[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fl9l7E-MlMWjNalY-k0MZehs5tD5SvK8JWjm6HJoN1vE":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":24,"download_link":25,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28,"vulnerabilities":29,"developer":30,"crawl_stats":27,"alternatives":36,"analysis":123,"fingerprints":422},"readers-from-rss-2-blog","Readers From RSS 2 Blog Lite","3.0.1.4","wpsmartapps","https:\u002F\u002Fprofiles.wordpress.org\u002Fwpsmartapps\u002F","\u003Ch4>Readers From RSS 2 Blog Pro\u003C\u002Fh4>\n\u003Cp>\u003Ca href=\"http:\u002F\u002Freadersfromrss2blog.com\u002F\" title=\"Upgrade to Readers From RSS 2 Blog Pro\" rel=\"nofollow ugc\">Upgrade to Readers From RSS 2 Blog Pro\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch4>Plugin More Information\u003C\u002Fh4>\n\u003Cp>\u003Ca href=\"http:\u002F\u002Fwpsmartapps.com\u002F\" title=\"By WpSmartApps.com\" rel=\"nofollow ugc\">By WpSmartApps.com\u003C\u002Fa> | \u003Ca href=\"http:\u002F\u002Fcommunity.wpsmartapps.com\u002F\" title=\"Forum Support\" rel=\"nofollow ugc\">Forum Support\u003C\u002Fa> | \u003Ca href=\"http:\u002F\u002Fwiki.wpsmartapps.com\" title=\"How to Instructions\" rel=\"nofollow ugc\">How to Instructions\u003C\u002Fa> | \u003Ca href=\"http:\u002F\u002Fwpsmartapps.com\u002Faffiliates\u002F\" title=\"Affiliate Program\" rel=\"nofollow ugc\">Affiliate Program\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch4>What is ‘Readers From RSS 2 BLOG’?\u003C\u002Fh4>\n\u003Cp>‘Readers From RSS 2 BLOG’ is a innovative WordPress plug-in for your RSS FEEDS. What’s amazing is that it increases your SALES AND BLOG audiences by converting your Blog RSS FEED into DEADLY marketing weapon offering you greater control and flexibility. It tempts your RSS Feed readers to visit your blog without slightest displeasure. Hence, ‘Readers From RSS 2 Blog’ is not just about getting massive traffic but about getting quality traffic to your site.\u003C\u002Fp>\n\u003Cp>PLUS the plugin overcomes serious issues bloggers currently face today like blog content being stolen, RSS subscribers not returning to blog, difficulty of advertising on specific RSS FEED, No social share options within RSS Feeds and many more.\u003C\u002Fp>\n\u003Cp>But now brush away all your worries as we bring you ‘Readers From RSS 2 BLOG’.\u003C\u002Fp>\n\u003Ch4>Live DEMO\u003C\u002Fh4>\n\u003Cp>\u003Ca href=\"http:\u002F\u002Fmarketplace.wpsmartapps.com\u002F33\u002Freaders-from-rss-2-blog\u002F\" title=\"Plugin Live Demo\" rel=\"nofollow ugc\">Plugin Live Demo\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\n\u003Cp>\u003Cstrong>Copyright Notice:\u003C\u002Fstrong> Now you can add Copyright Notice in all your Blog RSS Feed so that you can authenticate your work and let people know that you are the source of information or content.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Display Random Posts:\u003C\u002Fstrong> This feature will display random posts on your RSS posts\u002Fpages so that your readers might be interested in those too. This will create additional traffic to your blog.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>“X Comments” Labels:\u003C\u002Fstrong> This feature will allow you to display text of your choice when there is “No Comment”, “1 Comment” and “More than 1 Comment” to make your content more attractive to your audience.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Include Pages of Your Choice on RSS FEED:\u003C\u002Fstrong> Choose from list of pages you want to include within RSS FEED in just a seconds.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Display Post Tag:\u003C\u002Fstrong> Display post tags within RSS FEED in just a single click for more audience into your blog through search.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Display Social Share Icons:\u003C\u002Fstrong> Display social share icons on all post of your choice within your RSS FEED for more traffic, more sales and more new readers.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Pro Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\n\u003Cp>\u003Cstrong>Feedburner Email Subscription:\u003C\u002Fstrong> Add a Feedburner Email Subscription widget to one of your sidebars.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Display Latest “X Post Comments”:\u003C\u002Fstrong> Enable to show unlimited number of comments like your BLOG POST on Blog RSS Feed Plus, the readers will be able to add comments and reply to other comments instantly.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Cstrong>Create multiple header\u002Ffooter ads on RSS Feed and targat to all or specific posts\u002Fpages or categories:\u003C\u002Fstrong> You can create multiple Ad Campaigns and display your ad campaign on the header or footer of your RSS Feeds. Not only this at the same time, You can also targat to all or specific posts\u002Fpages or categories to display your created ad campaign on your blog RSS Feed.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Live DEMO\u003C\u002Fh4>\n\u003Cp>\u003Ca href=\"http:\u002F\u002Fmarketplace.wpsmartapps.com\u002F33\u002Freaders-from-rss-2-blog\u002F\" title=\"Plugin Live Demo\" rel=\"nofollow ugc\">Plugin Live Demo\u003C\u002Fa>\u003C\u002Fp>\n","Increase Your SALES And BLOG Audience By Turning Your BLOG RSS FEED Into A Powerful MARKETING Machine",100,40179,0,"2014-09-14T12:32:00.000Z","4.0.38","3.0","",[19,20,21,22,23],"feed","feedburner","google-reader","rss","rss-marketing","http:\u002F\u002Fmarketplace.wpsmartapps.com\u002F33\u002Freaders-from-rss-2-blog\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Freaders-from-rss-2-blog.zip",85,null,"2026-03-15T15:16:48.613Z",[],{"slug":7,"display_name":7,"profile_url":8,"plugin_count":31,"total_installs":32,"avg_security_score":26,"avg_patch_time_days":33,"trust_score":34,"computed_at":35},2,110,30,84,"2026-04-03T21:32:32.589Z",[37,56,73,91,106],{"slug":38,"name":39,"version":40,"author":41,"author_profile":42,"description":43,"short_description":44,"active_installs":45,"downloaded":46,"rating":47,"num_ratings":48,"last_updated":49,"tested_up_to":50,"requires_at_least":16,"requires_php":17,"tags":51,"homepage":53,"download_link":54,"security_score":55,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"feedburner-alternative-and-rss-redirect","RSS Redirect & Feedburner Alternative","4.4","s-feeds","https:\u002F\u002Fprofiles.wordpress.org\u002Fs-feeds\u002F","\u003Cp>\u003Cstrong>Try it out on your free dummy site: Click here => \u003Ca href=\"https:\u002F\u002Ftastewp.com\u002Fplugins\u002Ffeedburner-alternative-and-rss-redirect\" rel=\"nofollow ugc\">https:\u002F\u002Ftastewp.com\u002Fplugins\u002Ffeedburner-alternative-and-rss-redirect\u003C\u002Fa>.\u003C\u002Fstrong>\u003Cbr \u002F>\n(this trick works for all plugins in the WP repo – just replace “wordpress” with “tastewp” in the URL)\u003C\u002Fp>\n\u003Cp>This plugin allows you to easily switch from Feedburner to the FREE (on the \u003Ca href=\"https:\u002F\u002Ffollow.it\u002Ffeatures-and-pricing\" rel=\"nofollow ugc\">basic plan\u003C\u002Fa>) and better Feedburner alternative follow.it.\u003C\u002Fp>\n\u003Cp>Read more why follow.it is the \u003Ca href=\"https:\u002F\u002Ffollow.it\u002F?page=3\" rel=\"nofollow ugc\">better Feedburner alternative\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>The plugin is very easy to use:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Step 1: Download, install & activate it\u003C\u002Fli>\n\u003Cli>Step 2: Click on “Apply redirect” for all feeds you want to redirect (most likely your main feed, as well as some comments & author feeds you may have)\u003C\u002Fli>\n\u003Cli>Step 3: Connect it to a follow.it account to get access to your subscribers, see statistics etc. (see screenshots)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Once the redirect is active, your RSS-url will redirect to your new feed page where users can subscribe to your feed.\u003C\u002Fp>\n\u003Cp>If you had former Feedburner subscribers, follow the steps as prompted in the plugin to move them over to your new feed (RSS as well as Email subscribers).\u003C\u002Fp>\n\u003Cp>If something is not working in the Feedburner alternative plugin, please post a question in the support forum. Thank you!\u003C\u002Fp>\n","Free Feedburner Alternative and RSS Redirect plugin from follow.it.",1000,81831,98,18,"2025-04-01T17:12:00.000Z","6.8.5",[19,20,52,22,41],"feeds","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Ffeedburner-alternative-and-rss-redirect","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Ffeedburner-alternative-and-rss-redirect.4.4.zip",92,{"slug":57,"name":58,"version":59,"author":60,"author_profile":61,"description":62,"short_description":63,"active_installs":64,"downloaded":65,"rating":66,"num_ratings":67,"last_updated":68,"tested_up_to":69,"requires_at_least":16,"requires_php":17,"tags":70,"homepage":71,"download_link":72,"security_score":55,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"feedpress","FeedPress","1.8","maximevalette","https:\u002F\u002Fprofiles.wordpress.org\u002Fmaximevalette\u002F","\u003Cp>FeedPress is the most reliable alternative to FeedBurner.\u003C\u002Fp>\n\u003Cp>This WordPress plugin automatically handles feeds redirections to your FeedPress feeds the easiest way.\u003C\u002Fp>\n\u003Cp>Additionally, every time you publish a new article, a ping is sent to FeedPress to automatically update the feed in realtime.\u003C\u002Fp>\n","Redirects all feeds to a FeedPress feed and enables realtime feed updates.",200,32294,66,3,"2025-02-25T16:21:00.000Z","6.7.5",[19,20,57,22],"https:\u002F\u002Ffeedpress.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Ffeedpress.1.8.zip",{"slug":74,"name":75,"version":76,"author":77,"author_profile":78,"description":79,"short_description":80,"active_installs":11,"downloaded":81,"rating":13,"num_ratings":13,"last_updated":82,"tested_up_to":83,"requires_at_least":84,"requires_php":17,"tags":85,"homepage":89,"download_link":90,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"subscribe-here-widget","Subscribe Here Widget","1.0","adiian","https:\u002F\u002Fprofiles.wordpress.org\u002Fadiian\u002F","\u003Cp>Features:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Show “Subscribe by RSS” and “Subscribe by email”\u003C\u002Fli>\n\u003Cli>Configurable apearance through CSS\u003C\u002Fli>\n\u003Cli>Feedburner Feed Id configurable through widget panel\u003C\u002Fli>\n\u003C\u002Ful>\n","Subscribe Here displays a visible plugin widget in the sidebar with Subscribe by Rss & Subscribe by Email(through Feedburner) options.",23003,"2010-01-11T23:34:00.000Z","2.9.2","2.3.1",[20,22,86,87,88],"subscribe","subscribe-here","widget","http:\u002F\u002Fwww.improveseo.info\u002Fsubscribe-here-widget-for-wordpress\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsubscribe-here-widget.1.0.zip",{"slug":92,"name":93,"version":94,"author":95,"author_profile":96,"description":97,"short_description":98,"active_installs":99,"downloaded":100,"rating":11,"num_ratings":31,"last_updated":101,"tested_up_to":102,"requires_at_least":16,"requires_php":17,"tags":103,"homepage":17,"download_link":105,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"rss-links-manager","RSS Links Manager","0.1.2","Tobias Eisenschmidt","https:\u002F\u002Fprofiles.wordpress.org\u002Ftobiaseisenschmidt\u002F","\u003Cp>RSS Links Manager lets you easily customise your RSS links via WordPress’ admin menu. Are you using Feedburner? Just enter your Feedburner URL. Are you using Disqus or Facebook comments instead of WordPress’ internal comment system? Just deactivate the feeds you don’t need – including category, tag and author feeds.\u003C\u002Fp>\n\u003Cp>Features:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Customise your feed links (title, URL, MIME type)\u003C\u002Fli>\n\u003Cli>Remove individual feed links (main feed, comments, extras)\u003C\u002Fli>\n\u003Cli>Directly hooks into WordPress’ wp_head functon\u003C\u002Fli>\n\u003Cli>Multilingual (English and German)\u003C\u002Fli>\n\u003C\u002Ful>\n","Manage and customise your RSS feed links.",80,6698,"2014-12-30T12:00:00.000Z","4.1.42",[104,19,20,22,92],"customization","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Frss-links-manager.0.1.2.zip",{"slug":107,"name":108,"version":109,"author":110,"author_profile":111,"description":112,"short_description":113,"active_installs":114,"downloaded":115,"rating":13,"num_ratings":13,"last_updated":116,"tested_up_to":117,"requires_at_least":118,"requires_php":17,"tags":119,"homepage":121,"download_link":122,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"feed-subscriber-stats","Feed Subscriber Stats","3.0.6","Allan Collins","https:\u002F\u002Fprofiles.wordpress.org\u002Fcollinsinternet\u002F","\u003Cp>Ever wanted to see your FeedBurner stats on the WordPress Dashboard? Well now you can with this simple plugin. The plugin uses FeedBurner’s Awareness API to get your feed subscriber stats directly from FeedBurner. So now you can easily check your subscriber stats from the WordPress Administration section.\u003C\u002Fp>\n\u003Cp>-Graphing of stats from 01-01-2008 to the present.\u003C\u002Fp>\n\u003Ch3>Sidebar Widget\u003C\u002Fh3>\n\u003Cp>If you have a widget ready dynamic sidebar, you can add the FSS Widget.\u003C\u002Fp>\n\u003Cp>Add this code: [fss_subscribers] to view the subscriber count.\u003C\u002Fp>\n\u003Cp>You can customize how this looks for example:\u003C\u002Fp>\n\u003Cp>There are [fss_subscribers] subscribers to this blog.\u003C\u002Fp>\n\u003Cp>WILL DISPLAY:\u003C\u002Fp>\n\u003Cp>There are 20 subscribers to this blog.\u003C\u002Fp>\n","Ever wanted to see your FeedBurner stats on the Wordpress Dashboard? Well now you can with this simple plugin. The plugin uses FeedBurner's Aware &hellip;",20,12868,"2009-06-22T16:58:00.000Z","2.8","2.7",[19,20,52,22,120],"sidebar","http:\u002F\u002Fwww.allancollins.net\u002F368\u002Ffeed-subscriber-stats-3\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Ffeed-subscriber-stats.zip",{"attackSurface":124,"codeSignals":184,"taintFlows":343,"riskAssessment":403,"analyzedAt":421},{"hooks":125,"ajaxHandlers":180,"restRoutes":181,"shortcodes":182,"cronEvents":183,"entryPointCount":13,"unprotectedCount":13},[126,133,138,142,146,149,153,157,161,164,167,171,173,177],{"type":127,"name":128,"callback":129,"priority":130,"file":131,"line":132},"filter","plugin_action_links","rfr2b_actions",10,"readers-from-rss-2-blog.php",51,{"type":134,"name":135,"callback":136,"file":131,"line":137},"action","admin_menu","rfr2b_admin_menu",52,{"type":134,"name":139,"callback":140,"file":131,"line":141},"admin_notices","__rfr2b_update_notify",62,{"type":127,"name":143,"callback":144,"priority":33,"file":131,"line":145},"the_content","rfr2b_display_Feed",64,{"type":127,"name":147,"callback":144,"priority":33,"file":131,"line":148},"the_excerpt_rss",65,{"type":127,"name":150,"callback":151,"file":131,"line":152},"posts_where","rfr2b_posts_where",69,{"type":127,"name":154,"callback":155,"priority":130,"file":131,"line":156},"get_lastpostmodified","rfr2b_get_lastpostmodified",73,{"type":134,"name":158,"callback":159,"file":131,"line":160},"rss2_ns","rfr2b_feed_true",75,{"type":134,"name":162,"callback":159,"file":131,"line":163},"atom_ns",76,{"type":134,"name":165,"callback":159,"file":131,"line":166},"rdf_ns",77,{"type":134,"name":168,"callback":169,"file":131,"line":170},"rss2_comments_ns","rfr2b_feed_false",79,{"type":134,"name":172,"callback":169,"file":131,"line":99},"atom_comments_ns",{"type":127,"name":174,"callback":175,"file":131,"line":176},"user_can_richedit","anonymous",212,{"type":134,"name":178,"callback":175,"file":131,"line":179},"widgets_init",538,[],[],[],[],{"dangerousFunctions":185,"sqlUsage":199,"outputEscaping":211,"fileOperations":13,"externalRequests":13,"nonceChecks":13,"capabilityChecks":13,"bundledLibraries":342},[186,189,191,196],{"fn":187,"file":131,"line":176,"context":188},"create_function","add_filter('user_can_richedit', create_function('','return false;'));",{"fn":187,"file":131,"line":179,"context":190},"add_action('widgets_init', create_function('', 'return register_widget(\"ReadersFromRSS2BlogWidget\");",{"fn":192,"file":193,"line":194,"context":195},"unserialize","wpsmartapps-lic\\readers-from-rss-2-blog.cls.php",124,"if ( $row['option_name'] == 'rfr2b_affiliate_options' ) $this->fetch_rfr2b_affiliateOptions = unseri",{"fn":192,"file":193,"line":197,"context":198},131,"if ( $row['option_name'] == 'rfr2b_control_options' ) $this->fetch_rfr2b_control_options = unseriali",{"prepared":200,"raw":200,"locations":201},4,[202,205,207,209],{"file":131,"line":203,"context":204},95,"$wpdb->get_var() with variable interpolation",{"file":131,"line":206,"context":204},96,{"file":193,"line":208,"context":204},29,{"file":193,"line":210,"context":204},50,{"escaped":200,"rawEcho":212,"locations":213},71,[214,217,219,221,223,225,227,229,231,233,235,237,238,239,241,242,243,245,246,247,249,250,251,253,254,255,257,258,261,263,264,266,268,270,272,274,276,278,280,282,284,286,288,290,292,294,296,298,300,302,304,306,308,310,312,314,315,316,318,319,321,323,325,327,328,330,332,334,336,338,340],{"file":131,"line":215,"context":216},342,"raw output",{"file":131,"line":218,"context":216},423,{"file":131,"line":220,"context":216},445,{"file":131,"line":222,"context":216},446,{"file":131,"line":224,"context":216},450,{"file":131,"line":226,"context":216},452,{"file":131,"line":228,"context":216},454,{"file":131,"line":230,"context":216},456,{"file":131,"line":232,"context":216},470,{"file":131,"line":234,"context":216},474,{"file":131,"line":236,"context":216},514,{"file":131,"line":236,"context":216},{"file":131,"line":236,"context":216},{"file":131,"line":240,"context":216},518,{"file":131,"line":240,"context":216},{"file":131,"line":240,"context":216},{"file":131,"line":244,"context":216},522,{"file":131,"line":244,"context":216},{"file":131,"line":244,"context":216},{"file":131,"line":248,"context":216},526,{"file":131,"line":248,"context":216},{"file":131,"line":248,"context":216},{"file":131,"line":252,"context":216},530,{"file":131,"line":252,"context":216},{"file":131,"line":252,"context":216},{"file":131,"line":256,"context":216},534,{"file":131,"line":256,"context":216},{"file":259,"line":260,"context":216},"wpsmartapps-lic\\admin-pg\\manage-rss.php",82,{"file":259,"line":262,"context":216},83,{"file":259,"line":34,"context":216},{"file":259,"line":265,"context":216},119,{"file":259,"line":267,"context":216},120,{"file":259,"line":269,"context":216},121,{"file":259,"line":271,"context":216},146,{"file":259,"line":273,"context":216},154,{"file":259,"line":275,"context":216},184,{"file":259,"line":277,"context":216},185,{"file":259,"line":279,"context":216},186,{"file":259,"line":281,"context":216},189,{"file":259,"line":283,"context":216},202,{"file":259,"line":285,"context":216},213,{"file":259,"line":287,"context":216},235,{"file":259,"line":289,"context":216},243,{"file":259,"line":291,"context":216},248,{"file":259,"line":293,"context":216},253,{"file":259,"line":295,"context":216},310,{"file":259,"line":297,"context":216},311,{"file":259,"line":299,"context":216},312,{"file":259,"line":301,"context":216},313,{"file":259,"line":303,"context":216},314,{"file":259,"line":305,"context":216},335,{"file":259,"line":307,"context":216},337,{"file":259,"line":309,"context":216},340,{"file":259,"line":311,"context":216},353,{"file":193,"line":313,"context":216},105,{"file":193,"line":313,"context":216},{"file":193,"line":313,"context":216},{"file":193,"line":317,"context":216},151,{"file":193,"line":273,"context":216},{"file":193,"line":320,"context":216},158,{"file":193,"line":322,"context":216},159,{"file":193,"line":324,"context":216},169,{"file":193,"line":326,"context":216},451,{"file":193,"line":226,"context":216},{"file":193,"line":329,"context":216},468,{"file":193,"line":331,"context":216},472,{"file":193,"line":333,"context":216},477,{"file":193,"line":335,"context":216},483,{"file":193,"line":337,"context":216},484,{"file":193,"line":339,"context":216},489,{"file":193,"line":341,"context":216},515,[],[344,362,372,393],{"entryPoint":345,"graph":346,"unsanitizedCount":200,"severity":361},"__rfr2b_header (wpsmartapps-lic\\readers-from-rss-2-blog.cls.php:139)",{"nodes":347,"edges":358},[348,353],{"id":349,"type":350,"label":351,"file":193,"line":352},"n0","source","$_GET (x4)",141,{"id":354,"type":355,"label":356,"file":193,"line":317,"wp_function":357},"n1","sink","echo() [XSS]","echo",[359],{"from":349,"to":354,"sanitized":360},false,"medium",{"entryPoint":363,"graph":364,"unsanitizedCount":31,"severity":361},"__rfr2b_PluginActivateForm (wpsmartapps-lic\\readers-from-rss-2-blog.cls.php:427)",{"nodes":365,"edges":370},[366,369],{"id":349,"type":350,"label":367,"file":193,"line":368},"$_GET (x2)",429,{"id":354,"type":355,"label":356,"file":193,"line":331,"wp_function":357},[371],{"from":349,"to":354,"sanitized":360},{"entryPoint":373,"graph":374,"unsanitizedCount":31,"severity":392},"\u003Cprocess> (wpsmartapps-lic\\admin-pg\\process.php:0)",{"nodes":375,"edges":389},[376,380,383,387],{"id":349,"type":350,"label":377,"file":378,"line":379},"$_GET['name']","wpsmartapps-lic\\admin-pg\\process.php",11,{"id":354,"type":355,"label":381,"file":378,"line":379,"wp_function":382},"update_option() [Settings Manipulation]","update_option",{"id":384,"type":350,"label":385,"file":378,"line":386},"n2","$_GET['from']",12,{"id":388,"type":355,"label":381,"file":378,"line":386,"wp_function":382},"n3",[390,391],{"from":349,"to":354,"sanitized":360},{"from":384,"to":388,"sanitized":360},"low",{"entryPoint":394,"graph":395,"unsanitizedCount":402,"severity":392},"\u003Creaders-from-rss-2-blog.cls> (wpsmartapps-lic\\readers-from-rss-2-blog.cls.php:0)",{"nodes":396,"edges":400},[397,399],{"id":349,"type":350,"label":398,"file":193,"line":352},"$_GET (x6)",{"id":354,"type":355,"label":356,"file":193,"line":317,"wp_function":357},[401],{"from":349,"to":354,"sanitized":360},6,{"summary":404,"deductions":405},"The \"readers-from-rss-2-blog\" v3.0.1.4 plugin exhibits a mixed security posture. While the static analysis reveals no direct external attack surface (no AJAX handlers, REST API routes, shortcodes, or cron events accessible without authentication), there are significant internal code concerns. The presence of dangerous functions like `create_function` and `unserialize` is a red flag, as these can lead to arbitrary code execution if improperly handled with user-supplied data.  Furthermore, only 25% of output is properly escaped, indicating a high risk of Cross-Site Scripting (XSS) vulnerabilities, especially if any of the unsanitized taint flows lead to output. The taint analysis itself shows a concerning 100% of analyzed flows have unsanitized paths, even if classified as not critical or high severity in this specific analysis run. This suggests a general lack of input sanitization within the plugin's code.  The lack of any recorded vulnerability history is a positive sign, but it does not negate the inherent risks identified in the static and taint analysis. The plugin appears to have been developed without a strong focus on security best practices regarding input validation and output escaping, despite a seemingly limited external attack vector.",[406,409,411,413,416,419],{"reason":407,"points":408},"Dangerous functions used (`create_function`, `unserialize`)",15,{"reason":410,"points":130},"Low percentage of properly escaped output (5%)",{"reason":412,"points":386},"All taint flows have unsanitized paths",{"reason":414,"points":415},"SQL queries not always using prepared statements (50%)",8,{"reason":417,"points":418},"No nonce checks present",7,{"reason":420,"points":418},"No capability checks present","2026-03-16T20:48:39.332Z",{"wat":423,"direct":436},{"assetPaths":424,"generatorPatterns":432,"scriptPaths":433,"versionParams":434},[425,426,427,428,429,430,431],"\u002Fwp-content\u002Fplugins\u002Freaders-from-rss-2-blog\u002Fwpsmartapps-lic\u002Fimages\u002Frfr2b-logo.png","\u002Fwp-content\u002Fplugins\u002Freaders-from-rss-2-blog\u002Fwpsmartapps-lic\u002Fimages\u002Fupgrade.gif","\u002Fwp-content\u002Fplugins\u002Freaders-from-rss-2-blog\u002Fwpsmartapps-lic\u002Fimages\u002Fleft-arrow.png","\u002Fwp-content\u002Fplugins\u002Freaders-from-rss-2-blog\u002Fwpsmartapps-lic\u002Fimages\u002Fright-arrow.png","\u002Fwp-content\u002Fplugins\u002Freaders-from-rss-2-blog\u002Fwpsmartapps-lic\u002Fimages\u002Fclose-form.gif","\u002Fwp-content\u002Fplugins\u002Freaders-from-rss-2-blog\u002Fwpsmartapps-lic\u002Fadmin-pg\u002Fdemo\u002Fgooglereader.jpg","\u002Fwp-content\u002Fplugins\u002Freaders-from-rss-2-blog\u002Fwpsmartapps-lic\u002Fimages\u002Ftick.png",[],[],[435],"readers-from-rss-2-blog\u002Freaders-from-rss-2-blog.php",{"cssClasses":437,"htmlComments":438,"htmlAttributes":439,"restEndpoints":441,"jsGlobals":442,"shortcodeOutput":444},[],[],[440],"id=\"global_demo\"",[],[443],"ma_feed",[]]