[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fUVrVKBOBQKK5On-4bIqbT_f2r8Z3UsHD6uLZrwvNmzU":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":17,"download_link":19,"security_score":20,"vuln_count":13,"unpatched_count":13,"last_vuln_date":21,"fetched_at":22,"vulnerabilities":23,"developer":24,"crawl_stats":21,"alternatives":30,"analysis":31,"fingerprints":424},"safreen-widgets","Safree Widgets","1.6","Md Mosaober Hasan","https:\u002F\u002Fprofiles.wordpress.org\u002Fimon-hasan\u002F","\u003Cp>\u003Cstrong>NOTE: This plugin is meant for use with the WordPress themes developed by \u003Ca href=\"http:\u002F\u002Fimonthemes.com\" rel=\"nofollow ugc\">Imon Themes\u003C\u002Fa> theme Safreen, which take advantage of it to add richer content areas and designs. Check them out!\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"http:\u002F\u002Fimonthemes.com\u002Fsafreen\" rel=\"nofollow ugc\">Safree Widgets\u003C\u002Fa> is a utility plugin that adds support for a specific set of content elements within your WordPress installation. This plugin will add 3 custom post types to your site:team members, clients,about us . You can still use safreen widgets for any WordPress theme, although you will have to create your own page templates.\u003C\u002Fp>\n\u003Ch4>Included Content Types\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Team Members\u003C\u002Fli>\n\u003Cli>About Us\u003C\u002Fli>\n\u003Cli>Clients\u003C\u002Fli>\n\u003C\u002Ful>\n","Tags: Team Members,Clients,Team Members,safreen Add support for special content types in your website, such as a portfolio, client, and team member.",300,21618,0,"2019-07-19T19:36:00.000Z","5.2.24","4.7","",[],"https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsafreen-widgets.1.6.zip",85,null,"2026-03-15T15:16:48.613Z",[],{"slug":25,"display_name":7,"profile_url":8,"plugin_count":26,"total_installs":11,"avg_security_score":20,"avg_patch_time_days":27,"trust_score":28,"computed_at":29},"imon-hasan",2,30,84,"2026-04-04T14:42:09.786Z",[],{"attackSurface":32,"codeSignals":68,"taintFlows":416,"riskAssessment":417,"analyzedAt":423},{"hooks":33,"ajaxHandlers":64,"restRoutes":65,"shortcodes":66,"cronEvents":67,"entryPointCount":13,"unprotectedCount":13},[34,40,43,48,52,56,60],{"type":35,"name":36,"callback":37,"file":38,"line":39},"action","plugins_loaded","safreen_init","safree-widgets.php",20,{"type":35,"name":41,"callback":42,"file":38,"line":27},"admin_enqueue_scripts","safreen_css_and_js",{"type":44,"name":45,"callback":46,"file":38,"line":47},"filter","pt-ocdi\u002Fimport_files","safreen_import_files",59,{"type":44,"name":49,"callback":50,"file":38,"line":51},"pt-ocdi\u002Fdisable_pt_branding","__return_true",62,{"type":44,"name":53,"callback":54,"file":38,"line":55},"pt-ocdi\u002Fregenerate_thumbnails_in_content_import","__return_false",64,{"type":35,"name":57,"callback":58,"file":38,"line":59},"pt-ocdi\u002Fafter_import","safreen_after_import",83,{"type":35,"name":61,"callback":62,"file":38,"line":63},"widgets_init","safreen_register_widgets",92,[],[],[],[],{"dangerousFunctions":69,"sqlUsage":70,"outputEscaping":72,"fileOperations":13,"externalRequests":13,"nonceChecks":13,"capabilityChecks":13,"bundledLibraries":415},[],{"prepared":13,"raw":13,"locations":71},[],{"escaped":73,"rawEcho":74,"locations":75},82,219,[76,80,82,84,86,87,89,91,93,95,97,99,101,103,105,106,107,109,111,112,113,115,117,118,119,121,123,124,125,127,129,130,131,133,135,136,137,139,141,142,143,145,147,148,149,151,153,154,155,157,159,160,161,163,165,166,167,169,171,172,173,175,177,178,179,181,183,184,185,188,190,192,194,196,197,198,200,202,203,204,206,208,210,211,212,214,215,216,218,220,222,223,225,227,228,229,231,232,234,235,237,239,240,241,242,244,246,247,249,251,252,253,254,256,258,259,261,262,264,265,266,268,270,271,273,275,277,279,281,283,285,287,288,290,291,292,294,295,296,297,298,300,301,302,304,306,307,308,310,311,312,313,314,316,317,319,321,322,323,325,327,328,329,330,332,334,335,336,338,339,340,341,343,345,346,348,350,351,352,353,355,357,358,359,361,363,364,365,367,369,370,371,373,375,376,378,380,381,382,384,386,388,389,390,392,394,395,396,398,400,401,402,404,406,407,409,411,412,413],{"file":77,"line":78,"context":79},"aboutus.php",28,"raw output",{"file":77,"line":81,"context":79},37,{"file":77,"line":83,"context":79},41,{"file":77,"line":85,"context":79},55,{"file":77,"line":47,"context":79},{"file":77,"line":88,"context":79},72,{"file":77,"line":90,"context":79},76,{"file":77,"line":92,"context":79},90,{"file":77,"line":94,"context":79},94,{"file":77,"line":96,"context":79},109,{"file":77,"line":98,"context":79},113,{"file":77,"line":100,"context":79},122,{"file":77,"line":102,"context":79},185,{"file":77,"line":104,"context":79},186,{"file":77,"line":104,"context":79},{"file":77,"line":104,"context":79},{"file":77,"line":108,"context":79},190,{"file":77,"line":110,"context":79},191,{"file":77,"line":110,"context":79},{"file":77,"line":110,"context":79},{"file":77,"line":114,"context":79},203,{"file":77,"line":116,"context":79},204,{"file":77,"line":116,"context":79},{"file":77,"line":116,"context":79},{"file":77,"line":120,"context":79},208,{"file":77,"line":122,"context":79},209,{"file":77,"line":122,"context":79},{"file":77,"line":122,"context":79},{"file":77,"line":126,"context":79},212,{"file":77,"line":128,"context":79},213,{"file":77,"line":128,"context":79},{"file":77,"line":128,"context":79},{"file":77,"line":132,"context":79},225,{"file":77,"line":134,"context":79},226,{"file":77,"line":134,"context":79},{"file":77,"line":134,"context":79},{"file":77,"line":138,"context":79},230,{"file":77,"line":140,"context":79},231,{"file":77,"line":140,"context":79},{"file":77,"line":140,"context":79},{"file":77,"line":144,"context":79},234,{"file":77,"line":146,"context":79},235,{"file":77,"line":146,"context":79},{"file":77,"line":146,"context":79},{"file":77,"line":150,"context":79},246,{"file":77,"line":152,"context":79},247,{"file":77,"line":152,"context":79},{"file":77,"line":152,"context":79},{"file":77,"line":156,"context":79},251,{"file":77,"line":158,"context":79},252,{"file":77,"line":158,"context":79},{"file":77,"line":158,"context":79},{"file":77,"line":162,"context":79},255,{"file":77,"line":164,"context":79},256,{"file":77,"line":164,"context":79},{"file":77,"line":164,"context":79},{"file":77,"line":168,"context":79},268,{"file":77,"line":170,"context":79},269,{"file":77,"line":170,"context":79},{"file":77,"line":170,"context":79},{"file":77,"line":174,"context":79},273,{"file":77,"line":176,"context":79},274,{"file":77,"line":176,"context":79},{"file":77,"line":176,"context":79},{"file":77,"line":180,"context":79},277,{"file":77,"line":182,"context":79},278,{"file":77,"line":182,"context":79},{"file":77,"line":182,"context":79},{"file":186,"line":187,"context":79},"ourclient.php",26,{"file":186,"line":189,"context":79},35,{"file":186,"line":191,"context":79},102,{"file":186,"line":193,"context":79},152,{"file":186,"line":195,"context":79},153,{"file":186,"line":195,"context":79},{"file":186,"line":195,"context":79},{"file":186,"line":199,"context":79},163,{"file":186,"line":201,"context":79},169,{"file":186,"line":201,"context":79},{"file":186,"line":201,"context":79},{"file":186,"line":205,"context":79},170,{"file":186,"line":207,"context":79},177,{"file":186,"line":209,"context":79},178,{"file":186,"line":209,"context":79},{"file":186,"line":110,"context":79},{"file":186,"line":213,"context":79},197,{"file":186,"line":213,"context":79},{"file":186,"line":213,"context":79},{"file":186,"line":217,"context":79},198,{"file":186,"line":219,"context":79},205,{"file":186,"line":221,"context":79},206,{"file":186,"line":221,"context":79},{"file":186,"line":224,"context":79},217,{"file":186,"line":226,"context":79},223,{"file":186,"line":226,"context":79},{"file":186,"line":226,"context":79},{"file":186,"line":230,"context":79},224,{"file":186,"line":140,"context":79},{"file":186,"line":233,"context":79},232,{"file":186,"line":233,"context":79},{"file":186,"line":236,"context":79},244,{"file":186,"line":238,"context":79},250,{"file":186,"line":238,"context":79},{"file":186,"line":238,"context":79},{"file":186,"line":156,"context":79},{"file":186,"line":243,"context":79},258,{"file":186,"line":245,"context":79},259,{"file":186,"line":245,"context":79},{"file":186,"line":248,"context":79},270,{"file":186,"line":250,"context":79},276,{"file":186,"line":250,"context":79},{"file":186,"line":250,"context":79},{"file":186,"line":180,"context":79},{"file":186,"line":255,"context":79},284,{"file":186,"line":257,"context":79},285,{"file":186,"line":257,"context":79},{"file":260,"line":187,"context":79},"ourteam.php",{"file":260,"line":189,"context":79},{"file":260,"line":263,"context":79},39,{"file":260,"line":47,"context":79},{"file":260,"line":55,"context":79},{"file":260,"line":267,"context":79},69,{"file":260,"line":269,"context":79},89,{"file":260,"line":94,"context":79},{"file":260,"line":272,"context":79},99,{"file":260,"line":274,"context":79},118,{"file":260,"line":276,"context":79},123,{"file":260,"line":278,"context":79},128,{"file":260,"line":280,"context":79},146,{"file":260,"line":282,"context":79},151,{"file":260,"line":284,"context":79},156,{"file":260,"line":286,"context":79},164,{"file":260,"line":224,"context":79},{"file":260,"line":289,"context":79},218,{"file":260,"line":289,"context":79},{"file":260,"line":289,"context":79},{"file":260,"line":293,"context":79},222,{"file":260,"line":226,"context":79},{"file":260,"line":226,"context":79},{"file":260,"line":226,"context":79},{"file":260,"line":146,"context":79},{"file":260,"line":299,"context":79},236,{"file":260,"line":299,"context":79},{"file":260,"line":299,"context":79},{"file":260,"line":303,"context":79},239,{"file":260,"line":305,"context":79},240,{"file":260,"line":305,"context":79},{"file":260,"line":305,"context":79},{"file":260,"line":309,"context":79},243,{"file":260,"line":236,"context":79},{"file":260,"line":236,"context":79},{"file":260,"line":236,"context":79},{"file":260,"line":152,"context":79},{"file":260,"line":315,"context":79},248,{"file":260,"line":315,"context":79},{"file":260,"line":318,"context":79},254,{"file":260,"line":320,"context":79},260,{"file":260,"line":320,"context":79},{"file":260,"line":320,"context":79},{"file":260,"line":324,"context":79},261,{"file":260,"line":326,"context":79},275,{"file":260,"line":250,"context":79},{"file":260,"line":250,"context":79},{"file":260,"line":250,"context":79},{"file":260,"line":331,"context":79},279,{"file":260,"line":333,"context":79},280,{"file":260,"line":333,"context":79},{"file":260,"line":333,"context":79},{"file":260,"line":337,"context":79},283,{"file":260,"line":255,"context":79},{"file":260,"line":255,"context":79},{"file":260,"line":255,"context":79},{"file":260,"line":342,"context":79},287,{"file":260,"line":344,"context":79},288,{"file":260,"line":344,"context":79},{"file":260,"line":347,"context":79},293,{"file":260,"line":349,"context":79},299,{"file":260,"line":349,"context":79},{"file":260,"line":349,"context":79},{"file":260,"line":11,"context":79},{"file":260,"line":354,"context":79},315,{"file":260,"line":356,"context":79},316,{"file":260,"line":356,"context":79},{"file":260,"line":356,"context":79},{"file":260,"line":360,"context":79},319,{"file":260,"line":362,"context":79},320,{"file":260,"line":362,"context":79},{"file":260,"line":362,"context":79},{"file":260,"line":366,"context":79},324,{"file":260,"line":368,"context":79},325,{"file":260,"line":368,"context":79},{"file":260,"line":368,"context":79},{"file":260,"line":372,"context":79},328,{"file":260,"line":374,"context":79},329,{"file":260,"line":374,"context":79},{"file":260,"line":377,"context":79},334,{"file":260,"line":379,"context":79},340,{"file":260,"line":379,"context":79},{"file":260,"line":379,"context":79},{"file":260,"line":383,"context":79},341,{"file":260,"line":385,"context":79},355,{"file":260,"line":387,"context":79},356,{"file":260,"line":387,"context":79},{"file":260,"line":387,"context":79},{"file":260,"line":391,"context":79},359,{"file":260,"line":393,"context":79},360,{"file":260,"line":393,"context":79},{"file":260,"line":393,"context":79},{"file":260,"line":397,"context":79},364,{"file":260,"line":399,"context":79},365,{"file":260,"line":399,"context":79},{"file":260,"line":399,"context":79},{"file":260,"line":403,"context":79},368,{"file":260,"line":405,"context":79},369,{"file":260,"line":405,"context":79},{"file":260,"line":408,"context":79},374,{"file":260,"line":410,"context":79},380,{"file":260,"line":410,"context":79},{"file":260,"line":410,"context":79},{"file":260,"line":414,"context":79},381,[],[],{"summary":418,"deductions":419},"The safreen-widgets plugin v1.6 exhibits a surprisingly clean static analysis report, with no identified attack surface points, dangerous functions, raw SQL queries, file operations, or external HTTP requests. This suggests the plugin has been developed with considerable attention to common vulnerability vectors. The absence of any recorded vulnerabilities, past or present, further reinforces this positive security posture.\n\nHowever, a significant concern arises from the low percentage (27%) of properly escaped output. This indicates a substantial risk of Cross-Site Scripting (XSS) vulnerabilities, as user-supplied data, if not properly sanitized before being displayed, could be leveraged to inject malicious scripts. While the plugin doesn't present immediate threats like unpatched CVEs or direct code injection opportunities based on this analysis, the XSS risk cannot be ignored and requires immediate attention.\n\nIn conclusion, safreen-widgets v1.6 appears to be a well-intentioned plugin with a strong foundation against many common web application vulnerabilities. Its lack of a historical vulnerability record is a positive indicator of developer diligence. Nevertheless, the high rate of unescaped output is a critical weakness that significantly undermines its overall security. This oversight needs to be rectified to mitigate XSS risks and truly secure the plugin.",[420],{"reason":421,"points":422},"High percentage of unescaped output",15,"2026-03-16T20:01:53.223Z",{"wat":425,"direct":432},{"assetPaths":426,"generatorPatterns":429,"scriptPaths":430,"versionParams":431},[427,428],"\u002Fwp-content\u002Fplugins\u002Fsafreen-widgets\u002Fsafreen_widgets_custom_css.css","\u002Fwp-content\u002Fplugins\u002Fsafreen-widgets\u002Fsafreen_widget.js",[],[428],[],{"cssClasses":433,"htmlComments":437,"htmlAttributes":438,"restEndpoints":439,"jsGlobals":440,"shortcodeOutput":441},[434,435,436],"safreen-widgets-aboutus","safreen-widgets-ourteam","safreen-widgets-ourclient",[],[],[],[],[]]