[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fqRmXFi8Z7bJgyFpm5ynnAhQX0zInJejHRTI7bHzW-PQ":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":24,"download_link":25,"security_score":26,"vuln_count":27,"unpatched_count":27,"last_vuln_date":28,"fetched_at":29,"vulnerabilities":30,"developer":31,"crawl_stats":28,"alternatives":37,"analysis":143,"fingerprints":203},"quadmenu-storefront","QuadMenu – Storefront Mega Menu","1.1.2","QuadMenu","https:\u002F\u002Fprofiles.wordpress.org\u002Fquadmenu\u002F","\u003Cp>\u003Ca href=\"http:\u002F\u002Fquadmenu.com\" rel=\"nofollow ugc\">Premium\u003C\u002Fa> | \u003Ca href=\"http:\u002F\u002Fquadmenu.com\u002Fstorefront\u002F\" rel=\"nofollow ugc\">Demo\u003C\u002Fa> | \u003Ca href=\"http:\u002F\u002Fquadmenu.com\u002Fdocumentation\u002Fintegration\u002Fstorefront\u002F\" rel=\"nofollow ugc\">Documentation\u003C\u002Fa> | \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fquadmenu\u002F\" rel=\"ugc\">QuadMenu\u003C\u002Fa> | \u003Ca href=\"https:\u002F\u002Fwww.facebook.com\u002Fgroups\u002Fquadlayers\u002F\" rel=\"nofollow ugc\">Community\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>Integrates QuadMenu with the Storefront Woocommerce theme. Requires QuadMenu and Storefront.\u003C\u002Fp>\n\u003Cp>This plugin will add all the settings to match the style and the layout of Storefront theme.\u003C\u002Fp>\n\u003Cp>\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002FqS83zId5JQs?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\u003C\u002Fp>\n","Integrates QuadMenu Mega Menu with the Storefront Woocommerce theme. Requires QuadMenu and Storefront.",100,7343,60,2,"2021-03-15T12:04:00.000Z","5.7.0","4.8","",[20,21,22,23],"quadmenu","storefront","storefront-megamenu","storefront-menu","https:\u002F\u002Fquadmenu.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fquadmenu-storefront.zip",85,0,null,"2026-03-15T15:16:48.613Z",[],{"slug":20,"display_name":7,"profile_url":8,"plugin_count":32,"total_installs":33,"avg_security_score":34,"avg_patch_time_days":35,"trust_score":26,"computed_at":36},7,2320,87,30,"2026-04-05T08:45:15.341Z",[38,62,85,105,126],{"slug":39,"name":40,"version":41,"author":40,"author_profile":42,"description":43,"short_description":44,"active_installs":45,"downloaded":46,"rating":47,"num_ratings":48,"last_updated":49,"tested_up_to":50,"requires_at_least":51,"requires_php":18,"tags":52,"homepage":57,"download_link":58,"security_score":59,"vuln_count":60,"unpatched_count":27,"last_vuln_date":61,"fetched_at":29},"ecwid-shopping-cart","Ecwid by Lightspeed Ecommerce Shopping Cart","7.0.8","https:\u002F\u002Fprofiles.wordpress.org\u002Fecwid\u002F","\u003Cp>Ecwid Ecommerce Shopping Cart is everything you need to add an online store to your WordPress site. Powerful, easy-to-use and Gutenberg-friendly. Hundreds of thousands of sellers in 175 countries, 45 languages supported. PayPal, Stripe and 70+ more payment options. Real-time shipping integrations. Selling on Instagram and Facebook.\u003C\u002Fp>\n\u003Ch3>Automatic Shipping and Taxes\u003C\u002Fh3>\n\u003Cp>The Ecwid ecommerce plugin integrates with major carriers including USPS, UPS, FedEx, Canada Post, Australia Post, and others to automatically calculate shipping rates. Taxes are also automated and can be set-up in a few clicks.  Automated tax rate calculations are available for the U.S., Canada, and EU VAT.  Additionally, integration with TaxJar provides automatic sales tax reporting and filing in the U.S.\u003C\u002Fp>\n\u003Ch3>Sell on Facebook and Instagram\u003C\u002Fh3>\n\u003Cp>Add your online store to Facebook and sell to millions of Facebook and Instagram users. No addons needed. Ecwid will automatically synchronize your products, customers, orders and inventory between your WordPress and Facebook storefronts. Join!\u003C\u002Fp>\n\u003Ch3>eCommerce Mobile Apps\u003C\u002Fh3>\n\u003Cp>Ecwid Shopping Cart provides mobile applications for iOS and Android to manage your store and sell on the go. Scan products, track inventory, manage sales and accept payments using your mobile device as a POS station. Your ecommerce data is automatically synchronized with your WordPress shopping cart, Facebook store and other online storefronts.\u003C\u002Fp>\n\u003Ch3>Unlimited Storage, Automatic Backups and Seamless Upgrades\u003C\u002Fh3>\n\u003Cp>With the Ecwid Shopping Cart, your online store data is fully hosted on our secure servers. Regardless of the WordPress hosting service you use, your Ecwid online store includes:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>unlimited storage\u003C\u002Fli>\n\u003Cli>regular backups\u003C\u002Fli>\n\u003Cli>seamless upgrades and security updates\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>So you don’t need to worry about software updates, security patches and server maintenance – we do that for you. Your online store gets all the new ecommerce features and bug fixes automatically.\u003C\u002Fp>\n\u003Ch3>PCI DSS validated Level 1 Service Provider\u003C\u002Fh3>\n\u003Cp>Ecwid Shopping Cart is PCI DSS Level 1 certified, which is the gold standard for e-commerce solutions worldwide. This means that Ecwid helps your online store meet the security requirements of the bank you do business with.\u003C\u002Fp>\n\u003Ch3>Superb Support\u003C\u002Fh3>\n\u003Cp>Friendly and knowledgeable support experts available 24\u002F5 so you can get immediate help when you need it. Support options include email, e-commerce community forums, chat and phone support.\u003C\u002Fp>\n\u003Ch3>Sell Everywhere\u003C\u002Fh3>\n\u003Cp>With Ecwid, you can include your ecommerce shop on multiple websites, blogs, social sites and ecommerce marketplaces like \u003Cem>Amazon\u003C\u002Fem>, \u003Cem>eBay\u003C\u002Fem> and \u003Cem>Google Shopping\u003C\u002Fem> and sell simultaneously everywhere. Add your online store to as many sites as you want, manage it from one place.\u003C\u002Fp>\n\u003Ch3>Mobile Responsive Design\u003C\u002Fh3>\n\u003Cp>Ecwid works great on any WordPress site, especially those running on mobile-optimized themes. Your online store looks perfect on smartphones and automatically adapts to your customer’s screen size: laptops, tablets, smart TVs or smart watches.\u003C\u002Fp>\n\u003Ch3>Hundreds of extensions and powerful API\u003C\u002Fh3>\n\u003Cp>There is a lot of in-house and third party extensions built on the Ecwid Ecommerce APIs. You can find a ready made plugin extending features of your online storefront the way you want or build a custom addon yourself. The existing family of third party plugins include tax automation apps like TaxJar, fulfilment services like ShipStation, customer support tools like LiveChat and many others.\u003C\u002Fp>\n\u003Ch3>Plans start at just $5\u002Fmo\u003C\u002Fh3>\n\u003Cp>Start selling ealisy with no big investment. As your online shop grows, Ecwid grows with you. When the time is right, consider upgrading your store to one of our premium plans to get more robust features and preferred support. See also: \u003Ca href=\"https:\u002F\u002Fgo.lightspeedhq.com\u002Fecwid-pricing\" rel=\"nofollow ugc\">Ecwid plan and pricing\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch3>See Ecwid In Action\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fgo.lightspeedhq.com\u002Fecwid-store-control-panel\" title=\"Ecwid Control Panel\" rel=\"nofollow ugc\">Ecwid Ecommerce Control panel\u003C\u002Fa> (you will be able to create an Ecwid account)\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fgo.lightspeedhq.com\u002Fecwid-wp-site\" rel=\"nofollow ugc\">Showcase\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Ecwid Site\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fgo.lightspeedhq.com\u002Fecwid-wp-site\" title=\"Ecwid site\" rel=\"nofollow ugc\">www.ecwid.com\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Terms of usage\u003C\u002Fh3>\n\u003Cp>The plugin uses the Ecwid ecommerce cloud services (www.ecwid.com). Your store data is securely hosted with Ecwid under the terms and conditions listed here:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.ecwid.com\u002Fterms-of-service\" rel=\"nofollow ugc\">Terms of Service\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.ecwid.com\u002Fprivacy-policy\" rel=\"nofollow ugc\">Privacy Policy\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>The plugin uses CDN services by AWS Cloudfront to speed up user stores. It is managed by the Ecwid Terms of Service and Privacy Policy and \u003Ca href=\"https:\u002F\u002Faws.amazon.com\u002Fagreement\u002F\" rel=\"nofollow ugc\">AWS Customer Agreement\u003C\u002Fa>.\u003C\u002Fp>\n","Powerful, easy to use ecommerce shopping cart for WordPress. Sell on Facebook and Instagram. iPhone & Android apps. Superb support.",20000,2975988,90,228,"2026-02-13T11:42:00.000Z","6.9.4","4.4",[53,54,55,56,21],"e-commerce","ecommerce","online-store","shopping-cart","http:\u002F\u002Fwww.ecwid.com?partner=wporg","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fecwid-shopping-cart.7.0.8.zip",83,13,"2026-02-14 14:30:00",{"slug":63,"name":64,"version":65,"author":66,"author_profile":67,"description":68,"short_description":69,"active_installs":70,"downloaded":71,"rating":72,"num_ratings":73,"last_updated":74,"tested_up_to":75,"requires_at_least":76,"requires_php":77,"tags":78,"homepage":18,"download_link":83,"security_score":84,"vuln_count":27,"unpatched_count":27,"last_vuln_date":28,"fetched_at":29},"hide-categories-products-woocommerce","Hide Categories and Products for Woocommerce","1.2.10","leroysabrina","https:\u002F\u002Fprofiles.wordpress.org\u002Fleroysabrina\u002F","\u003Cp>With this plugin, you can hide on the store products from a chosen category and hide a category itself, in list or on single page.\u003Cbr \u002F>\nIt is compatible with Storefront (theme) shortcodes.\u003C\u002Fp>\n\u003Ch3>How to use\u003C\u002Fh3>\n\u003Col>\n\u003Cli>Go to Woocommerce -> Settings -> Products.\u003C\u002Fli>\n\u003Cli>Go to the subsection “Hide from categories”.\u003C\u002Fli>\n\u003Cli>There is twice the list of the product categories currently on your store. First list allows you to hide the categories on the store. Second list allows you to hide products from those categories on the store.\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch3>Documentation\u003C\u002Fh3>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fapps.avecnous.eu\u002Fdocs\u002Fhide-categories-products-woocommerce\u002F\" rel=\"nofollow ugc\">APIGEN\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.youtube.com\u002Fwatch?v=Jj3CexyPp2A\" rel=\"nofollow ugc\">Video Tutorial (EN)\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.youtube.com\u002Fwatch?v=IbB_mdwOCLM\" rel=\"nofollow ugc\">Tutoriel Vidéo (FR)\u003C\u002Fa>\u003C\u002Fp>\n","Hide Categories and Products for Woocommerce. This plugins requires WooCommerce to be installed and activated",10000,88656,82,27,"2024-12-03T13:54:00.000Z","6.7.5","4.9.7","7.4",[79,80,81,21,82],"categories","hide","product","woocommerce","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fhide-categories-products-woocommerce.1.2.10.zip",92,{"slug":86,"name":87,"version":88,"author":89,"author_profile":90,"description":91,"short_description":92,"active_installs":93,"downloaded":94,"rating":95,"num_ratings":96,"last_updated":97,"tested_up_to":98,"requires_at_least":99,"requires_php":18,"tags":100,"homepage":103,"download_link":104,"security_score":26,"vuln_count":27,"unpatched_count":27,"last_vuln_date":28,"fetched_at":29},"storefront-product-sharing","Storefront Product Sharing","1.0.6","WooCommerce","https:\u002F\u002Fprofiles.wordpress.org\u002Fwoocommerce\u002F","\u003Cp>A simple plugin that adds an attractive sharing component to product pages. Prompt visitors to share your products on Facebook, Twitter, Pinterest or via Email.\u003C\u002Fp>\n\u003Cp>This plugin requires the Storefront theme and WooCommerce plugin to be installed.\u003C\u002Fp>\n","Add attractive social sharing icons for Facebook, Twitter, Pinterest and Email to your product pages.",5000,274345,78,14,"2020-08-27T15:37:00.000Z","5.2.24","4.0",[54,101,102,21,82],"sharing","social","https:\u002F\u002Fwoocommerce.com\u002Fproducts\u002Fstorefront-product-sharing\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fstorefront-product-sharing.1.0.6.zip",{"slug":106,"name":107,"version":108,"author":109,"author_profile":110,"description":111,"short_description":112,"active_installs":113,"downloaded":114,"rating":115,"num_ratings":116,"last_updated":117,"tested_up_to":50,"requires_at_least":118,"requires_php":119,"tags":120,"homepage":124,"download_link":125,"security_score":11,"vuln_count":27,"unpatched_count":27,"last_vuln_date":28,"fetched_at":29},"storefront-footer","Change Storefront Footer Copyright Text","2.3.5","quadlayers","https:\u002F\u002Fprofiles.wordpress.org\u002Fquadlayers\u002F","\u003Cp>\u003Ca href=\"http:\u002F\u002Fquadmenu.com\u002Fstorefront\u002F\" rel=\"nofollow ugc\">Demo\u003C\u002Fa> \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fquadlayers\u002Fstorefront-footer\u002F\" rel=\"nofollow ugc\">Github\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>This plugin allows you to easily edit and change the footer credit and copyright text in the WooCommerce Storefront theme through the wordpress admin panel.\u003C\u002Fp>\n\u003Cp>Works only with \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fthemes\u002Fstorefront\" rel=\"ugc\">Storefront Theme\u003C\u002Fa>.\u003C\u002Fp>\n","Change the footer credit text for Storefront theme.",4000,245592,96,33,"2026-03-11T18:51:00.000Z","4.7","5.6",[21,121,106,122,123],"storefront-credit","storefront-footer-copyright","storefront-footer-text","https:\u002F\u002Fquadlayers.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fstorefront-footer.2.3.5.zip",{"slug":127,"name":128,"version":129,"author":89,"author_profile":90,"description":130,"short_description":131,"active_installs":132,"downloaded":133,"rating":134,"num_ratings":32,"last_updated":135,"tested_up_to":136,"requires_at_least":137,"requires_php":18,"tags":138,"homepage":141,"download_link":142,"security_score":26,"vuln_count":27,"unpatched_count":27,"last_vuln_date":28,"fetched_at":29},"storefront-footer-bar","Storefront Footer Bar","1.0.4","\u003Cp>A simple plugin that adds a full width widget region above the default, columnised Storefront footer widget area. Customise the display by adding a background image and tweaking colors via the Customizer.\u003C\u002Fp>\n\u003Cp>This plugin requires the Storefront theme to be installed.\u003C\u002Fp>\n","Add a full width widgetised region above the default Storefront footer widget area.",3000,107619,74,"2020-08-27T15:12:00.000Z","4.9.29","4.1.0",[54,139,21,140,82],"footer","widgets","http:\u002F\u002Fwoothemes.com\u002Fstorefront\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fstorefront-footer-bar.1.0.4.zip",{"attackSurface":144,"codeSignals":183,"taintFlows":195,"riskAssessment":196,"analyzedAt":202},{"hooks":145,"ajaxHandlers":179,"restRoutes":180,"shortcodes":181,"cronEvents":182,"entryPointCount":27,"unprotectedCount":27},[146,152,158,162,166,168,172,176],{"type":147,"name":148,"callback":149,"file":150,"line":151},"action","admin_notices","notices","quadmenu-storefront.php",22,{"type":153,"name":154,"callback":155,"priority":156,"file":150,"line":157},"filter","quadmenu_developer_options","options",10,24,{"type":153,"name":159,"callback":160,"priority":156,"file":150,"line":161},"quadmenu_default_themes","themes",25,{"type":153,"name":163,"callback":164,"priority":156,"file":150,"line":165},"quadmenu_default_options","general",26,{"type":153,"name":167,"callback":102,"priority":156,"file":150,"line":73},"quadmenu_default_options_social",{"type":153,"name":169,"callback":170,"priority":156,"file":150,"line":171},"quadmenu_default_options_theme_storefront_light","light",28,{"type":153,"name":173,"callback":174,"priority":156,"file":150,"line":175},"quadmenu_default_options_theme_storefront_dark","dark",29,{"type":153,"name":177,"callback":178,"priority":156,"file":150,"line":35},"quadmenu_default_options_location_primary","primary",[],[],[],[],{"dangerousFunctions":184,"sqlUsage":185,"outputEscaping":187,"fileOperations":27,"externalRequests":27,"nonceChecks":27,"capabilityChecks":14,"bundledLibraries":194},[],{"prepared":27,"raw":27,"locations":186},[],{"escaped":27,"rawEcho":14,"locations":188},[189,192],{"file":150,"line":190,"context":191},57,"raw output",{"file":150,"line":193,"context":191},70,[],[],{"summary":197,"deductions":198},"The \"quadmenu-storefront\" v1.1.2 plugin exhibits a generally positive security posture based on the provided static analysis and vulnerability history. There are no identified CVEs, indicating a lack of known exploitable vulnerabilities in its past. The static analysis reveals a minimal attack surface with zero identified entry points, including AJAX handlers, REST API routes, shortcodes, and cron events. Furthermore, there are no dangerous functions used, no raw SQL queries, and no file operations or external HTTP requests, all of which are strong indicators of secure coding practices. The absence of taint flows with unsanitized paths is also a very positive sign.\n\nHowever, a significant concern arises from the output escaping analysis, where 100% of the identified outputs are not properly escaped. This represents a substantial risk of Cross-Site Scripting (XSS) vulnerabilities, where malicious scripts could be injected and executed within the user's browser. While the plugin has capability checks and uses prepared statements for SQL, the lack of output escaping is a critical oversight that could be leveraged by attackers. The absence of nonce checks on the identified entry points (even though there are none) and the presence of capability checks on only two outputs are not explicitly problematic given the current zero entry points, but represent a lack of defensive layers that could become a concern if the attack surface were to expand in future versions.\n\nIn conclusion, \"quadmenu-storefront\" v1.1.2 has excellent foundations in terms of attack surface management and SQL security. The complete absence of known vulnerabilities is a major strength. The primary and most critical weakness is the complete failure to escape output, which directly exposes users to XSS attacks. This single issue significantly degrades the overall security assessment despite other positive attributes. Developers should prioritize addressing this output escaping flaw.",[199],{"reason":200,"points":201},"100% of outputs are not properly escaped",8,"2026-03-16T21:13:35.893Z",{"wat":204,"direct":211},{"assetPaths":205,"generatorPatterns":208,"scriptPaths":209,"versionParams":210},[206,207],"\u002Fwp-content\u002Fplugins\u002Fquadmenu-storefront\u002Fassets\u002Fcss\u002Fcustomizer.css","\u002Fwp-content\u002Fplugins\u002Fquadmenu-storefront\u002Fassets\u002Fcss\u002Ffrontend.css",[],[],[],{"cssClasses":212,"htmlComments":216,"htmlAttributes":217,"restEndpoints":218,"jsGlobals":219,"shortcodeOutput":220},[213,214,215],"quadmenu-storefront-logo","storefront-dark","storefront-light",[],[],[],[],[]]