[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fpu3CLS5cekxUqeRpMiN6wNG-PwKuaWKbYoYoclfdhAU":3,"$f8bk3Gz1eqmVhodxFYhYlUcy8pFMHP7RIOHEsprE8WKE":224,"$fpbwmoBhM35ibSbnQOrdgYap70oUtvmuxNkKPHSNlZ2Q":229},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":22,"download_link":23,"security_score":24,"vuln_count":13,"unpatched_count":13,"last_vuln_date":25,"fetched_at":26,"discovery_status":27,"vulnerabilities":28,"developer":29,"crawl_stats":25,"alternatives":35,"analysis":128,"fingerprints":201},"smartgolfscorecard","Smart Golf Scorecard for WordPress","1.1","Jerry S.","https:\u002F\u002Fprofiles.wordpress.org\u002Fmacans\u002F","\u003Cp>This plugin enables your site to displays top 100 rounds for a given golf course. This data comes from smartgolfscorecard.com\u003C\u002Fp>\n","This plugin enables you to showcase players scorecards (leaderboard) from smartgolfscorecard.com for your golf course.",10,2583,0,"2014-12-01T19:08:00.000Z","4.0.38","2.0.2","",[19,20,21],"golf","golf-course","golf-leaderboard","http:\u002F\u002Fsmartgolfscorecard.com\u002Fwordpress\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsmartgolfscorecard.1.1.zip",85,null,"2026-07-22T17:31:50.256Z","no_bundle",[],{"slug":30,"display_name":7,"profile_url":8,"plugin_count":31,"total_installs":11,"avg_security_score":24,"avg_patch_time_days":32,"trust_score":33,"computed_at":34},"macans",1,30,84,"2026-08-29T19:25:24.320Z",[36,53,72,91,110],{"slug":37,"name":38,"version":39,"author":40,"author_profile":41,"description":42,"short_description":43,"active_installs":11,"downloaded":44,"rating":13,"num_ratings":13,"last_updated":45,"tested_up_to":46,"requires_at_least":47,"requires_php":17,"tags":48,"homepage":50,"download_link":51,"security_score":24,"vuln_count":13,"unpatched_count":13,"last_vuln_date":25,"fetched_at":52},"disc-golf-metrix","Disc Golf Metrix WP","2.0.0","markosaviauk","https:\u002F\u002Fprofiles.wordpress.org\u002Fmarkosaviauk\u002F","\u003Cp>Embed \u003Ca href=\"https:\u002F\u002Fdiscgolfmetrix.com\" rel=\"nofollow ugc\">discgolfmetrix.com\u003C\u002Fa> content into wordpress using shortcodes \u003Ccode>[discgolfmetrix_results]\u003C\u002Fcode> and \u003Ccode>[discgolfmetrix_registration_list]\u003C\u002Fcode> providing a competition ID and optionally a preselected filter. Examples:\u003C\u002Fp>\n\u003Cpre>\u003Ccode>[discgolfmetrix_results competition_id=\"999999\"]\n[discgolfmetrix_results competition_id=\"999999\" players=\"Firstname Lastname, John Doe\"]\n[discgolfmetrix_results competition_id=\"999999\" class=\"MPO\"]\n[discgolfmetrix_registration_list competition_id=\"999999\"]\n\u003C\u002Fcode>\u003C\u002Fpre>\n","Embed discgolfmetrix.com content into wordpress",1419,"2017-10-04T12:14:00.000Z","4.8.28","4.6",[49],"discgolfmetrix","http:\u002F\u002Fdiscgolfmetrix.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fdisc-golf-metrix.zip","2026-04-16T10:56:18.058Z",{"slug":54,"name":55,"version":56,"author":57,"author_profile":58,"description":59,"short_description":60,"active_installs":11,"downloaded":61,"rating":13,"num_ratings":13,"last_updated":62,"tested_up_to":63,"requires_at_least":64,"requires_php":17,"tags":65,"homepage":70,"download_link":71,"security_score":24,"vuln_count":13,"unpatched_count":13,"last_vuln_date":25,"fetched_at":26},"golf-handicap-calculator","Golf Handicap Calculator","1.0.3","fozzyluke123","https:\u002F\u002Fprofiles.wordpress.org\u002Ffozzyluke123\u002F","\u003Cp>Works out the handicap for a user according to the UK CONGU regulations using a form generated with a shortcode ([ghc_form]). \u003Cbr \u002F>\nWill then update the handicap after the initial one is worked out every time the user enters a new card. \u003Cbr \u002F>\nThis is then displayed in a table of all the members registered on the site (again with a shortcode ([ghc_display_users])). \u003Cbr \u002F>\nAdmin can update the css from the settings panel and manually change a users handicap from their profile pages. \u003Cbr \u002F>\nYou can also display the current users handicap with the shortcode [ghc_user_details].\u003C\u002Fp>\n","Works out the handicap for a user according to the UK CONGU regulations using a form for a single user on a website",3435,"2014-12-02T15:05:00.000Z","4.0.0","3.0.1",[66,67,19,68,69],"calculator","card","handicap","score","http:\u002F\u002Fwww.inspired-plugins.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fgolf-handicap-calculator.zip",{"slug":73,"name":74,"version":75,"author":76,"author_profile":77,"description":78,"short_description":79,"active_installs":11,"downloaded":80,"rating":13,"num_ratings":13,"last_updated":81,"tested_up_to":82,"requires_at_least":83,"requires_php":84,"tags":85,"homepage":88,"download_link":89,"security_score":90,"vuln_count":13,"unpatched_count":13,"last_vuln_date":25,"fetched_at":26},"golf-handicap-slope","Golf Handicap & Slope","2.2.1","Gudjon Gudjonsson","https:\u002F\u002Fprofiles.wordpress.org\u002Fgudjon\u002F","\u003Cp>Golf Handicap & Slope is a WordPress plugin that allows golf clubs to offer a useful course handicap calculator and complete handicap tables on their websites.\u003C\u002Fp>\n\u003Cp>The plugin uses the official formula from the World Handicap System (WHS) to calculate course handicap:\u003Cbr \u002F>\nCourse Handicap = (Handicap Index × Slope Rating ÷ 113) + (Course Rating – Par)\u003C\u002Fp>\n\u003Ch4>Main Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Course Handicap Calculator\u003C\u002Fstrong> – Allows users to easily calculate their course handicap by selecting a tee and entering their handicap index.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Handicap Tables\u003C\u002Fstrong> – Displays complete tables with course handicaps for all handicap indexes for each tee.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Simple Admin Interface\u003C\u002Fstrong> – Add, edit, and organize tees with a user-friendly administration interface.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Customizable Design\u003C\u002Fstrong> – Customize colors and appearance to match your WordPress site.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Responsive Design\u003C\u002Fstrong> – Works perfectly on all devices, from desktop to mobile.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Simple Shortcodes\u003C\u002Fstrong> – Use simple shortcodes to display the calculator and tables anywhere on your website.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Multilingual Support\u003C\u002Fstrong> – The plugin is translated into English, Norwegian, and Icelandic, and can be translated into more languages.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Shortcodes\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Ccode>[golfhs_calculator]\u003C\u002Fcode> – Displays the course handicap calculator\u003C\u002Fli>\n\u003Cli>\u003Ccode>[golfhs_tables]\u003C\u002Fcode> – Displays tables with course handicap for all tees\u003C\u002Fli>\n\u003Cli>\u003Ccode>[golfhs_tables tees=\"1,2,3\"]\u003C\u002Fcode> – Displays tables for specific tees (specify IDs)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>More Information and Demo\u003C\u002Fh4>\n\u003Cp>Visit \u003Ca href=\"https:\u002F\u002Fslope.no\" rel=\"nofollow ugc\">slope.no\u003C\u002Fa> for more information and a live demo of the plugin. An English version is also available at \u003Ca href=\"https:\u002F\u002Fslope.no\u002Fen\" rel=\"nofollow ugc\">slope.no\u002Fen\u003C\u002Fa>.\u003C\u002Fp>\n","An advanced calculator for golfers that calculates playing handicap based on Slope Rating, Course Rating and Par. Perfect for golf clubs.",692,"2026-06-30T14:09:00.000Z","7.0.2","5.6","7.0",[66,19,68,86,87],"slope","whs","https:\u002F\u002Fslope.no","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fgolf-handicap-slope.2.2.1.zip",100,{"slug":92,"name":93,"version":94,"author":95,"author_profile":96,"description":97,"short_description":98,"active_installs":11,"downloaded":99,"rating":90,"num_ratings":31,"last_updated":100,"tested_up_to":101,"requires_at_least":64,"requires_php":102,"tags":103,"homepage":107,"download_link":108,"security_score":109,"vuln_count":13,"unpatched_count":13,"last_vuln_date":25,"fetched_at":26},"golf-scores","Golf Scores","1.2.1","TKServer","https:\u002F\u002Fprofiles.wordpress.org\u002Ftkserver\u002F","\u003Cp>GOLF SCORES for WordPress by Tony Korologos at TKServer.com, is a WordPress plugin\u002Fwidget which tracks a single WP member’s golf scores.  The application is great for tracking 9 or 18 hole golf rounds or frisbee golf rounds.  Golf Scores automatically calculates net scores, shows scoring history, and has a comment area for each round’s commentary.  The plugin includes full administrative back end featuring score entry, score editing and\u002For moderation.\u003Cbr \u002F>\n \u003Cbr \u002F>\nThe authorized user may punch in golf scores from the administrative area.\u003C\u002Fp>\n","Golf Scores for WordPress tracks a WP user's golf scores, dates, gross scores, net scores and comments.",3137,"2025-08-23T15:34:00.000Z","6.8.6","7.4",[19,104,92,105,106],"golf-score-tracker","scorecard","sports","http:\u002F\u002Fwww.tkserver.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fgolf-scores.1.2.1.zip",92,{"slug":111,"name":112,"version":113,"author":114,"author_profile":115,"description":116,"short_description":117,"active_installs":11,"downloaded":118,"rating":13,"num_ratings":13,"last_updated":119,"tested_up_to":82,"requires_at_least":120,"requires_php":121,"tags":122,"homepage":124,"download_link":125,"security_score":126,"vuln_count":31,"unpatched_count":13,"last_vuln_date":127,"fetched_at":26},"parone","ParOne Feeds","1.8.2","ParOne, Inc","https:\u002F\u002Fprofiles.wordpress.org\u002Fparone\u002F","\u003Cp>This plugin is a tool for distributing ParOne, Inc video feeds into WordPress installations. This plugin is a tool for distributing golf video supplied by ParOne, Inc into WordPress installations.  Users of this plugin have registered with ParOne, Inc to distribute content into their WordPress site.  More information about ParOne can be found \u003Ca href=\"https:\u002F\u002Fparone.com\" rel=\"nofollow ugc\">here\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch3>How it works\u003C\u002Fh3>\n\u003Cp>This plugin installs ParOne’s custom video player web components via CDN, and provides shortcodes for including those components in WordPress pages and posts.  The video player web components interact with ParOne as an external service.\u003C\u002Fp>\n\u003Cp>In addition, this plugin allows the WordPress administrator to configure auto-posting of video content into WordPress.\u003C\u002Fp>\n\u003Cp>The interaction with the ParOne video service consists of 3 types of interactions:\u003C\u002Fp>\n\u003Col>\n\u003Cli>Downloading the script which contains the video player web components\u003C\u002Fli>\n\u003Cli>Calling ParOne’s content API to request lists of eligible videos\u003C\u002Fli>\n\u003Cli>Calling ParOne’s tracking API to signal when a video starts to be played, and when the playhead hits 5, 15, and 30 seconds\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Cul>\n\u003Cli>ParOne collects no personally identifiable information. \u003C\u002Fli>\n\u003Cli>Tracking calls are used for registering views on WordPress sites.\u003C\u002Fli>\n\u003Cli>This plugin includes shortcodes which can be placed on any page.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Support\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Technical documentation can be found \u003Ca href=\"https:\u002F\u002Fdocs.parone.com\" rel=\"nofollow ugc\">here\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n","This plugin is a tool for distributing ParOne, Inc video feeds into WordPress installations. This plugin is a tool for distributing golf video supplie &hellip;",24898,"2026-07-13T01:04:00.000Z","5.1","7.2",[19,123],"video","https:\u002F\u002Fdocs.parone.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fparone.1.18.2.zip",99,"2024-11-08 00:00:00",{"attackSurface":129,"codeSignals":148,"taintFlows":159,"riskAssessment":187,"analyzedAt":200},{"hooks":130,"ajaxHandlers":141,"restRoutes":142,"shortcodes":143,"cronEvents":147,"entryPointCount":31,"unprotectedCount":13},[131,137],{"type":132,"name":133,"callback":134,"file":135,"line":136},"action","admin_head","sgs_wp_css","smartgolfscorecard.php",53,{"type":132,"name":138,"callback":139,"file":135,"line":140},"admin_init","sgs_wp_settings_api_init",169,[],[],[144],{"tag":4,"callback":145,"file":135,"line":146},"sgs_wp_tag_func",83,[],{"dangerousFunctions":149,"sqlUsage":150,"outputEscaping":152,"fileOperations":157,"externalRequests":13,"nonceChecks":13,"capabilityChecks":13,"bundledLibraries":158},[],{"prepared":13,"raw":13,"locations":151},[],{"escaped":13,"rawEcho":31,"locations":153},[154],{"file":135,"line":155,"context":156},192,"raw output",2,[],[160,179],{"entryPoint":161,"graph":162,"unsanitizedCount":31,"severity":178},"sgs_register (smartgolfscorecard.php:124)",{"nodes":163,"edges":175},[164,169],{"id":165,"type":166,"label":167,"file":135,"line":168},"n0","source","$_SERVER",129,{"id":170,"type":171,"label":172,"file":135,"line":173,"wp_function":174},"n1","sink","file_get_contents() [SSRF\u002FLFI]",133,"file_get_contents",[176],{"from":165,"to":170,"sanitized":177},false,"medium",{"entryPoint":180,"graph":181,"unsanitizedCount":31,"severity":178},"\u003Csmartgolfscorecard> (smartgolfscorecard.php:0)",{"nodes":182,"edges":185},[183,184],{"id":165,"type":166,"label":167,"file":135,"line":168},{"id":170,"type":171,"label":172,"file":135,"line":173,"wp_function":174},[186],{"from":165,"to":170,"sanitized":177},{"summary":188,"deductions":189},"The 'smartgolfscorecard' plugin version 1.1 presents a mixed security posture. On the positive side, it demonstrates good practices by not having any known vulnerabilities in its history, no dangerous functions, and all SQL queries utilizing prepared statements.  The attack surface is also relatively small, with only one shortcode and no unprotected entry points.\n\nHowever, there are significant concerns identified in the static analysis. The plugin performs file operations without clear context of their security implications. More critically, 100% of its outputs are not properly escaped, and 0% of its code has undergone capability checks, which is a major security oversight. The taint analysis reveals two flows with unsanitized paths, though they are not flagged as critical or high severity. These unescaped outputs and the lack of capability checks represent a substantial risk for potential Cross-Site Scripting (XSS) vulnerabilities and unauthorized actions, especially given the file operation capabilities.\n\nWhile the absence of historical vulnerabilities and dangerous functions is reassuring, the current static analysis findings suggest a plugin that has not been thoroughly secured against common web application vulnerabilities. The lack of proper output escaping and capability checks is a significant weakness that needs immediate attention to prevent potential exploitation.",[190,193,195,198],{"reason":191,"points":192},"Unescaped output detected",8,{"reason":194,"points":11},"No capability checks performed",{"reason":196,"points":197},"Taint flow with unsanitized path detected",5,{"reason":199,"points":197},"File operations without clear security context","2026-03-17T00:27:23.767Z",{"wat":202,"direct":207},{"assetPaths":203,"generatorPatterns":204,"scriptPaths":205,"versionParams":206},[],[],[],[],{"cssClasses":208,"htmlComments":210,"htmlAttributes":211,"restEndpoints":212,"jsGlobals":213,"shortcodeOutput":214},[209],"sgs-leaderboard",[],[],[],[],[215,216,217,218,219,220,221,221,221,222,223],"\u003Cp>No rounds available for course ","\u003Cp>If you would like to see your round on this list then make sure to have entered it in \u003Ca href=\"http:\u002F\u002Fsmartgolfscorecard.com\">SmartGolfScorecard.com\u003C\u002Fa> (registration is free).\u003C\u002Fp>","\u003Ch3>Top 100 Rounds\u003C\u002Fh3>","\u003Ctable class=\"sgs-leaderboard\">","\u003Ctr>\u003Cth>Position\u003C\u002Fth>\u003Cth>Strokes\u003C\u002Fth>\u003Cth>Golfer\u003C\u002Fth>\u003Cth>Date\u003C\u002Fth>\u003C\u002Ftr>","\u003Ctr>\u003Ctd>","\u003C\u002Ftd>\u003Ctd>","\u003C\u002Ftd>\u003C\u002Ftr>","\u003C\u002Ftable>",{"error":225,"url":226,"statusCode":227,"statusMessage":228,"message":228},true,"http:\u002F\u002Flocalhost\u002Fapi\u002Fplugins\u002Fsmartgolfscorecard\u002Fbundle",404,"no bundle for this plugin yet",{"slug":4,"current_version":6,"total_versions":157,"versions":230},[231,236],{"version":6,"download_url":23,"svn_tag_url":232,"released_at":25,"has_diff":177,"diff_files_changed":233,"diff_lines":25,"trac_diff_url":234,"vulnerabilities":235,"is_current":225},"https:\u002F\u002Fplugins.svn.wordpress.org\u002Fsmartgolfscorecard\u002Ftags\u002F1.1\u002F",[],"https:\u002F\u002Fplugins.trac.wordpress.org\u002Fchangeset?old_path=%2Fsmartgolfscorecard%2Ftags%2F1.0&new_path=%2Fsmartgolfscorecard%2Ftags%2F1.1",[],{"version":237,"download_url":238,"svn_tag_url":239,"released_at":25,"has_diff":177,"diff_files_changed":240,"diff_lines":25,"trac_diff_url":25,"vulnerabilities":241,"is_current":177},"1.0","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsmartgolfscorecard.1.0.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fsmartgolfscorecard\u002Ftags\u002F1.0\u002F",[],[]]