[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fP6c-TcD47qRTSt50W2OY_2M8F8jUMmyxkxKuzGXmvw0":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":22,"download_link":23,"security_score":24,"vuln_count":25,"unpatched_count":25,"last_vuln_date":26,"fetched_at":27,"vulnerabilities":28,"developer":29,"crawl_stats":26,"alternatives":37,"analysis":138,"fingerprints":182},"shortcode-box","Shortcode Box","1.1.2","Arefly","https:\u002F\u002Fprofiles.wordpress.org\u002Feflyjason\u002F","\u003Cp>Need some boxs to make your post better?\u003C\u002Fp>\n\u003Cp>Now you can use this plugin to add Useful Boxes to your blog!\u003C\u002Fp>\n\u003Cp>You just need to type the shortcode \u003Ccode>[box]\u003C\u002Fcode> in to your post and everything will done for you!\u003C\u002Fp>\n\u003Cp>For shortcode usage please visit “Dashboard” -> “Tools” -> “Shortcode Box”\u003C\u002Fp>\n\u003Cp>Live Demo: \u003Ca href=\"http:\u002F\u002Fdemo.arefly.com\u002Fwordpress\u002Fshortcode-box\u002F\" rel=\"nofollow ugc\">Click Here\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>中文介紹請看\u003Ca href=\"http:\u002F\u002Fwww.arefly.com\u002Fshortcode-box\u002F\" rel=\"nofollow ugc\">這裏\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch4>Translators\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Chinese, Simplified (zh_CN) – \u003Ca href=\"http:\u002F\u002Fwww.arefly.com\u002F\" rel=\"nofollow ugc\">Arefly\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>Chinese, Traditional (zh_TW) – \u003Ca href=\"http:\u002F\u002Fwww.arefly.com\" rel=\"nofollow ugc\">Arefly\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>English (en_US) – \u003Ca href=\"http:\u002F\u002Fwww.arefly.com\" rel=\"nofollow ugc\">Arefly\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>If you have created your own language pack, or have an update of an existing one, you can send \u003Ca href=\"https:\u002F\u002Fcodex.wordpress.org\u002FTranslating_WordPress\" rel=\"nofollow ugc\">gettext PO and MO files\u003C\u002Fa> to \u003Ca href=\"http:\u002F\u002Fwww.arefly.com\u002Fabout\u002F\" rel=\"nofollow ugc\">Arefly\u003C\u002Fa> so that I can bundle it into Shortcode Box. You can download the latest \u003Ca href=\"https:\u002F\u002Fplugins.svn.wordpress.org\u002Fshortcode-box\u002Ftrunk\u002Flang\u002Fshortcode-box.pot\" rel=\"nofollow ugc\">POT file\u003C\u002Fa>.\u003C\u002Fp>\n","Add Useful Boxes to your blog simply by shortcode.",10,2583,100,2,"2014-03-10T10:38:00.000Z","3.7.41","3.0","",[20,21],"box","shortcode","http:\u002F\u002Fwww.arefly.com\u002Fshortcode-box\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fshortcode-box.zip",85,0,null,"2026-03-15T15:16:48.613Z",[],{"slug":30,"display_name":7,"profile_url":8,"plugin_count":31,"total_installs":32,"avg_security_score":33,"avg_patch_time_days":34,"trust_score":35,"computed_at":36},"eflyjason",24,1690,88,30,86,"2026-04-04T18:23:35.225Z",[38,65,85,104,120],{"slug":39,"name":40,"version":41,"author":42,"author_profile":43,"description":44,"short_description":45,"active_installs":46,"downloaded":47,"rating":48,"num_ratings":49,"last_updated":50,"tested_up_to":51,"requires_at_least":52,"requires_php":53,"tags":54,"homepage":60,"download_link":61,"security_score":62,"vuln_count":63,"unpatched_count":25,"last_vuln_date":64,"fetched_at":27},"webman-amplifier","WebMan Amplifier","1.6.3","WebMan Design | Oliver Juhas","https:\u002F\u002Fprofiles.wordpress.org\u002Fwebmandesign\u002F","\u003Cblockquote>\n\u003Cp>\u003Cstrong>Before you rate\u002Freview the plugin:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>Please note that the plugin was created \u003Cstrong>for WordPress theme developers\u003C\u002Fstrong>. \u003Cem>If you are a normal, non-tech-savvy WordPress user\u003C\u002Fem>, this plugin will be disappointing for you and you don’t need to install it as it was created for different purpose.\u003C\u002Fp>\n\u003Cp>\u003Cem>If you are a theme developer\u003C\u002Fem> and experience any issue with the plugin, please submit a support ticket.\u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Cp>\u003Cstrong>WebMan Amplifier is WordPress plugin that provides pack of features for theme developers. The plugin was build to help with, and simplify the WordPress theme development process.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>This plugin was created primarily for \u003Ca href=\"https:\u002F\u002Fwww.webmandesign.eu\u002F\" rel=\"nofollow ugc\">WebMan Design themes\u003C\u002Fa>, but it works with any other theme as well  if you declare a support for it in the theme’s code.\u003C\u002Fp>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Well thought shortcodes with simple and fast Shortcode Generator and integration with \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fbeaver-builder-lite-version\u002F\" rel=\"ugc\">Beaver Builder\u003C\u002Fa> page builder (with support for \u003Ca href=\"https:\u002F\u002Fwpml.org\" rel=\"nofollow ugc\">WPML\u003C\u002Fa> multilingual plugin)\u003C\u002Fli>\n\u003Cli>Custom post types:\u003Cbr \u002F>\n&bull; \u003Cstrong>Projects\u003C\u002Fstrong> – to create your own portfolios\u003Cbr \u002F>\n&bull; \u003Cstrong>Testimonials\u003C\u002Fstrong> – to manage your customers or partners testimonies\u003Cbr \u002F>\n&bull; \u003Cstrong>Staff\u003C\u002Fstrong> – to manage your team members\u003Cbr \u002F>\n&bull; \u003Cstrong>Content Modules\u003C\u002Fstrong> – to create an icon boxes, services boxes or a content injection anywhere on your website\u003Cbr \u002F>\n&bull; \u003Cstrong>Logos\u003C\u002Fstrong> – to manage your clients and\u002For partners logos list\u003C\u002Fli>\n\u003Cli>Custom widgets\u003Cbr \u002F>\n&bull; \u003Cstrong>Contact\u003C\u002Fstrong> – to display your contact information\u003Cbr \u002F>\n&bull; \u003Cstrong>Submenu\u003C\u002Fstrong> – to display a subpages of the current page\u003Cbr \u002F>\n&bull; \u003Cstrong>Tabbed Widgets\u003C\u002Fstrong> – to display any widgets in tabbed interface\u003Cbr \u002F>\n&bull; \u003Cstrong>Posts\u003C\u002Fstrong> – to list posts or portfolio projects\u003Cbr \u002F>\n&bull; \u003Cstrong>Content Module\u003C\u002Fstrong> – to display any Content Module post\u003C\u002Fli>\n\u003Cli>Metabox generator\u003C\u002Fli>\n\u003Cli>Fontello.com icon font uploader and simple integration\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Additional Resources\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fsupport\u002Fplugin\u002Fwebman-amplifier\u002F\" rel=\"ugc\">Have a question?\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fprofiles.wordpress.org\u002Fwebmandesign\u002F#content-themes\" rel=\"nofollow ugc\">Grab a free theme\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.webmandesign.eu\" rel=\"nofollow ugc\">Visit WebMan Design\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Isotope Licensing\u003C\u002Fh4>\n\u003Cp>Please note that the plugin integrates an Isotope JavaScript filter. This script is released under GPL v3 license for non-commercial use. If you intend to use the plugin for commercial purpose, please purchase the \u003Ca href=\"http:\u002F\u002Fisotope.metafizzy.co\u002Flicense.html\" rel=\"nofollow ugc\">Isotope license\u003C\u002Fa>.\u003C\u002Fp>\n","Amplifies functionality of WP themes. Provides custom post types, shortcodes, metaboxes, icons. Theme developer's best friend!",2000,115759,78,7,"2026-03-13T10:12:00.000Z","7.0","6.7","8.0",[55,56,57,58,59],"beaver-builder","custom-post-types","icons","metabox","shortcodes","https:\u002F\u002Fgithub.com\u002Fwebmandesign\u002Fwebman-amplifier\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwebman-amplifier.1.6.3.zip",99,1,"2025-12-31 00:00:00",{"slug":66,"name":67,"version":68,"author":69,"author_profile":70,"description":71,"short_description":72,"active_installs":73,"downloaded":74,"rating":75,"num_ratings":49,"last_updated":76,"tested_up_to":77,"requires_at_least":78,"requires_php":18,"tags":79,"homepage":83,"download_link":84,"security_score":24,"vuln_count":25,"unpatched_count":25,"last_vuln_date":26,"fetched_at":27},"ewsel-lightbox-for-galleries","EWSEL Lightbox For Galleries","1.0.7","EWSEL Team","https:\u002F\u002Fprofiles.wordpress.org\u002Fmwteam\u002F","\u003Cp>Makes the native WordPress galleries use a lightbox script called \u003Ca href=\"http:\u002F\u002Fcolorpowered.com\u002Fcolorbox\u002F\" rel=\"nofollow ugc\">ColorBox\u003C\u002Fa> to display the fullsize images right there in the page. No modifications required.\u003C\u002Fp>\n\u003Cp>You can also make single non-\u003Ccode>[gallery]\u003C\u002Fcode> images use the lightbox by giving their links a class of “lightbox”, like so:\u003C\u002Fp>\n\u003Cpre>\u003Ccode>\u003Ca href=\"http:\u002F\u002Fdomian.com\" class=\"lightbox\">\u003Cimg src=\"..\u002Fimg.jpg\" alt=\"Demo\" \u002F>\u003C\u002Fa>\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Cp>developer version : \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fewteam\u002FEWSEL-Lightbox-For-Galleries\" rel=\"nofollow ugc\">Github\u003C\u002Fa>\u003C\u002Fp>\n","Makes the WordPress galleries use a lightbox script called ColorBox to display the fullsize images.",300,17125,92,"2014-06-11T12:15:00.000Z","3.5.2","2.6",[80,81,82,59],"gallery","jquery","lightbox","http:\u002F\u002Fwww.ewsel.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fewsel-lightbox-for-galleries.zip",{"slug":86,"name":87,"version":88,"author":89,"author_profile":90,"description":91,"short_description":92,"active_installs":93,"downloaded":94,"rating":25,"num_ratings":25,"last_updated":95,"tested_up_to":96,"requires_at_least":97,"requires_php":18,"tags":98,"homepage":102,"download_link":103,"security_score":24,"vuln_count":25,"unpatched_count":25,"last_vuln_date":26,"fetched_at":27},"flexia-core","Flexia Core","1.4.2","WPDeveloper","https:\u002F\u002Fprofiles.wordpress.org\u002Fwpdevteam\u002F","\u003Cp>Core plugin for \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fthemes\u002Fflexia\u002F\" rel=\"ugc\">Flexia\u003C\u002Fa> theme. Controls all the plugin territory functionality for Flexia.\u003C\u002Fp>\n\u003Ch3>Requirements\u003C\u002Fh3>\n\u003Cp>This is a specialized plugin for the theme \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fthemes\u002Fflexia\u002F\" rel=\"ugc\">Flexia\u003C\u002Fa> that is available for free on \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fthemes\u002Fflexia\u002F\" rel=\"ugc\">WordPress.org\u003C\u002Fa>. But since plugin works independently, it will work with any standard theme if you deactivate Flexia.\u003C\u002Fp>\n\u003Ch3>Features\u003C\u002Fh3>\n\u003Cp>The plan is to keep all the plugin territory functionality of Flexia within this plugin and it’s a continuous process. It will provide the shortcodes, metabox and extra Customizer options.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Shortcodes\u003C\u002Fli>\n\u003Cli>Extra Customizer Options\u003C\u002Fli>\n\u003Cli>Metaboxes\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Customizer Options\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>Custom JavaScripts\u003C\u002Fstrong>\n\u003Cul>\n\u003Cli>Header Script\u003C\u002Fli>\n\u003Cli>Footer Script\u003C\u002Fli>\n\u003Cli>Google Analytics\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>You can add custom JavaScripts to your site header and footer through Customizer and edit your scripts with CodeMirror editor. You can place any custom JavaScript, Google Analytics, Facebook Pixel or any kind of embed script. Extremely helpful if you need to place any custom javascript or jQuery code to header or footer. This plugin gives you the ability to place different scripts to header or footer separately. Uses Customizer so you can edit the code live and see the changes on the fly.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>CodeMirror Editor\u003C\u002Fli>\n\u003Cli>Ability to add custom scripts to wp header.\u003C\u002Fli>\n\u003Cli>Ability to add custom scripts to wp footer.\u003C\u002Fli>\n\u003Cli>Ability to add multiple scripts.\u003C\u002Fli>\n\u003Cli>Ability to add Google Alalytics code.\u003C\u002Fli>\n\u003Cli>Ability to add any embed code.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Go to \u003Cstrong>Customize > Custom JavaScripts\u003C\u002Fstrong> to add your scripts.\u003C\u002Fp>\n\u003Ch3>Custom Metaboxes (Page and Post Settings)\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Post Header style control\u003C\u002Fli>\n\u003Cli>Additional Body Classes option\u003C\u002Fli>\n\u003Cli>Show\u002FHide Page\u002FPost Title\u003C\u002Fli>\n\u003Cli>Show\u002FHide Post Meta\u003C\u002Fli>\n\u003Cli>Show\u002FHide Post Navigation\u003C\u002Fli>\n\u003Cli>Show\u002FHide Post Social Sharing\u003C\u002Fli>\n\u003Cli>And lots more control for individual posts\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Shortcodes\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Ca href=\"#grid\" rel=\"nofollow ugc\">Bootstrap 4 Grid\u003C\u002Fa>\n\u003Cul>\n\u003Cli>Container\u003C\u002Fli>\n\u003Cli>Container Fluid\u003C\u002Fli>\n\u003Cli>Row\u003C\u002Fli>\n\u003Cli>Columns (1-12)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Shortcode usage\u003C\u002Fh3>\n\u003Ch3>Grid\u003C\u002Fh3>\n\u003Cpre>\u003Ccode>[row]\n    [column md=\"6\"]\n        ...\n    [\u002Fcolumn]\n    [column md=\"6\"]\n        ...\n    [\u002Fcolumn]\n[\u002Frow]\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Cp>Add container (different max-width for various screen size)\u003C\u002Fp>\n\u003Cpre>\u003Ccode>[container]\n    [row]\n        [column md=\"6\"]\n            ...\n        [\u002Fcolumn]\n        [column md=\"6\"]\n            ...\n        [\u002Fcolumn]\n    [\u002Frow]\n[\u002Fcontainer]\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Cp>Add container-fluid (100% width container)\u003C\u002Fp>\n\u003Cpre>\u003Ccode>[container-fluid]\n    [container]\n        [row]\n            [column md=\"6\"]\n                ...\n            [\u002Fcolumn]\n            [column md=\"6\"]\n                ...\n            [\u002Fcolumn]\n        [\u002Frow]\n    [\u002Fcontainer]\n[\u002Fcontainer-fluid]\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Cp>All shortcodes containes number of parameteres. \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Frupok\u002Fflexia-core\" rel=\"nofollow ugc\">See the Github Repo for detailed documentation\u003C\u002Fa>.\u003C\u002Fp>\n","Core plugin for Flexia theme. Controls all the plugin territory functionality for Flexia.",200,16382,"2020-10-22T06:03:00.000Z","5.5.18","4.0",[99,100,101,58,59],"bootstrap-4","customizer","flexia","https:\u002F\u002Fflexia.pro","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fflexia-core.1.4.2.zip",{"slug":105,"name":106,"version":107,"author":108,"author_profile":109,"description":110,"short_description":111,"active_installs":93,"downloaded":112,"rating":13,"num_ratings":14,"last_updated":113,"tested_up_to":114,"requires_at_least":17,"requires_php":18,"tags":115,"homepage":118,"download_link":119,"security_score":13,"vuln_count":25,"unpatched_count":25,"last_vuln_date":26,"fetched_at":27},"meta","Meta Content","1.1","Mervin Praison","https:\u002F\u002Fprofiles.wordpress.org\u002Fmervinpraison\u002F","\u003Cp>A meta Box appears on the admin area of all posts and pages, where you can add the required content.\u003C\u002Fp>\n\u003Cp>Paste the Code or the Shortcode on any part of the website.\u003C\u002Fp>\n\u003Cp>The content what you typed on the meta box, appears on that area of the WordPress template, where you have pasted the code.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Very Easy to implement.\u003C\u002Fli>\n\u003Cli>Simple Shortcode Available\u003C\u002Fli>\n\u003Cli>Easy code Implementation inside loop and outside loop.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fmer.vin\u002Fmeta\" rel=\"nofollow ugc\">Meta Content Documentation\u003C\u002Fa> By \u003Ca href=\"https:\u002F\u002Fmer.vin\u002F\" rel=\"nofollow ugc\">Mervin\u003C\u002Fa> Praison\u003C\u002Fp>\n\u003Cp>Credits : \u003Ca href=\"http:\u002F\u002Fseomanageruk.com\" rel=\"nofollow ugc\">SEO Manager UK\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch3>Version history\u003C\u002Fh3>\n\u003Ch4>Version 1.1\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Initial release version.\u003C\u002Fli>\n\u003C\u002Ful>\n","A meta box which helps us to add content or scripts to any part of the website, on each individual post\u002Fpage. Easy to Implement with Shortcode.",21812,"2025-11-08T23:27:00.000Z","6.8.5",[116,117,105,58,21],"content","custom-fields","https:\u002F\u002Fmer.vin\u002Fmeta\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fmeta.1.1.zip",{"slug":121,"name":122,"version":123,"author":124,"author_profile":125,"description":126,"short_description":127,"active_installs":13,"downloaded":128,"rating":129,"num_ratings":63,"last_updated":130,"tested_up_to":131,"requires_at_least":132,"requires_php":18,"tags":133,"homepage":18,"download_link":137,"security_score":24,"vuln_count":25,"unpatched_count":25,"last_vuln_date":26,"fetched_at":27},"bildquellen-copyright-statement","Bildquellenangaben","1.0","jabbadu","https:\u002F\u002Fprofiles.wordpress.org\u002Fjabbadu\u002F","\u003Cp>Bildquellen für jedes Bild ganz einfach vergeben. Nach der Aktivierung des Plugins kann man für jede hochgeladene Datei eine Quelle angeben.\u003Cbr \u002F>\nMit Hilfe eines Shortcodes kann man dann alle Bilder (als Thumbnail) und den dazugehörigen Text ausgeben lassen (als Tabelle).\u003Cbr \u002F>\nSomit lässt sich relativ unkompliziert ein Bildnachweis\u002FVerzeichnis erstellen, für alle Bilder die einen entsprechenden Eintrag haben.\u003Cbr \u002F>\nWenn man diesen direkt nach dem hochladen einfügt wird die Liste automatisch erweitert.\u003C\u002Fp>\n\u003Cp>Für weitere Informationen und eine kleine Demo:\u003C\u002Fp>\n\u003Cp>http:\u002F\u002Fwww.jabbadu.com\u002Fbildquellenangaben-fuer-wordpress-plugin\u002F\u003C\u002Fp>\n\u003Cp>Features:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Fügt der Mediathek \u002F den einzelnen Uploads ein Textfeld für Quellenangaben hinzu\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Shortcode\u003C\u002Fstrong> zur Ausgabe aller Datein die einen Eintrag haben\u003C\u002Fli>\n\u003Cli>Automatisches Verzeichnis für Bildquellen\u003C\u002Fli>\n\u003C\u002Ful>\n","Bildquellen für jedes Bild ganz einfach vergeben.",2391,40,"2015-08-01T07:40:00.000Z","4.2.39","3.5",[134,135,136,21],"attachment-metabox","copyright-statement","image-source","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbildquellen-copyright-statement.1.0.zip",{"attackSurface":139,"codeSignals":166,"taintFlows":173,"riskAssessment":174,"analyzedAt":181},{"hooks":140,"ajaxHandlers":159,"restRoutes":160,"shortcodes":161,"cronEvents":165,"entryPointCount":63,"unprotectedCount":25},[141,147,152,156],{"type":142,"name":143,"callback":144,"file":145,"line":146},"action","admin_menu","shortcode_box_register_options_page","help.php",5,{"type":142,"name":148,"callback":149,"file":150,"line":151},"plugins_loaded","shortcode_box_load_plugin_textdomain","shortcode-box.php",42,{"type":142,"name":153,"callback":154,"file":150,"line":155},"wp_enqueue_scripts","shortcode_box_enqueue_styles",56,{"type":142,"name":157,"callback":154,"file":150,"line":158},"admin_enqueue_scripts",57,[],[],[162],{"tag":20,"callback":163,"file":150,"line":164},"shortcode_box",104,[],{"dangerousFunctions":167,"sqlUsage":168,"outputEscaping":170,"fileOperations":25,"externalRequests":25,"nonceChecks":25,"capabilityChecks":25,"bundledLibraries":172},[],{"prepared":25,"raw":25,"locations":169},[],{"escaped":25,"rawEcho":25,"locations":171},[],[],[],{"summary":175,"deductions":176},"The shortcode-box plugin v1.1.2 exhibits a generally strong security posture based on the provided static analysis and vulnerability history. There are no identified dangerous functions, SQL queries are exclusively using prepared statements, and all output appears to be properly escaped. Furthermore, the plugin has no known CVEs, indicating a history of secure development or prompt patching by maintainers.  The absence of file operations, external HTTP requests, and the minimal attack surface consisting of a single shortcode without any associated AJAX handlers, REST API routes, or cron events, further contribute to its secure profile.\n\nHowever, the lack of nonce checks and capability checks on the identified shortcode is a notable concern. While the attack surface is small, this oversight could potentially lead to unintended actions if the shortcode is designed to perform sensitive operations. The taint analysis also reported zero flows, which is positive, but this might be a reflection of the limited scope of analysis or a very straightforward plugin implementation. A thorough audit of the shortcode's actual functionality is recommended to ensure no hidden risks are present.\n\nIn conclusion, shortcode-box v1.1.2 appears to be a relatively secure plugin with good development practices demonstrated in its code. The absence of historical vulnerabilities and the careful use of prepared statements and output escaping are significant strengths. The primary area for improvement lies in implementing appropriate authorization checks (nonces and capabilities) for its shortcode to mitigate potential misuse, even with a limited attack surface.",[177,179],{"reason":178,"points":146},"Missing nonce check on shortcode",{"reason":180,"points":146},"Missing capability check on shortcode","2026-03-17T01:22:01.747Z",{"wat":183,"direct":190},{"assetPaths":184,"generatorPatterns":186,"scriptPaths":187,"versionParams":188},[185],"\u002Fwp-content\u002Fplugins\u002Fshortcode-box\u002Fstyle.min.css",[],[],[189],"shortcode-box\u002Fstyle.min.css?ver=",{"cssClasses":191,"htmlComments":202,"htmlAttributes":203,"restEndpoints":204,"jsGlobals":205,"shortcodeOutput":206},[192,193,194,195,196,197,198,199,200,201],"down","warn","instruct","text-box","question","course","stop","task","link","box-content",[],[],[],[],[207,208,209,210,211,212,213,214,215],"\u003Cdiv class=\"down box-content\">","\u003Cdiv class=\"warn box-content\">","\u003Cdiv class=\"instruct box-content\">","\u003Cdiv class=\"text-box box-content\">","\u003Cdiv class=\"question box-content\">","\u003Cdiv class=\"course box-content\">","\u003Cdiv class=\"stop box-content\">","\u003Cdiv class=\"task box-content\">","\u003Cdiv class=\"link box-content\">"]