[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f4CSWgyWKamMBlPogNHdf4gRLaCNXX1BR2hta1oDBbdk":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":24,"download_link":25,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28,"vulnerabilities":29,"developer":30,"crawl_stats":27,"alternatives":36,"analysis":123,"fingerprints":323},"pr-checker","PR Checker","1.1","stratosg","https:\u002F\u002Fprofiles.wordpress.org\u002Fstratosg\u002F","\u003Cp>You can use this plugin to build a link list with info on them for your readers. These info are automaticaly retrieved and are:\u003C\u002Fp>\n\u003Cp>*Google PR\u003Cbr \u002F>\n*Technorati authority\u003Cbr \u002F>\n*Alexa Rank\u003Cbr \u002F>\n*Feedburner readers\u003C\u002Fp>\n\u003Cp>From the admin interface you can add\u002Fremove links and issue updates on their stats. You can also set if the link that will be publicaly displayed will be “follow” or “nofollow”.\u003C\u002Fp>\n\u003Cp>Beware that updating the stats on the sites can be a very long process taken on the server. This means that if you issue a total update it might take some time before the page is done loading. That is not caused because the script is stuck but because it is retreiving info that takes time. Be patient and don’t do this every day. A good practice would be once a month.\u003C\u002Fp>\n\u003Ch3>Requirements\u003C\u002Fh3>\n\u003Cp>None what so ever…\u003C\u002Fp>\n\u003Ch3>Credits\u003C\u002Fh3>\n\u003Cp>Yan from http:\u002F\u002Fthoushallblog.com has helped me on the development and debugging.\u003C\u002Fp>\n\u003Ch3>Contact\u003C\u002Fh3>\n\u003Cp>Suggestion, fixes, rants, congratulations, gifts etc to stratosg@stratosector.net\u003Cbr \u002F>\nAlso visit the plugin’s page at http:\u002F\u002Fwww.stratos.me\u002Fwp-plugins\u002Fpr-checker\u002F\u003Cbr \u002F>\nI would also appreciate if you donated any amount to me as a token of appreciation.\u003C\u002Fp>\n","PR Checker makes link list building easier than ever.",10,3738,0,"2009-07-08T12:27:00.000Z","2.8","2.1","",[19,20,21,22,23],"alexa","feedburner","google","pr","rank","http:\u002F\u002Fwww.stratos.me\u002Fwp-plugins\u002Fpr-checker\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fpr-checker.zip",85,null,"2026-03-15T15:16:48.613Z",[],{"slug":7,"display_name":7,"profile_url":8,"plugin_count":31,"total_installs":32,"avg_security_score":26,"avg_patch_time_days":33,"trust_score":34,"computed_at":35},4,50,30,84,"2026-04-04T20:19:43.682Z",[37,61,77,92,107],{"slug":38,"name":39,"version":40,"author":41,"author_profile":42,"description":43,"short_description":44,"active_installs":45,"downloaded":46,"rating":47,"num_ratings":48,"last_updated":49,"tested_up_to":50,"requires_at_least":51,"requires_php":52,"tags":53,"homepage":59,"download_link":60,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"page-rank-stats-for-alexa-google","Page Rank Stats for Alexa Google","1.0","ximrx","https:\u002F\u002Fprofiles.wordpress.org\u002Fximrx\u002F","\u003Cp>Page Rank Stats for Alexa Google plugin lets you show real time Alexa rank or Google page rank of any website\u002Fwebpage in a widget. You can select a display style and set website for which you want to show statistics and live ranking will show where ever you will place the widget. If you are facing any trouble installing this plugin or you need any customization you can \u003Ca href=\"http:\u002F\u002Fheartytools.com\u002Fcontact\" rel=\"nofollow ugc\">contact\u003C\u002Fa> our web development team.\u003C\u002Fp>\n\u003Cp>Alexa’s traffic estimates and ranks are based on the browsing behavior of people in our global data panel which is a sample of all internet users.\u003C\u002Fp>\n\u003Cp>Alexa’s Traffic Ranks are based on the traffic data provided by users in Alexa’s global data panel over a rolling 3 month period. Traffic Ranks are updated daily. A site’s ranking is based on a combined measure of Unique Visitors and Pageviews. Unique Visitors are determined by the number of unique Alexa users who visit a site on a given day. Pageviews are the total number of Alexa user URL requests for a site. However, multiple requests for the same URL on the same day by the same user are counted as a single Pageview. The site with the highest combination of unique visitors and pageviews is ranked #1.\u003C\u002Fp>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Widget provide options to show statistics of default website or you can show stats of any other website.\u003C\u002Fli>\n\u003Cli>Widget adapts to the site’s active theme.\u003C\u002Fli>\n\u003Cli>Widget provides different display styles to choose from.\u003C\u002Fli>\n\u003Cli>Plugin allows you to place multiple widgets anywhere on your website as supported by theme.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>For more information\u003C\u002Fh4>\n\u003Cp>To find more about page ranks, Alexa statistics and about this plugin, visit \u003Ca href=\"https:\u002F\u002Fheartytools.com\u002Fpost\u002Falexa-and-google-page-rank-plugin-for-websites\u002F\" rel=\"nofollow ugc\">Alexa Rank WordPress Plugin\u003C\u002Fa> page. This plugin is developed by \u003Ca href=\"https:\u002F\u002Fheartytools.com\u002Fweb-developer\" rel=\"nofollow ugc\">Hearty Tools\u003C\u002Fa>\u003C\u002Fp>\n","Show Alexa Page Rank and\u002For Google PageRank of your website or any other webpage.",70,15406,100,1,"2022-03-15T07:38:00.000Z","5.9.13","3.0.1","5.4",[54,55,56,57,58],"alexa-page-rank","alexa-pagerank","google-page-rank","google-pagerank","web-statistics","https:\u002F\u002Fheartytools.com\u002Fguide\u002Falexa-and-google-page-rank-plugin-for-websites\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fpage-rank-stats-for-alexa-google.zip",{"slug":62,"name":63,"version":6,"author":64,"author_profile":65,"description":66,"short_description":67,"active_installs":68,"downloaded":69,"rating":13,"num_ratings":13,"last_updated":70,"tested_up_to":71,"requires_at_least":72,"requires_php":17,"tags":73,"homepage":75,"download_link":76,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"dashboard-google-pagerank","Dashboard Google Page Rank","westondeboer","https:\u002F\u002Fprofiles.wordpress.org\u002Fpoil11\u002F","\u003Cp>My first public plugin that shows your websites google pagerank in the dashboard. Can be disabled in the screen options menu and moved around at will.\u003C\u002Fp>\n\u003Cp>Works 2.7+, I don’t know if it works on anything below that.\u003C\u002Fp>\n\u003Cp>Just really an example of how to put something into the dashboard.\u003C\u002Fp>\n","This plugin shows your websites google page rank",20,5333,"2011-04-30T02:06:00.000Z","3.1.4","2.7",[21,74,22],"pagerank","http:\u002F\u002Fwordpress.org\u002Fextend\u002Fplugins\u002Fdashboard-google-pagerank\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fdashboard-google-pagerank.1.1.zip",{"slug":78,"name":79,"version":80,"author":81,"author_profile":82,"description":83,"short_description":84,"active_installs":11,"downloaded":85,"rating":13,"num_ratings":13,"last_updated":17,"tested_up_to":15,"requires_at_least":86,"requires_php":17,"tags":87,"homepage":89,"download_link":90,"security_score":47,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":91},"google-pagerank-display","Google PageRank Display","1.4","byybora","https:\u002F\u002Fprofiles.wordpress.org\u002Fbyybora\u002F","\u003Cp>Google PageRank Display shows your site pagerank instantly and you can change style from General Options.\u003Cbr \u002F>\nmore than 130+ pagerank buttons & badges.\u003Cbr \u002F>\n * Install files\u003Cbr \u002F>\n * Activate the plugin\u003Cbr \u002F>\n * Go General Options [\u003Ccode>options-general.php?page=gpdisplay\u003C\u002Fcode>]\u003Cbr \u002F>\n * Choose style you like\u003Cbr \u002F>\n * Update option\u003C\u002Fp>\n\u003Cul>\n\u003Cli>And add this code your theme \u002F\u002F \u003Ccode>\u003C?php show_gpdisplay() ?>\u003C\u002Fcode>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Features:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Real Google Pagerank : Shows real google pagerank, not fake\u003C\u002Fli>\n\u003Cli>Many Style : There are 134 different pagerank button and badges\u003C\u002Fli>\n\u003Cli>Automatic : just you change style from option\u003C\u002Fli>\n\u003Cli>Fast : Loading pagerank fast, get image remotely.\u003C\u002Fli>\n\u003Cli>Get your site page rank instantly\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Details: \u003Ccode>http:\u002F\u002Fwww.getrank.org\u003C\u002Fcode>\u003C\u002Fp>\n\u003Ch3>Arbitrary section\u003C\u002Fh3>\n\u003Cp>See homepage for updates \u003Ca href=\"http:\u002F\u002Fwww.getrank.org\u002F\" title=\"GetRank\" rel=\"nofollow ugc\">http:\u002F\u002Fwww.getrank.org\u003C\u002Fa>  .\u003C\u002Fp>\n\u003Cblockquote>\n\u003Cp>Instantly Check Free Your Site Google PageRank **\u003C\u002Fp>\n\u003C\u002Fblockquote>\n","Check your site free google pagerank value with more than 130 pagerank buttons and badges",4475,"2.0.2",[57,88,74,22,23],"google-pr","http:\u002F\u002Fwww.getrank.org\u002Fwp-google-pagerank-display\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fgoogle-pagerank-display.zip","2026-03-15T10:48:56.248Z",{"slug":93,"name":94,"version":95,"author":96,"author_profile":97,"description":98,"short_description":99,"active_installs":11,"downloaded":100,"rating":13,"num_ratings":13,"last_updated":17,"tested_up_to":101,"requires_at_least":102,"requires_php":17,"tags":103,"homepage":105,"download_link":106,"security_score":47,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":91},"pagerank-checker","PageRank Checker","2.3.2","jasoncaidev","https:\u002F\u002Fprofiles.wordpress.org\u002Fjasoncaidev\u002F","\u003Cp>Check pagerank of your blog pages automatically,display your real pagerank with an icon instantly.\u003Cbr \u002F>\nThe pagerank icon is running code from website checker site to generate.\u003Cbr \u002F>\nVisit http:\u002F\u002Fwww.websitechecker.info for details.\u003C\u002Fp>\n","Check pagerank of your blog pages automatically,show your real pagerank.",2991,"3.5.2","3.0.0",[56,88,104,74,22],"page-rank","http:\u002F\u002Fwww.websitechecker.info\u002Fplugins\u002Fpagerank-checker","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fpagerank-checker.zip",{"slug":108,"name":109,"version":40,"author":110,"author_profile":111,"description":112,"short_description":113,"active_installs":11,"downloaded":114,"rating":13,"num_ratings":13,"last_updated":115,"tested_up_to":116,"requires_at_least":117,"requires_php":17,"tags":118,"homepage":121,"download_link":122,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"web-rank-get","Web Rank Get","hostinginfo360","https:\u002F\u002Fprofiles.wordpress.org\u002Fhostinginfo360\u002F","\u003Cp>This plugin will collect Google Page Rank and Alexa Rank and display it in the footer of your blog.\u003Cbr \u002F>\nThe result will be collected 1 time each day.\u003C\u002Fp>\n\u003Cp>\u003Cem>This release is compatible with all WordPress versions since 3.0.\u003C\u002Fem>\u003C\u002Fp>\n\u003Ch3>License\u003C\u002Fh3>\n\u003Cp>Good news, this plugin is free for everyone! Since it’s released under the GPL, you can use it free of charge on your personal or commercial blog.\u003C\u002Fp>\n","This plugin will collect Google Page Rank and Alexa Rank and display it in the footer of your blog.",4247,"2011-09-23T10:42:00.000Z","3.2.1","3.0",[19,119,56,104,120],"alexa-rank","seo","http:\u002F\u002Fwww.hostinginfo360.com\u002Fweb-rank-get\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fweb-rank-get.1.0.zip",{"attackSurface":124,"codeSignals":145,"taintFlows":165,"riskAssessment":307,"analyzedAt":322},{"hooks":125,"ajaxHandlers":141,"restRoutes":142,"shortcodes":143,"cronEvents":144,"entryPointCount":13,"unprotectedCount":13},[126,132,137],{"type":127,"name":128,"callback":129,"priority":48,"file":130,"line":131},"filter","the_content","prchecker_replace","pr_checker.php",127,{"type":133,"name":134,"callback":135,"file":130,"line":136},"action","wp_head","prchecker_style",128,{"type":133,"name":138,"callback":139,"file":130,"line":140},"admin_menu","prchecker_plugin_menu",131,[],[],[],[],{"dangerousFunctions":146,"sqlUsage":147,"outputEscaping":156,"fileOperations":163,"externalRequests":48,"nonceChecks":13,"capabilityChecks":13,"bundledLibraries":164},[],{"prepared":148,"raw":149,"locations":150},19,2,[151,154],{"file":130,"line":152,"context":153},185,"$wpdb->get_results() with variable interpolation",{"file":130,"line":155,"context":153},216,{"escaped":13,"rawEcho":149,"locations":157},[158,161],{"file":130,"line":159,"context":160},47,"raw output",{"file":130,"line":162,"context":160},289,7,[],[166,256],{"entryPoint":167,"graph":168,"unsanitizedCount":254,"severity":255},"prchecker_admin_page (pr_checker.php:137)",{"nodes":169,"edges":241},[170,175,180,184,188,192,194,198,200,203,206,210,214,216,220,224,228,233,235,238],{"id":171,"type":172,"label":173,"file":130,"line":174},"n0","source","$_POST['pr_url'] (x2)",150,{"id":176,"type":177,"label":178,"file":130,"line":174,"wp_function":179},"n1","sink","query() [SQLi]","query",{"id":181,"type":172,"label":182,"file":130,"line":183},"n2","$_POST['pr_url']",153,{"id":185,"type":177,"label":186,"file":130,"line":183,"wp_function":187},"n3","get_results() [SQLi]","get_results",{"id":189,"type":172,"label":190,"file":130,"line":191},"n4","$_GET['u']",167,{"id":193,"type":177,"label":178,"file":130,"line":191,"wp_function":179},"n5",{"id":195,"type":172,"label":196,"file":130,"line":197},"n6","$_GET['u'] (x2)",172,{"id":199,"type":177,"label":186,"file":130,"line":197,"wp_function":187},"n7",{"id":201,"type":172,"label":202,"file":130,"line":197},"n8","$_GET",{"id":204,"type":177,"label":178,"file":130,"line":205,"wp_function":179},"n9",192,{"id":207,"type":172,"label":208,"file":130,"line":209},"n10","$_POST['technorati_key']",201,{"id":211,"type":177,"label":212,"file":130,"line":209,"wp_function":213},"n11","update_option() [Settings Manipulation]","update_option",{"id":215,"type":172,"label":202,"file":130,"line":197},"n12",{"id":217,"type":177,"label":218,"file":130,"line":162,"wp_function":219},"n13","echo() [XSS]","echo",{"id":221,"type":172,"label":222,"file":130,"line":223},"n14","$_GET (x2)",178,{"id":225,"type":226,"label":227,"file":130,"line":223},"n15","transform","→ prchecker_getpagerank()",{"id":229,"type":177,"label":230,"file":130,"line":231,"wp_function":232},"n16","file_get_contents() [SSRF\u002FLFI]",403,"file_get_contents",{"id":234,"type":172,"label":222,"file":130,"line":223},"n17",{"id":236,"type":226,"label":237,"file":130,"line":223},"n18","→ prchecker_get_alexa_popularity()",{"id":239,"type":177,"label":230,"file":130,"line":240,"wp_function":232},"n19",465,[242,244,245,246,247,248,249,250,251,252,253],{"from":171,"to":176,"sanitized":243},false,{"from":181,"to":185,"sanitized":243},{"from":189,"to":193,"sanitized":243},{"from":195,"to":199,"sanitized":243},{"from":201,"to":204,"sanitized":243},{"from":207,"to":211,"sanitized":243},{"from":215,"to":217,"sanitized":243},{"from":221,"to":225,"sanitized":243},{"from":225,"to":229,"sanitized":243},{"from":234,"to":236,"sanitized":243},{"from":236,"to":239,"sanitized":243},13,"high",{"entryPoint":257,"graph":258,"unsanitizedCount":306,"severity":255},"\u003Cpr_checker> (pr_checker.php:0)",{"nodes":259,"edges":292},[260,261,262,263,264,265,266,267,268,269,270,271,272,273,274,276,277,278,282,283,284,286,288,290],{"id":171,"type":172,"label":173,"file":130,"line":174},{"id":176,"type":177,"label":178,"file":130,"line":174,"wp_function":179},{"id":181,"type":172,"label":182,"file":130,"line":183},{"id":185,"type":177,"label":186,"file":130,"line":183,"wp_function":187},{"id":189,"type":172,"label":190,"file":130,"line":191},{"id":193,"type":177,"label":178,"file":130,"line":191,"wp_function":179},{"id":195,"type":172,"label":196,"file":130,"line":197},{"id":199,"type":177,"label":186,"file":130,"line":197,"wp_function":187},{"id":201,"type":172,"label":202,"file":130,"line":197},{"id":204,"type":177,"label":178,"file":130,"line":205,"wp_function":179},{"id":207,"type":172,"label":208,"file":130,"line":209},{"id":211,"type":177,"label":212,"file":130,"line":209,"wp_function":213},{"id":215,"type":172,"label":202,"file":130,"line":197},{"id":217,"type":177,"label":218,"file":130,"line":162,"wp_function":219},{"id":221,"type":172,"label":275,"file":130,"line":197},"$_GET (x3)",{"id":225,"type":177,"label":230,"file":130,"line":231,"wp_function":232},{"id":229,"type":172,"label":222,"file":130,"line":197},{"id":234,"type":177,"label":279,"file":130,"line":280,"wp_function":281},"fopen() [File Access]",424,"fopen",{"id":236,"type":172,"label":222,"file":130,"line":223},{"id":239,"type":226,"label":227,"file":130,"line":223},{"id":285,"type":177,"label":230,"file":130,"line":231,"wp_function":232},"n20",{"id":287,"type":172,"label":222,"file":130,"line":223},"n21",{"id":289,"type":226,"label":237,"file":130,"line":223},"n22",{"id":291,"type":177,"label":230,"file":130,"line":240,"wp_function":232},"n23",[293,294,295,296,297,298,299,300,301,302,303,304,305],{"from":171,"to":176,"sanitized":243},{"from":181,"to":185,"sanitized":243},{"from":189,"to":193,"sanitized":243},{"from":195,"to":199,"sanitized":243},{"from":201,"to":204,"sanitized":243},{"from":207,"to":211,"sanitized":243},{"from":215,"to":217,"sanitized":243},{"from":221,"to":225,"sanitized":243},{"from":229,"to":234,"sanitized":243},{"from":236,"to":239,"sanitized":243},{"from":239,"to":285,"sanitized":243},{"from":287,"to":289,"sanitized":243},{"from":289,"to":291,"sanitized":243},18,{"summary":308,"deductions":309},"The 'pr-checker' plugin v1.1 exhibits a mixed security posture. On the positive side, the plugin has no known CVEs and a clean vulnerability history, suggesting it has been maintained with security in mind or has not been a significant target. Furthermore, the attack surface appears to be non-existent according to the static analysis, with no apparent AJAX handlers, REST API routes, shortcodes, or cron events exposed. This significantly limits the immediate avenues for exploitation.\n\nHowever, significant concerns arise from the code signals. A striking 100% of detected output operations are not properly escaped, indicating a high risk of Cross-Site Scripting (XSS) vulnerabilities. While SQL queries predominantly use prepared statements (90%), the remaining 10% could still be a vector if they handle user input. The taint analysis revealing two flows with unsanitized paths, even without a critical or high severity rating, is a direct indicator of potential vulnerabilities where user-supplied data could influence program execution, especially in conjunction with the file operations. The complete absence of nonce and capability checks is also a critical oversight, as it means any entry point, even if not immediately obvious, could be abused without proper authorization or verification.\n\nIn conclusion, while the plugin has a positive track record regarding known vulnerabilities and a seemingly small attack surface, the critical flaws in output escaping, potential unsanitized data flows, and the complete lack of authorization checks present substantial security risks. These findings necessitate immediate attention and remediation to secure the plugin against potential exploitation, particularly XSS and unauthorized actions.",[310,313,316,318,320],{"reason":311,"points":312},"0% output escaping",8,{"reason":314,"points":315},"2 unsanitized taint flows",12,{"reason":317,"points":11},"0 Nonce checks",{"reason":319,"points":11},"0 Capability checks",{"reason":321,"points":149},"10% SQL without prepared statements","2026-03-17T01:02:51.318Z",{"wat":324,"direct":333},{"assetPaths":325,"generatorPatterns":330,"scriptPaths":331,"versionParams":332},[326,327,328,329],"\u002Fwp-content\u002Fplugins\u002Fpr-checker\u002Fimages\u002Fgoogle.jpg","\u002Fwp-content\u002Fplugins\u002Fpr-checker\u002Fimages\u002Falexa.jpg","\u002Fwp-content\u002Fplugins\u002Fpr-checker\u002Fimages\u002Ftechnorati.jpg","\u002Fwp-content\u002Fplugins\u002Fpr-checker\u002Fimages\u002Ffeedburner.jpg",[],[],[],{"cssClasses":334,"htmlComments":338,"htmlAttributes":339,"restEndpoints":341,"jsGlobals":342,"shortcodeOutput":343},[335,336,337],"prchecker_data","one","two",[],[340],"rel",[],[],[344],"\u003Cdiv class=\"prchecker_data\">"]