[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fBnV10YkgqDT9JFQ_iGlrx7DlaPpEkQde7xD77nwWX5w":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":5,"active_installs":10,"downloaded":11,"rating":10,"num_ratings":10,"last_updated":12,"tested_up_to":13,"requires_at_least":14,"requires_php":12,"tags":15,"homepage":19,"download_link":20,"security_score":21,"vuln_count":10,"unpatched_count":10,"last_vuln_date":22,"fetched_at":23,"vulnerabilities":24,"developer":25,"crawl_stats":22,"alternatives":31,"analysis":32,"fingerprints":85},"show-post-latest-by-category","Show post latest by category","1.0.0","Can Thai","https:\u002F\u002Fprofiles.wordpress.org\u002Fvietcanthai\u002F","\u003Cp>Plugin widget show post latest by category\u003Cbr \u002F>\nFor more history, see: https:\u002F\u002Fthaivietcan.com\u002F\u003C\u002Fp>\n\u003Ch3>Arbitrary section 1\u003C\u002Fh3>\n",0,723,"","5.7.15","4.9",[16,17,18],"get-post-latest","get-post-latest-by-category","post-latest-with-category","https:\u002F\u002Fthaivietcan.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fshow-post-latest-by-category.zip",100,null,"2026-03-15T10:48:56.248Z",[],{"slug":26,"display_name":7,"profile_url":8,"plugin_count":27,"total_installs":10,"avg_security_score":21,"avg_patch_time_days":28,"trust_score":29,"computed_at":30},"vietcanthai",1,30,94,"2026-04-05T10:32:04.059Z",[],{"attackSurface":33,"codeSignals":50,"taintFlows":78,"riskAssessment":79,"analyzedAt":84},{"hooks":34,"ajaxHandlers":46,"restRoutes":47,"shortcodes":48,"cronEvents":49,"entryPointCount":10,"unprotectedCount":10},[35,41],{"type":36,"name":37,"callback":38,"file":39,"line":40},"action","wp_enqueue_scripts","tvc_splc_save_widget_style","inc\\show-post-latest-script.php",5,{"type":36,"name":42,"callback":43,"file":44,"line":45},"widgets_init","tvc_splc_save_widget","tvc-post-latest-by-category.php",26,[],[],[],[],{"dangerousFunctions":51,"sqlUsage":52,"outputEscaping":58,"fileOperations":10,"externalRequests":10,"nonceChecks":10,"capabilityChecks":10,"bundledLibraries":77},[],{"prepared":10,"raw":27,"locations":53},[54],{"file":55,"line":56,"context":57},"inc\\show-post-latest-class.php",28,"$wpdb->query() with variable interpolation",{"escaped":59,"rawEcho":60,"locations":61},42,7,[62,65,67,69,71,73,75],{"file":55,"line":63,"context":64},17,"raw output",{"file":55,"line":66,"context":64},20,{"file":55,"line":68,"context":64},37,{"file":55,"line":70,"context":64},52,{"file":55,"line":72,"context":64},54,{"file":55,"line":74,"context":64},68,{"file":55,"line":76,"context":64},84,[],[],{"summary":80,"deductions":81},"The \"show-post-latest-by-category\" plugin, version 1.0.0, demonstrates a strong security posture based on static analysis. The absence of any identified entry points such as AJAX handlers, REST API routes, shortcodes, or cron events significantly limits the potential attack surface. Furthermore, the code signals show no dangerous functions, file operations, or external HTTP requests, which are common vectors for vulnerabilities.\n\nThe analysis did, however, flag one SQL query that is not using prepared statements. While the overall output escaping is good at 86%, this single instance of raw SQL is a concern as it could be susceptible to SQL injection if user-supplied data is directly incorporated without proper sanitization. The lack of any recorded historical vulnerabilities suggests a potentially well-maintained codebase, but this should be considered in conjunction with the static analysis findings.\n\nIn conclusion, the plugin exhibits good practices by minimizing its attack surface and generally employing secure coding techniques. The primary weakness lies in the single unescaped SQL query. Given the lack of other critical indicators and historical issues, the overall risk appears to be low, but the SQL query warrants attention for future updates.",[82],{"reason":83,"points":60},"SQL query not using prepared statements","2026-03-17T05:55:06.155Z",{"wat":86,"direct":92},{"assetPaths":87,"generatorPatterns":89,"scriptPaths":90,"versionParams":91},[88],"\u002Fwp-content\u002Fplugins\u002Fshow-post-latest-by-category\u002Fcss\u002Fmain.css",[],[],[],{"cssClasses":93,"htmlComments":94,"htmlAttributes":95,"restEndpoints":96,"jsGlobals":97,"shortcodeOutput":98},[],[],[],[],[],[]]