[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fhmGKsnpP0TlbMCe9UbhMdZ6ww4vheVrSHffOj-z50ls":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":22,"download_link":23,"security_score":24,"vuln_count":25,"unpatched_count":26,"last_vuln_date":27,"fetched_at":28,"vulnerabilities":29,"developer":46,"crawl_stats":35,"alternatives":49,"analysis":163,"fingerprints":204},"shortcode-for-font-awesome","Shortcode for Font Awesome","1.4.6","smgwebdesign","https:\u002F\u002Fprofiles.wordpress.org\u002Fsmgwebdesign\u002F","\u003Cp>Insert Shortcode for Font Awesome in Editor. Here the pure Shortcode is generated. No Font Awesome Files are included. These must already be loaded in WordPress.\u003C\u002Fp>\n\u003Cp>Use \u003Ccode>[fa set=\"fas\" icon=\"check\" size=\"2x\" color=\"#000000\"]\u003C\u002Fcode> anywhere in WordPress\u003C\u002Fp>\n\u003Cp>The attributes Set, Icon, Size and Color can be Set as required.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Set is set to “fas” by default.\u003C\u002Fli>\n\u003Cli>Icon is set to “check” by default.\u003C\u002Fli>\n\u003Cli>Size is set only when needed. Possible values are: 2x, 3x, 5x, 7x and 9x.\u003C\u002Fli>\n\u003Cli>Color is only set as hexadecimal value if required.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>IMPORTANT NOTES:\u003C\u002Fh4>\n\u003Cp>This Plugin does not add Font Awesome Files, these must already be loaded in WordPress\u003C\u002Fp>\n","Insert Shortcode for Font Awesome in Editor. Here the pure Shortcode is generated. No Font Awesome Files are included. These must already be loaded in &hellip;",700,9012,100,2,"2024-11-27T08:16:00.000Z","6.7.5","4.9.8","5.6",[20,21],"font-awesome","shortcode","","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fshortcode-for-font-awesome.zip",92,1,0,"2023-01-24 00:00:00","2026-03-15T15:16:48.613Z",[30],{"id":31,"url_slug":32,"title":33,"description":34,"plugin_slug":4,"theme_slug":35,"affected_versions":36,"patched_in_version":37,"severity":38,"cvss_score":39,"cvss_vector":40,"vuln_type":41,"published_date":27,"updated_date":42,"references":43,"days_to_patch":45},"CVE-2023-0419","shortcode-for-font-awesome-authenticated-contributor-stored-cross-site-scripting-via-shortcode","Shortcode for Font Awesome \u003C= 1.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode","The Shortcode for Font Awesome plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s) in versions up to, and including, 1.4 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page",null,"\u003C=1.4","1.4.1","medium",6.4,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:L\u002FUI:N\u002FS:C\u002FC:L\u002FI:L\u002FA:N","Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","2024-01-22 19:56:02",[44],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002Fc8d06b5d-43b8-4dae-abe9-abe07a63528e?source=api-prod",364,{"slug":7,"display_name":7,"profile_url":8,"plugin_count":25,"total_installs":11,"avg_security_score":24,"avg_patch_time_days":45,"trust_score":47,"computed_at":48},73,"2026-04-05T20:40:09.699Z",[50,73,92,112,138],{"slug":51,"name":52,"version":53,"author":54,"author_profile":55,"description":56,"short_description":57,"active_installs":58,"downloaded":59,"rating":13,"num_ratings":60,"last_updated":61,"tested_up_to":62,"requires_at_least":63,"requires_php":64,"tags":65,"homepage":70,"download_link":71,"security_score":72,"vuln_count":26,"unpatched_count":26,"last_vuln_date":35,"fetched_at":28},"wp-fontallic-easypromoweb","WP Fontallic Easypromoweb","1.2","danichimc","https:\u002F\u002Fprofiles.wordpress.org\u002Fdanichimc\u002F","\u003Cp>Select from a variety of icon fonts, and see them right in the visual editor with the simplest icon font tools avaialbe,\u003C\u002Fp>\n\u003Cp>See the screenshots to preview the super simple user interface.\u003C\u002Fp>\n\u003Ch4>Includes Font Awesome 4 (369 Icons)\u003C\u002Fh4>\n\u003Cp>Font Awesome gives you scalable vector icons that can instantly be customized — size, color, drop shadow, and anything that can be done with the power of CSS. (and coming soon to a wp editor near you!).\u003C\u002Fp>\n\u003Cp>Check out the font awesome website here \u003Ca href=\"http:\u002F\u002Ffontawesome.io\u002F\" rel=\"nofollow ugc\">Fontawesome.io\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch4>Includes Genericons Set (62 Icons)\u003C\u002Fh4>\n\u003Cp>Genericons are vector icons embedded in a webfont designed to be clean and simple keeping with a generic aesthetic.\u003Cbr \u002F>\nUse genericons for instant HiDPI, to change icon colors on the fly, or even with CSS effects such as drop-shadows or gradients!\u003Cbr \u002F>\nGenericons website here \u003Ca href=\"http:\u002F\u002Fgenericons.com\u002F\" rel=\"nofollow ugc\">genericons.com\u002F\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch4>Include Fontallic (2122 Icons)\u003C\u002Fh4>\n\u003Cp>And more in the visual editor with filter-search and rich content editing at your fingertips\u003Cbr \u002F>\nThis font includes 13 fonts: (Linecons, Typicons, Fontelico, Iconic, Modern Pictograms, Entypo, Meteocons, MFG Labs, Maki, Web Symbols, Brandico, Zocial, Elusive)\u003Cbr \u002F>\nFontallic website http:\u002F\u002Ffontello.com\u003C\u002Fp>\n\u003Ch3>Linecons\u003C\u002Fh3>\n\u003Cpre>\u003Ccode>  Copyright (C) 2013 by Designmodo\n   Author:    Designmodo for Smashing Magazine\n   License:   CC BY ()\n   Homepage:  http:\u002F\u002Fdesignmodo.com\u002Flinecons-free\u002F\u003Ch3>Typicons\u003C\u002Fh3>    (c) Stephen Hutchings 2012\n   Author:    Stephen Hutchings\n   License:   SIL (http:\u002F\u002Fscripts.sil.org\u002FOFL)\n   Homepage:  http:\u002F\u002Ftypicons.com\u002F\u003Ch3>Fontelico\u003C\u002Fh3>       Copyright (C) 2012 by Fontello project\n   Author:    Crowdsourced, for Fontello project\n   License:   SIL (http:\u002F\u002Fscripts.sil.org\u002FOFL)\n   Homepage:  http:\u002F\u002Ffontello.com\u003Ch3>Entypo\u003C\u002Fh3>       Copyright (C) 2012 by Daniel Bruce\n   Author:    Daniel Bruce\n   License:   SIL (http:\u002F\u002Fscripts.sil.org\u002FOFL)\n   Homepage:  http:\u002F\u002Fwww.entypo.com\u003Ch3>Iconic\u003C\u002Fh3>     Copyright (C) 2012 by P.J. Onori\n   Author:    P.J. Onori\n   License:   SIL (http:\u002F\u002Fscripts.sil.org\u002FOFL)\n   Homepage:  http:\u002F\u002Fsomerandomdude.com\u002Fwork\u002Ficonic\u002F\u003Ch3>Modern Pictograms\u003C\u002Fh3>     Copyright (c) 2012 by John Caserta. All rights reserved.\n   Author:    John Caserta\n   License:   SIL (http:\u002F\u002Fscripts.sil.org\u002FOFL)\n   Homepage:  http:\u002F\u002Fthedesignoffice.org\u002Fproject\u002Fmodern-pictograms\u002F\u003Ch3>Meteocons\u003C\u002Fh3>      Copyright (C) 2012 by Alessio Atzeni\n   Author:    Alessio Atzeni\n   License:   SIL (http:\u002F\u002Fscripts.sil.org\u002FOFL)\n   Homepage:  http:\u002F\u002Fwww.alessioatzeni.com\u003Ch3>MFG Labs\u003C\u002Fh3>    Copyright (C) 2012 by Daniel Bruce\n   Author:    MFG Labs\n   License:   SIL (http:\u002F\u002Fscripts.sil.org\u002FOFL)\n   Homepage:  http:\u002F\u002Fwww.mfglabs.com\u002F\u003Ch3>Maki\u003C\u002Fh3>     Copyright (C) Mapbox, LCC\n   Author:    Mapbox\n   License:   BSD (https:\u002F\u002Fgithub.com\u002Fmapbox\u002Fmaki\u002Fblob\u002Fgh-pages\u002FLICENSE.txt)\n   Homepage:  http:\u002F\u002Fmapbox.com\u002Fmaki\u002F\u003Ch3>Zocial\u003C\u002Fh3>       Copyright (C) 2012 by Sam Collins\n   Author:    Sam Collins\n   License:   MIT (http:\u002F\u002Fopensource.org\u002Flicenses\u002Fmit-license.php)\n   Homepage:  http:\u002F\u002Fzocial.smcllns.com\u002F\u003Ch3>Brandico\u003C\u002Fh3>      (C) 2012 by Vitaly Puzrin\n   Author:    Crowdsourced, for Fontello project\n   License:   SIL (http:\u002F\u002Fscripts.sil.org\u002FOFL)\n   Homepage:\u003Ch3>Elusive\u003C\u002Fh3>       Copyright (C) 2013 by Aristeides Stathopoulos\n   Author:    Aristeides Stathopoulos\n   License:   SIL (http:\u002F\u002Fscripts.sil.org\u002FOFL)\n   Homepage:  http:\u002F\u002Faristeides.com\u002F\u003Ch3>Web Symbols\u003C\u002Fh3>       Copyright (c) 2011 by Just Be Nice studio. All rights reserved.\n   Author:    Just Be Nice studio\n   License:   SIL (http:\u002F\u002Fscripts.sil.org\u002FOFL)\n   Homepage:  http:\u002F\u002Fwww.justbenicestudio.com\u002F\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Simple option to select the icon font family you prefer\u003C\u002Fli>\n\u003Cli>Easily select an icon in the visual editor window\u003C\u002Fli>\n\u003Cli>Search and instantly Filter through the icons to get the one you want quickly\u003C\u002Fli>\n\u003Cli>See the icons in the visual editor\u003C\u002Fli>\n\u003Cli>Adjust the colour and size of the icons (and any other text elements in the editor)\u003C\u002Fli>\n\u003Cli>Includes Font Awesome 4\u003C\u002Fli>\n\u003Cli>Includes Genericons\u003C\u002Fli>\n\u003Cli>Include Fontallic with 13 fonts (Linecons, Typicons, Fontelico, Iconic, Modern Pictograms, Entypo, Meteocons, MFG Labs, Maki, Web Symbols, Brandico, Zocial, Elusive)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Upcoming Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>More Great Font Icon Sets\u003C\u002Fli>\n\u003Cli>Include fonts in your template file with simple html\u003C\u002Fli>\n\u003Cli>Fiddly shortcode nonsense for Font Awesome\u003C\u002Fli>\n\u003Cli>your requested feature!! or any icon font set your little heart desires – Rate this plugin (favourably would be prefferable) and let me know what features \u002F fonts you’d like to see included.\u003C\u002Fli>\n\u003C\u002Ful>\n","Font Awesome Icons and more in the visual editor with filter-search and rich content editing at your fingertips",60,6171,3,"2019-10-12T00:06:00.000Z","5.2.24","3.0.1","5.2.4",[20,66,67,68,69],"fontallic","fontelico","shortcode-font-awesome","wp-fontallic","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fwp-fontallic-easypromoweb\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-fontallic-easypromoweb.1.2.zip",85,{"slug":74,"name":75,"version":76,"author":77,"author_profile":78,"description":79,"short_description":80,"active_installs":81,"downloaded":82,"rating":26,"num_ratings":26,"last_updated":83,"tested_up_to":84,"requires_at_least":85,"requires_php":22,"tags":86,"homepage":90,"download_link":91,"security_score":72,"vuln_count":26,"unpatched_count":26,"last_vuln_date":35,"fetched_at":28},"ultimate-icon-shortcodes","Ultimate Icon Shortcodes – LITE","1.1","Shane Jones","https:\u002F\u002Fprofiles.wordpress.org\u002Fshanejones\u002F","\u003Cp>This plugin will add a small button to your post \u002F page editor, clicking on that will bring up our visual icon selector. Choose the icon you want and it will insert it into your blog post. it’s that simple.\u003C\u002Fp>\n\u003Ch3>1.1\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Forgot to add the readme.txt\u003C\u002Fli>\n\u003C\u002Ful>\n","This plugin will add a small button to your post \u002F page editor, clicking on that will bring up our visual icon selector. Choose the icon you want and  &hellip;",10,1734,"2013-10-22T18:25:00.000Z","3.7.41","3",[87,20,67,88,89],"brandico","icons","shortcodes","http:\u002F\u002Fpeadig.com\u002Fwordpress-plugins\u002Fultimate-icon-shortcodes\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fultimate-icon-shortcodes.1.1.zip",{"slug":93,"name":94,"version":95,"author":96,"author_profile":97,"description":98,"short_description":99,"active_installs":26,"downloaded":100,"rating":26,"num_ratings":26,"last_updated":101,"tested_up_to":102,"requires_at_least":103,"requires_php":22,"tags":104,"homepage":110,"download_link":111,"security_score":72,"vuln_count":26,"unpatched_count":26,"last_vuln_date":35,"fetched_at":28},"creative-fa-and-bs-icons-shortcode","Creative FA and BS Icons Shortcode","2.0","Md. Naeem Ahmed Opu","https:\u002F\u002Fprofiles.wordpress.org\u002Fmnaopu\u002F","\u003Cp>This plugin Allows you to add Font-Awesome and Bootstrap Icons Easily using shortcode.\u003Cbr \u002F>\nJust install and activate this plugin and use shortcode for using icons. Enjoy this plugin.\u003C\u002Fp>\n","This plugin Allows you to add Font-Awesome and Bootstrap Icons Easily using shortcode. Just install and activate this plugin and use shortcode for usi &hellip;",1168,"2017-07-10T05:53:00.000Z","4.8.28","3.3",[105,106,107,108,109],"bootstrap-icons","fa-icon","font-awesome-icons","glyphicon","icons-shortcode","http:\u002F\u002Flearn-with-mnaopu.blogspot.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcreative-fa-and-bs-icons-shortcode.zip",{"slug":113,"name":114,"version":115,"author":116,"author_profile":117,"description":118,"short_description":119,"active_installs":120,"downloaded":121,"rating":122,"num_ratings":123,"last_updated":124,"tested_up_to":125,"requires_at_least":126,"requires_php":127,"tags":128,"homepage":133,"download_link":134,"security_score":135,"vuln_count":136,"unpatched_count":26,"last_vuln_date":137,"fetched_at":28},"shortcodes-ultimate","WP Shortcodes Plugin — Shortcodes Ultimate","7.4.9","Vova","https:\u002F\u002Fprofiles.wordpress.org\u002Fgn_themes\u002F","\u003Ch3>SHORTCODES ULIMATE – THE #1 SHORTCODES PLUGIN\u003C\u002Fh3>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fgetshortcodes.com\u002F?utm_campaign=wporg&utm_medium=readme&utm_source=description\" rel=\"nofollow ugc\">Shortcodes Ultimate\u003C\u002Fa> is a huge collection of useful elements, that you can use in the post editor, text widgets or even in template files.\u003C\u002Fp>\n\u003Cdiv class=\"embed-vimeo\" style=\"text-align: center;\">\u003Ciframe loading=\"lazy\" src=\"https:\u002F\u002Fplayer.vimeo.com\u002Fvideo\u002F507942335\" width=\"750\" height=\"422\" frameborder=\"0\" webkitallowfullscreen mozallowfullscreen allowfullscreen>\u003C\u002Fiframe>\u003C\u002Fdiv>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fgetshortcodes.com\u002Fdocs-category\u002Fshortcodes\u002F?utm_campaign=wporg&utm_medium=readme&utm_source=features\" rel=\"nofollow ugc\">Over 50 gorgeous shortcodes\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>Insert shortcodes in 1 click with Live Preview\u003C\u002Fli>\n\u003Cli>Supports the Block Editor\u003C\u002Fli>\n\u003Cli>Seamlessly integrates with your theme\u003C\u002Fli>\n\u003Cli>Looks great on mobile devices\u003C\u002Fli>\n\u003Cli>Custom CSS editor is included\u003C\u002Fli>\n\u003Cli>Developer-friendly with plenty of hooks and extensive documentation\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Included shortcodes\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Posts\u003C\u002Fstrong> – allows you to show specific posts anywhere\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Accordion\u003C\u002Fstrong> – simple toggle block to show\u002Fhide your content\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Button\u003C\u002Fstrong> – highly-customizable button with multiple styles\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Lightbox\u003C\u002Fstrong> – a lightbox that you can use with virtually any element\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Image Carousel\u003C\u002Fstrong> – beautiful super-customizable image carousel\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Columns\u003C\u002Fstrong> – must-have tool for creating layouts\u003C\u002Fli>\n\u003Cli>And many more…\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Get Help\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fgetshortcodes.com\u002Fdocs\u002F?utm_campaign=wporg&utm_medium=readme&utm_source=links-docs\" rel=\"nofollow ugc\">Documentation\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fsupport\u002Fplugin\u002Fshortcodes-ultimate\" rel=\"ugc\">Community Support Forum\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fgetshortcodes.com\u002Fsupport\u002Fopen-support-ticket\u002F?utm_campaign=wporg&utm_medium=readme&utm_source=links-support\" rel=\"nofollow ugc\">The Pro Support\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>TRY THE PRO VERSION FOR FREE\u003C\u002Fh3>\n\u003Cp>Try Shortcodes Ultimate Pro risk-free for 30 days. You are fully protected by our no questions asked refund policy!\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fgetshortcodes.com\u002Fpricing\u002F?utm_campaign=wporg&utm_medium=readme&utm_source=try-pro\" rel=\"nofollow ugc\">Upgrade to Pro\u003C\u002Fa>\u003C\u002Fp>\n","A comprehensive collection of visual components for your site",400000,24545518,98,5917,"2026-02-02T16:19:00.000Z","6.9.4","5.0","5.4",[129,130,131,21,132],"carousel","columns","posts","toggle","https:\u002F\u002Fgetshortcodes.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fshortcodes-ultimate.7.4.9.zip",88,35,"2026-04-03 19:34:03",{"slug":139,"name":140,"version":141,"author":142,"author_profile":143,"description":144,"short_description":145,"active_installs":146,"downloaded":147,"rating":148,"num_ratings":149,"last_updated":150,"tested_up_to":151,"requires_at_least":152,"requires_php":22,"tags":153,"homepage":158,"download_link":159,"security_score":160,"vuln_count":161,"unpatched_count":26,"last_vuln_date":162,"fetched_at":28},"mw-wp-form","MW WP Form","5.1.0","Takashi Kitajima","https:\u002F\u002Fprofiles.wordpress.org\u002Finc2734\u002F","\u003Cp>\u003Cstrong>This plugin currently has only the minimum required maintenance releases.\u003C\u002Fstrong>\u003Cbr \u002F>\n\u003Cstrong>Main maintainer has been handed over from @inc2734 to @websoudan.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>MW WP Form can create mail form with a confirmation screen using shortcode.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Form created using shortcodes\u003C\u002Fli>\n\u003Cli>Using confirmation page is possible.\u003C\u002Fli>\n\u003Cli>The page changes by the same URL or individual URL are possible.\u003C\u002Fli>\n\u003Cli>Many validation rules\u003C\u002Fli>\n\u003Cli>Saving inquiry data is possible.\u003C\u002Fli>\n\u003Cli>Displaying Chart using saved inquiry data is possible.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Official\u003C\u002Fh4>\n\u003Cp>https:\u002F\u002Fmw-wp-form.web-soudan.co.jp\u003C\u002Fp>\n\u003Ch4>GitHub\u003C\u002Fh4>\n\u003Cp>https:\u002F\u002Fgithub.com\u002Fweb-soudan\u002Fmw-wp-form\u003C\u002Fp>\n\u003Ch4>The following third-party resources\u003C\u002Fh4>\n\u003Cp>Google Charts\u003Cbr \u002F>\nSource: https:\u002F\u002Fdevelopers.google.com\u002Fchart\u002F\u003C\u002Fp>\n\u003Ch4>Contributors\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002F2inc.org\" rel=\"nofollow ugc\">Takashi Kitajima\u003C\u002Fa> ( \u003Ca href=\"https:\u002F\u002Fprofiles.wordpress.org\u002Finc2734\" rel=\"nofollow ugc\">inc2734\u003C\u002Fa> )\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwebcre-archive.com\" rel=\"nofollow ugc\">Ryujiro Yamamoto\u003C\u002Fa> ( \u003Ca href=\"https:\u002F\u002Fprofiles.wordpress.org\u002Fryu263\" rel=\"nofollow ugc\">ryu263\u003C\u002Fa> )\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"http:\u002F\u002Fkee-non.com\" rel=\"nofollow ugc\">Tsujimoto Tomoyuki\u003C\u002Fa> ( \u003Ca href=\"https:\u002F\u002Fprofiles.wordpress.org\u002Ftomothumb\" rel=\"nofollow ugc\">tomothumb\u003C\u002Fa> )\u003C\u002Fli>\n\u003Cli>[Naoyuki Ohata] ( \u003Ca href=\"https:\u002F\u002Fprofiles.wordpress.org\u002Fnanniku\" rel=\"nofollow ugc\">nanniku\u003C\u002Fa> )\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fmt8.biz\u002F\" rel=\"nofollow ugc\">Kazuto Takeshita\u003C\u002Fa> ( \u003Ca href=\"https:\u002F\u002Fprofiles.wordpress.org\u002Fmt8biz\u002F\" rel=\"nofollow ugc\">moto hachi\u003C\u002Fa> )\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.next-season.net\u002F\" rel=\"nofollow ugc\">Atsushi Ando\u003C\u002Fa> ( \u003Ca href=\"https:\u002F\u002Fprofiles.wordpress.org\u002Fnext-season\u002F\" rel=\"nofollow ugc\">NExt-Season\u003C\u002Fa> )\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fvisualive.jp\u002F\" rel=\"nofollow ugc\">Kazuki Tomiyasu\u003C\u002Fa> ( \u003Ca href=\"https:\u002F\u002Fprofiles.wordpress.org\u002Fkuck1u\u002F\" rel=\"nofollow ugc\">KUCKLU\u003C\u002Fa> )\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fmypacecreator.net\u002F\" rel=\"nofollow ugc\">Kei Nomura\u003C\u002Fa> ( \u003Ca href=\"https:\u002F\u002Fprofiles.wordpress.org\u002Fmypacecreator\u002F\" rel=\"nofollow ugc\">mypacecreator\u003C\u002Fa> )\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fprofiles.wordpress.org\u002Fmh35\" rel=\"nofollow ugc\">mh35\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fnojimage\" rel=\"nofollow ugc\">Takashi Nojima\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fherikutu\" rel=\"nofollow ugc\">herikutu\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fgithub.com\u002Ftsucharoku\" rel=\"nofollow ugc\">tsucharoku\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fgithub.com\u002Ft-hamano\" rel=\"nofollow ugc\">Tetsuaki Hamano\u003C\u002Fa> ( \u003Ca href=\"https:\u002F\u002Fprofiles.wordpress.org\u002Fwildworks\u002F\" rel=\"nofollow ugc\">t-hamano\u003C\u002Fa> )\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fmusus\" rel=\"nofollow ugc\">Susumu Seino\u003C\u002Fa> ( \u003Ca href=\"https:\u002F\u002Fprofiles.wordpress.org\u002Fmusus\u002F\" rel=\"nofollow ugc\">Susumu Seino\u003C\u002Fa> )\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fgithub.com\u002Flikr\" rel=\"nofollow ugc\">Yosuke Onoue\u003C\u002Fa> ( \u003Ca href=\"https:\u002F\u002Fprofiles.wordpress.org\u002Flikr\u002F\" rel=\"nofollow ugc\">likr\u003C\u002Fa> )\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fyudai524\" rel=\"nofollow ugc\">Yudai Konishi\u003C\u002Fa> ( \u003Ca href=\"https:\u002F\u002Fprofiles.wordpress.org\u002Fyudai524\u002F\" rel=\"nofollow ugc\">Yudai Konishi\u003C\u002Fa> )\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fnoldorinfo\" rel=\"nofollow ugc\">takekoshi\u003C\u002Fa> ( \u003Ca href=\"https:\u002F\u002Fprofiles.wordpress.org\u002Fnoldorinfo\u002F\" rel=\"nofollow ugc\">takekoshi\u003C\u002Fa> )\u003C\u002Fli>\n\u003C\u002Ful>\n","MW WP Form is shortcode base contact form plugin. This plugin have many features. For example you can use many validation rules, inquiry data saving,  &hellip;",200000,1771027,86,22,"2024-03-13T02:48:00.000Z","6.4.8","6.0",[154,155,156,157,21],"confirm","form","mail","preview","https:\u002F\u002Fmw-wp-form.web-soudan.co.jp","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fmw-wp-form.5.1.0.zip",69,6,"2026-04-01 16:50:15",{"attackSurface":164,"codeSignals":184,"taintFlows":192,"riskAssessment":193,"analyzedAt":203},{"hooks":165,"ajaxHandlers":176,"restRoutes":177,"shortcodes":178,"cronEvents":183,"entryPointCount":25,"unprotectedCount":26},[166,172],{"type":167,"name":168,"callback":169,"file":170,"line":171},"filter","widget_text","do_shortcode","shortcode-for-font-awesome.php",16,{"type":167,"name":173,"callback":169,"priority":174,"file":170,"line":175},"wp_nav_menu",11,19,[],[],[179],{"tag":180,"callback":181,"file":170,"line":182},"fa","faicon_shortcode",49,[],{"dangerousFunctions":185,"sqlUsage":186,"outputEscaping":188,"fileOperations":26,"externalRequests":26,"nonceChecks":26,"capabilityChecks":26,"bundledLibraries":191},[],{"prepared":26,"raw":26,"locations":187},[],{"escaped":189,"rawEcho":26,"locations":190},4,[],[],[],{"summary":194,"deductions":195},"The \"shortcode-for-font-awesome\" plugin exhibits a generally good security posture based on the static analysis. The absence of dangerous functions, reliance on prepared statements for all SQL queries, and proper output escaping are significant strengths. Furthermore, the limited attack surface, consisting of only one shortcode and no unprotected entry points, reduces the immediate risk.  The lack of file operations and external HTTP requests further enhances its security profile.\n\nHowever, the plugin's vulnerability history reveals a past medium-severity Cross-Site Scripting (XSS) vulnerability, last patched in January 2023. While currently unpatched CVEs are zero, this history indicates a potential for input sanitization issues that could be exploited. The static analysis did not reveal any immediate taint flows or unsanitized paths, which is positive, but the presence of a past XSS suggests that the codebase may not be entirely free from such risks, particularly if new features are added or existing ones are modified without thorough security reviews.\n\nIn conclusion, the plugin is relatively well-secured in its current state, with strong adherence to secure coding practices in its static analysis. The primary concern stems from its vulnerability history, specifically the past XSS. While there are no currently unpatched CVEs, this past incident warrants ongoing vigilance. Users should ensure they are running the latest version, which presumably contains the patch for the historical vulnerability, and consider the possibility of similar vulnerabilities in future updates if development practices are not consistently rigorous.",[196,198,201],{"reason":197,"points":81},"Past medium severity XSS vulnerability",{"reason":199,"points":200},"No nonce checks present",5,{"reason":202,"points":200},"No capability checks present","2026-03-16T19:21:53.709Z",{"wat":205,"direct":210},{"assetPaths":206,"generatorPatterns":207,"scriptPaths":208,"versionParams":209},[],[],[],[],{"cssClasses":211,"htmlComments":214,"htmlAttributes":215,"restEndpoints":216,"jsGlobals":217,"shortcodeOutput":218},[212,213],"fa-","fas",[],[],[],[],[219],"\u003Ci class=\"fas fa-"]