[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fw2EHRIYFod3lXCZ194LxifuGuDf-ZtKlcP5NPYb9qKM":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":25,"download_link":26,"security_score":13,"vuln_count":27,"unpatched_count":27,"last_vuln_date":28,"fetched_at":29,"vulnerabilities":30,"developer":31,"crawl_stats":28,"alternatives":39,"analysis":141,"fingerprints":290},"sk-wp-admin-login-captcha","SKP WP Admin Login Captcha","1.0.5","Sandeep Kumar","https:\u002F\u002Fprofiles.wordpress.org\u002Fsk335577\u002F","\u003Cp>Simple, Lightweightht and User Friendly plugin to secure your wordpress admin panel by adding captcha on the login page.\u003C\u002Fp>\n\u003Cp>Features:\u003Cbr \u002F>\n*   Mathematical Captcha\u003Cbr \u002F>\n*   Google reCAPTCHA V2\u003Cbr \u002F>\n*   Google reCAPTCHA V3\u003C\u002Fp>\n","Add Google or Mathematical captcha on wordpress login page",1000,4217,100,1,"2025-05-10T08:43:00.000Z","6.8.5","3.1","",[20,21,22,23,24],"captcha","google-captcha","login-captcha","math-captcha","wordpress-admin-captcha","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fsk-wp-admin-login-captcha\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsk-wp-admin-login-captcha.zip",0,null,"2026-03-15T15:16:48.613Z",[],{"slug":32,"display_name":7,"profile_url":8,"plugin_count":33,"total_installs":34,"avg_security_score":35,"avg_patch_time_days":36,"trust_score":37,"computed_at":38},"sk335577",2,1010,93,30,89,"2026-04-04T11:46:43.337Z",[40,63,83,101,122],{"slug":41,"name":42,"version":43,"author":44,"author_profile":45,"description":46,"short_description":47,"active_installs":48,"downloaded":49,"rating":50,"num_ratings":51,"last_updated":52,"tested_up_to":53,"requires_at_least":54,"requires_php":55,"tags":56,"homepage":18,"download_link":60,"security_score":61,"vuln_count":33,"unpatched_count":27,"last_vuln_date":62,"fetched_at":29},"captcha-code-authentication","Captcha Code","3.3","WebFactory","https:\u002F\u002Fprofiles.wordpress.org\u002Fwebfactory\u002F","\u003Cp>Adds GDPR compatible captcha code anti-spam protection to WordPress forms – comments form, registration form, lost password form, and login form. In order to post comments or register, users have to type in the code shown on the image. This prevents spam from automated bots & adds security. No external services (like Google ReCaptcha) are used. No API keys are needed, and no user-identifiable data is used so it’s GDPR compatible.\u003C\u002Fp>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Col>\n\u003Cli>Captcha position – comments form, login form, registration form, or lost password form.\u003C\u002Fli>\n\u003Cli>Letters type – capital letters, small letters, or captial & small letters.\u003C\u002Fli>\n\u003Cli>Captcha type – alphanumeric, alphabets or numbers.\u003C\u002Fli>\n\u003Cli>Translation enabled.\u003C\u002Fli>\n\u003C\u002Fol>\n","GDPR compatible captcha anti-spam protection for login form, comments form, registration form & lost password form. Eliminate spam with captcha.",100000,678917,76,34,"2025-12-03T18:21:00.000Z","6.9.4","3.0","5.2",[20,57,58,22,59],"comments-spam","form-captcha","recaptcha","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcaptcha-code-authentication.3.3.zip",99,"2023-11-24 00:00:00",{"slug":64,"name":65,"version":66,"author":67,"author_profile":68,"description":69,"short_description":70,"active_installs":71,"downloaded":72,"rating":13,"num_ratings":73,"last_updated":74,"tested_up_to":53,"requires_at_least":75,"requires_php":76,"tags":77,"homepage":18,"download_link":81,"security_score":61,"vuln_count":14,"unpatched_count":27,"last_vuln_date":82,"fetched_at":29},"ds-cf7-math-captcha","DS CF7 Math Captcha","3.1.0","dotsquares","https:\u002F\u002Fprofiles.wordpress.org\u002Fdotsvijay\u002F","\u003Ch3>Form Stop Spam Emails – A permanent solution to stop spam emails\u003C\u002Fh3>\n\u003Cp>“DS CF7 Math Captcha” plugin gives functionality of prevent unwanted spam to your contact form 7. Contact Form 7 plugin is most widely used by many users so this plugin helps to prevent unwanted spam from website that has been created by Contact Form 7 plugin. This plugin is very much effective to stop form spam for Contact Form 7 plugin.\u003C\u002Fp>\n\u003Ch4>The plugin has been tested with the latest version (6.1) of Contact Form 7\u003C\u002Fh4>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Math Captcha\u003C\u002Fli>\n\u003Cli>Refresh Math Captcha\u003C\u002Fli>\n\u003Cli>Available Translations – English (US), French, Hindi, Spanish and German\u003C\u002Fli>\n\u003C\u002Ful>\n","\"DS CF7 Math Captcha\" is a math captcha with refresh captcha functionality to prevent unwanted spam for your contact form 7 plugin.",30000,71414,8,"2026-02-19T10:26:00.000Z","6.5","7.4",[20,78,79,80,23],"contact-form-7","contact-form-7-addon","contact-form-7-captcha","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fds-cf7-math-captcha.3.1.0.zip","2024-09-05 00:00:00",{"slug":84,"name":85,"version":86,"author":87,"author_profile":88,"description":89,"short_description":90,"active_installs":91,"downloaded":92,"rating":13,"num_ratings":93,"last_updated":94,"tested_up_to":16,"requires_at_least":95,"requires_php":18,"tags":96,"homepage":18,"download_link":100,"security_score":13,"vuln_count":27,"unpatched_count":27,"last_vuln_date":28,"fetched_at":29},"cf7-advance-security","Contact Form 7 Spam Killer","1.8","WP-EXPERTS.IN","https:\u002F\u002Fprofiles.wordpress.org\u002Findia-web-developer\u002F","\u003Cp>“Contact Form 7 Spam Killer” is a advance spam blocker that will help to prevent unwanted spam for your Contact Form 7 plugin.\u003C\u002Fp>\n\u003Ch3>Form Spam Killer – A permanent solution to stop spam emails from your wordpress website\u003C\u002Fh3>\n\u003Cp>“Contact Form 7 Spam Killer” plugin gives double layer security to your contact form 7. This plugin is very effective to stop machine and human spam for Contact Form 7 plugin. This plugin helps you to prevent unwanted spam from all forms of the website that has been created by Contact Form 7 plugin. As Form 7 is most popular contact form plugin and many users faced the spam issue with this form so we have created this plugin to give a permanent solution from spam emails issue.\u003C\u002Fp>\n\u003Ch4>Plugin tested with latest version 6.1 of Form 7\u003C\u002Fh4>\n\u003Cp>Do You Have Any Query? \u003Cstrong>\u003Ca href=\"https:\u002F\u002Fwww.wp-experts.in\u002Fcontact-us\u002F?utm_source=wordpress.org&utm_medium=free-plugin&utm_campaign=form7spam-killer\" rel=\"nofollow ugc\">Submit here\u003C\u002Fa>\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Math Captcha\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Hidden Captcha (Honeypot)\u003C\u002Fp>\n\u003Cp>\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002FPwnoLegw0sM?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Ful>\n","\"Contact Form 7 Spam Killer\" is a advance spam blocker that will help to prevent unwanted spam for your Contact Form 7 plugin.",4000,29565,4,"2025-07-09T12:41:00.000Z","5.6",[97,78,80,98,99],"cf7-math-captcha","form-7-spam-stoper","form-security","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcf7-advance-security.1.8.zip",{"slug":102,"name":103,"version":104,"author":105,"author_profile":106,"description":107,"short_description":108,"active_installs":109,"downloaded":110,"rating":111,"num_ratings":112,"last_updated":113,"tested_up_to":114,"requires_at_least":115,"requires_php":18,"tags":116,"homepage":119,"download_link":120,"security_score":121,"vuln_count":27,"unpatched_count":27,"last_vuln_date":28,"fetched_at":29},"math-captcha-for-elementor-forms","Math Captcha for Elementor Forms","1.1.0","albanotoska","https:\u002F\u002Fprofiles.wordpress.org\u002Falbanotoska\u002F","\u003Cblockquote>\n\u003Cp>\n        \u003Cstrong>BS Math Captcha for Elementor Forms\u003C\u002Fstrong>\n    \u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Cp>BS Math Captcha for Elementor Forms is a simple plugin that add a math captcha to every elementor forms you have on your site. You can just install the plugin, activate it and that’s it. The captcha will appear automatically on all your Elementor Forms. This is made possible by jquery plugin ebcaptcha. Special thanks to the developer.\u003Cbr \u002F>\n– Make sure to check also this other jQuery plugin which runs jquery when an element is visible, useful for popup forms \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fuzairfarooq\u002Farrive\" rel=\"nofollow ugc\"> arrive.js \u003C\u002Fa>\u003Cbr \u002F>\n\u003Cem>NOTICE\u003C\u002Fem> : You need to have Elementor Pro for this plugin to work\u003C\u002Fp>\n\u003Ch3>Quick Links\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Falbanotoska.com\u002Fbsbanners\u002Fbs-math-captcha-for-elementor-forms\u002F\" rel=\"nofollow ugc\">Demo (Features)\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Falbanotoska.com\u002F#contact\" rel=\"nofollow ugc\">Contact Us\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fbs-banners\u002F\" rel=\"ugc\">My other plugin on WordPress.org\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cul>\n\u003Cli>Easy to use\u003C\u002Fli>\n\u003Cli>Lightweight plugin\u003C\u002Fli>\n\u003Cli>Elementor full Support\u003C\u002Fli>\n\u003Cli>Super easy Installation\u003C\u002Fli>\n\u003Cli>100% Responsive\u003C\u002Fli>\n\u003Cli>Easy and Fast to Setup\u003C\u002Fli>\n\u003Cli>All Major browser supported\u003C\u002Fli>\n\u003C\u002Ful>\n","Wordpress Plugin that will add a simple match captcha to your Elementor Forms.",3000,21120,80,13,"2021-10-08T09:54:00.000Z","5.8.13","3.5",[20,117,23,59,118],"elementor","wordpress-plugin","https:\u002F\u002Falbanotoska.com\u002Fbsbanners\u002Fbs-math-captcha-for-elementor-forms\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fmath-captcha-for-elementor-forms.1.1.0.zip",85,{"slug":123,"name":124,"version":125,"author":126,"author_profile":127,"description":128,"short_description":129,"active_installs":130,"downloaded":131,"rating":132,"num_ratings":133,"last_updated":134,"tested_up_to":114,"requires_at_least":115,"requires_php":18,"tags":135,"homepage":18,"download_link":140,"security_score":121,"vuln_count":27,"unpatched_count":27,"last_vuln_date":28,"fetched_at":29},"cf7-google-captcha-load-after-page","CF7 Google Captcha Load After Page","3.0.1","Amit bhalani","https:\u002F\u002Fprofiles.wordpress.org\u002Famit648\u002F","\u003Cp>This plugins use for your website speed improvement and decrease your page request. When you have used contact form 7 and insert you Google Captcha( v3 ) after this plugin active. When a user scrolls the page, then loading google captcha code.\u003C\u002Fp>\n\u003Cp>How to use this plugin?\u003C\u002Fp>\n\u003Col>\n\u003Cli>Download this Free CF7 Google Captcha Load After Page WordPress Plugin from above link.\u003C\u002Fli>\n\u003Cli>Connect to your WordPress dashboard (wp-admin) and navigate to Plugins >> Add New Plugin >> Upload Plugin >> Now upload the downloaded (CF7 Google Captcha Load After Page.zip) file >> Click on  Install Now.\u003C\u002Fli>\n\u003Cli>Once you install this plugin successfully, click on  Activate Plugin .\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Cp>Now you visit your site and scroll your site.\u003C\u002Fp>\n","This plugins use for your website speed improvement and decrease your page request. When you have used contact form 7 and insert you Google Captcha( v &hellip;",2000,21234,86,6,"2021-08-09T06:01:00.000Z",[136,137,21,138,139],"cf7","cf7-google-captcha","google-recaptcha","google-recaptcha-v3","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcf7-google-captcha-load-after-page.zip",{"attackSurface":142,"codeSignals":184,"taintFlows":245,"riskAssessment":274,"analyzedAt":289},{"hooks":143,"ajaxHandlers":180,"restRoutes":181,"shortcodes":182,"cronEvents":183,"entryPointCount":27,"unprotectedCount":27},[144,149,154,157,160,161,163,166,169,172,175,177],{"type":145,"name":146,"callback":146,"file":147,"line":148},"action","admin_enqueue_scripts","admin\\includes\\class-skwpalc-settings-api.php",21,{"type":145,"name":150,"callback":151,"file":152,"line":153},"plugins_loaded","anonymous","includes\\class-skwpalc-core.php",27,{"type":145,"name":155,"callback":151,"file":152,"line":156},"admin_init",32,{"type":145,"name":158,"callback":151,"file":152,"line":159},"admin_menu",33,{"type":145,"name":146,"callback":151,"file":152,"line":51},{"type":145,"name":146,"callback":151,"file":152,"line":162},35,{"type":145,"name":164,"callback":151,"file":152,"line":165},"init",40,{"type":145,"name":167,"callback":151,"file":152,"line":168},"login_form",41,{"type":145,"name":170,"callback":151,"file":152,"line":171},"authenticate",42,{"type":145,"name":173,"callback":151,"file":152,"line":174},"login_enqueue_scripts",43,{"type":145,"name":173,"callback":151,"file":152,"line":176},44,{"type":145,"name":178,"callback":151,"file":152,"line":179},"login_footer",45,[],[],[],[],{"dangerousFunctions":185,"sqlUsage":190,"outputEscaping":192,"fileOperations":14,"externalRequests":27,"nonceChecks":27,"capabilityChecks":27,"bundledLibraries":244},[186],{"fn":187,"file":147,"line":188,"context":189},"create_function",98,"$callback = create_function('', 'echo \"' . str_replace('\"', '\\\"', $section['desc']) . '\";');",{"prepared":27,"raw":27,"locations":191},[],{"escaped":193,"rawEcho":194,"locations":195},9,25,[196,199,201,203,205,207,209,211,213,215,217,219,221,223,225,227,228,229,231,233,236,238,239,241,242],{"file":147,"line":197,"context":198},178,"raw output",{"file":147,"line":200,"context":198},207,{"file":147,"line":202,"context":198},226,{"file":147,"line":204,"context":198},249,{"file":147,"line":206,"context":198},271,{"file":147,"line":208,"context":198},292,{"file":147,"line":210,"context":198},309,{"file":147,"line":212,"context":198},319,{"file":147,"line":214,"context":198},332,{"file":147,"line":216,"context":198},348,{"file":147,"line":218,"context":198},368,{"file":147,"line":220,"context":198},384,{"file":147,"line":222,"context":198},400,{"file":147,"line":224,"context":198},417,{"file":226,"line":93,"context":198},"admin\\templates\\skwpalc-admin-form.php",{"file":226,"line":36,"context":198},{"file":226,"line":159,"context":198},{"file":230,"line":93,"context":198},"admin\\templates\\skwpalc-admin-navigation.php",{"file":232,"line":93,"context":198},"public\\templates\\skwpalc-public-captcha-google-login-footer.php",{"file":234,"line":235,"context":198},"public\\templates\\skwpalc-public-captcha-google-v3-login-footer.php",5,{"file":237,"line":193,"context":198},"public\\templates\\skwpalc-public-captcha-google-v3.php",{"file":237,"line":148,"context":198},{"file":240,"line":73,"context":198},"public\\templates\\skwpalc-public-captcha-google.php",{"file":240,"line":148,"context":198},{"file":243,"line":33,"context":198},"public\\templates\\skwpalc-public-captcha-math.php",[],[246,266],{"entryPoint":247,"graph":248,"unsanitizedCount":14,"severity":265},"authenticate (public\\includes\\class-skwpalc-captcha.php:77)",{"nodes":249,"edges":262},[250,256],{"id":251,"type":252,"label":253,"file":254,"line":255},"n0","source","$_POST","public\\includes\\class-skwpalc-captcha.php",112,{"id":257,"type":258,"label":259,"file":254,"line":260,"wp_function":261},"n1","sink","file_get_contents() [SSRF\u002FLFI]",138,"file_get_contents",[263],{"from":251,"to":257,"sanitized":264},false,"medium",{"entryPoint":267,"graph":268,"unsanitizedCount":14,"severity":265},"\u003Cclass-skwpalc-captcha> (public\\includes\\class-skwpalc-captcha.php:0)",{"nodes":269,"edges":272},[270,271],{"id":251,"type":252,"label":253,"file":254,"line":255},{"id":257,"type":258,"label":259,"file":254,"line":260,"wp_function":261},[273],{"from":251,"to":257,"sanitized":264},{"summary":275,"deductions":276},"The plugin \"sk-wp-admin-login-captcha\" v1.0.5 exhibits a mixed security posture.  On the positive side, there are no known CVEs associated with this plugin, and all observed SQL queries are properly prepared, indicating good practices in database interaction. Furthermore, the attack surface appears to be minimal, with no registered AJAX handlers, REST API routes, shortcodes, or cron events that could serve as direct entry points for attackers.\n\nHowever, several concerning signals are present in the static analysis. The use of the `create_function` is a significant red flag, as it can be exploited for code injection vulnerabilities. While no specific taint flows were classified as critical or high, the presence of two flows with unsanitized paths suggests potential issues with how data is handled, which could lead to vulnerabilities if exploited in conjunction with other weaknesses. A notable concern is the complete lack of nonce and capability checks, meaning that even if there were entry points, they would likely be unprotected against common WordPress attacks.\n\nGiven the absence of a vulnerability history, it's difficult to draw strong conclusions about past security practices, but the lack of reported issues could indicate either good security or limited historical scrutiny. The primary strengths of this plugin lie in its minimal attack surface and secure SQL handling. The main weaknesses are the presence of a dangerous function and the complete absence of crucial security checks like nonces and capability checks.",[277,280,283,285,287],{"reason":278,"points":279},"Use of dangerous function 'create_function'",15,{"reason":281,"points":282},"Flows with unsanitized paths found",10,{"reason":284,"points":282},"No nonce checks implemented",{"reason":286,"points":282},"No capability checks implemented",{"reason":288,"points":235},"Low percentage of properly escaped output","2026-03-16T19:08:14.358Z",{"wat":291,"direct":304},{"assetPaths":292,"generatorPatterns":297,"scriptPaths":298,"versionParams":299},[293,294,295,296],"\u002Fwp-content\u002Fplugins\u002Fsk-wp-admin-login-captcha\u002Fadmin\u002Fcss\u002Fskwpalc-admin.css","\u002Fwp-content\u002Fplugins\u002Fsk-wp-admin-login-captcha\u002Fadmin\u002Fcss\u002Fskwpalc-responsiveslides.css","\u002Fwp-content\u002Fplugins\u002Fsk-wp-admin-login-captcha\u002Fadmin\u002Fjs\u002Fskwpalc-responsiveslides.min.js","\u002Fwp-content\u002Fplugins\u002Fsk-wp-admin-login-captcha\u002Fadmin\u002Fjs\u002Fskwpalc-admin.js",[],[],[300,301,302,303],"sk-wp-admin-login-captcha\u002Fadmin\u002Fcss\u002Fskwpalc-admin.css?ver=","sk-wp-admin-login-captcha\u002Fadmin\u002Fcss\u002Fskwpalc-responsiveslides.css?ver=","sk-wp-admin-login-captcha\u002Fadmin\u002Fjs\u002Fskwpalc-responsiveslides.min.js?ver=","sk-wp-admin-login-captcha\u002Fadmin\u002Fjs\u002Fskwpalc-admin.js?ver=",{"cssClasses":305,"htmlComments":307,"htmlAttributes":308,"restEndpoints":309,"jsGlobals":310,"shortcodeOutput":311},[306],"skwpalc-slider",[],[],[],[],[]]