[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fD6RlO1_h5hnZAmYf6vja49QJdZESHcej_EJMepxjtYo":3,"$farLVAj_c6dLTSQESMZInfnU9_qnOtPobjCbuKMqFavM":135,"$fvgHK0CSxIT9yEJDOG3DjXf_7zxmkHL3Z-LubRLlI7B8":140},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":24,"download_link":25,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28,"discovery_status":29,"vulnerabilities":30,"developer":31,"crawl_stats":27,"alternatives":37,"analysis":38,"fingerprints":114},"simple-content-adder","Simple Content Adder","1.0","Blaz K.","https:\u002F\u002Fprofiles.wordpress.org\u002Fblazk\u002F","\u003Cp>This plugin allows you to easily add custom content to your posts, pages and to the footer of your website, without the need to update each post or page. The content is created through the WordPress text editor and therefore you can easily insert not only text but also images, videos etc.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>How to start?\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Col>\n\u003Cli>\n\u003Cp>Click Add New under the Added Content in the left sidebar.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Enter the title (only you will see the title).\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Select the position for custom content; available options are above content, below content and footer.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Under Include In select where do you want your content to show; available options are posts, pages and everywhere. Please note that everywhere option is only compatible with the footer position.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Added Content Class allows you to give the custom content div a class for later CSS styling.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Add your cool content and hit the publish button.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Cp>\u003Cstrong>What can you do with this plugin?\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Col>\n\u003Cli>\n\u003Cp>Show disclaimers\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Show banners\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Show author info\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Show ads (as long as they do not contain JavaScript)\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Display other cool things by your wishes\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Cp>Note: The plugin does not come with templates for author boxes, banners etc.\u003C\u002Fp>\n","Add custom content to your posts, pages and\u002For footer, without the need to update each post or page.",20,1697,0,"2016-09-29T15:01:00.000Z","4.6.30","4.0","",[19,20,21,22,23],"add-content-above-post","add-content-below-post","add-content-footer","add-text-above-post","add-text-footer","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fsimple-content-adder\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsimple-content-adder.1.0.zip",85,null,"2026-04-16T10:56:18.058Z","no_bundle",[],{"slug":32,"display_name":7,"profile_url":8,"plugin_count":33,"total_installs":11,"avg_security_score":26,"avg_patch_time_days":34,"trust_score":35,"computed_at":36},"blazk",1,30,84,"2026-05-20T01:09:31.888Z",[],{"attackSurface":39,"codeSignals":88,"taintFlows":106,"riskAssessment":107,"analyzedAt":113},{"hooks":40,"ajaxHandlers":84,"restRoutes":85,"shortcodes":86,"cronEvents":87,"entryPointCount":13,"unprotectedCount":13},[41,47,52,56,60,64,68,72,76,80],{"type":42,"name":43,"callback":44,"file":45,"line":46},"action","init","cptui_register_my_cpts_sca_content","cpt\\sca-fields.php",5,{"type":48,"name":49,"callback":50,"file":51,"line":34},"filter","manage_edit-sca_content_columns","sca_column_headers","simple-content-adder.php",{"type":48,"name":53,"callback":54,"priority":33,"file":51,"line":55},"manage_sca_content_posts_custom_column","sca_column_data",34,{"type":48,"name":57,"callback":58,"file":51,"line":59},"acf\u002Fsettings\u002Fpath","sca_acf_settings_path",38,{"type":48,"name":61,"callback":62,"file":51,"line":63},"acf\u002Fsettings\u002Fdir","sca_acf_settings_dir",39,{"type":48,"name":65,"callback":66,"file":51,"line":67},"acf\u002Fsettings\u002Fshow_admin","sca_acf_show_admin",40,{"type":42,"name":69,"callback":70,"file":51,"line":71},"admin_menu","sca_admin_menus",45,{"type":42,"name":73,"callback":74,"file":51,"line":75},"admin_enqueue_scripts","sca_admin_scripts",49,{"type":48,"name":77,"callback":78,"priority":11,"file":51,"line":79},"the_content","sca_add_to_content",53,{"type":42,"name":81,"callback":82,"file":51,"line":83},"wp_footer","sca_add_to_footer",57,[],[],[],[],{"dangerousFunctions":89,"sqlUsage":90,"outputEscaping":92,"fileOperations":13,"externalRequests":13,"nonceChecks":13,"capabilityChecks":13,"bundledLibraries":102},[],{"prepared":13,"raw":13,"locations":91},[],{"escaped":13,"rawEcho":93,"locations":94},3,[95,98,100],{"file":51,"line":96,"context":97},131,"raw output",{"file":51,"line":99,"context":97},364,{"file":51,"line":101,"context":97},420,[103],{"name":104,"version":27,"knownCves":105},"TinyMCE",[],[],{"summary":108,"deductions":109},"The \"simple-content-adder\" plugin v1.0 exhibits a generally positive security posture in terms of its attack surface and vulnerability history. The absence of any recorded CVEs and the static analysis showing zero AJAX handlers, REST API routes, shortcodes, or cron events with unprotected entry points is a strong indicator of good security practice.\n\nHowever, the static analysis does reveal a significant concern regarding output escaping. With three total outputs analyzed and 0% properly escaped, this indicates a high risk of Cross-Site Scripting (XSS) vulnerabilities. Any user-supplied data that is not properly sanitized and escaped before being displayed on the frontend or backend is a potential vector for malicious script injection. While there are no recorded vulnerabilities, this oversight in output handling is a critical weakness that could be exploited.\n\nOverall, the plugin benefits from a minimal attack surface and a clean vulnerability history. The primary area of concern, and a point of significant risk, lies in the complete lack of output escaping. Addressing this would greatly improve the plugin's security. Until then, users should be cautious if the plugin handles any dynamic content that originates from user input.",[110],{"reason":111,"points":112},"0% output escaping",8,"2026-03-16T23:41:37.527Z",{"wat":115,"direct":123},{"assetPaths":116,"generatorPatterns":119,"scriptPaths":120,"versionParams":122},[117,118],"\u002Fwp-content\u002Fplugins\u002Fsimple-content-adder\u002Fcss\u002Fsimple-content-adder.css","\u002Fwp-content\u002Fplugins\u002Fsimple-content-adder\u002Fjs\u002Fsimple-content-adder.js",[],[121],"\u002Fwp-content\u002Fplugins\u002Fsimple-content-adder\u002Flib\u002Fadvanced-custom-fields\u002Facf.php",[],{"cssClasses":124,"htmlComments":126,"htmlAttributes":127,"restEndpoints":131,"jsGlobals":132,"shortcodeOutput":134},[125],"sca_content",[],[128,129,130],"data-sca-include","data-sca-position","data-sca-class",[],[133],"window.jQuery",[],{"error":136,"url":137,"statusCode":138,"statusMessage":139,"message":139},true,"http:\u002F\u002Flocalhost\u002Fapi\u002Fplugins\u002Fsimple-content-adder\u002Fbundle",404,"no bundle for this plugin yet",{"slug":4,"current_version":6,"total_versions":33,"versions":141},[142],{"version":6,"download_url":25,"svn_tag_url":143,"released_at":27,"has_diff":144,"diff_files_changed":145,"diff_lines":27,"trac_diff_url":27,"vulnerabilities":146,"is_current":136},"https:\u002F\u002Fplugins.svn.wordpress.org\u002Fsimple-content-adder\u002Ftags\u002F1.0\u002F",false,[],[]]