[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fPMl0tF-qShDTN3r3bRAwrZAhNC_SLktW1gYtul0AZno":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":24,"download_link":25,"security_score":26,"vuln_count":27,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30,"vulnerabilities":31,"developer":88,"crawl_stats":37,"alternatives":96,"analysis":205,"fingerprints":882},"subscribe-to-comments-reloaded","Subscribe To Comments Reloaded","240119","WPKube","https:\u002F\u002Fprofiles.wordpress.org\u002Fwpkube\u002F","\u003Cp>Subscribe to Comments Reloaded is a robust plugin that enables commenters to sign up for e-mail notification of subsequent entries. The plugin includes a full-featured subscription manager that your commenters can use to unsubscribe to certain posts or suspend all notifications. It solves most of the issues that affect Mark Jaquith’s version, using the latest WordPress features and functionality. Plus, allows administrators to enable a double opt-in mechanism, requiring users to confirm their subscription clicking on a link they will receive via email or even One Click Unsubscribe.\u003C\u002Fp>\n\u003Ch3>Requirements\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>WordPress 4.0 or higher\u003C\u002Fli>\n\u003Cli>PHP 5.6 or higher\u003C\u002Fli>\n\u003Cli>MySQL 5.x or higher\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Main Features\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Easily manage and search among your subscriptions\u003C\u002Fli>\n\u003Cli>Imports Mark Jaquith’s Subscribe To Comments (and its clones) data\u003C\u002Fli>\n\u003Cli>Messages are fully customizable, no poEdit required (and you can use HTML!) with a Rich Text Editor – WYSIWYG\u003C\u002Fli>\n\u003Cli>Disable subscriptions for specific posts\u003C\u002Fli>\n\u003Cli>One Click Unsubscribe\u003C\u002Fli>\n\u003Cli>Get and Download your System information for better support.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Language Localization\u003C\u002Fh3>\n\u003Cp>If you would like to help out translating the plugin to your language you can do so through the \u003Ca href=\"https:\u002F\u002Ftranslate.wordpress.org\u002Fprojects\u002Fwp-plugins\u002Fsubscribe-to-comments-reloaded\u002F\" rel=\"nofollow ugc\">official WordPress plugin translation system\u003C\u002Fa>\u003C\u002Fp>\n","Subscribe to Comments Reloaded allows commenters to sign up for e-mail notifications of subsequent replies. Don't miss any comment.",10000,966338,90,169,"2024-01-19T20:16:00.000Z","6.4.8","4.0","5.6",[20,21,22,23,4],"comments","email","subscribe","subscribe-to-comments","","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsubscribe-to-comments-reloaded.240119.zip",80,4,0,"2024-04-05 00:00:00","2026-03-15T15:16:48.613Z",[32,47,63,77],{"id":33,"url_slug":34,"title":35,"description":36,"plugin_slug":4,"theme_slug":37,"affected_versions":38,"patched_in_version":6,"severity":39,"cvss_score":40,"cvss_vector":41,"vuln_type":42,"published_date":29,"updated_date":43,"references":44,"days_to_patch":46},"CVE-2024-31249","subscribe-to-comments-reloaded-unauthenticated-sensitive-information-exposure","Subscribe To Comments Reloaded \u003C= 220725 - Unauthenticated Sensitive Information Exposure","The Subscribe To Comments Reloaded plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 220725 via log files. This makes it possible for unauthenticated attackers to extract sensitive data from log files.",null,"\u003C=220725","medium",5.3,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:N\u002FUI:N\u002FS:U\u002FC:L\u002FI:N\u002FA:N","Exposure of Sensitive Information to an Unauthorized Actor","2024-04-11 16:29:54",[45],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002Fc64956c3-b6f5-419e-82f3-3c9e90e1d677?source=api-prod",7,{"id":48,"url_slug":49,"title":50,"description":51,"plugin_slug":4,"theme_slug":37,"affected_versions":52,"patched_in_version":53,"severity":54,"cvss_score":55,"cvss_vector":56,"vuln_type":57,"published_date":58,"updated_date":59,"references":60,"days_to_patch":62},"CVE-2022-29414","subscribe-to-comments-reloaded-cross-site-request-forgery","Subscribe To Comments Reloaded \u003C= 211130 - Cross-Site Request Forgery","Multiple (13x) Cross-Site Request Forgery (CSRF) vulnerabilities in WPKube's Subscribe To Comments Reloaded plugin \u003C= 211130 on WordPress allows attackers to clean up Log archive, download system info file, plugin system settings, plugin options settings, generate a new key, reset all options, change notifications settings, management page settings, comment form settings, manage subscriptions > mass update settings, manage subscriptions > add a new subscription, update subscription, delete Subscription.","\u003C=211130","220502","high",8.8,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:N\u002FUI:R\u002FS:U\u002FC:H\u002FI:H\u002FA:H","Cross-Site Request Forgery (CSRF)","2022-04-29 12:07:00","2024-01-22 19:56:02",[61],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002F5be2c2e7-f982-410d-a5dc-f3ef976dff02?source=api-prod",633,{"id":64,"url_slug":65,"title":66,"description":67,"plugin_slug":4,"theme_slug":37,"affected_versions":68,"patched_in_version":69,"severity":39,"cvss_score":70,"cvss_vector":71,"vuln_type":72,"published_date":73,"updated_date":59,"references":74,"days_to_patch":76},"WF-ce03e98d-7c29-405f-81bc-4a1114d9889d-subscribe-to-comments-reloaded","subscribe-to-comments-reloaded-reflected-cross-site-scripting","Subscribe To Comments Reloaded \u003C 150820 - Reflected Cross-Site Scripting","The Subscribe To Comments Reloaded plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘srp’ parameter in versions up to, and including, 150611 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.","\u003C150820","150820",6.1,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:N\u002FUI:R\u002FS:C\u002FC:L\u002FI:L\u002FA:N","Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","2015-08-20 00:00:00",[75],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002Fce03e98d-7c29-405f-81bc-4a1114d9889d?source=api-prod",3078,{"id":78,"url_slug":79,"title":80,"description":81,"plugin_slug":4,"theme_slug":37,"affected_versions":82,"patched_in_version":83,"severity":54,"cvss_score":55,"cvss_vector":56,"vuln_type":72,"published_date":84,"updated_date":59,"references":85,"days_to_patch":87},"CVE-2014-2274","subscribe-to-comments-reloaded-cross-site-request-forgery-to-cross-site-scripting","Subscribe To Comments Reloaded \u003C= 140129 - Cross-Site Request Forgery to Cross-Site Scripting","Cross-site request forgery (CSRF) vulnerability in the Subscribe To Comments Reloaded plugin before 140219 for WordPress allows remote attackers to hijack the authentication of administrators for requests that conduct cross-site scripting (XSS) attacks via a request to the subscribe-to-comments-reloaded\u002Foptions\u002Findex.php page to wp-admin\u002Fadmin.php.","\u003C=140129","140219","2014-02-18 00:00:00",[86],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002F014dcf08-1968-4a3f-a772-2248e65dfb07?source=api-prod",3626,{"slug":89,"display_name":7,"profile_url":8,"plugin_count":90,"total_installs":91,"avg_security_score":92,"avg_patch_time_days":93,"trust_score":94,"computed_at":95},"wpkube",9,237910,81,725,66,"2026-04-04T14:21:21.531Z",[97,120,141,161,183],{"slug":98,"name":99,"version":100,"author":101,"author_profile":102,"description":103,"short_description":104,"active_installs":105,"downloaded":106,"rating":107,"num_ratings":108,"last_updated":109,"tested_up_to":110,"requires_at_least":111,"requires_php":112,"tags":113,"homepage":118,"download_link":119,"security_score":105,"vuln_count":28,"unpatched_count":28,"last_vuln_date":37,"fetched_at":30},"comments-subscribe-checkbox","Subscribe To Comments Checkbox","1.2.6","yydevelopment","https:\u002F\u002Fprofiles.wordpress.org\u002Fyydevelopment\u002F","\u003Cp>The subscribe to comments checkbox is a simple plugin that will allow you to add subscribe checkbox message below comments on your website and it will also send automatic email when the comment get replied.\u003C\u002Fp>\n\u003Cp>To add the comment email subscribe notification message all you need to do is to activate the plugin and it will be added automatically.\u003C\u002Fp>\n\u003Cp>The plugin also allow you to see under the “comments” section in wordpress admin panel all the user that subscribed to the comment reply in your blog posts & pages and you will be able to see who get mail and who didn’t.\u003C\u002Fp>\n\u003Ch4>Comments Subscribe Checkbox Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Comment subscribe notification message below the comment box\u003C\u002Fli>\n\u003Cli>Comments users management system\u003C\u002Fli>\n\u003Cli>Automatic email message that will be send to every user who subscribed to the comment\u003C\u002Fli>\n\u003Cli>The ability to unsubscribe from getting new comments on the site\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Available languages:\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>English\u003C\u002Fli>\n\u003Cli>Hebrew (only frontend code)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>About the author & license\u003C\u002Fh4>\n\u003Cp>This plugin was brought to you for free by \u003Ca href=\"https:\u002F\u002Fwww.yydevelopment.com\u002F\" rel=\"nofollow ugc\">YYDevelopment\u003C\u002Fa> under GPLv2 license.\u003C\u002Fp>\n\u003Cp>The plugin is 100% free and we intend to keep it that way in the future as well. You are free to use this plugin and all our other \u003Ca href=\"https:\u002F\u002Fwww.yydevelopment.com\u002Fyydevelopment-wordpress-plugins\u002F\" rel=\"nofollow ugc\">free wordpress plugins\u003C\u002Fa> for your projects, your client’s projects or for anything else you need.\u003C\u002Fp>\n\u003Cp>If this plugin was helpful for you please share it online and if you get a chance to give it a \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fcomments-subscribe-checkbox\u002F#reviews\" rel=\"ugc\">positive review\u003C\u002Fa> we will appreciate that.\u003C\u002Fp>\n\u003Cp>If have any problems or questions regarding our comments subscribe checkbox plugin \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fsupport\u002Fplugin\u002Fcomments-subscribe-checkbox\u002F\" rel=\"ugc\">submit a ticket\u003C\u002Fa> and we will be happy to help.\u003C\u002Fp>\n\u003Cp>By the way, we are based in Israel so we welcome you to visit our Hebrew site as well \u003Ca href=\"https:\u002F\u002Fwww.yydevelopment.co.il\u002F\" rel=\"nofollow ugc\">YYDevelopment Israel\u003C\u002Fa> if you are fellow Israeli.\u003C\u002Fp>\n\u003Ch4>Help support us with a coffee donation\u003C\u002Fh4>\n\u003Cp>Don’t you just hate it when you download a plugin and you find out that in order to use it you have to buy a pro version?\u003C\u002Fp>\n\u003Cp>Even bigger problem is when you use a plugin and then just out of the blue the developer decides to add a pro version and he either changes the way the plugin works or he converts some of the free functions to paid ones.\u003C\u002Fp>\n\u003Cp>We sure did hate that and a few years back we decided to start creating some of the plugins ourselves and we decided to share them all with the WordPress community \u003Cstrong>100% FREE\u003C\u002Fstrong>.\u003C\u002Fp>\n\u003Cp>Nowadays we have more than 15 plugins and you can download and use them all for free by \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fsearch\u002Fyydevelopment\u002F\" rel=\"ugc\">Clicking Here\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>If you liked this plugin and you want to help support our cause, \u003Ca href=\"https:\u002F\u002Fwww.yydevelopment.com\u002Fcoffee-break\u002F?plugin=comments-subscribe-checkbox\" rel=\"nofollow ugc\">buy us a coffee\u003C\u002Fa>. Studies show that coffee helps with creating WordPress plugins.\u003C\u002Fp>\n","This plugin will allow you to add subscribe notification checkbox to comments on your site.",100,4550,98,8,"2025-12-10T03:51:00.000Z","6.9.4","5.0","5.2.4",[114,115,116,117,23],"comments-checkbox","comments-subscribe","notification-subscription","subscribe-email","https:\u002F\u002Fwww.yydevelopment.com\u002Fyydevelopment-wordpress-plugins\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcomments-subscribe-checkbox.1.2.6.zip",{"slug":121,"name":122,"version":123,"author":124,"author_profile":125,"description":126,"short_description":127,"active_installs":128,"downloaded":129,"rating":107,"num_ratings":130,"last_updated":131,"tested_up_to":132,"requires_at_least":133,"requires_php":24,"tags":134,"homepage":138,"download_link":139,"security_score":140,"vuln_count":28,"unpatched_count":28,"last_vuln_date":37,"fetched_at":30},"comment-notifier-no-spammers","Lightweight Subscribe To Comments","1.5.8","isabel104","https:\u002F\u002Fprofiles.wordpress.org\u002Fisabel104\u002F","\u003Cp>This simply adds a subscription checkbox to your WordPress comments form to let your visitors subscribe to comments. They will then be notified by email when others comment on the same post. Works automatically upon activation, no settings required.\u003C\u002Fp>\n\u003Cp>This plugin focuses on a lightweight footprint and fastest pagespeed. No scripts are added. It simply just works upon activation. All settings are optional.\u003C\u002Fp>\n\u003Ch4>Easily Switch From Other Comments Subscription Plugins\u003C\u002Fh4>\n\u003Cp>Your subscribers will be imported for an easy switch from the following listed plugins. This is done automatically upon activation. Your comment subscribers will be migrated from these plugins:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>“Subscribe To Comments” plugin\u003C\u002Fli>\n\u003Cli>“Subscribe To Comments Reloaded” plugin\u003C\u002Fli>\n\u003Cli>“Comment Notifier” plugin\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>Optional Settings\u003C\u002Fstrong> include:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>You can unsubscribe people, if you wish.\u003C\u002Fli>\n\u003Cli>You can customize the notification emails.\u003C\u002Fli>\n\u003Cli>Set a custom “Unsubscribe Page” URL or unsubscribe message.\u003C\u002Fli>\n\u003Cli>Send a “Thank You” message for first time commentators.\u003C\u002Fli>\n\u003Cli>Send a copy of EACH notification to emails of your choice.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Special Condition For “Comment Notifier” Plugin Users:\u003C\u002Fh4>\n\u003Cp>\u003Cstrong>“Lightweight Subscribe to Comments” fixes a major problem with the “Comment Notifier” plugin:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>In particular, “Lightweight Subscribe to Comments” fixes \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fsupport\u002Ftopic\u002Fremove-subscribed-emails-whose-comments-are-trashedmarked-as-spam\" rel=\"ugc\">this problem\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>Lightweight Subscribe to Comments will not subscribe spammers while their comment is pending moderation. Only approved comments will be subscribed. Comments authors in moderation will only be subscribed if, and when, you approve their comment.\u003C\u002Fp>\n\u003Cp>The problem is that “Comment Notifier” plugin subscribes the email address as soon as the submitted comment goes into moderation. This means that spammers get added to the list of subscribers, immediately. Later, when you delete the spam comments, the spammer’s email remains in the list of subscribers.\u003C\u002Fp>\n\u003Cp>You could have hundreds, even thousands, of spammer email addresses in that list. Then, when you approve a legit comment, your server sends out emails to all of the post subscribers (including spammers), which can cause server overload, among other problems.\u003C\u002Fp>\n\u003Cp>This plugin fixes that by ignoring comments in moderation until they are approved by you. This means less load on your server.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Bonus Clean Up For “Comment Notifier” Plugin Users:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>This plugin removes spammers from your “Comment Notifier” list.\u003C\u002Fp>\n\u003Cp>Upon activation, this plugin will clean up your “comment_notifier” list (database table) by removing all spammer emails (emails of people that do NOT have an approved comment). (This only applies to you if you were using the “Comment Notifier” plugin.) It will also empty your Comments “Trash” and “Spam”. This clean up is only done once, upon plugin activation.\u003C\u002Fp>\n\u003Ch4>Languages\u003C\u002Fh4>\n\u003Cp>This plugin is translation-ready and includes a \u003Ccode>.pot\u003C\u002Fcode> file to make it easy to translate.\u003C\u002Fp>\n\u003Cp>See the \u003Ca href=\"https:\u002F\u002Fisabelcastillo.com\u002Ffree-plugins\u002Flightweight-subscribe-comments#jl-install\" rel=\"nofollow ugc\">Installation Guide\u003C\u002Fa>.\u003C\u002Fp>\n","Easiest and most lightweight plugin to let visitors subscribe to comments and get email notifications.",1000,17319,25,"2024-08-30T20:33:00.000Z","6.6.5","3.7",[135,20,136,137,23],"comment","follow-comments","notifications","https:\u002F\u002Fisabelcastillo.com\u002Ffree-plugins\u002Flightweight-subscribe-comments","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcomment-notifier-no-spammers.1.5.8.zip",92,{"slug":142,"name":143,"version":144,"author":145,"author_profile":146,"description":147,"short_description":148,"active_installs":149,"downloaded":150,"rating":105,"num_ratings":151,"last_updated":152,"tested_up_to":153,"requires_at_least":154,"requires_php":24,"tags":155,"homepage":158,"download_link":159,"security_score":160,"vuln_count":28,"unpatched_count":28,"last_vuln_date":37,"fetched_at":30},"mail-to-all-comment","Mail To All","1.5.3","Leniy","https:\u002F\u002Fprofiles.wordpress.org\u002Fleniy\u002F","\u003Cp>You can easily send subscription,notification,newsletter,etc by email to your comments users under one post.\u003Cbr \u002F>\n方便给某篇文章的评论用户发送订阅、通知等邮件。\u003C\u002Fp>\n\u003Cp>DEMO:\u003Ca href=\"http:\u002F\u002Fblog.leniy.org\u002Fmail-to-all.html\" title=\"示例页面\" rel=\"nofollow ugc\">Leniy\u003C\u002Fa>\u003Cbr \u002F>\n\u003Ca href=\"https:\u002F\u002Fwww.paypal.com\u002Fcgi-bin\u002Fwebscr?cmd=_donations&business=HAENMLDR2UMFJ&lc=US&item_name=Leniy%20Plugins%20Donation&item_number=plugin%2ddonate&currency_code=USD&bn=PP%2dDonationsBF%3abtn_donate_SM%2egif%3aNonHosted\" rel=\"nofollow ugc\">Donate link\u003C\u002Fa>\u003C\u002Fp>\n","You can easily send subscription,notification,newsletter,etc by email to your comments users under one post.",10,3765,1,"2016-08-17T12:48:00.000Z","4.6.30","3.0",[20,21,156,157,22],"newsletter","notification","http:\u002F\u002Fblog.leniy.org\u002Fmail-to-all.html","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fmail-to-all-comment.zip",85,{"slug":162,"name":163,"version":164,"author":165,"author_profile":166,"description":167,"short_description":168,"active_installs":169,"downloaded":170,"rating":171,"num_ratings":172,"last_updated":173,"tested_up_to":110,"requires_at_least":174,"requires_php":175,"tags":176,"homepage":179,"download_link":180,"security_score":140,"vuln_count":181,"unpatched_count":28,"last_vuln_date":182,"fetched_at":30},"mailchimp-for-wp","MC4WP: Mailchimp for WordPress","4.12.0","Danny van Kooten","https:\u002F\u002Fprofiles.wordpress.org\u002Fdvankooten\u002F","\u003Cp>\u003Cem>Allowing your visitors to subscribe to your newsletter should be easy. With this plugin, it finally is.\u003C\u002Fem>\u003C\u002Fp>\n\u003Cp>This plugins helps you grow your email list in Mailchimp. You can use it to create good looking and accessible sign-up forms or integrate with any other existing form on your WordPress site, like your contact, comment or checkout form.\u003C\u002Fp>\n\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002FfZCYPnFybqU?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\n\u003Ch4>Some (but not all) features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\n\u003Cp>Connect with your Mailchimp account in seconds.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Sign-up forms which are good looking, user-friendly and mobile optimized. You have complete control over the form fields and can build your forms using native HTML.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Seamless integration with the following plugins:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>WordPress Comment Form\u003C\u002Fli>\n\u003Cli>WordPress Registration Form\u003C\u002Fli>\n\u003Cli>Contact Form 7\u003C\u002Fli>\n\u003Cli>WooCommerce\u003C\u002Fli>\n\u003Cli>Gravity Forms\u003C\u002Fli>\n\u003Cli>Ninja Forms 3\u003C\u002Fli>\n\u003Cli>WPForms\u003C\u002Fli>\n\u003Cli>BuddyPress\u003C\u002Fli>\n\u003Cli>MemberPress\u003C\u002Fli>\n\u003Cli>Events Manager\u003C\u002Fli>\n\u003Cli>Easy Digital Downloads\u003C\u002Fli>\n\u003Cli>Give\u003C\u002Fli>\n\u003Cli>UltimateMember\u003C\u002Fli>\n\u003Cli>HTML Forms\u003C\u002Fli>\n\u003Cli>AffiliateWP\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Is the plugin you want to integrate with not listed above? You can probably still use our \u003Ca href=\"https:\u002F\u002Fwww.mc4wp.com\u002Fkb\u002Fsubscribe-mailchimp-custom-html-form\u002F\" rel=\"nofollow ugc\">custom integration\u003C\u002Fa> feature. Alternatively, the plugin comes with a PHP API to programmatically add a new subscriber to Mailchimp.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.mc4wp.com\u002F\" rel=\"nofollow ugc\">Mailchimp for WordPress Premium\u003C\u002Fa>: Send your WooCommerce orders to Mailchimp so you can see exactly what each subscriber purchased and how much revenue your email campaigns are generating.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>A multitude of available add-on plugins and integrations:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.mc4wp.com\u002F\" rel=\"nofollow ugc\">Mailchimp for WordPress Premium\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fmailchimp-top-bar\u002F\" rel=\"ugc\">Mailchimp Top Bar\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fboxzilla\u002F\" rel=\"ugc\">Boxzilla Pop-ups\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Well documented through our \u003Ca href=\"https:\u002F\u002Fwww.mc4wp.com\u002Fkb\u002F\" rel=\"nofollow ugc\">knowledge base\u003C\u002Fa>.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Developer friendly. For some inspiration, check out our \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fibericode\u002Fmailchimp-for-wordpress\u002Ftree\u002Fmain\u002Fsample-code-snippets\" rel=\"nofollow ugc\">repository of example code snippets\u003C\u002Fa>.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Ready for PHP 8.5, but backwards-compatible all the way down to PHP 7.4.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>What is Mailchimp?\u003C\u002Fh4>\n\u003Cp>Mailchimp is a newsletter service that allows you to send out email campaigns to a list of email subscribers. It is free for lists with up to 500 email subscribers, which is why it is the newsletter-service of choice for thousands of small businesses across the globe.\u003C\u002Fp>\n\u003Cp>If you are not yet using Mailchimp, \u003Ca href=\"http:\u002F\u002Feepurl.com\u002FigOGeX\" rel=\"nofollow ugc\">creating an account is 100% free and only takes you about 30 seconds\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch4>Support\u003C\u002Fh4>\n\u003Cp>If you need some help in setting up the plugin, you have various options:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Search through our \u003Ca href=\"https:\u002F\u002Fwww.mc4wp.com\u002Fkb\u002F#utm_source=wp-plugin-repo&utm_medium=mailchimp-for-wp&utm_campaign=description\" rel=\"nofollow ugc\">knowledge base\u003C\u002Fa>.\u003C\u002Fli>\n\u003Cli>Open a topic in the \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fsupport\u002Fplugin\u002Fmailchimp-for-wp\" rel=\"ugc\">WordPress.org plugin support forums\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>If you’re a premium user, send an email to the email address listed inside the plugin.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Translations\u003C\u002Fh4>\n\u003Cp>You can \u003Ca href=\"https:\u002F\u002Ftranslate.wordpress.org\u002Fprojects\u002Fwp-plugins\u002Fmailchimp-for-wp\u002Fstable\u002F\" rel=\"nofollow ugc\">help translate this plugin into your language\u003C\u002Fa> using your WordPress.org account.\u003C\u002Fp>\n\u003Ch4>Development\u003C\u002Fh4>\n\u003Cp>This plugin is being developed on GitHub. If you want to collaborate, please look at \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fibericode\u002Fmailchimp-for-wordpress\" rel=\"nofollow ugc\">ibericode\u002Fmailchimp-for-wordpress\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch4>Customizing the plugin\u003C\u002Fh4>\n\u003Cp>The plugin provides various filter and action hooks that allow you to modify or extend the default behavior. We’re also maintaining a \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fibericode\u002Fmailchimp-for-wordpress\u002Ftree\u002Fmain\u002Fsample-code-snippets\" rel=\"nofollow ugc\">collection of sample code snippets\u003C\u002Fa>.\u003C\u002Fp>\n","The #1 Mailchimp plugin for WordPress. Allows you to add a multitude of newsletter sign-up methods to your site.",1000000,72637090,96,1492,"2026-03-09T08:01:00.000Z","4.6","7.4",[21,177,178,156,22],"form","mailchimp","https:\u002F\u002Fwww.mc4wp.com\u002F#utm_source=wp-plugin&utm_medium=mailchimp-for-wp&utm_campaign=plugins-page","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fmailchimp-for-wp.4.12.0.zip",11,"2026-03-10 13:11:15",{"slug":184,"name":185,"version":186,"author":187,"author_profile":188,"description":189,"short_description":190,"active_installs":191,"downloaded":192,"rating":13,"num_ratings":193,"last_updated":194,"tested_up_to":195,"requires_at_least":196,"requires_php":197,"tags":198,"homepage":201,"download_link":202,"security_score":13,"vuln_count":203,"unpatched_count":28,"last_vuln_date":204,"fetched_at":30},"creative-mail-by-constant-contact","Creative Mail – Easier WordPress & WooCommerce Email Marketing","1.6.9","Constant Contact","https:\u002F\u002Fprofiles.wordpress.org\u002Fconstantcontact\u002F","\u003Cp>Creative Mail was designed specifically for WordPress and WooCommerce.\u003C\u002Fp>\n\u003Cp>Our intelligent (and super fun) email editor simplifies email marketing campaign creation and pulls your WordPress blog posts, website images and WooCommerce products right into your email content. Leads from your WordPress website, ecommerce store and contact forms are automatically captured and routed into our included Contacts CRM and synced with your email marketing lists.\u003C\u002Fp>\n\u003Cp>It’s perfect for automatic blog post syndication, newsletters and announcements, event promotion, WooCommerce product specials, retargeting ecommerce shoppers, sending postcards, providing updates and more.\u003C\u002Fp>\n\u003Cp>Create awesome email marketing campaigns right from your WordPress Admin Dashboard that are all powered by the award-winning & rock-solid reliability of Newfold Digital.\u003C\u002Fp>\n\u003Ch3>CREATIVE MAIL IS:\u003C\u002Fh3>\n\u003Col>\n\u003Cli>Incredibly easy WordPress email marketing\u003C\u002Fli>\n\u003Cli>Deeply connected to your website & WooCommerce store\u003C\u002Fli>\n\u003Cli>Accessed from within your WP Admin Dashboard\u003C\u002Fli>\n\u003Cli>Automatically syncing your contacts and building your marketing lists\u003C\u002Fli>\n\u003Cli>Fun, which makes life way better\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch3>\u003Ca href=\"https:\u002F\u002Fwww.creativemail.com\u002Fplans\" rel=\"nofollow ugc\">VIEW OUR DETAILED FEATURES\u003C\u002Fa>\u003C\u002Fh3>\n\u003Ch3>\u003Ca href=\"https:\u002F\u002Fwww.creativemail.com\" rel=\"nofollow ugc\">WOOCOMMERCE & WORDPRESS INTEGRATION\u003C\u002Fa>:\u003C\u002Fh3>\n\u003Cp>Turn your WooCommerce store and your WordPress site into efficient marketing engines. All ecommerce contacts and form entries are all captured in our included CRM and synced automatically with Creative Mail.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Enhanced Ecommerce:\u003C\u002Fstrong> WooCommerce store customers and ecommerce interactions are all captured automatically within your email marketing list. Retarget and re-engage your customers. Sell more stuff.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Beautiful Transactional Emails:\u003C\u002Fstrong> Standard WooCommerce triggered emails can be replaced to match your branding and style. Build one, and then all your other WooCommerce emails managed by Creative will inherit the same branded look. Hey, style matters.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Jetpack Forms Integration:\u003C\u002Fstrong> Collect, sync, and manage opt-in subscribers directly from Jetpack forms into Creative Mail.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Build Better Branding:\u003C\u002Fstrong> Creative Mail includes our free LogoBuilder and image editing suite to enhance your brand.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Amazing Stock Images:\u003C\u002Fstrong> You get free access to the completely integrated photo library (in addition to your own WordPress media library) to make amazing email marketing campaigns with award-winning images.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Get Better Deliverability:\u003C\u002Fstrong> Other email marketing solutions require complex SMTP solutions, external gateways or have you sending from their less than stellar IPs. As a result, your emails can get bounced or never delivered. Creative Mail is an all-in-one solution that uses a rock solid infrastructure, for superior deliverability. Boom! ‘nuff said.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Live Support:\u003C\u002Fstrong> With our paid plans (Awesome & Ultimate) you get access to phone and chat support to help you get answers from real live, helpful humans. Imagine that!\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>\u003Ca href=\"https:\u002F\u002Fwww.creativemail.com\" rel=\"nofollow ugc\">OPT-IN  EMAIL FORMS\u003C\u002Fa>:\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>Jetpack Newsletter Form:\u003C\u002Fstrong> Jetpack has a JMML (join my mailing list) Newsletter Signup form. When activated, contacts who sign up for your Newsletter through the Jetpack form are brought right into your Newsletter email marketing list. Easy-peasy.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Other WordPress Website Forms:\u003C\u002Fstrong> Creative Mail detects the current website forms used on your site, and automatically adds contacts to your email marketing lists. Automagically awesome!\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Creative Mail Form:\u003C\u002Fstrong> If you are not using a form on your site, you can easily add your Creative Mail Gutenberg form to start collecting email addresses of your site visitors\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>\u003Ca href=\"https:\u002F\u002Fwww.creativemail.com\" rel=\"nofollow ugc\">EMAIL AUTOMATIONS\u003C\u002Fa>:\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>Scheduled Sends:\u003C\u002Fstrong> Schedule the time and date of outgoing email marketing campaigns based on your business or organization’s preferences.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Single-Step Triggered Emails:\u003C\u002Fstrong> Replace your non-branded WooCommerce order notification triggered emails with on-brand Creative Mail emails for deeper customer engagement.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Abandoned Cart:\u003C\u002Fstrong> With Creative Mail and a WooCommerce store you can send emails to customers who abandon their WooCommerce shopping cart. They’ll get an email that reminds them of the items they were considering before they left.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Multi-Step Marketing Journeys:\u003C\u002Fstrong> Develop sophisticated CLM (that’s marketing speak for – customer lifecycle marketing) campaigns by leveraging our “if this, then that” campaign automation engine that responds to a customer’s actions, birthdays or purchases. Welcome your customers with email automation.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>\u003Ca href=\"https:\u002F\u002Fwww.creativemail.com\" rel=\"nofollow ugc\">ANALYTICS & INSIGHTS\u003C\u002Fa>:\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>Realtime Email Marketing Statistics:\u003C\u002Fstrong> Bounces, opens, clicks, forwards, complaints, unsubscribes and more are easily tracked and managed. Be a control freak, it’s OK.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Marketing Campaign Mapview:\u003C\u002Fstrong> With our mapview you can see who’s opening your  emails on what devices on an awesome, interactive visual map.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>\u003Ca href=\"https:\u002F\u002Fwww.creativemail.com\" rel=\"nofollow ugc\">CONTACTS CRM\u003C\u002Fa>:\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>Contact Lists:\u003C\u002Fstrong> Within the Creative Mail Contacts CRM you can quickly and easily manage all your Contacts, Subscribers and Unsubscribes.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Contact Activity:\u003C\u002Fstrong> Drill into the purchases and behaviors of your contacts.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>List Sources:\u003C\u002Fstrong> You’ll know where your contacts come from whether it’s a manual entry, your Jetpack forms, WooCommerce Store, or another defined source.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Custom Labels:\u003C\u002Fstrong> Further refine your marketing by adding custom labels to subscribers or customers (ex. Truck Buyers, Concert Attendee, Dog Owners, etc.).\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>\u003Ca href=\"https:\u002F\u002Fwww.creativemail.com\" rel=\"nofollow ugc\">IMPORT & EXPORT\u003C\u002Fa>:\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>Contacts Sync & Import:\u003C\u002Fstrong> No need anymore for complex integrations between your WordPress site and your email marketing provider. With Creative Mail it all simply works with WordPress out of the box. We do the heavy lifting to sync and import your Jetpack, WordPress, WooCommerce and most used Contact form plugins contacts automatically.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Import & Export Via CSV:\u003C\u002Fstrong> Import bulk email marketing lists (limits may apply), add subscribers one by one, or export your contacts into a CSV file.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>\u003Ca href=\"https:\u002F\u002Fwww.creativemail.com\" rel=\"nofollow ugc\">CAMPAIGNS\u003C\u002Fa>:\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>AI Emails:\u003C\u002Fstrong> Forget templates, let our A.I. build your email marketing campaigns for you. Pull in WordPress posts or WooCommerce products for sale, and you’re good to go. Let our robots do your bidding!\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Email Campaign Creation:\u003C\u002Fstrong> Build your email marketing campaigns in seconds from your WordPress admin dashboard.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Awesome Deliverability:\u003C\u002Fstrong> All email marketing campaigns are sent and delivered by the award-winning power of Newfold Digital technology. We got you.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Automated Email Marketing:\u003C\u002Fstrong> Send multistep email campaigns automatically, with triggers you define, whether that’s based on time, a customer birthday or behavioral actions. Create a flow to welcome your customers and send a special discount and reminder on their birthday.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>\u003Ca href=\"https:\u002F\u002Fwww.creativemail.com\" rel=\"nofollow ugc\">EMAIL LIST MANAGEMENT\u003C\u002Fa>:\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>Contact List Growth:\u003C\u002Fstrong> Creative Mail collects leads from Jetpack forms or the top WordPress lead capture forms and adds them directly to your email lists.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Automate Emails:\u003C\u002Fstrong> With our “Welcome” email trigger you can send a Creative Mail welcome email series to new subscribers and blog readers.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Auto List Updater:\u003C\u002Fstrong> Creative Mail automatically updates your contact lists for unsubscribes.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>ADD ONS\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Cstrong>Social Campaigns:\u003C\u002Fstrong> Connect your social media accounts with your Creative Mail account to share your newsletters with your followers on social.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Marketing Calendar:\u003C\u002Fstrong> With your socials connected we give you an overview of all the newsletters and posts that you’ve sent and scheduled. An easy overview to engage with your audience.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Booking:\u003C\u002Fstrong> Set up Bookings for your business with the Bookings tool. Give clients and customers an easy, quick way to set up appointments with you.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>LogoBuilder:\u003C\u002Fstrong> Create an amazing logo for your business or social with LogoBuilder and add it to your email campaigns.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>TERMS OF SERVICE & PRIVACY NOTICE\u003C\u002Fh3>\n\u003Cp>On behalf of our lawyers (seriously, they’re nice people), please feel free to review our:\u003C\u002Fp>\n\u003Cp>Creative Mail \u003Ca href=\"https:\u002F\u002Fwww.bluehost.com\u002Fterms\u002Fuser-agreement\" rel=\"nofollow ugc\">Terms of Service\u003C\u002Fa>\u003Cbr \u002F>\nCreative Mail \u003Ca href=\"https:\u002F\u002Fnewfold.com\u002Fprivacy-center\" rel=\"nofollow ugc\">Privacy Notice\u003C\u002Fa>\u003C\u002Fp>\n","Creative Mail was designed specifically for WordPress and WooCommerce. Our intelligent (and super fun) email editor simplifies email marketing campaig &hellip;",300000,21790763,391,"2024-05-06T20:38:00.000Z","6.5.8","4.9","7.3",[199,21,200,156,22],"contact-form","marketing","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fcreative-mail-by-constant-contact\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcreative-mail-by-constant-contact.1.6.9.zip",3,"2022-10-28 00:00:00",{"attackSurface":206,"codeSignals":358,"taintFlows":562,"riskAssessment":862,"analyzedAt":881},{"hooks":207,"ajaxHandlers":336,"restRoutes":337,"shortcodes":338,"cronEvents":347,"entryPointCount":357,"unprotectedCount":28},[208,214,219,224,228,234,238,241,246,250,254,257,261,265,269,274,277,281,285,289,293,297,301,305,308,312,315,318,322,326,329,333],{"type":209,"name":210,"callback":211,"file":212,"line":213},"action","plugins_loaded","register_js_subs_translation","classes\\stcr_i18n.php",22,{"type":209,"name":215,"callback":216,"file":217,"line":218},"admin_init","migrate_post_type_support","utils\\stcr_upgrade.php",714,{"type":209,"name":220,"callback":221,"file":222,"line":223},"admin_enqueue_scripts","register_admin_scripts","utils\\stcr_utils.php",613,{"type":209,"name":225,"callback":226,"file":222,"line":227},"wp_enqueue_scripts","register_plugin_scripts",636,{"type":209,"name":229,"callback":230,"priority":231,"file":232,"line":233},"comment_form","subscribe_reloaded_show",5,"wp_subscribe_reloaded.php",69,{"type":235,"name":236,"callback":230,"priority":231,"file":232,"line":237},"filter","comment_form_submit_field",71,{"type":209,"name":239,"callback":230,"priority":231,"file":232,"line":240},"comment_form_must_log_in_after",75,{"type":209,"name":242,"callback":243,"priority":244,"file":232,"line":245},"comment_post","new_comment_posted",12,116,{"type":209,"name":247,"callback":248,"priority":149,"file":232,"line":249},"_cron_subscribe_reloaded_purge","subscribe_reloaded_purge",119,{"type":209,"name":251,"callback":252,"priority":149,"file":232,"line":253},"_cron_log_file_purge","log_file_purge",120,{"type":209,"name":210,"callback":255,"file":232,"line":256},"subscribe_reloaded_load_plugin_textdomain",123,{"type":235,"name":258,"callback":259,"priority":149,"file":232,"line":260},"the_posts","subscribe_reloaded_manage",150,{"type":209,"name":262,"callback":263,"file":232,"line":264},"wp_head","add_custom_header_meta_real_page",153,{"type":235,"name":266,"callback":267,"priority":149,"file":232,"line":268},"comment_text","comment_content_prepend",157,{"type":209,"name":270,"callback":271,"priority":272,"file":232,"line":273},"wp_footer","move_form_with_js",20,160,{"type":209,"name":275,"callback":276,"priority":149,"file":232,"line":14},"wpmu_new_blog","new_blog",{"type":209,"name":278,"callback":279,"priority":149,"file":232,"line":280},"delete_post","delete_subscriptions",172,{"type":209,"name":282,"callback":283,"file":232,"line":284},"deleted_comment","comment_deleted",175,{"type":209,"name":286,"callback":287,"file":232,"line":288},"wp_set_comment_status","comment_status_changed",176,{"type":235,"name":290,"callback":291,"file":232,"line":292},"manage_edit-comments_columns","add_column_header",179,{"type":209,"name":294,"callback":295,"file":232,"line":296},"manage_comments_custom_column","add_comment_column",180,{"type":209,"name":298,"callback":299,"file":232,"line":300},"admin_menu","add_config_menu",200,{"type":209,"name":302,"callback":303,"file":232,"line":304},"admin_print_styles-edit-comments.php","add_post_comments_stylesheet",201,{"type":209,"name":306,"callback":303,"file":232,"line":307},"admin_print_styles-edit.php",202,{"type":209,"name":309,"callback":310,"priority":105,"file":232,"line":311},"in_admin_header","display_admin_header",205,{"type":209,"name":215,"callback":313,"file":232,"line":314},"stcr_admin_init",208,{"type":209,"name":316,"callback":316,"file":232,"line":317},"admin_notices",211,{"type":235,"name":319,"callback":320,"priority":149,"file":232,"line":321},"plugin_action_links","plugin_settings_link",217,{"type":209,"name":323,"callback":324,"file":232,"line":325},"publish_post","subscribe_post_author",221,{"type":209,"name":215,"callback":327,"file":232,"line":328},"sysinfo_download",231,{"type":235,"name":330,"callback":331,"file":232,"line":332},"duplicate_post_blacklist_filter","duplicate_post_exclude_subs",234,{"type":209,"name":262,"callback":334,"file":232,"line":335},"add_custom_header_meta",983,[],[],[339,343],{"tag":340,"callback":341,"file":232,"line":342},"stcr_management_page","management_page_sc",93,{"tag":344,"callback":345,"file":232,"line":346},"subscribe-url","subscribe_url_shortcode",214,[348,352,354],{"hook":349,"callback":349,"file":350,"line":351},"_cron_subscribe_reloaded_system_report_file_purge","options\\stcr_system.php",39,{"hook":251,"callback":251,"file":350,"line":353},143,{"hook":247,"callback":247,"file":355,"line":356},"utils\\stcr_manage.php",46,2,{"dangerousFunctions":359,"sqlUsage":360,"outputEscaping":424,"fileOperations":357,"externalRequests":231,"nonceChecks":553,"capabilityChecks":554,"bundledLibraries":555},[],{"prepared":361,"raw":362,"locations":363},51,29,[364,366,369,371,375,377,378,380,382,384,387,389,391,394,396,398,400,401,403,405,407,408,410,412,414,416,418,420,422],{"file":350,"line":272,"context":365},"$wpdb->get_results() with variable interpolation",{"file":350,"line":367,"context":368},312,"$wpdb->get_var() with variable interpolation",{"file":350,"line":370,"context":368},313,{"file":372,"line":373,"context":374},"uninstall.php",27,"$wpdb->query() with variable interpolation",{"file":372,"line":376,"context":374},28,{"file":372,"line":362,"context":374},{"file":372,"line":379,"context":365},50,{"file":355,"line":381,"context":374},335,{"file":217,"line":383,"context":365},103,{"file":217,"line":385,"context":386},134,"$wpdb->get_col() with variable interpolation",{"file":217,"line":388,"context":368},137,{"file":217,"line":390,"context":374},139,{"file":217,"line":392,"context":393},158,"$wpdb->get_row() with variable interpolation",{"file":217,"line":395,"context":368},161,{"file":217,"line":397,"context":374},164,{"file":217,"line":399,"context":368},196,{"file":217,"line":311,"context":365},{"file":217,"line":402,"context":368},261,{"file":217,"line":404,"context":368},266,{"file":217,"line":406,"context":368},332,{"file":217,"line":381,"context":368},{"file":217,"line":409,"context":374},338,{"file":217,"line":411,"context":365},763,{"file":217,"line":413,"context":365},764,{"file":222,"line":415,"context":374},442,{"file":222,"line":417,"context":374},443,{"file":232,"line":419,"context":374},1170,{"file":232,"line":421,"context":374},1175,{"file":232,"line":423,"context":374},1277,{"escaped":425,"rawEcho":426,"locations":427},569,68,[428,432,433,435,436,437,439,440,441,443,446,448,450,452,454,456,458,461,463,465,467,469,472,474,475,476,478,480,482,483,484,486,488,490,492,493,495,496,498,500,502,505,507,510,513,515,516,517,518,519,521,522,524,525,526,527,529,531,533,535,537,539,541,543,545,547,549,551],{"file":429,"line":430,"context":431},"options\\panel1-business-logic.php",60,"raw output",{"file":429,"line":107,"context":431},{"file":429,"line":434,"context":431},126,{"file":429,"line":273,"context":431},{"file":429,"line":397,"context":431},{"file":429,"line":438,"context":431},168,{"file":429,"line":280,"context":431},{"file":429,"line":288,"context":431},{"file":442,"line":264,"context":431},"options\\stcr_management_page.php",{"file":444,"line":445,"context":431},"options\\stcr_manage_subscriptions.php",206,{"file":444,"line":447,"context":431},219,{"file":444,"line":449,"context":431},257,{"file":444,"line":451,"context":431},272,{"file":444,"line":453,"context":431},292,{"file":444,"line":455,"context":431},303,{"file":444,"line":457,"context":431},308,{"file":459,"line":460,"context":431},"options\\stcr_options.php",485,{"file":459,"line":462,"context":431},730,{"file":459,"line":464,"context":431},731,{"file":350,"line":466,"context":431},291,{"file":350,"line":468,"context":431},813,{"file":470,"line":471,"context":431},"templates\\author.php",38,{"file":470,"line":473,"context":431},42,{"file":470,"line":356,"context":431},{"file":470,"line":379,"context":431},{"file":470,"line":477,"context":431},54,{"file":470,"line":479,"context":431},111,{"file":470,"line":481,"context":431},113,{"file":470,"line":292,"context":431},{"file":470,"line":317,"context":431},{"file":470,"line":485,"context":431},212,{"file":470,"line":487,"context":431},213,{"file":470,"line":489,"context":431},215,{"file":470,"line":491,"context":431},216,{"file":470,"line":321,"context":431},{"file":470,"line":494,"context":431},218,{"file":470,"line":447,"context":431},{"file":470,"line":497,"context":431},222,{"file":470,"line":499,"context":431},224,{"file":470,"line":501,"context":431},230,{"file":503,"line":504,"context":431},"templates\\key_expired.php",65,{"file":503,"line":506,"context":431},74,{"file":508,"line":509,"context":431},"templates\\one-click-unsubscribe.php",30,{"file":511,"line":512,"context":431},"templates\\request-management-link.php",247,{"file":514,"line":471,"context":431},"templates\\user.php",{"file":514,"line":473,"context":431},{"file":514,"line":356,"context":431},{"file":514,"line":379,"context":431},{"file":514,"line":477,"context":431},{"file":514,"line":520,"context":431},114,{"file":514,"line":245,"context":431},{"file":514,"line":523,"context":431},184,{"file":514,"line":491,"context":431},{"file":514,"line":447,"context":431},{"file":514,"line":325,"context":431},{"file":514,"line":528,"context":431},235,{"file":514,"line":530,"context":431},236,{"file":514,"line":532,"context":431},237,{"file":514,"line":534,"context":431},239,{"file":514,"line":536,"context":431},242,{"file":514,"line":538,"context":431},246,{"file":514,"line":540,"context":431},251,{"file":514,"line":542,"context":431},256,{"file":544,"line":90,"context":431},"templates\\wrong-request.php",{"file":355,"line":546,"context":431},656,{"file":355,"line":548,"context":431},756,{"file":355,"line":550,"context":431},758,{"file":355,"line":552,"context":431},772,15,24,[556,559],{"name":557,"version":37,"knownCves":558},"TinyMCE",[],{"name":560,"version":37,"knownCves":561},"DataTables",[],[563,596,612,622,632,650,664,676,685,693,711,734,760,770,782,793,803,816,826,842,852],{"entryPoint":564,"graph":565,"unsanitizedCount":151,"severity":595},"\u003Cpanel1-add-subscription> (options\\panel1-add-subscription.php:0)",{"nodes":566,"edges":589},[567,573,578,582,584,587],{"id":568,"type":569,"label":570,"file":571,"line":572},"n0","source","$_GET['srp']","options\\panel1-add-subscription.php",16,{"id":574,"type":575,"label":576,"file":571,"line":572,"wp_function":577},"n1","sink","echo() [XSS]","echo",{"id":579,"type":569,"label":580,"file":571,"line":581},"n2","$_GET",21,{"id":583,"type":575,"label":576,"file":571,"line":213,"wp_function":577},"n3",{"id":585,"type":569,"label":570,"file":571,"line":586},"n4",34,{"id":588,"type":575,"label":576,"file":571,"line":586,"wp_function":577},"n5",[590,592,594],{"from":568,"to":574,"sanitized":591},false,{"from":579,"to":583,"sanitized":593},true,{"from":585,"to":588,"sanitized":593},"low",{"entryPoint":597,"graph":598,"unsanitizedCount":151,"severity":595},"\u003Cpanel1-edit-subscription> (options\\panel1-edit-subscription.php:0)",{"nodes":599,"edges":608},[600,602,603,604,605,607],{"id":568,"type":569,"label":570,"file":601,"line":572},"options\\panel1-edit-subscription.php",{"id":574,"type":575,"label":576,"file":601,"line":572,"wp_function":577},{"id":579,"type":569,"label":580,"file":601,"line":581},{"id":583,"type":575,"label":576,"file":601,"line":213,"wp_function":577},{"id":585,"type":569,"label":570,"file":601,"line":606},41,{"id":588,"type":575,"label":576,"file":601,"line":606,"wp_function":577},[609,610,611],{"from":568,"to":574,"sanitized":591},{"from":579,"to":583,"sanitized":593},{"from":585,"to":588,"sanitized":593},{"entryPoint":613,"graph":614,"unsanitizedCount":28,"severity":595},"\u003Cstcr_manage_subscriptions> (options\\stcr_manage_subscriptions.php:0)",{"nodes":615,"edges":620},[616,618],{"id":568,"type":569,"label":617,"file":444,"line":392},"$_POST",{"id":574,"type":575,"label":576,"file":444,"line":619,"wp_function":577},167,[621],{"from":568,"to":574,"sanitized":593},{"entryPoint":623,"graph":624,"unsanitizedCount":28,"severity":595},"\u003Cauthor> (templates\\author.php:0)",{"nodes":625,"edges":630},[626,629],{"id":568,"type":569,"label":627,"file":470,"line":628},"$_SERVER",67,{"id":574,"type":575,"label":576,"file":470,"line":426,"wp_function":577},[631],{"from":568,"to":574,"sanitized":593},{"entryPoint":633,"graph":634,"unsanitizedCount":151,"severity":595},"\u003Crequest-management-link> (templates\\request-management-link.php:0)",{"nodes":635,"edges":646},[636,638,639,642,643,645],{"id":568,"type":569,"label":637,"file":511,"line":489},"$_SERVER (x2)",{"id":574,"type":575,"label":576,"file":511,"line":491,"wp_function":577},{"id":579,"type":569,"label":640,"file":511,"line":641},"$_COOKIE (x4)",203,{"id":583,"type":575,"label":576,"file":511,"line":325,"wp_function":577},{"id":585,"type":569,"label":580,"file":511,"line":644},87,{"id":588,"type":575,"label":576,"file":511,"line":512,"wp_function":577},[647,648,649],{"from":568,"to":574,"sanitized":593},{"from":579,"to":583,"sanitized":593},{"from":585,"to":588,"sanitized":591},{"entryPoint":651,"graph":652,"unsanitizedCount":28,"severity":595},"\u003Csubscribe> (templates\\subscribe.php:0)",{"nodes":653,"edges":661},[654,657,658,660],{"id":568,"type":569,"label":637,"file":655,"line":656},"templates\\subscribe.php",223,{"id":574,"type":575,"label":576,"file":655,"line":499,"wp_function":577},{"id":579,"type":569,"label":640,"file":655,"line":659},204,{"id":583,"type":575,"label":576,"file":655,"line":501,"wp_function":577},[662,663],{"from":568,"to":574,"sanitized":593},{"from":579,"to":583,"sanitized":593},{"entryPoint":665,"graph":666,"unsanitizedCount":151,"severity":595},"\u003Cuser> (templates\\user.php:0)",{"nodes":667,"edges":673},[668,670,671,672],{"id":568,"type":569,"label":627,"file":514,"line":669},70,{"id":574,"type":575,"label":576,"file":514,"line":237,"wp_function":577},{"id":579,"type":569,"label":580,"file":514,"line":553},{"id":583,"type":575,"label":576,"file":514,"line":540,"wp_function":577},[674,675],{"from":568,"to":574,"sanitized":593},{"from":579,"to":583,"sanitized":591},{"entryPoint":677,"graph":678,"unsanitizedCount":28,"severity":595},"sysinfo_download (utils\\stcr_manage.php:629)",{"nodes":679,"edges":683},[680,682],{"id":568,"type":569,"label":681,"file":355,"line":546},"$_POST['stcr_sysinfo']",{"id":574,"type":575,"label":576,"file":355,"line":546,"wp_function":577},[684],{"from":568,"to":574,"sanitized":593},{"entryPoint":686,"graph":687,"unsanitizedCount":28,"severity":595},"\u003Cstcr_manage> (utils\\stcr_manage.php:0)",{"nodes":688,"edges":691},[689,690],{"id":568,"type":569,"label":681,"file":355,"line":546},{"id":574,"type":575,"label":576,"file":355,"line":546,"wp_function":577},[692],{"from":568,"to":574,"sanitized":593},{"entryPoint":694,"graph":695,"unsanitizedCount":710,"severity":595},"stcr_update_menu_options (utils\\stcr_utils.php:805)",{"nodes":696,"edges":707},[697,700,704,706],{"id":568,"type":569,"label":698,"file":222,"line":699},"$_option (x10)",805,{"id":574,"type":575,"label":701,"file":222,"line":702,"wp_function":703},"update_option() [Settings Manipulation]",817,"update_option",{"id":579,"type":569,"label":705,"file":222,"line":699},"$_value (x9)",{"id":583,"type":575,"label":701,"file":222,"line":702,"wp_function":703},[708,709],{"from":568,"to":574,"sanitized":591},{"from":579,"to":583,"sanitized":591},19,{"entryPoint":712,"graph":713,"unsanitizedCount":357,"severity":54},"\u003Cpanel1-business-logic> (options\\panel1-business-logic.php:0)",{"nodes":714,"edges":729},[715,717,720,724,725,727],{"id":568,"type":569,"label":580,"file":429,"line":716},53,{"id":574,"type":718,"label":719,"file":429,"line":716},"transform","→ add_subscription()",{"id":579,"type":575,"label":721,"file":232,"line":722,"wp_function":723},"query() [SQLi]",1096,"query",{"id":583,"type":569,"label":580,"file":429,"line":171},{"id":585,"type":718,"label":726,"file":429,"line":171},"→ update_subscription_email()",{"id":588,"type":575,"label":721,"file":232,"line":728,"wp_function":723},1316,[730,731,732,733],{"from":568,"to":574,"sanitized":591},{"from":574,"to":579,"sanitized":591},{"from":583,"to":585,"sanitized":591},{"from":585,"to":588,"sanitized":591},{"entryPoint":735,"graph":736,"unsanitizedCount":357,"severity":54},"\u003Ckey_expired> (templates\\key_expired.php:0)",{"nodes":737,"edges":755},[738,740,742,745,746,748,750],{"id":568,"type":569,"label":627,"file":503,"line":739},76,{"id":574,"type":575,"label":576,"file":503,"line":741,"wp_function":577},78,{"id":579,"type":569,"label":743,"file":503,"line":744},"$_COOKIE",83,{"id":583,"type":575,"label":576,"file":503,"line":160,"wp_function":577},{"id":585,"type":569,"label":747,"file":503,"line":362},"$_POST (x2)",{"id":588,"type":718,"label":749,"file":503,"line":362},"→ get_subscriber_key()",{"id":751,"type":575,"label":752,"file":222,"line":753,"wp_function":754},"n6","get_row() [SQLi]",77,"get_row",[756,757,758,759],{"from":568,"to":574,"sanitized":593},{"from":579,"to":583,"sanitized":593},{"from":585,"to":588,"sanitized":591},{"from":588,"to":751,"sanitized":591},{"entryPoint":761,"graph":762,"unsanitizedCount":151,"severity":54},"remove_user_subscriber_table (utils\\stcr_utils.php:89)",{"nodes":763,"edges":768},[764,767],{"id":568,"type":569,"label":765,"file":222,"line":766},"$_email",89,{"id":574,"type":575,"label":721,"file":222,"line":140,"wp_function":723},[769],{"from":568,"to":574,"sanitized":591},{"entryPoint":771,"graph":772,"unsanitizedCount":151,"severity":54},"add_user_subscriber_table (utils\\stcr_utils.php:104)",{"nodes":773,"edges":780},[774,776],{"id":568,"type":569,"label":765,"file":222,"line":775},104,{"id":574,"type":575,"label":777,"file":222,"line":778,"wp_function":779},"get_var() [SQLi]",108,"get_var",[781],{"from":568,"to":574,"sanitized":591},{"entryPoint":783,"graph":784,"unsanitizedCount":151,"severity":54},"_get_comment_object (wp_subscribe_reloaded.php:369)",{"nodes":785,"edges":791},[786,789],{"id":568,"type":569,"label":787,"file":232,"line":788},"$_comment_ID",369,{"id":574,"type":575,"label":752,"file":232,"line":790,"wp_function":754},373,[792],{"from":568,"to":574,"sanitized":591},{"entryPoint":794,"graph":795,"unsanitizedCount":151,"severity":54},"comment_deleted (wp_subscribe_reloaded.php:689)",{"nodes":796,"edges":801},[797,799],{"id":568,"type":569,"label":787,"file":232,"line":798},689,{"id":574,"type":575,"label":777,"file":232,"line":800,"wp_function":779},702,[802],{"from":568,"to":574,"sanitized":591},{"entryPoint":804,"graph":805,"unsanitizedCount":151,"severity":54},"subscribe_reloaded_manage (wp_subscribe_reloaded.php:742)",{"nodes":806,"edges":813},[807,809,811],{"id":568,"type":569,"label":580,"file":232,"line":808},787,{"id":574,"type":718,"label":810,"file":232,"line":808},"→ get_subscriber_email_by_key()",{"id":579,"type":575,"label":752,"file":222,"line":812,"wp_function":754},144,[814,815],{"from":568,"to":574,"sanitized":591},{"from":574,"to":579,"sanitized":591},{"entryPoint":817,"graph":818,"unsanitizedCount":151,"severity":54},"add_subscription (wp_subscribe_reloaded.php:1067)",{"nodes":819,"edges":824},[820,823],{"id":568,"type":569,"label":821,"file":232,"line":822},"$_post_id",1067,{"id":574,"type":575,"label":721,"file":232,"line":722,"wp_function":723},[825],{"from":568,"to":574,"sanitized":591},{"entryPoint":827,"graph":828,"unsanitizedCount":357,"severity":54},"retrieve_user_subscriptions (wp_subscribe_reloaded.php:1192)",{"nodes":829,"edges":839},[830,832,836,837],{"id":568,"type":569,"label":821,"file":232,"line":831},1192,{"id":574,"type":575,"label":833,"file":232,"line":834,"wp_function":835},"get_results() [SQLi]",1208,"get_results",{"id":579,"type":569,"label":765,"file":232,"line":831},{"id":583,"type":575,"label":833,"file":232,"line":838,"wp_function":835},1221,[840,841],{"from":568,"to":574,"sanitized":591},{"from":579,"to":583,"sanitized":591},{"entryPoint":843,"graph":844,"unsanitizedCount":151,"severity":54},"update_subscription_email (wp_subscribe_reloaded.php:1290)",{"nodes":845,"edges":850},[846,849],{"id":568,"type":569,"label":847,"file":232,"line":848},"$_new_email",1290,{"id":574,"type":575,"label":721,"file":232,"line":728,"wp_function":723},[851],{"from":568,"to":574,"sanitized":591},{"entryPoint":853,"graph":854,"unsanitizedCount":151,"severity":54},"\u003Cwp_subscribe_reloaded> (wp_subscribe_reloaded.php:0)",{"nodes":855,"edges":859},[856,857,858],{"id":568,"type":569,"label":580,"file":232,"line":808},{"id":574,"type":718,"label":810,"file":232,"line":808},{"id":579,"type":575,"label":752,"file":222,"line":812,"wp_function":754},[860,861],{"from":568,"to":574,"sanitized":591},{"from":574,"to":579,"sanitized":591},{"summary":863,"deductions":864},"The subscribe-to-comments-reloaded plugin exhibits a generally good security posture in its latest version (v240119), with a commendable emphasis on prepared statements and output escaping. The absence of unprotected entry points, dangerous functions, and critically or highly-tainted flows is a strong positive. However, a significant number of flows with unsanitized paths (16 out of 21) is a notable concern that warrants further investigation. While these flows are not currently classified as critical or high severity, they represent potential avenues for future vulnerabilities if not properly handled.\n\nThe plugin's vulnerability history reveals a pattern of issues including exposure of sensitive information, CSRF, and XSS. While there are no currently unpatched vulnerabilities, the existence of past high and medium severity CVEs suggests that the codebase has had weaknesses in the past. The most recent vulnerability being only a month ago indicates an ongoing need for vigilance and prompt patching of any newly discovered issues.\n\nIn conclusion, subscribe-to-comments-reloaded v240119 appears to have addressed many common security pitfalls, demonstrating good development practices in its current state. The primary area for improvement lies in thoroughly sanitizing the identified unsanitized paths. The historical vulnerability data underscores the importance of continued security auditing and timely updates to maintain a robust security posture.",[865,867,869,871,873,875,877,879],{"reason":866,"points":244},"Multiple flows with unsanitized paths found",{"reason":868,"points":149},"Past high severity vulnerabilities present",{"reason":870,"points":108},"Past medium severity vulnerabilities present",{"reason":872,"points":231},"Significant percentage of SQL not prepared",{"reason":874,"points":203},"File operations present",{"reason":876,"points":203},"External HTTP requests present",{"reason":878,"points":203},"Bundled TinyMCE library",{"reason":880,"points":203},"Bundled DataTables library","2026-03-16T17:45:52.732Z",{"wat":883,"direct":892},{"assetPaths":884,"generatorPatterns":887,"scriptPaths":888,"versionParams":889},[885,886],"\u002Fwp-content\u002Fplugins\u002Fsubscribe-to-comments-reloaded\u002Fcss\u002Fstcr-admin-style.css","\u002Fwp-content\u002Fplugins\u002Fsubscribe-to-comments-reloaded\u002Fjs\u002Fstcr-admin-js.js",[],[886],[890,891],"subscribe-to-comments-reloaded\u002Fcss\u002Fstcr-admin-style.css?ver=","subscribe-to-comments-reloaded\u002Fjs\u002Fstcr-admin-js.js?ver=",{"cssClasses":893,"htmlComments":895,"htmlAttributes":896,"restEndpoints":898,"jsGlobals":899,"shortcodeOutput":900},[894],"stcr-dismiss-notice",[],[897],"data-nonce",[],[],[]]