[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fHqm4aFil89915OlSosO9WYR0LxfAFxTPImPaiZWcfLA":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":23,"download_link":24,"security_score":25,"vuln_count":26,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28,"vulnerabilities":29,"developer":46,"crawl_stats":35,"alternatives":49,"analysis":154,"fingerprints":393},"slope-widgets","Slope Widgets","4.3.4","slope","https:\u002F\u002Fprofiles.wordpress.org\u002Fslopeit\u002F","\u003Cp>Aggiungi i widget di Slope al sito web della tua struttura! Questo plugin mostra la barra delle prenotazioni, i pacchetti e le promozioni.\u003C\u002Fp>\n\u003Ch3>Informazioni\u003C\u002Fh3>\n\u003Cp>Se usi il software gestionale Slope e il sito della tua struttura ricettiva è realizzato in WordPress, questo è il plugin che stavi cercando.\u003C\u002Fp>\n\u003Cp>Aggiungi i widget di Slope al sito web della tua struttura ricettiva! Questo plugin ti permette di mostrare la barra delle prenotazioni, i pacchetti e le promozioni tramite shortcode personalizzabili.\u003Cbr \u002F>\nQuesto plugin è pensato per evitare ogni tipo di conflitto con il tema in uso sul tuo sito ed è gratis, quindi usalo senza preoccupazioni!\u003C\u002Fp>\n\u003Ch3>Installazione\u003C\u002Fh3>\n\u003Col>\n\u003Cli>Estrai la cartella del plugin all’interno della directory \u003Ccode>\u002Fwp-content\u002Fplugins\u002F\u003C\u002Fcode>, oppure installalo direttamente dalla sezione plugin del tuo WordPress.\u003C\u002Fli>\n\u003Cli>Attiva il plugin dall’apposita sezione.\u003C\u002Fli>\n\u003Cli>Troverai la voce “Slope Widgets” nella sidebar del tuo pannello di amministrazione. Configura i widget secondo le tue preferenze direttamente da lì.\u003C\u002Fli>\n\u003Cli>Incolla lo shortcode \u003Cstrong>[slope-reservations]\u003C\u002Fstrong> nell’editor delle pagine, proprio dove vuoi che appaia la barra delle prenotazioni. È facile!\u003C\u002Fli>\n\u003Cli>Incolla lo shortcode \u003Cstrong>[slope-promo]\u003C\u002Fstrong> nell’editor delle pagine dove vuoi mostrare le offerte e le promozioni caricate sul backoffice di Slope.\u003C\u002Fli>\n\u003Cli>Se hai un sito multilingua e desideri mostrare la barra delle prenotazioni e il booking engine in un’altra lingua, aggiungi il parametro \u003Cstrong>lang\u003C\u002Fstrong> allo shortcode specificando \u003Cstrong>it\u003C\u002Fstrong> per l’italiano, \u003Cstrong>en\u003C\u002Fstrong> per l’inglese, \u003Cstrong>fr\u003C\u002Fstrong> per il francese o \u003Cstrong>de\u003C\u002Fstrong> per il tedesco.\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Cp>Se stai usando il Block Editor (Gutenberg) puoi aggiungere gli shortcode di Slope usando l’apposito widget “Shortcode”.\u003C\u002Fp>\n\u003Ch3>Supporto\u003C\u002Fh3>\n\u003Cp>Per richiedere il tuo ID struttura, per segnalare malfunzionamenti, per aiutarci a migliorare o per qualsiasi altra richiesta, contattaci a \u003Ca href=\"mailto:info@slope.it\" rel=\"nofollow ugc\">info@slope.it\u003C\u002Fa> o su \u003Ca href=\"https:\u002F\u002Fwww.slope.it\u002F\" title=\"Gestionale per hotel\" rel=\"nofollow ugc\">Slope\u003C\u002Fa>.\u003C\u002Fp>\n","Aggiungi i widget di Slope al sito web della tua struttura! Questo plugin mostra la barra delle prenotazioni, i pacchetti e le promozioni.",500,8277,0,"2025-12-09T08:54:00.000Z","6.9.4","5.6","7.0",[19,20,21,22,7],"booking-engine","crm","gestionale","hotel","","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fslope-widgets.4.3.4.zip",99,1,"2024-12-16 10:47:09","2026-03-15T15:16:48.613Z",[30],{"id":31,"url_slug":32,"title":33,"description":34,"plugin_slug":4,"theme_slug":35,"affected_versions":36,"patched_in_version":37,"severity":38,"cvss_score":39,"cvss_vector":40,"vuln_type":41,"published_date":27,"updated_date":42,"references":43,"days_to_patch":45},"CVE-2024-11902","slope-widgets-authenticated-contributor-stored-cross-site-scripting","Slope Widgets \u003C= 4.2.12 - Authenticated (Contributor+) Stored Cross-Site Scripting","The Slope Widgets plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'slope-reservations' shortcode in all versions up to, and including, 4.2.12 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.",null,"\u003C=4.2.12","4.2.13","medium",6.4,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:L\u002FUI:N\u002FS:C\u002FC:L\u002FI:L\u002FA:N","Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","2024-12-23 17:29:30",[44],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002F7700f1f3-90e2-450d-9cfe-c922d0cc6a1e?source=api-prod",7,{"slug":47,"display_name":7,"profile_url":8,"plugin_count":26,"total_installs":11,"avg_security_score":25,"avg_patch_time_days":45,"trust_score":25,"computed_at":48},"slopeit","2026-04-04T16:55:58.114Z",[50,74,97,118,136],{"slug":51,"name":52,"version":53,"author":54,"author_profile":55,"description":56,"short_description":57,"active_installs":58,"downloaded":59,"rating":60,"num_ratings":61,"last_updated":62,"tested_up_to":15,"requires_at_least":63,"requires_php":64,"tags":65,"homepage":69,"download_link":70,"security_score":71,"vuln_count":72,"unpatched_count":13,"last_vuln_date":73,"fetched_at":28},"motopress-hotel-booking-lite","MotoPress Hotel Booking","5.5.1","jetmonsters","https:\u002F\u002Fprofiles.wordpress.org\u002Fjetmonsters\u002F","\u003Cp>The WordPress Hotel Booking plugin by MotoPress is the ultimate WordPress property rental system with a real lodging business in mind.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fhbdemo.getmotopress.com\u002F\" rel=\"nofollow ugc\">Plugin Demo\u003C\u002Fa> with the Dashboard access.\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.youtube.com\u002Fwatch?v=t4SPW8lOXRE&list=PLbDImkyrISyKQccIsVDp98UXLIc1Yc3mn&index=2\" rel=\"nofollow ugc\">Video Overview\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.youtube.com\u002Fplaylist?list=PLbDImkyrISyKQccIsVDp98UXLIc1Yc3mn\" rel=\"nofollow ugc\">30+ Video Guides\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fmotopress.com\u002Fdocumentation\u002Fwordpress\u002Fplugins\u002Fhotel-booking\u002F\" rel=\"nofollow ugc\">Docs\u003C\u002Fa> – step-by-step guides to set up and manage the plugin.\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fthemes\u002Falbatross\u002F\" rel=\"ugc\">Free Elementor WordPress hotel template\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fmotopress.github.io\u002Fhotel-booking-code-reference\u002F\" rel=\"nofollow ugc\">Code Reference\u003C\u002Fa> & \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fmotopress\u002Fmphb-style-kit\" rel=\"nofollow ugc\">Style Kit\u003C\u002Fa> for developers.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Using this WP hotel booking reservation plugin, you can create a simple vacation rental listing as well as a powerful rental property booking website with all sorts of online and offline payments, automatic inventory control, taxes and fees info, flexible pricing rates, custom policies and more.\u003C\u002Fp>\n\u003Cp>The MotoPress hotel reservation plugin allows you to add a real-time property search form and display availability calendars of individual rooms and properties.\u003C\u002Fp>\n\u003Cp>This WordPress booking system was developed for hotel and vacation rental owners, B&B hosts, real estate agencies, and anyone in the lodging sector of the hospitality industry. Hotel Booking is a standalone plugin that will help you create a stunning rental property website with any WordPress theme and switch it with peace in mind if needed.\u003C\u002Fp>\n\u003Cp>The admin dashboard of WordPress hotel plugin is absolutely user-friendly making it easy to create a hotel or property renting website for non-tech people.\u003C\u002Fp>\n\u003Ch3>WP Hotel Booking Plugin Features\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>It can handle \u003Cstrong>unlimited properties\u003C\u002Fstrong> (unlimited rooms in a hotel, bedspace in a hostel) as well can be easily optimized for just \u003Cstrong>one property\u003C\u002Fstrong> (a villa, an apartment, etc.).\u003C\u002Fli>\n\u003Cli>Structured property details: description, a photo gallery, amenities, services, a view, bed types, max occupancy, property size and more.\u003C\u002Fli>\n\u003Cli>Responsive layouts for accommodations listing.\u003C\u002Fli>\n\u003Cli>A \u003Cstrong>real-time search availability\u003C\u002Fstrong> form.\u003C\u002Fli>\n\u003Cli>A \u003Cstrong>smart search algorithm\u003C\u002Fstrong>: the system can recommend the best set of accommodations depending on a number of guests.\u003C\u002Fli>\n\u003Cli>Unlimited variables for \u003Cstrong>rates\u003C\u002Fstrong> (pricing) based on any needed term (season): special periods (Christmas, wedding), weekends, daily or weekly rates, etc.\u003C\u002Fli>\n\u003Cli>Free or paid extras – offer \u003Cstrong>bookable extra services and packages\u003C\u002Fstrong> (guests can optionally add them to the reservation on the checkout).\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Min and max stay\u003C\u002Fstrong> periods for all or individual accommodations, fixed departure and arrival times.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Discount coupons\u003C\u002Fstrong> for promos or loyal clients (can be based on many custom rules).\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Taxes and fees\u003C\u002Fstrong> info: you can add mandatory fees, accommodation taxes, service taxes, and fee taxes to the accommodation rate.\u003C\u002Fli>\n\u003Cli>State the age of children in your establishment (displayed right in the search availability form).\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Multiple accommodations booking\u003C\u002Fstrong> by one guest in one reservation!\u003C\u002Fli>\n\u003Cli>Shortcodes, widgets and blocks for setting up the system.\u003C\u002Fli>\n\u003Cli>A user-friendly property booking widget for guests.\u003C\u002Fli>\n\u003Cli>Currency support.\u003C\u002Fli>\n\u003Cli>Professional localization of the WP hotel booking plugin into 14 languages: Portuguese, Polish, Russian, Spanish, Turkish, Swedish, Italian, Hungarian, Czech, Chinese, Dutch, French, Arabic and German. Additionally, the plugin is officially compatible with WPML and is custom translations ready.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Property Management System\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>Inventory control\u003C\u002Fstrong>: if the property is booked, it automatically becomes unavailable for reservations, no manual control is needed.\u003C\u002Fli>\n\u003Cli>Edit \u003Cstrong>amenities and services\u003C\u002Fstrong> available for a property in clicks.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Block all or individual accommodations\u003C\u002Fstrong> for a certain period of time (maintenance, special events) by setting not check-in, not check-out or not stay-in rules.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Handling Bookings\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>3 booking \u003Cstrong>confirmation modes\u003C\u002Fstrong>:\n\u003Col>\n\u003Cli>by \u003Cstrong>admin manually\u003C\u002Fstrong>;\u003C\u002Fli>\n\u003Cli>by \u003Cstrong>customer via email\u003C\u002Fstrong>;\u003C\u002Fli>\n\u003Cli>automatic confirmation \u003Cstrong>upon a payment\u003C\u002Fstrong> (online payments or after arrival).\u003C\u002Fli>\n\u003C\u002Fol>\n\u003C\u002Fli>\n\u003Cli>\u003Cstrong>PayPal\u003C\u002Fstrong> payment gateway for online bookings or \u003Ca href=\"https:\u002F\u002Fmotopress.com\u002Fproducts\u002Fhotel-booking-woocommerce-payments\u002F?utm_source=wp-org&utm_medium=textlink&utm_campaign=hotel-booking-lite&utm_content=hotel-booking-woocommerce-payments\" rel=\"nofollow ugc\">Hotel Booking WooCommerce Payments\u003C\u002Fa> premium addon for more gateways.\u003C\u002Fli>\n\u003Cli>Pay on Arrival and Direct Bank Transfer.\u003C\u002Fli>\n\u003Cli>Ability to add a payment manually after a guest’s arrival.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Full or deposit\u003C\u002Fstrong> (fixed or percent) online payments.\u003C\u002Fli>\n\u003Cli>Booking status: Booked, Pending, Cancelled.\u003C\u002Fli>\n\u003Cli>Status and payment info logs for each booking.\u003C\u002Fli>\n\u003Cli>Editable \u003Cstrong>customer details\u003C\u002Fstrong> for each booking.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Bookings calendar\u003C\u002Fstrong> where all upcoming bookings can be filtered by dates, accommodation or status.\u003C\u002Fli>\n\u003Cli>Payments history.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Automatic email notifications\u003C\u002Fstrong>: customize confirmation, cancellation and all sorts of emails.\u003C\u002Fli>\n\u003Cli>Complete and correct \u003Cstrong>price breakdown\u003C\u002Fstrong> with a detailed taxes and fees info.\u003C\u002Fli>\n\u003Cli>Handy backoffice for managing bookings.\u003C\u002Fli>\n\u003Cli>Customizable booking widget.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>User Roles and Capabilities\u003C\u002Fh3>\n\u003Cp>You can restrict or grant access to the Hotel Booking plugin, thus, for example, allow some people to only view bookings and others to perform more tasks with payments, clients, and more. The Hotel Booking plugin provides two custom user roles for this task:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Hotel Manager\u003C\u002Fli>\n\u003Cli>Hotel Worker\u003C\u002Fli>\n\u003Cli>Hotel Customer\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>User Area for Customers\u003C\u002Fh3>\n\u003Cp>The user area for customers allows them to log in, view bookings and speed up all future reservations thanks to the saved and pre-populated customer info at checkout. Website admins can set the plugin to create user accounts automatically at checkout or let customers create ones manually.\u003C\u002Fp>\n\u003Ch3>Booking Calendar\u003C\u002Fh3>\n\u003Cp>Hotel Booking is one of the top \u003Ca href=\"https:\u002F\u002Fmotopress.com\u002Fproducts\u002Fcategory\u002Fwordpress-calendar-plugins\u002F\" rel=\"nofollow ugc\">WordPress calendar plugins\u003C\u002Fa> from MotoPress.\u003C\u002Fp>\n\u003Cp>Display per-day pricing in the calendar and enable guests to book rooms using a calendar date picker. Your guest can simply click on the available dates right in the calendar when they want to stay and then follow the simple steps to complete their booking.\u003C\u002Fp>\n\u003Ch3>REST API\u003C\u002Fh3>\n\u003Cp>The Hotel Booking REST API is built on top of the WordPress REST API, ensuring a robust and secure code, thus helping you use our product in any application and create new experiences.\u003C\u002Fp>\n\u003Ch3>Hotel Booking Mobile Application\u003C\u002Fh3>\n\u003Cp>We provide a free app for both \u003Ca href=\"https:\u002F\u002Fplay.google.com\u002Fstore\u002Fapps\u002Fdetails?id=com.motopress.mphb_app\" rel=\"nofollow ugc\">Android\u003C\u002Fa> and \u003Ca href=\"https:\u002F\u002Fapps.apple.com\u002Fus\u002Fapp\u002Fhotel-booking-for-wordpress\u002Fid1619328436\" rel=\"nofollow ugc\">Apple\u003C\u002Fa> operating systems that will allow you to check the real-time availability of your accommodations, add bookings, and view guest and payment information on the go.\u003C\u002Fp>\n\u003Ch3>Hotel Booking Plugin Addons\u003C\u002Fh3>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fmotopress.com\u002Fproducts\u002Fcategory\u002Fhotel-booking-addons\u002F?utm_source=wp-org-hb-lite-page&utm_medium=text-link&utm_content=hotel-booking-addons\" rel=\"nofollow ugc\">Hotel Booking plugin addons\u003C\u002Fa> are available for adding custom functionality to your rental website:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fmotopress.com\u002Fproducts\u002Fhotel-booking-woocommerce-payments\u002F?utm_source=wp-org-hb-lite-page&utm_medium=text-link&utm_content=woocommerce-payment-addon\" rel=\"nofollow ugc\">WooCommerce Payments\u003C\u002Fa> addon – extend the number of payment gateways.\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fmotopress.com\u002Fproducts\u002Fhotel-booking-payment-request\u002F?utm_source=wp-org-hb-lite-page&utm_medium=text-link&utm_content=hotel-booking-payment-request-addon\" rel=\"nofollow ugc\">Payment Request\u003C\u002Fa> addon – automate your workflow of requesting and collecting rental payments from your clients.\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fmotopress.com\u002Fproducts\u002Fhotel-booking-reviews\u002F?utm_source=wp-org-hb-lite-page&utm_medium=text-link&utm_content=hotel-booking-reviews-rating-addon\" rel=\"nofollow ugc\">Reviews and Rating\u003C\u002Fa> addon – allow guests to rate and review your property.\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fmphb-elementor\u002F\" rel=\"ugc\">Elementor Integration\u003C\u002Fa> addon – helps speed up the work with your Elementor hotel website.\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fmphb-divi\u002F\" rel=\"ugc\">Divi Integration\u003C\u002Fa> addon – integrates Divi theme with the MotoPress Hotel Booking plugin to modify content and styles visually via Divi builder.\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fmotopress.com\u002Fproducts\u002Fhotel-booking-notifier\u002F?utm_source=wp-org-hb-lite-page&utm_medium=text-link\" rel=\"nofollow ugc\">Hotel Booking Notifier\u003C\u002Fa> addon – create automated event-driven emails before and after arrival\u002Fdeparture.\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fmotopress.com\u002Fproducts\u002Fhotel-booking-checkout-fields\u002F?utm_source=wp-org-hb-lite-page&utm_medium=text-link\" rel=\"nofollow ugc\">Hotel Booking Checkout Fields\u003C\u002Fa> addon – edit the form at the checkout by customizing current fields or adding new ones.\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fmotopress.com\u002Fproducts\u002Fhotel-booking-pricelabs\u002F?utm_source=wp-org-hb-lite-page&utm_medium=text-link\" rel=\"nofollow ugc\">PriceLabs Integration\u003C\u002Fa> addon – earn more from every listing by dynamically updating your rates with prices from PriceLabs, the best price optimization service for hotels and vacation rentals.\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fmotopress.com\u002Fproducts\u002Fhotel-booking-accommodation-based-payments\u002F?utm_source=wp-org-hb-lite-page&utm_medium=text-link\" rel=\"nofollow ugc\">Accommodation-Based Payments\u003C\u002Fa> addon – create a property management platform where each property owner receives booking payments directly into their own account.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Pro Features\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>Automatic bookings synchronization with OTAs\u003C\u002Fstrong> (exchange calendars via iCal) like Booking.com, Airbnb, TripAdvisor or HomeAway. This will help you rent out accommodations on different platforms simultaneously and avoid overbooking.\u003C\u002Fli>\n\u003Cli>Priority updates (new features released regularly).\u003C\u002Fli>\n\u003Cli>Priority support – email, live chat, forum.\u003C\u002Fli>\n\u003Cli>More built-in payment gateways (2Checkout, Braintree, Stripe, Beanstream\u002FBambora).\u003C\u002Fli>\n\u003Cli>Adding reservations from the backend.\u003C\u002Fli>\n\u003Cli>Ability to edit original booking details, including departure\u002Farrival dates, booked services, rates, and accommodations (add, remove, or replace originally booked properties).\u003C\u002Fli>\n\u003Cli>Different property prices based on a number of guests and nights.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Have a look at all Pro \u003Ca href=\"https:\u002F\u002Fmotopress.com\u002Fmotopress-wordpress-hotel-booking-pro-vs-lite\u002F?utm_source=wp-org&utm_medium=pro-features&utm_campaign=hotel-booking-lite&utm_content=here\" rel=\"nofollow ugc\">plugin features\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch3>Sell Appointments & Hourly Bookings\u003C\u002Fh3>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fmotopress.com\u002Fproducts\u002Fcategory\u002Fwordpress-booking-plugins\u002F\" rel=\"nofollow ugc\">WordPress booking plugins\u003C\u002Fa> from MotoPress are designed for different businesses.\u003C\u002Fp>\n\u003Cp>Offer smooth and quick event and appointment reservations on your rental property site with our \u003Ca href=\"https:\u002F\u002Fmotopress.com\u002Fproducts\u002Fappointment-booking\u002F?utm_source=wp_org_hb_lite_page&utm_medium=text_link&utm_campaign=appointment_plugin\" rel=\"nofollow ugc\">WordPress Appointment plugin\u003C\u002Fa>. Create appointments of any duration, add flexible staff schedules, and start accepting online bookings.\u003C\u002Fp>\n\u003Ch3>Hotel and Vacation Rental WordPress Themes\u003C\u002Fh3>\n\u003Cp>Are you looking for a pre-designed ready-to-go hotel booking WordPress theme?\u003C\u002Fp>\n\u003Cp>Check out our \u003Ca href=\"https:\u002F\u002Fmotopress.com\u002Fproducts\u002Fcategory\u002Fhotel-rental-wordpress-themes\u002F?utm_source=wp-org&utm_medium=hotel-themes&utm_campaign=hotel-booking-lite&utm_content=wordpress-hotel-themes\" rel=\"nofollow ugc\">Hotel and Vacation Rental WordPress Themes\u003C\u002Fa> where the Pro version of the \u003Ca href=\"https:\u002F\u002Fmotopress.com\u002Fproducts\u002Fhotel-booking\u002F?utm_source=wp-org&utm_medium=pro-link&utm_campaign=hotel-booking-lite&utm_content=wordpress-booking-plugin\" rel=\"nofollow ugc\">WordPress Booking Plugin\u003C\u002Fa> is included for free.\u003C\u002Fp>\n\u003Cp>You may also use the Palmeria \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fthemes\u002Fpalmeria\u002F\" rel=\"ugc\">free hotel booking theme\u003C\u002Fa> and Albatross \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fthemes\u002Falbatross\u002F\" rel=\"ugc\">free hotel Elementor theme\u003C\u002Fa> with the built-in free WordPress hotel booking plugin Lite.\u003C\u002Fp>\n\u003Cp>Every hotel booking theme in the list comes with the Hotel Booking Lite pluin pre-installed, with the visual styles polished for the plugin.\u003C\u002Fp>\n\u003Ch3>Copyright\u003C\u002Fh3>\n\u003Cp>MotoPress Hotel Booking plugin, Copyright (C) 2016, MotoPress https:\u002F\u002Fmotopress.com\u002F\u003Cbr \u002F>\nMotoPress Hotel Booking plugin is distributed under the terms of the GNU GPL.\u003C\u002Fp>\n","The #1 Hotel Booking and Vacation Rental Plugin for WordPress. Online payments, seasons, rates, free or paid extras, coupons, taxes & fees.",10000,694852,74,61,"2026-03-12T15:43:00.000Z","5.2","7.4",[66,19,22,67,68],"booking","hotel-booking","reservation","https:\u002F\u002Fmotopress.com\u002Fproducts\u002Fhotel-booking\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fmotopress-hotel-booking-lite.5.5.1.zip",86,4,"2025-11-25 00:00:00",{"slug":75,"name":76,"version":77,"author":78,"author_profile":79,"description":80,"short_description":81,"active_installs":82,"downloaded":83,"rating":84,"num_ratings":85,"last_updated":86,"tested_up_to":15,"requires_at_least":87,"requires_php":88,"tags":89,"homepage":92,"download_link":93,"security_score":94,"vuln_count":95,"unpatched_count":13,"last_vuln_date":96,"fetched_at":28},"vikbooking","VikBooking Hotel Booking Engine & PMS","1.8.7","e4jvikwp","https:\u002F\u002Fprofiles.wordpress.org\u002Fe4jvikwp\u002F","\u003Ch4>Vik Booking for WordPress\u003C\u002Fh4>\n\u003Cp>The famous Booking Engine and PMS online software for accommodations is now available also for WordPress as a native Plugin!\u003C\u002Fp>\n\u003Cp>If you are looking for a reliable reservation system for a Hotel, B&B, Villa, Apartments, Hostel or any similar accommodation, then you have found the right plugin. In fact, Vik Booking is a \u003Cstrong>PCI-DSS\u003C\u002Fstrong> and \u003Cstrong>OpenTravel\u003C\u002Fstrong> compliant hotel & vacation rental Booking Engine used by thousands of properties every day.\u003C\u002Fp>\n\u003Cp>This is the \u003Cstrong>free\u003C\u002Fstrong> version of the plugin, but you can upgrade to the \u003Cstrong>Pro\u003C\u002Fstrong> version at any time from your \u003Cem>wp-admin\u003C\u002Fem> section. Experience the power of a true and internal Booking Engine that competes with the best ones of the world!\u003C\u002Fp>\n\u003Cp>The \u003Cstrong>Pro\u003C\u002Fstrong> version is compatible with \u003Cem>Vik Channel Manager\u003C\u002Fem>, the first and only native Channel Manager for WordPress, listed as a Premier Partner of \u003Cstrong>Booking.com\u003C\u002Fstrong> since 2018 among the top 20 systems worldwide. \u003Cstrong>Full API\u003C\u002Fstrong> connections available with the most famous OTAs such as \u003Cstrong>Airbnb\u003C\u002Fstrong>, \u003Cstrong>Expedia\u003C\u002Fstrong> and \u003Cstrong>Google Hotel\u003C\u002Fstrong> for their new Free Booking Links! Beware of “fake” Channel Manager plugins that only offer unreliable iCal synchronizations with no private access to the OTA’s APIs.\u003C\u002Fp>\n\u003Cp>Vik Booking was born in 2010 for a different web-software (CMS) than WordPress, and that’s how it became famous. The same powerful framework is now (since 2018) at the service of all webmasters, designers and web-agencies that work with WordPress. It’s definitely the hotel reservation plugin that you, or your client, were looking for.\u003C\u002Fp>\n\u003Cp>Visit \u003Ca href=\"https:\u002F\u002Fvikwp.com\u002F\" rel=\"nofollow ugc\">VikWP.com\u003C\u002Fa> for more details. Interested in our full solution comprehensive of the Channel Manager? Visit also \u003Ca href=\"https:\u002F\u002Fe4jconnect.com\u002F\" rel=\"nofollow ugc\">E4jConnect\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch4>Some of the unique features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Custom Rate Plans (Refundable, Flexible, Non Refundable rates)\u003C\u002Fli>\n\u003Cli>Rooms, Room Types and Sub-Units management functions\u003C\u002Fli>\n\u003Cli>Availability Calendars and Occupancy Overview\u003C\u002Fli>\n\u003Cli>Bookings Management made right\u003C\u002Fli>\n\u003Cli>Feature-rich Back-end section\u003C\u002Fli>\n\u003Cli>Front-end customizable booking process\u003C\u002Fli>\n\u003Cli>8 different Views for the front-end (8 Types of Shortcode for your pages)\u003C\u002Fli>\n\u003Cli>Compliant with any Pricing Model: Occupancy, Nightly, LOS, OBP etc..\u003C\u002Fli>\n\u003Cli>Housekeeping features with Tableaux, festivities and room-day notes\u003C\u002Fli>\n\u003Cli>Permissions\u002FACL Management functions for the various WP Users Roles\u003C\u002Fli>\n\u003Cli>Multi-language support with built-in translation functions\u003C\u002Fli>\n\u003Cli>Channel Manager compatible. We are a certified Channel Manager provider (e4jConnect).\u003C\u002Fli>\n\u003Cli>Google Hotel Ads certified for Free Booking Links.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Some of Pro version features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Seasonal Rates and Rates Calendar with 1-click modification\u003C\u002Fli>\n\u003Cli>Booking Restrictions: Min, Max LOS, CTA\u002FCTD, Forced Arrival\u002FDeparture days\u003C\u002Fli>\n\u003Cli>Custom Payment Gateways (over 60 available on VikWP.com)\u003C\u002Fli>\n\u003Cli>SMS Gateways for automated notifications\u003C\u002Fli>\n\u003Cli>Custom Cron Jobs Scheduling for automated tasks (reminders, invoices)\u003C\u002Fli>\n\u003Cli>Customers Management functions, sales channels and commissions\u003C\u002Fli>\n\u003Cli>Graphs and Statistics\u003C\u002Fli>\n\u003Cli>Custom Options, Extra Services, Extra Fees\u003C\u002Fli>\n\u003Cli>Add, Remove or Switch rooms from existing bookings\u003C\u002Fli>\n\u003Cli>PMS Reports with extendable framework (built-in services for various countries)\u003C\u002Fli>\n\u003Cli>Electronic invoices extendable framework compliant with Italy (Agenzia delle Entrate) and Greece (myDATA ΑΑΔΕ).\u003C\u002Fli>\n\u003Cli>Registration functions: check-in, check-out, no-show\u003C\u002Fli>\n\u003Cli>Our award winning solution of Booking Engine + PMS and Channel Manager is all you need on your WordPress website.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Interested in, curious about the Pro version?\u003C\u002Fh4>\n\u003Cp>You should take a look with your own eyes at the demo website to see what you can do with Vik Booking. Do not stop at the front-end though, make sure to visit the wp-admin section too.\u003C\u002Fp>\n\u003Col>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fvikwp.com\u002Fdemo\u002Fvikbooking\" rel=\"nofollow ugc\">Front-end Demo Website\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fvikwp.com\u002Fdemo\u002Fvikbooking\u002Fwp-admin\" rel=\"nofollow ugc\">Admin Demo Website\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Fol>\n","Famous Booking Engine, PMS and Hotel Reservations plugin for property managers. The best solution for accommodations to drive more direct bookings.",9000,235000,96,60,"2026-02-11T00:13:00.000Z","4.7","7.4.0",[19,90,22,67,91],"channel-manager","reservations","https:\u002F\u002Fvikwp.com\u002Fplugin\u002Fvikbooking","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fvikbooking.1.8.7.zip",82,17,"2025-11-07 00:00:00",{"slug":98,"name":99,"version":100,"author":101,"author_profile":102,"description":103,"short_description":104,"active_installs":105,"downloaded":106,"rating":107,"num_ratings":26,"last_updated":108,"tested_up_to":15,"requires_at_least":109,"requires_php":110,"tags":111,"homepage":116,"download_link":117,"security_score":107,"vuln_count":13,"unpatched_count":13,"last_vuln_date":35,"fetched_at":28},"sirvoy-booking-engine","Sirvoy Booking Engine","5.1","john@sirvoy","https:\u002F\u002Fprofiles.wordpress.org\u002Fjohnsirvoy\u002F","\u003Cp>With this plugin you can easily add the Sirvoy booking engine to your WordPress website and accept commission free online bookings.\u003Cbr \u002F>\nThe bookings will be registered in your Sirvoy account, which you can sign up for on \u003Ca href=\"https:\u002F\u002Fsirvoy.com\" rel=\"nofollow ugc\">https:\u002F\u002Fsirvoy.com\u003C\u002Fa>. Sirvoy is an online booking\u003Cbr \u002F>\nsystem for hotels, B&Bs, guest houses, inns and other accommodations. Besides allowing you to receive direct bookings and payments\u003Cbr \u002F>\nthrough your website, Sirvoy can also help you to connect and receive bookings from channels, manage and edit your bookings,\u003Cbr \u002F>\ncommunicate with your clients etc.\u003C\u002Fp>\n\u003Ch3>Booking engine features\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Receive direct commission free bookings\u003C\u002Fli>\n\u003Cli>Customisable design\u003C\u002Fli>\n\u003Cli>Adjust rates and restrict availability\u003C\u002Fli>\n\u003Cli>Available in 28 different languages\u003C\u002Fli>\n\u003Cli>Receive online payments\u003C\u002Fli>\n\u003Cli>Connect to leading channels\u003C\u002Fli>\n\u003C\u002Ful>\n","Sirvoy booking engine - Non-Commission Direct Bookings from Your Website. Sirvoy can also help you to receive bookings from channels, and much more.",1000,10733,100,"2025-10-14T10:35:00.000Z","5.0","7.2",[112,19,113,114,115],"accommodation-booking","booking-system","hotel-booking-system","sirvoy","https:\u002F\u002Fsirvoy.com\u002Ftopic\u002Fbooking-engine\u002Finstalling-on-your-website\u002Finstalling-the-booking-engine-on-wordpress\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsirvoy-booking-engine.5.1.zip",{"slug":119,"name":120,"version":121,"author":122,"author_profile":123,"description":124,"short_description":125,"active_installs":126,"downloaded":127,"rating":13,"num_ratings":13,"last_updated":128,"tested_up_to":15,"requires_at_least":129,"requires_php":23,"tags":130,"homepage":134,"download_link":135,"security_score":107,"vuln_count":13,"unpatched_count":13,"last_vuln_date":35,"fetched_at":28},"oscar-hotel-booking-engine","Redforts Hotel Booking Engine","4.10","Redforts Software","https:\u002F\u002Fprofiles.wordpress.org\u002Fredforts\u002F","\u003Ch4>Easy and fully integrated\u003C\u002Fh4>\n\u003Cp>The Redforts Hotel Booking Engine plugin is a complete 3-step booking engine that seamlessly integrates with your WordPress website. So, start today and receive commission-free direct bookings and have all information managed from one place.\u003C\u002Fp>\n\u003Cp>As it is fully integrated with the all-in-one Redforts Hotel Software solution, there is no need to create a database and set availabilities and prices in the plugin. All that information is drawn from the Redforts system. So, just sit back and relax and let Redforts handle things for you.\u003C\u002Fp>\n\u003Cp>This plugin is part of the all-in-one Redforts Hotel Software solution: a property management system (PMS) with a fully-integrated booking engine, an OTA channel manager connected to over 170 channels and other modules, such as automatic revenue management, rate shopper, ID scanner, lock integration and more.\u003C\u002Fp>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Fully integrated with Redforts Hotel Software PMS.\u003C\u002Fli>\n\u003Cli>Reads up-to-date availability, prices and restrictions from the PMS.\u003C\u002Fli>\n\u003Cli>Adapts to your WordPress template.\u003C\u002Fli>\n\u003Cli>Quick and easy setup.\u003C\u002Fli>\n\u003Cli>Sends customised confirmation emails.\u003C\u002Fli>\n\u003Cli>Available in 9 languages.\u003C\u002Fli>\n\u003C\u002Ful>\n","This plugin integrates with Redforts Hotel Software, the all-in-one solution for hotels, hostels, apartments, villas, campings, and more.",300,12075,"2026-02-05T09:43:00.000Z","6.0",[131,19,90,132,133],"availability-calendar","hotel-software","reservation-system","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Foscar-hotel-booking-engine\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Foscar-hotel-booking-engine.4.10.zip",{"slug":137,"name":138,"version":139,"author":140,"author_profile":141,"description":142,"short_description":143,"active_installs":107,"downloaded":144,"rating":145,"num_ratings":146,"last_updated":147,"tested_up_to":148,"requires_at_least":87,"requires_php":17,"tags":149,"homepage":150,"download_link":151,"security_score":152,"vuln_count":26,"unpatched_count":26,"last_vuln_date":153,"fetched_at":28},"cultbooking-booking-engine","CultBooking Hotel Booking Engine","2.1","CultBooking","https:\u002F\u002Fprofiles.wordpress.org\u002Fcultbooking\u002F","\u003Cp>CultBooking Engine for WordPress is a powerful and easy-to-use plugin that allows you to manage your bookings and channels from your WordPress site. Whether you run a hotel, a vacation rental, a B&B, or any other accommodation type, CultBooking Engine can help you increase your direct bookings and revenue.\u003C\u002Fp>\n\u003Cp>With CultBooking Engine, you can create a customized booking button that matches your website’s design and style. You can also integrate with popular channel managers like Booking.com, Expedia, Airbnb, and more to sync your availability and rates across multiple platforms. You can access your admin dashboard from any device and manage your reservations, guests, payments, and reports with just a few clicks.\u003C\u002Fp>\n\u003Cp>CultBooking Engine is trusted by thousands of property owners around the world who use it to simplify their operations and grow their businesses. Here is an example of a website that uses CultBooking Engine technology:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fbergmann-boardinghouse.de\u002F\" rel=\"nofollow ugc\">Bergmann Boardinghouse is a modern and comfortable apartment hotel in Osnabrück, Germany.\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>CultBooking is PCI Compliant, 100% secure to use for hotel owners and guests. The Hotel Booking Engine is used by hundreds of properties every day. CultBooking has top performing conversion rate and is also made for: developers, marketing and web-agencies, designers, website admins, webmasters and anyone in the hospitality industry. It is the reservations software plugin that you, or your client, have been searching for.\u003C\u002Fp>\n\u003Cp>Visit \u003Ca href=\"https:\u002F\u002Fwww.cultbooking.com\u002Fen\u002F\" rel=\"nofollow ugc\">https:\u002F\u002Fwww.cultbooking.com\u002Fen\u002F\u003C\u002Fa> for more details.\u003Cbr \u002F>\nVisit \u003Ca href=\"https:\u002F\u002Fwww.cultbooking.com\u002Fen\u002Fcultbooking-plugin-documentation\u002F\" rel=\"nofollow ugc\">Plugin Documentation\u003C\u002Fa> for more plugin parameters.\u003C\u002Fp>\n\u003Cp>Link to apply for a Demo account: \u003Ca href=\"https:\u002F\u002Fadmin.cultbooking.com\u002Fregister\" rel=\"nofollow ugc\">https:\u002F\u002Fadmin.cultbooking.com\u002Fregister\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>Hotel booking engine features:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Unlimited properties management (unlimited rooms in a hotel, beds in a hostel)\u003C\u002Fli>\n\u003Cli>One property management (one apartment, villa, room, etc.)\u003C\u002Fli>\n\u003Cli>Customizable front-end (logo, brand colors, pictures, booking form, etc.)\u003C\u002Fli>\n\u003Cli>Custom rate plans (Non Refundable, Flexible, Last-minute rates)\u003C\u002Fli>\n\u003Cli>Various pricing models: Per Occupancy, Per Day, By LOS etc..\u003C\u002Fli>\n\u003Cli>Multi-language \u003C\u002Fli>\n\u003Cli>Smart calendar (showing prices, MinLOS, available days and much more)\u003C\u002Fli>\n\u003Cli>Extra services (guests can optionally add cleaning, parking or other extra service)\u003C\u002Fli>\n\u003Cli>Min and max stay periods\u003C\u002Fli>\n\u003Cli>Discount coupons and promo codes\u003C\u002Fli>\n\u003Cli>Children per room test2\u003C\u002Fli>\n\u003Cli>Payment gateway, accept automatic payments to your bank account via PayPal, Visa, MasterCard, American Express, Klarna and much more. \u003C\u002Fli>\n\u003Cli>Channel Manager connections. CultBooking is a certified Channel Manager provider\u003Cbr \u002F>\nLink to open an account: \u003Ca href=\"https:\u002F\u002Fadmin.cultbooking.com\u002Fregister\" rel=\"nofollow ugc\">https:\u002F\u002Fadmin.cultbooking.com\u002Fregister\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n","CultBooking Engine for WordPress is a powerful and easy-to-use plugin that allows you to manage your bookings and channels from your WordPress site.",6170,92,11,"2024-08-23T23:17:00.000Z","6.4.8",[66,19,67],"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fcultbooking-booking-engine\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcultbooking-booking-engine.2.1.zip",71,"2024-11-28 00:00:00",{"attackSurface":155,"codeSignals":227,"taintFlows":355,"riskAssessment":382,"analyzedAt":392},{"hooks":156,"ajaxHandlers":218,"restRoutes":219,"shortcodes":220,"cronEvents":226,"entryPointCount":26,"unprotectedCount":13},[157,163,167,171,173,177,180,182,186,190,193,197,200,204,207,211,213,216],{"type":158,"name":159,"callback":160,"file":161,"line":162},"action","admin_menu","addSettingsPage","includes\\admin\\GlobalSettings.php",15,{"type":158,"name":164,"callback":165,"file":161,"line":166},"admin_init","registerOptions",16,{"type":158,"name":159,"callback":168,"file":169,"line":170},"registerPageOnAdminMenu","includes\\admin\\Promotions.php",29,{"type":158,"name":164,"callback":165,"file":169,"line":172},30,{"type":158,"name":174,"callback":175,"file":169,"line":176},"wp_enqueue_scripts","enqueueAssets",31,{"type":158,"name":159,"callback":168,"file":178,"line":179},"includes\\admin\\Reservations.php",20,{"type":158,"name":164,"callback":165,"file":178,"line":181},21,{"type":158,"name":159,"callback":183,"file":184,"line":185},"addWelcomePage","includes\\admin\\WelcomePage.php",9,{"type":158,"name":164,"callback":187,"file":188,"line":189},"slope_init","slope-widgets.php",63,{"type":158,"name":159,"callback":191,"file":188,"line":192},"slope_add_page",64,{"type":158,"name":194,"callback":195,"file":188,"line":196},"admin_enqueue_scripts","slope_color_picker",65,{"type":158,"name":194,"callback":198,"file":188,"line":199},"slope_load_admin",66,{"type":158,"name":201,"callback":202,"file":188,"line":203},"init","slope_load_js_modules",67,{"type":158,"name":174,"callback":205,"file":188,"line":206},"slope_load_widgets",68,{"type":158,"name":208,"callback":209,"file":188,"line":210},"plugins_loaded","slope_load_textdomain",69,{"type":158,"name":201,"callback":212,"file":188,"line":152},"slope_load_reservations_block",{"type":158,"name":208,"callback":214,"file":188,"line":215},"closure",84,{"type":158,"name":217,"callback":214,"file":188,"line":145},"activated_plugin",[],[],[221],{"tag":222,"callback":223,"file":224,"line":225},"slope-promotions","slope_promotions","slope-promotions-legacy.php",10,[],{"dangerousFunctions":228,"sqlUsage":229,"outputEscaping":231,"fileOperations":26,"externalRequests":26,"nonceChecks":26,"capabilityChecks":13,"bundledLibraries":354},[],{"prepared":13,"raw":13,"locations":230},[],{"escaped":232,"rawEcho":189,"locations":233},313,[234,237,239,241,243,245,247,249,251,253,255,257,259,261,263,265,266,268,270,272,274,277,280,282,284,286,289,291,292,294,296,298,300,302,304,306,307,308,310,312,314,316,317,319,321,323,324,326,327,328,330,331,332,334,336,338,340,342,344,346,348,350,352],{"file":178,"line":235,"context":236},287,"raw output",{"file":178,"line":238,"context":236},289,{"file":178,"line":240,"context":236},291,{"file":178,"line":242,"context":236},299,{"file":178,"line":244,"context":236},301,{"file":178,"line":246,"context":236},310,{"file":178,"line":248,"context":236},315,{"file":178,"line":250,"context":236},319,{"file":178,"line":252,"context":236},321,{"file":178,"line":254,"context":236},325,{"file":178,"line":256,"context":236},331,{"file":178,"line":258,"context":236},340,{"file":178,"line":260,"context":236},342,{"file":178,"line":262,"context":236},349,{"file":178,"line":264,"context":236},350,{"file":178,"line":264,"context":236},{"file":178,"line":267,"context":236},360,{"file":178,"line":269,"context":236},361,{"file":178,"line":271,"context":236},369,{"file":178,"line":273,"context":236},370,{"file":275,"line":276,"context":236},"includes\\pages\\global-settings\\partials\\form.php",49,{"file":278,"line":279,"context":236},"includes\\pages\\promotions\\partials\\promotionsList.ajax.php",144,{"file":278,"line":281,"context":236},172,{"file":278,"line":283,"context":236},175,{"file":278,"line":285,"context":236},178,{"file":287,"line":288,"context":236},"includes\\pages\\reservations\\partials\\form.php",24,{"file":287,"line":290,"context":236},27,{"file":287,"line":172,"context":236},{"file":287,"line":293,"context":236},32,{"file":287,"line":295,"context":236},35,{"file":287,"line":297,"context":236},37,{"file":287,"line":299,"context":236},40,{"file":287,"line":301,"context":236},42,{"file":287,"line":303,"context":236},45,{"file":287,"line":305,"context":236},59,{"file":287,"line":206,"context":236},{"file":287,"line":60,"context":236},{"file":287,"line":309,"context":236},79,{"file":287,"line":311,"context":236},93,{"file":287,"line":313,"context":236},95,{"file":287,"line":315,"context":236},98,{"file":287,"line":107,"context":236},{"file":287,"line":318,"context":236},103,{"file":287,"line":320,"context":236},105,{"file":224,"line":322,"context":236},26,{"file":224,"line":176,"context":236},{"file":224,"line":325,"context":236},33,{"file":224,"line":295,"context":236},{"file":224,"line":303,"context":236},{"file":224,"line":329,"context":236},54,{"file":224,"line":206,"context":236},{"file":224,"line":309,"context":236},{"file":224,"line":333,"context":236},88,{"file":224,"line":335,"context":236},97,{"file":224,"line":337,"context":236},108,{"file":224,"line":339,"context":236},118,{"file":224,"line":341,"context":236},136,{"file":224,"line":343,"context":236},155,{"file":224,"line":345,"context":236},169,{"file":224,"line":347,"context":236},179,{"file":224,"line":349,"context":236},196,{"file":224,"line":351,"context":236},210,{"file":224,"line":353,"context":236},231,[],[356,374],{"entryPoint":357,"graph":358,"unsanitizedCount":13,"severity":373},"fetchPromotions (includes\\admin\\Promotions.php:84)",{"nodes":359,"edges":370},[360,364],{"id":361,"type":362,"label":363,"file":169,"line":84},"n0","source","$_POST",{"id":365,"type":366,"label":367,"file":169,"line":368,"wp_function":369},"n1","sink","wp_remote_get() [SSRF]",116,"wp_remote_get",[371],{"from":361,"to":365,"sanitized":372},true,"low",{"entryPoint":375,"graph":376,"unsanitizedCount":13,"severity":373},"\u003CPromotions> (includes\\admin\\Promotions.php:0)",{"nodes":377,"edges":380},[378,379],{"id":361,"type":362,"label":363,"file":169,"line":84},{"id":365,"type":366,"label":367,"file":169,"line":368,"wp_function":369},[381],{"from":361,"to":365,"sanitized":372},{"summary":383,"deductions":384},"The slope-widgets plugin v4.3.4 exhibits a generally good security posture, with no critical or high-severity vulnerabilities identified in its code analysis or taint flows. The plugin effectively utilizes prepared statements for SQL queries and generally implements proper output escaping, with 83% of outputs being well-handled. It also includes a nonce check, which is a positive security measure.  However, the absence of capability checks on any of its entry points is a significant concern, as this leaves potential for unauthorized actions if any of the entry points were to be exploited. \n\nThe vulnerability history, while showing only one medium-severity CVE, is still noteworthy. The fact that this vulnerability was a Cross-site Scripting (XSS) issue, and occurred relatively recently, suggests a potential ongoing struggle with input sanitization or output encoding in certain contexts.  While the current version may have patched this specific issue, the pattern is a warning sign. The plugin has strengths in its use of prepared statements and decent output escaping, but weaknesses in its lack of capability checks and a history of XSS vulnerabilities indicate that vigilance is still required.",[385,387,389],{"reason":386,"points":225},"No capability checks on entry points",{"reason":388,"points":225},"Medium severity XSS vulnerability history",{"reason":390,"points":391},"83% output escaping (17% unescaped)",5,"2026-03-16T19:38:59.898Z",{"wat":394,"direct":412},{"assetPaths":395,"generatorPatterns":403,"scriptPaths":404,"versionParams":405},[396,397,398,399,400,401,402],"\u002Fwp-content\u002Fplugins\u002Fslope-widgets\u002Fcss\u002Fslope-admin.css","\u002Fwp-content\u002Fplugins\u002Fslope-widgets\u002Fcss\u002Fslope-widgets.css","\u002Fwp-content\u002Fplugins\u002Fslope-widgets\u002Fjs\u002Fslope-admin.js","\u002Fwp-content\u002Fplugins\u002Fslope-widgets\u002Fjs\u002Fslope-colorpicker.js","\u002Fwp-content\u002Fplugins\u002Fslope-widgets\u002Fjs\u002Fslope-modules.js","\u002Fwp-content\u002Fplugins\u002Fslope-widgets\u002Fjs\u002Fslope-reservations-block.js","\u002Fwp-content\u002Fplugins\u002Fslope-widgets\u002Fjs\u002Fslope-widgets.js",[],[400,399,398,402,401],[406,407,408,409,410,411],"slope-widgets\u002Fcss\u002Fslope-widgets.css?ver=","slope-widgets\u002Fjs\u002Fslope-widgets.js?ver=","slope-widgets\u002Fjs\u002Fslope-modules.js?ver=","slope-widgets\u002Fjs\u002Fslope-colorpicker.js?ver=","slope-widgets\u002Fjs\u002Fslope-admin.js?ver=","slope-widgets\u002Fjs\u002Fslope-reservations-block.js?ver=",{"cssClasses":413,"htmlComments":415,"htmlAttributes":435,"restEndpoints":438,"jsGlobals":440,"shortcodeOutput":442},[414],"slope-widget-booking-bar",[416,417,418,419,420,421,422,423,424,425,426,427,428,429,430,431,432,433,434],"\u003C!-- TODO: At the moment this is used only for the new promotions. Legacy promotions have hardcoded values inside -->","\u003C!-- `slope-widgets.js`. We should refactor this to use the same constant in the future. -->","\u003C!-- Promotions are cached to reduce API request volume and improve performance. Cache expiration time is a balance -->","\u003C!-- between maintaining data freshness while preventing to many requests. We may need to tweak the value once we have -->","\u003C!-- more data on actual requests. -->","\u003C!-- This is the path to the plugin directory. It is used to load the plugin's assets and files. -->","\u003C!-- NOTE: The order of instantiations is important to render the item of the admin menu in the right order. As we are -->","\u003C!-- using a mixed approach (class and functions) we need to instantiate the new class before the menu is created by -->","\u003C!-- `slope_add_page`. -->","\u003C!-- NOTE: The order of instantiations is important (see comment above). We want new Promotions class after the old -->","\u003C!-- menu is created by `slope_add_page`. -->","\u003C!-- When the plugin is activated, we store the current version of the database schema. -->","\u003C!-- Redirect to the welcome page after plugin activation -->","\u003C!-- Setting of the domain of the translations -->","\u003C!-- Adds the entries to the lateral menu -->","\u003C!-- Add the settings link on the plugin listing page. -->","\u003C!-- include plugin promotions functionalities -->","\u003C!-- TODO: This is going to be removed in a future release -->","\u003C!-- Include promotion list partials -->",[436,437],"data-current-date","data-initial-date",[439],"\u002Fwp-json\u002Fslope-widgets\u002Fv1\u002Fpromotions",[441],"slpWidgetOptions",[443,444,445],"[slope_booking_bar]","[slope_promotions]","[slope_packages]"]