[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f6JKi666Os7RqTqeURAUds4jm-0JnFvaEM2chzZHnDoA":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":24,"download_link":25,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28,"vulnerabilities":29,"developer":30,"crawl_stats":27,"alternatives":35,"analysis":127,"fingerprints":165},"tectite-forms","Tectite Forms","1.3","russellr","https:\u002F\u002Fprofiles.wordpress.org\u002Frussellr\u002F","\u003Cp>Create a professional and secure web form quickly and easily without scripting, HTML or coding of any type, completely free.\u003C\u002Fp>\n\u003Cp>Our online form designer creates your form (or use a sample to get started) and you simply copy-and-paste\u003Cbr \u002F>\nyour unique form code to your WordPress blog or page.\u003C\u002Fp>\n\u003Cp>Simply install the Tectite Forms plugin into WordPress, create your account on our Hosted Forms service, and you’ll have\u003Cbr \u002F>\na working contact form (or other form) operating perfectly in minutes.\u003C\u002Fp>\n\u003Ch3>Learn More\u003C\u002Fh3>\n\u003Cp>Learn more at \u003Ca href=\"https:\u002F\u002Fwww.tectite.com\u002Fhostedforms.php\" rel=\"nofollow ugc\">Tectite Hosted Forms\u003C\u002Fa>.\u003C\u002Fp>\n","Install a secure anti-spam form.  Use our sample forms or easily design your own form.",20,5805,0,"2019-03-31T20:31:00.000Z","5.1.22","3.4","",[19,20,21,22,23],"anti-spam-form","contact-form","email","feedback","form","https:\u002F\u002Fwww.tectite.com\u002Fplugins","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Ftectite-forms.zip",85,null,"2026-03-15T15:16:48.613Z",[],{"slug":7,"display_name":7,"profile_url":8,"plugin_count":31,"total_installs":11,"avg_security_score":26,"avg_patch_time_days":32,"trust_score":33,"computed_at":34},1,30,84,"2026-04-04T04:59:51.710Z",[36,56,73,91,110],{"slug":37,"name":38,"version":39,"author":40,"author_profile":41,"description":42,"short_description":43,"active_installs":44,"downloaded":45,"rating":46,"num_ratings":47,"last_updated":48,"tested_up_to":49,"requires_at_least":50,"requires_php":51,"tags":52,"homepage":17,"download_link":54,"security_score":55,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"more-mails-for-cf7","More Mails for CF7","1.2.1","Roy Orbitson","https:\u002F\u002Fprofiles.wordpress.org\u002Flev0\u002F","\u003Cp>By default, Contact Form 7 has a limit of two distinct mail messages per form, though each can have multiple recipients. This plugin allows you to add as many as you need. It’s relatively simple, so does not include the automatic configuration error detection that the default mails have.\u003C\u002Fp>\n\u003Cp>If you only wish to send the same message to multiple recipients, you won’t need this plugin; instead use the \u003Cstrong>To\u003C\u002Fstrong> field, or add \u003Cem>Cc\u003C\u002Fem>\u002F\u003Cem>Bcc\u003C\u002Fem> headers in the \u003Cstrong>Additional Headers\u003C\u002Fstrong> field as per \u003Ca href=\"https:\u002F\u002Fcontactform7.com\u002Fadding-cc-bcc-and-other-mail-headers\u002F\" rel=\"nofollow ugc\">Contact Form 7’s documentation\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>Tested up to v6.1.2 of Contact Form 7.\u003C\u002Fp>\n","Extends the ubiquitous Contact Form 7 plugin to allow three or more messages.",500,5518,94,6,"2025-10-28T04:44:00.000Z","6.8.5","4.9.0","5.6.0",[53,20,21,22,23],"contact","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fmore-mails-for-cf7.1.2.1.zip",100,{"slug":57,"name":58,"version":59,"author":60,"author_profile":61,"description":62,"short_description":63,"active_installs":64,"downloaded":65,"rating":13,"num_ratings":13,"last_updated":66,"tested_up_to":15,"requires_at_least":67,"requires_php":68,"tags":69,"homepage":71,"download_link":72,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"cf7-countries","Contact Form 7 Countries","1.0.0","Max Law","https:\u002F\u002Fprofiles.wordpress.org\u002Fatelierlabo\u002F","\u003Cp>Country drop-down menu for Contact Form 7. Install the plugin and you will get “countries drop down” Form tag in CF7. The countries list is the same countries list used by WooCommerce.\u003C\u002Fp>\n","Country drop-down menu for Contact Form 7.",400,6718,"2019-02-24T15:45:00.000Z","3.0.1","5.6",[53,20,70,21,22],"contact-form-7","http:\u002F\u002Fcf7-countries","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcf7-countries.1.0.zip",{"slug":74,"name":75,"version":67,"author":76,"author_profile":77,"description":78,"short_description":79,"active_installs":64,"downloaded":80,"rating":55,"num_ratings":81,"last_updated":82,"tested_up_to":83,"requires_at_least":84,"requires_php":85,"tags":86,"homepage":88,"download_link":89,"security_score":55,"vuln_count":31,"unpatched_count":13,"last_vuln_date":90,"fetched_at":28},"contact-form-x","Contact Form X","Jeff Starr","https:\u002F\u002Fprofiles.wordpress.org\u002Fspecialk\u002F","\u003Cp>Displays a user-friendly contact form that your visitors will love.\u003C\u002Fp>\n\u003Cp>CFX: Contact form reinvented. Fast and friendly. Fresh and clean. Awesome for everyone 🙂\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Overview\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>Install, activate, and then display the form anywhere, using the widget, shortcode, or template tag. Here is an overview of Contact Form X:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Easy to use\u003C\u002Fli>\n\u003Cli>Simple and secure\u003C\u002Fli>\n\u003Cli>ADA and WCAG compliant\u003C\u002Fli>\n\u003Cli>Lightweight and super fast\u003C\u002Fli>\n\u003Cli>Provides multiple form styles\u003C\u002Fli>\n\u003Cli>Customize just about everything\u003C\u002Fli>\n\u003Cli>Display the contact form anywhere\u003C\u002Fli>\n\u003Cli>Add Checkbox, Radio, and Select fields\u003C\u002Fli>\n\u003Cli>Customize the order of all form fields\u003C\u002Fli>\n\u003Cli>Send email to multiple recipients\u003C\u002Fli>\n\u003Cli>Complete documentation via Help tab\u003C\u002Fli>\n\u003Cli>Excellent free plugin support 😎\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cblockquote>\n\u003Cp>“The famous spam filter SpamAssassin” scores CFX = zero spam!\u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Cp>For more details, check out the “Screenshots” section, below.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Form Fields\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>Easily choose which fields to display in the form. Each field may be set as required, optional, or disabled. Choose from these fields:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Name\u003C\u002Fli>\n\u003Cli>Website\u003C\u002Fli>\n\u003Cli>Email\u003C\u002Fli>\n\u003Cli>Subject\u003C\u002Fli>\n\u003Cli>Custom Field 1 (can be dropdown, checkbox, radio, text, or phone number)\u003C\u002Fli>\n\u003Cli>Custom Field 2 (can be dropdown, checkbox, radio, text, or phone number)\u003C\u002Fli>\n\u003Cli>Custom Field 3 (can be dropdown, checkbox, radio, text, or phone number)\u003C\u002Fli>\n\u003Cli>Challenge Question\u003C\u002Fli>\n\u003Cli>Message\u003C\u002Fli>\n\u003Cli>Google reCaptcha (v2 or v3 Invisible)\u003C\u002Fli>\n\u003Cli>Cloudflare Turnstile (Invisible Captcha)\u003C\u002Fli>\n\u003Cli>Carbon Copy\u003C\u002Fli>\n\u003Cli>Agree to Terms\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>You can change the order of these fields and customize their labels and placeholders, everything is super flexible.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>For a live demo\u003C\u002Fstrong> of Contact Form X, visit my \u003Ca href=\"https:\u002F\u002Fplugin-planet.com\u002Fsupport\u002F#contact\" rel=\"nofollow ugc\">support page\u003C\u002Fa> at Plugin Planet, and also my \u003Ca href=\"https:\u002F\u002Fperishablepress.com\u002Fcontact\u002F\" rel=\"nofollow ugc\">contact page\u003C\u002Fa> at Perishable Press. Feel free to send a test email to see how it works, I won’t mind 😉 Also check out CFX in the “Screenshots” section (below) for a better idea of how the default form is styled out of the box.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Geeky Stuff\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>Lots of goodness for the geeks among us:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Built with WordPress APIs\u003C\u002Fli>\n\u003Cli>Ajax-powered form submission\u003C\u002Fli>\n\u003Cli>Remembers all form data on error\u003C\u002Fli>\n\u003Cli>Cloudflare Turnstile (Invisible Captcha)\u003C\u002Fli>\n\u003Cli>Google reCaptcha (v2 or v3 Invisible)\u003C\u002Fli>\n\u003Cli>Drag\u002Fdrop ordering of all form fields\u003C\u002Fli>\n\u003Cli>View your email messages on the WP Dashboard\u003C\u002Fli>\n\u003Cli>Option to enable\u002Fdisable storing of email data in database\u003C\u002Fli>\n\u003Cli>Display form via widget, shortcode, or template tag\u003C\u002Fli>\n\u003Cli>Five CSS themes: Default, Classic, Micro, Synthetic, Dark\u003C\u002Fli>\n\u003Cli>Optionally disable all plugin styles and use your own CSS\u003C\u002Fli>\n\u003Cli>Optionally collect user data like IP, host, and referrer\u003C\u002Fli>\n\u003Cli>Works perfectly with or without Gutenberg Block Editor\u003C\u002Fli>\n\u003Cli>Focused on performance, security, and usability\u003C\u002Fli>\n\u003Cli>Include extra form and user info with each message\u003C\u002Fli>\n\u003Cli>Customize the form’s success and error messages\u003C\u002Fli>\n\u003Cli>Provides plenty of useful hooks for developers\u003C\u002Fli>\n\u003Cli>Targeted loading of CSS and JavaScript assets\u003C\u002Fli>\n\u003Cli>One-click remove email data from database\u003C\u002Fli>\n\u003Cli>One-click restore default options\u003C\u002Fli>\n\u003Cli>Translation ready\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Contact Form X is a fresh new, lighter alternative to the heavier contact forms out there. CFX is lightweight yet fully featured. As they say, “everything you want, nothing you don’t”.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Privacy\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>To help protect user privacy, Contact Form X provides the following features:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Agree to terms checkbox, customizable\u003C\u002Fli>\n\u003Cli>Choose which fields to include with the form\u003C\u002Fli>\n\u003Cli>Option to disable collection of user IP address and other data\u003C\u002Fli>\n\u003Cli>Note: this plugin uses cookies to enhance form functionality\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Basically, this plugin enables visitors to send a message via contact form. Any information the user enters into the form will be sent directly to the recipient(s) according to plugin settings. When enabled in the plugin settings, details about each sent message will be stored in the WordPress database. Visit the “Advanced” plugin settings to control and\u002For disable this and other data-collection features.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Note:\u003C\u002Fstrong> CFX provides an option to enable Google reCaptcha, which is provided by Google as a third-party service. For details on privacy and more, please refer to official documentation for \u003Ca href=\"https:\u002F\u002Fdevelopers.google.com\u002Frecaptcha\u002F\" rel=\"nofollow ugc\">Google reCaptcha\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>Contact Form X is developed and maintained by \u003Ca href=\"https:\u002F\u002Fx.com\u002Fperishable\" rel=\"nofollow ugc\">Jeff Starr\u003C\u002Fa>, 15-year \u003Ca href=\"https:\u002F\u002Fplugin-planet.com\u002F\" rel=\"nofollow ugc\">WordPress developer\u003C\u002Fa> and \u003Ca href=\"https:\u002F\u002Fbooks.perishablepress.com\u002F\" rel=\"nofollow ugc\">book author\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Support development\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>I develop and maintain this free plugin with love for the WordPress community. To show support, you can \u003Ca href=\"https:\u002F\u002Fmonzillamedia.com\u002Fdonate.html\" rel=\"nofollow ugc\">make a donation\u003C\u002Fa> or purchase one of my books:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwp-tao.com\u002F\" rel=\"nofollow ugc\">The Tao of WordPress\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fdigwp.com\u002F\" rel=\"nofollow ugc\">Digging into WordPress\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fhtaccessbook.com\u002F\" rel=\"nofollow ugc\">.htaccess made easy\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwp-tao.com\u002Fwordpress-themes-book\u002F\" rel=\"nofollow ugc\">WordPress Themes In Depth\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fbooks.perishablepress.com\u002Fdownloads\u002Fwizards-collection-sql-recipes-wordpress\u002F\" rel=\"nofollow ugc\">Wizard’s SQL Recipes for WordPress\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>And\u002For purchase one of my premium WordPress plugins:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fplugin-planet.com\u002Fbbq-pro\u002F\" rel=\"nofollow ugc\">BBQ Pro\u003C\u002Fa> – Blazing fast WordPress firewall\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fplugin-planet.com\u002Fblackhole-pro\u002F\" rel=\"nofollow ugc\">Blackhole Pro\u003C\u002Fa> – Automatically block bad bots\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fplugin-planet.com\u002Fbanhammer-pro\u002F\" rel=\"nofollow ugc\">Banhammer Pro\u003C\u002Fa> – Monitor traffic and ban the bad guys\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fplugin-planet.com\u002Fga-google-analytics-pro\u002F\" rel=\"nofollow ugc\">GA Google Analytics Pro\u003C\u002Fa> – Connect WordPress to Google Analytics\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fplugin-planet.com\u002Fhead-meta-pro\u002F\" rel=\"nofollow ugc\">Head Meta Pro\u003C\u002Fa> – Ultimate Meta Tags for WordPress\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fplugin-planet.com\u002Fsimple-ajax-chat-pro\u002F\" rel=\"nofollow ugc\">Simple Ajax Chat Pro\u003C\u002Fa> – Unlimited chat rooms\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fplugin-planet.com\u002Fusp-pro\u002F\" rel=\"nofollow ugc\">USP Pro\u003C\u002Fa> – Unlimited front-end forms\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Links, tweets and likes also appreciated. Thanks! 🙂\u003C\u002Fp>\n","Displays a user-friendly contact form that your visitors will love. Lightweight, fast, secure, and accessible (ADA\u002FWCAG compliant).",19839,32,"2026-02-16T00:10:00.000Z","6.9.4","4.7","5.6.20",[87,53,20,21,22],"ajax","https:\u002F\u002Fperishablepress.com\u002Fcontact-form-x\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcontact-form-x.3.0.1.zip","2022-02-25 15:41:00",{"slug":92,"name":93,"version":94,"author":95,"author_profile":96,"description":97,"short_description":98,"active_installs":55,"downloaded":99,"rating":55,"num_ratings":31,"last_updated":100,"tested_up_to":101,"requires_at_least":102,"requires_php":103,"tags":104,"homepage":105,"download_link":106,"security_score":107,"vuln_count":108,"unpatched_count":31,"last_vuln_date":109,"fetched_at":28},"forms-by-made-it","Forms","2.9.0","Made I.T.","https:\u002F\u002Fprofiles.wordpress.org\u002Fmadeit\u002F","\u003Cp>Forms is an easy form manager that lets you manage all your cool forms. Creating your own contact form or newsletter subscriber is easy.\u003C\u002Fp>\n\u003Ch4>Docs & Support\u003C\u002Fh4>\n\u003Cp>You can find \u003Ca href=\"https:\u002F\u002Fgithub.com\u002FmadeITBelgium\u002FWordPress-Forms\" rel=\"nofollow ugc\">docs\u003C\u002Fa>, \u003Ca href=\"https:\u002F\u002Fgithub.com\u002FmadeITBelgium\u002FWordPress-Forms\" rel=\"nofollow ugc\">FAQ\u003C\u002Fa> and more detailed information about Forms on \u003Ca href=\"https:\u002F\u002Fwww.madeit.be\u002F\" rel=\"nofollow ugc\">madeit.be\u003C\u002Fa>. If you were unable to find the answer to your question on the FAQ or in any of the documentation, you should check the \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fsupport\u002Fplugin\u002Fforms-by-made-it\" rel=\"ugc\">support forum\u003C\u002Fa> on WordPress.org or \u003Ca href=\"https:\u002F\u002Fgithub.com\u002FmadeITBelgium\u002FWordPress-Forms\" rel=\"nofollow ugc\">GitHub\u003C\u002Fa>. If you can’t locate any topics that pertain to your particular issue, post a new topic for it.\u003C\u002Fp>\n\u003Ch4>Recommended Plugins\u003C\u002Fh4>\n\u003Cp>The following plugins are working with Forms:\u003C\u002Fp>\n\u003Ch4>Translations\u003C\u002Fh4>\n\u003Cp>You can \u003Ca href=\"https:\u002F\u002Fwww.madeit.be\u002Fforms-plugin\" rel=\"nofollow ugc\">translate Forms\u003C\u002Fa> on \u003Ca href=\"https:\u002F\u002Ftranslate.wordpress.org\u002Fprojects\u002Fwp-plugins\u002Fforms-by-made-it\" rel=\"nofollow ugc\">\u003Cstrong>translate.wordpress.org\u003C\u002Fstrong>\u003C\u002Fa>.\u003C\u002Fp>\n","Build easy and flexible forms with Forms.",5168,"2025-04-14T21:31:00.000Z","6.8.0","5.0","8.0",[53,20,21,22,23],"https:\u002F\u002Fwww.madeit.be\u002Fproducten\u002Fwordpress\u002Fforms-plugin\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fforms-by-made-it.2.9.0.zip",66,3,"2025-08-13 00:00:00",{"slug":111,"name":112,"version":113,"author":114,"author_profile":115,"description":116,"short_description":117,"active_installs":55,"downloaded":118,"rating":55,"num_ratings":31,"last_updated":119,"tested_up_to":120,"requires_at_least":121,"requires_php":122,"tags":123,"homepage":125,"download_link":126,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28},"lite-contact-form","Lite Contact Form","1.1.6","Beherit","https:\u002F\u002Fprofiles.wordpress.org\u002Fbeherit\u002F","\u003Cp>Lightweight and simple contact form with no additional user-unfriendly options. You can add the contact form to any page with a shortcode \u003Ccode>[contact_form]\u003C\u002Fcode>. Plugin is integrated with plugin \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fakismet\u002F\" rel=\"ugc\">Akismet\u003C\u002Fa> and \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fgrecaptcha\u002F\" rel=\"ugc\">GreCAPTCHA\u003C\u002Fa> which protect against spam.\u003C\u002Fp>\n","Lightweight and simple contact form with no additional user-unfriendly options. Can be additionally protected against spam by using Akismet and Google &hellip;",5673,"2022-02-16T12:45:00.000Z","5.9.13","4.6","7.0",[53,20,21,22,124],"feedback-form","https:\u002F\u002Fbeherit.pl\u002Fen\u002Fwordpress\u002Flite-contact-form\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Flite-contact-form.1.1.6.zip",{"attackSurface":128,"codeSignals":134,"taintFlows":150,"riskAssessment":151,"analyzedAt":164},{"hooks":129,"ajaxHandlers":130,"restRoutes":131,"shortcodes":132,"cronEvents":133,"entryPointCount":13,"unprotectedCount":13},[],[],[],[],[],{"dangerousFunctions":135,"sqlUsage":136,"outputEscaping":138,"fileOperations":108,"externalRequests":13,"nonceChecks":13,"capabilityChecks":13,"bundledLibraries":149},[],{"prepared":13,"raw":13,"locations":137},[],{"escaped":13,"rawEcho":108,"locations":139},[140,144,146],{"file":141,"line":142,"context":143},"php\\class-plugin-base.php",98,"raw output",{"file":141,"line":145,"context":143},150,{"file":147,"line":148,"context":143},"views\\admin.php",60,[],[],{"summary":152,"deductions":153},"The static analysis of tectite-forms v1.3 reveals a seemingly strong security posture at first glance, with no identified entry points, dangerous functions, or external HTTP requests. The use of prepared statements for all SQL queries is a positive indicator of secure database interaction. However, the analysis also flags significant concerns. Notably, 100% of the identified outputs are not properly escaped, posing a high risk of Cross-Site Scripting (XSS) vulnerabilities. The presence of file operations without further context also warrants caution.\n\nThe vulnerability history for this plugin is entirely clean, with no recorded CVEs. This, combined with the lack of identified critical or high-severity issues in the static analysis, might suggest a history of secure development. However, the critical finding of unescaped output significantly undermines this positive outlook. The absence of nonce and capability checks on the identified entry points (though none were found) is a potential weakness that could become exploitable if entry points are introduced or discovered later.\n\nIn conclusion, while tectite-forms v1.3 benefits from the absence of known vulnerabilities and secure SQL practices, the universal lack of output escaping presents a substantial and immediate risk. The plugin's security is compromised by this fundamental oversight, making it vulnerable to XSS attacks despite a clean record and limited attack surface in other areas. Further investigation into the nature of the file operations is also recommended.",[154,157,159,162],{"reason":155,"points":156},"Unescaped output detected",8,{"reason":158,"points":108},"File operations present without further context",{"reason":160,"points":161},"No nonce checks on identified entry points",5,{"reason":163,"points":161},"No capability checks on identified entry points","2026-03-16T23:00:21.899Z",{"wat":166,"direct":178},{"assetPaths":167,"generatorPatterns":173,"scriptPaths":174,"versionParams":175},[168,169,170,171,172],"\u002Fwp-content\u002Fplugins\u002Ftectite-forms\u002Fcss\u002Fadminstyles.css","\u002Fwp-content\u002Fplugins\u002Ftectite-forms\u002Fcss\u002Fstyles.css","\u002Fwp-content\u002Fplugins\u002Ftectite-forms\u002Fcss\u002Fformdesigneruser.css","\u002Fwp-content\u002Fplugins\u002Ftectite-forms\u002Fjs\u002Fadmin.js","\u002Fwp-content\u002Fplugins\u002Ftectite-forms\u002Fjs\u002Fformval.js",[],[171,172],[176,177],"tectite-forms\u002Fcss\u002Fformdesigneruser.css?ver=9","tectite-forms\u002Fjs\u002Fformval.js?ver=7",{"cssClasses":179,"htmlComments":182,"htmlAttributes":183,"restEndpoints":184,"jsGlobals":185,"shortcodeOutput":187},[180,181],"TectiteForm","error",[],[],[],[186],"tectite_form_environ",[188],"[tectiteform="]