopup-addon-for-ninja-forms\u002Fcss\u002Fanimations.css","\u002Fwp-content\u002Fplugins\u002Fpopup-addon-for-ninja-forms\u002Fcss\u002Fmagnific-popup.css","\u002Fwp-content\u002Fplugins\u002Fpopup-addon-for-ninja-forms\u002Fjs\u002Fmagnific-popup.js","\u002Fwp-content\u002Fplugins\u002Fpopup-addon-for-ninja-forms\u002Fjs\u002Fnf-popups.js","\u002Fwp-content\u002Fplugins\u002Fpopup-addon-for-ninja-forms\u002Fcss\u002Fnf-popups-admin.css","\u002Fwp-content\u002Fplugins\u002Fpopup-addon-for-ninja-forms\u002Fjs\u002Fadmin.js","\u002Fwp-content\u002Fplugins\u002Fpopup-addon-for-ninja-forms\u002Fjs\u002Fcustomizer-preview.js",[],[408,409,411,412],[],{"cssClasses":417,"htmlComments":419,"htmlAttributes":420,"restEndpoints":422,"jsGlobals":423,"shortcodeOutput":424},[418],"nf-popups-close-btn",[],[421],"nf_popup_id_customizer",[],[421],[]]