[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$ftDmqPlQWUkFCV2Gk2fY-ZepG-n4pV7bmoVLd4Z0-oHw":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":24,"download_link":25,"security_score":26,"vuln_count":14,"unpatched_count":14,"last_vuln_date":27,"fetched_at":28,"vulnerabilities":29,"developer":44,"crawl_stats":35,"alternatives":51,"analysis":136,"fingerprints":514},"themebeez-toolkit","Themebeez Toolkit","1.3.5","themebeez","https:\u002F\u002Fprofiles.wordpress.org\u002Fthemebeez\u002F","\u003Cp>A essential toolkit for \u003Ca href=\"https:\u002F\u002Fthemebeez.com\u002F\" rel=\"nofollow ugc\">WordPress themes\u003C\u002Fa> developed by us. Themebeez Toolkit helps you to import dummy demo contents. It also adds extra features & functionality our themes.\u003C\u002Fp>\n\u003Ch4>✨ WHICH THEME DEMO IMPORT IS INCLUDED:\u003C\u002Fh4>\n\u003Cp>✅ Orchid Store: \u003Ca href=\"https:\u002F\u002Fthemebeez.com\u002Fthemes\u002Forchid-store\u002F\" rel=\"nofollow ugc\">Link\u003C\u002Fa>\u003Cbr \u002F>\n✅ Orchid Store Pro: \u003Ca href=\"https:\u002F\u002Fthemebeez.com\u002Fthemes\u002Forchid-store-pro\u002F\" rel=\"nofollow ugc\">Link\u003C\u002Fa>\u003Cbr \u002F>\n✅ Cream Magazine: \u003Ca href=\"https:\u002F\u002Fthemebeez.com\u002Fthemes\u002Fcream-magazine\u002F\" rel=\"nofollow ugc\">Link\u003C\u002Fa>\u003Cbr \u002F>\n✅ Cream Magazine Pro: \u003Ca href=\"https:\u002F\u002Fthemebeez.com\u002Fthemes\u002Fcream-magazine-pro\u002F\" rel=\"nofollow ugc\">Link\u003C\u002Fa>\u003Cbr \u002F>\n✅ Fascinate: \u003Ca href=\"https:\u002F\u002Fthemebeez.com\u002Fthemes\u002Ffascinate\u002F\" rel=\"nofollow ugc\">Link\u003C\u002Fa>\u003Cbr \u002F>\n✅ Fascinate Pro: \u003Ca href=\"https:\u002F\u002Fthemebeez.com\u002Fthemes\u002Ffascinate-pro\u002F\" rel=\"nofollow ugc\">Link\u003C\u002Fa>\u003Cbr \u002F>\n✅ Cream Blog: \u003Ca href=\"https:\u002F\u002Fthemebeez.com\u002Fthemes\u002Fcream-blog\u002F\" rel=\"nofollow ugc\">Link\u003C\u002Fa>\u003Cbr \u002F>\n✅ Cream Blog Pro: \u003Ca href=\"https:\u002F\u002Fthemebeez.com\u002Fthemes\u002Fcream-blog-pro\u002F\" rel=\"nofollow ugc\">Link\u003C\u002Fa>\u003Cbr \u002F>\n✅ StyleBlog Plus: \u003Ca href=\"https:\u002F\u002Fthemebeez.com\u002Fthemes\u002Fstyle-blog-pro\u002F\" rel=\"nofollow ugc\">Link\u003C\u002Fa>\u003Cbr \u002F>\n✅ Royale News: \u003Ca href=\"https:\u002F\u002Fthemebeez.com\u002Fthemes\u002Froyale-news\u002F\" rel=\"nofollow ugc\">Link\u003C\u002Fa>\u003Cbr \u002F>\n✅ Royale News Pro: \u003Ca href=\"https:\u002F\u002Fthemebeez.com\u002Fthemes\u002Froyale-news-pro\u002F\" rel=\"nofollow ugc\">Link\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch4>✨ WHY TO USE THEMEBEEZ TOOLKIT?\u003C\u002Fh4>\n\u003Cp>✅ To import one click demo content for your website.\u003Cbr \u002F>\n✅It also adds extra functionality to Orchid store theme as we have extended simple mega menu functionality in Orchid Store theme via this plugin.\u003C\u002Fp>\n\u003Ch4>✨ HOW TO USE THEMEBEEZ TOOLKIT?\u003C\u002Fh4>\n\u003Cp>✅ While installing any free themes by themebeez do kindly install & activate prompt plugin “Themebeez Toolkit ” or you can do this manually too.\u003Cbr \u002F>\n✅ After activating the Themebeez Toolkit plugin, if you are using a theme provided by Themebeez, go to Dashboard > Theme Name > Starter Templates.\u003Cbr \u002F>\n✅ Under Starter Templates, you can choose which demo content to import for your website.\u003Cbr \u002F>\n✅ Choose your demo by checking live preview.\u003Cbr \u002F>\n✅ Keep Themebeez Toolkit plugin along with you till you are using themes made by us.\u003Cbr \u002F>\n✅ Feel free to contact Themebeez Support team at ( https:\u002F\u002Fthemebeez.com\u002Fsupport\u002F ) if you need any assistance.\u003C\u002Fp>\n\u003Ch4>✨ VIDEO TUTORIAL:\u003C\u002Fh4>\n\u003Cp>Watch the video below which will demonstrate how to use Themebeez Toolkit plugin to import demo dummy contents while using our theme.\u003C\u002Fp>\n\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002FJvZSZzL0hB4?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\n\u003Ch4>✨ADDITIONAL FEATURES:\u003C\u002Fh4>\n\u003Cp>Themebeez Tookit also adds extra functionality to \u003Ca href=\"https:\u002F\u002Fthemebeez.com\u002Fthemes\u002Forchid-store\u002F\" rel=\"nofollow ugc\">Orchid store theme\u003C\u002Fa> as we have extended simple mega menu functionality in Orchid Store theme via this plugin.\u003C\u002Fp>\n\u003Ch4>✨ COPYRIGHT & CREDITS:\u003C\u002Fh4>\n\u003Cp>Themebeez Toolkit uses \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fproteusthemes\u002Fone-click-demo-import\" rel=\"nofollow ugc\">One Click Demo Import plugin\u003C\u002Fa> script (C) 2016 ProteusThemes.com Licensed under the \u003Ca href=\"http:\u002F\u002Fwww.gnu.org\u002Flicenses\u002Fgpl-2.0.html\" rel=\"nofollow ugc\">GNU General Public License v2.0\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>Themebeez Toolkit is free software, feel free to redistribute it or modify it under the terms of the \u003Ca href=\"http:\u002F\u002Fwww.gnu.org\u002Flicenses\u002Fgpl-2.0.html\" rel=\"nofollow ugc\">GNU General Public License\u003C\u002Fa> as published by the Free Software Foundation.\u003C\u002Fp>\n","A essential toolkit for WordPress themes developed by us. Themebeez Toolkit helps you to import dummy demo contents. It also adds extra features & &hellip;",9000,299872,100,1,"2025-04-23T05:15:00.000Z","6.8.5","5.6","7.4",[20,21,22,7,23],"content","demo","menus","widgets","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fthemebeez-toolkit\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fthemebeez-toolkit.1.3.5.zip",78,"2025-12-26 00:00:00","2026-03-15T15:16:48.613Z",[30],{"id":31,"url_slug":32,"title":33,"description":34,"plugin_slug":4,"theme_slug":35,"affected_versions":36,"patched_in_version":35,"severity":37,"cvss_score":38,"cvss_vector":39,"vuln_type":40,"published_date":27,"updated_date":41,"references":42,"days_to_patch":35},"CVE-2025-69010","themebeez-toolkit-missing-authorization","Themebeez Toolkit \u003C= 1.3.5 - Missing Authorization","The Themebeez Toolkit plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in versions up to, and including, 1.3.5. This makes it possible for unauthenticated attackers to perform an unauthorized action.",null,"\u003C=1.3.5","medium",5.3,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:N\u002FUI:N\u002FS:U\u002FC:N\u002FI:L\u002FA:N","Missing Authorization","2026-01-05 19:03:49",[43],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002Fcc69c2ff-5936-4b5d-b476-badca08eeeac?source=api-prod",{"slug":7,"display_name":7,"profile_url":8,"plugin_count":45,"total_installs":46,"avg_security_score":47,"avg_patch_time_days":48,"trust_score":49,"computed_at":50},8,27200,88,135,71,"2026-04-03T23:29:52.060Z",[52,70,90,105,121],{"slug":53,"name":54,"version":55,"author":56,"author_profile":57,"description":58,"short_description":59,"active_installs":60,"downloaded":61,"rating":62,"num_ratings":62,"last_updated":63,"tested_up_to":64,"requires_at_least":65,"requires_php":17,"tags":66,"homepage":67,"download_link":68,"security_score":69,"vuln_count":62,"unpatched_count":62,"last_vuln_date":35,"fetched_at":28},"everest-toolkit","Everest Toolkit","1.2.3","everestthemes","https:\u002F\u002Fprofiles.wordpress.org\u002Feverestthemes\u002F","\u003Cp>A essential toolkit for themes made by everestthemes (everestthemes.com). Everest toolkit helps you to setup your website or blog faster.\u003C\u002Fp>\n\u003Cp>How to use this Everest Toolkit ?\u003C\u002Fp>\n\u003Col>\n\u003Cli>While installing any free themes by everestthemes do kindly install & activate prompt plugin ” everestthemes toolkit ” or you can do this manually too.\u003C\u002Fli>\n\u003Cli>After activating Everest Toolkit plugin go to Apperence > theme about page.\u003C\u002Fli>\n\u003Cli>You will see necessary actions like recommended actions.\u003C\u002Fli>\n\u003Cli>Under Recommended action please feel free to activate plugins that you will need. For exmple: install plugin called WooCommerce if you need to setup e-commerce store.\u003C\u002Fli>\n\u003Cli>Keep in mind you need to install plugin called “One click demo import” if you need our demo contents.\u003C\u002Fli>\n\u003Cli>If you think you don’t need any of them ignore that recommended action.\u003C\u002Fli>\n\u003Cli>If you need demo contents, you should have already installed plugin called ” One click demo import ” till now.\u003C\u002Fli>\n\u003Cli>Go to Apperence > Import demo contents.\u003C\u002Fli>\n\u003Cli>Choose your demo by checking live preview.\u003C\u002Fli>\n\u003Cli>Once demo is imported you can too uninstall plugin called “One click demo import” from Dashboard > Plugins.\u003C\u002Fli>\n\u003Cli>Keep Everest Toolkit plugin along with you till you are using themes from everestthemes.\u003C\u002Fli>\n\u003Cli>Feel free to contact everestthemes support team at ( https:\u002F\u002Feverestthemes.com\u002Fsupport-forum\u002F ) if you need any assistance.\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Cp>Watch the video below which will demonstrate how to use Everest Toolkit to import demo data in any theme made by everestthemes.\u003C\u002Fp>\n\u003Ch3>License\u003C\u002Fh3>\n\u003Cp>Everest Toolkit uses ‘One Click Demo Import’ plugin script\u003Cbr \u002F>\nhttps:\u002F\u002Fgithub.com\u002Fproteusthemes\u002Fone-click-demo-import\u003Cbr \u002F>\n(C) 2016 ProteusThemes.com\u003Cbr \u002F>\nLicensed under the GNU General Public License v2.0,\u003Cbr \u002F>\nhttp:\u002F\u002Fwww.gnu.org\u002Flicenses\u002Fgpl-2.0.html\u003C\u002Fp>\n\u003Ch3>Copyright\u003C\u002Fh3>\n\u003Cp>Everest Toolkit is free software: you can redistribute it and\u002For modify\u003Cbr \u002F>\nit under the terms of the GNU General Public License as published by\u003Cbr \u002F>\nthe Free Software Foundation, either version 2 of the License, or\u003Cbr \u002F>\nany later version.\u003C\u002Fp>\n\u003Cp>Everest Toolkit is distributed in the hope that it will be useful,\u003Cbr \u002F>\nbut WITHOUT ANY WARRANTY; without even the implied warranty of\u003Cbr \u002F>\nMERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the\u003Cbr \u002F>\nGNU General Public License for more details.\u003C\u002Fp>\n\u003Cp>You should have received a copy of the GNU General Public License\u003Cbr \u002F>\nalong with Everest Toolkit. If not, see \u003Ca href=\"http:\u002F\u002Fwww.gnu.org\u002Flicenses\u002F\" rel=\"nofollow ugc\">http:\u002F\u002Fwww.gnu.org\u002Flicenses\u002F\u003C\u002Fa>.\u003C\u002Fp>\n","A essential toolkit for themes made by everestthemes (everestthemes.com). Everest toolkit helps you to setup your website or blog faster.",2000,70792,0,"2023-07-03T11:03:00.000Z","6.1.10","4.8.0",[20,21,56,22,23],"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Feverest-toolkit\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Feverest-toolkit.1.2.3.zip",85,{"slug":71,"name":72,"version":73,"author":74,"author_profile":75,"description":76,"short_description":77,"active_installs":78,"downloaded":79,"rating":62,"num_ratings":62,"last_updated":80,"tested_up_to":81,"requires_at_least":82,"requires_php":83,"tags":84,"homepage":86,"download_link":87,"security_score":88,"vuln_count":14,"unpatched_count":14,"last_vuln_date":89,"fetched_at":28},"century-toolkit","Century ToolKit","1.2.1","Theme Century","https:\u002F\u002Fprofiles.wordpress.org\u002Fthemecentury\u002F","\u003Cp>ToolKit for ThemeCentury themes and demo content importer for themes.\u003C\u002Fp>\n\u003Cp>This plugin will create a page in \u003Cstrong>APPEARANCE > Import Demo Content\u003C\u002Fstrong>.\u003C\u002Fp>\n\u003Cp>If you are not using our(themecentury’s) official theme, then you will be presented with three file upload inputs.\u003C\u002Fp>\n","ToolKit for WordPress themes and demo content importer for themes.",800,52892,"2021-01-14T13:47:00.000Z","5.6.17","4.0.0","",[20,21,85,22,23],"import","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fcentury-toolkit","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcentury-toolkit.1.2.1.zip",63,"2025-08-20 00:00:00",{"slug":91,"name":92,"version":93,"author":94,"author_profile":95,"description":96,"short_description":97,"active_installs":98,"downloaded":99,"rating":62,"num_ratings":62,"last_updated":100,"tested_up_to":16,"requires_at_least":101,"requires_php":17,"tags":102,"homepage":83,"download_link":104,"security_score":13,"vuln_count":62,"unpatched_count":62,"last_vuln_date":35,"fetched_at":28},"ammu-demo-import","Ammu Demo Import","1.0.7","Karmegaraja Subramaniam","https:\u002F\u002Fprofiles.wordpress.org\u002Fponvendhan\u002F","\u003Cp>A plugin to install demo content to themes developed by Ammuthemes.\u003Cbr \u002F>\nThis plugin requires the \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fone-click-demo-import\u002F\" rel=\"ugc\">One Click Demo Import\u003C\u002Fa> plugin to be installed.\u003C\u002Fp>\n\u003Ch3>Supported Themes\u003C\u002Fh3>\n\u003Col>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fthemes\u002Freal-estate-salient\u002F\" rel=\"ugc\">Real Estate Salient\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch3>Copyright\u003C\u002Fh3>\n\u003Cp>Ammu Demo Import, Copyright 2022 Ponvendhan\u003Cbr \u002F>\nAmmu Demo Import is distributed under the terms of the GNU GPL\u003C\u002Fp>\n\u003Cp>Ammu Demo Import is free software: you can redistribute it and\u002For modify\u003Cbr \u002F>\nit under the terms of the GNU General Public License as published by\u003Cbr \u002F>\nthe Free Software Foundation, either version 2 of the License, or\u003Cbr \u002F>\nany later version.\u003C\u002Fp>\n\u003Cp>Ammu Demo Import is distributed in the hope that it will be useful,\u003Cbr \u002F>\nbut WITHOUT ANY WARRANTY; without even the implied warranty of\u003Cbr \u002F>\nMERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the\u003Cbr \u002F>\nGNU General Public License for more details.\u003C\u002Fp>\n","A plugin to install demo content to themes developed by Ammuthemes.",400,17306,"2025-11-06T18:49:00.000Z","4.7",[103,20,21,22,23],"ammuthemes","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fammu-demo-import.1.0.7.zip",{"slug":106,"name":107,"version":108,"author":109,"author_profile":110,"description":111,"short_description":112,"active_installs":113,"downloaded":114,"rating":62,"num_ratings":62,"last_updated":115,"tested_up_to":116,"requires_at_least":117,"requires_php":83,"tags":118,"homepage":119,"download_link":120,"security_score":69,"vuln_count":62,"unpatched_count":62,"last_vuln_date":35,"fetched_at":28},"perfectwpthemes-toolkit","Perfectwpthemes Toolkit","1.0.6","perfectwpthemes","https:\u002F\u002Fprofiles.wordpress.org\u002Fperfectwpthemes\u002F","\u003Cp>An essential toolkit for themes made by perfectwpthemes (https:\u002F\u002Fperfectwpthemes.com\u002F). Perfectwpthemes Toolkit works only with the WordPress themes by perfectwpthemes.com. Perfectwpthemes Toolkit extends functionality for themes made by perfectwpthemes.com.\u003C\u002Fp>\n\u003Cp>This toolkit extends features like custom widgets, social sharing, likes, dislikes, theme layouts & one click demo import feature.\u003C\u002Fp>\n\u003Cp>How to use this Perfectwpthemes Toolkit ?\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Install perfectwpthemes toolkit while installing any themes made by perfectwpthemes\u003C\u002Fli>\n\u003Cli>After installing & activating perfectwpthemes toolkit you will see message to go to welcome page\u003C\u002Fli>\n\u003Cli>You will see necessary actions in recommended actions tab.\u003C\u002Fli>\n\u003Cli>Under Recommended action tab please feel free to activate plugins that you will need.\u003C\u002Fli>\n\u003Cli>If you think you don’t need any of them ignore that recommended action.\u003C\u002Fli>\n\u003Cli>Once you are done with recommended action plugins go to Apperence > Import demo content\u003C\u002Fli>\n\u003Cli>Or, in this point you can also click on import demo button\u003C\u002Fli>\n\u003Cli>Choose your demo by checking live preview.\u003C\u002Fli>\n\u003Cli>Keep Perfectwpthemes Toolkit plugin along with you till you are using themes from us.\u003C\u002Fli>\n\u003Cli>Feel free to contact perfectwpthemes support team at ( https:\u002F\u002Fperfectwpthemes.com\u002Fsupport\u002F ) if you need any assistance.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Copyright\u003C\u002Fh3>\n\u003Cp>Perfectwpthemes Toolkit is free software: you can redistribute it and\u002For modify\u003Cbr \u002F>\nit under the terms of the GNU General Public License as published by\u003Cbr \u002F>\nthe Free Software Foundation, either version 2 of the License, or\u003Cbr \u002F>\nany later version.\u003C\u002Fp>\n\u003Cp>Perfectwpthemes Toolkit is distributed in the hope that it will be useful,\u003Cbr \u002F>\nbut WITHOUT ANY WARRANTY; without even the implied warranty of\u003Cbr \u002F>\nMERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the\u003Cbr \u002F>\nGNU General Public License for more details.\u003C\u002Fp>\n\u003Cp>You should have received a copy of the GNU General Public License\u003Cbr \u002F>\nalong with Perfectwpthemes Toolkit. If not, see \u003Ca href=\"http:\u002F\u002Fwww.gnu.org\u002Flicenses\u002F\" rel=\"nofollow ugc\">http:\u002F\u002Fwww.gnu.org\u002Flicenses\u002F\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch3>1.0.6 – May 22, 2023\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Added: Glaze Blog Lite theme support.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>1.0.5 – March 1, 2020\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Pot file updated\u003C\u002Fli>\n\u003Cli>Minor Updates\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>1.0.4 – February 12, 2020\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Masonry Blog demo importer added\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>1.0.3 – March 27, 2019\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Addition of social share links\u003C\u002Fli>\n\u003Cli>Change in description in perfectwpthemes-toolkit.php\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>1.0.2 – March 18, 2019\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Googleplus social share removed\u003C\u002Fli>\n\u003Cli>Image sizes option removed form instagram widget\u003C\u002Fli>\n\u003Cli>Glaze Blog demo importer included\u003C\u002Fli>\n\u003Cli>Other Minor Changes\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>1.0.1 – March 07, 2019\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Demo importer added\u003C\u002Fli>\n\u003Cli>Theme info of Glaze Blog Lite changed\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>1.0.0 – December 17, 2018\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Initial release\u003C\u002Fli>\n\u003C\u002Ful>\n","An essential toolkit for themes made by perfectwpthemes (https:\u002F\u002Fperfectwpthemes.com\u002F). Perfectwpthemes Toolkit works only with the WordPress themes b &hellip;",200,8262,"2023-05-22T06:14:00.000Z","6.2.9","5.0",[20,21,22,109,23],"https:\u002F\u002Fperfectwpthemes.com\u002Fperfectwpthemes-toolkit","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fperfectwpthemes-toolkit.1.0.6.zip",{"slug":122,"name":123,"version":124,"author":125,"author_profile":126,"description":127,"short_description":128,"active_installs":129,"downloaded":130,"rating":62,"num_ratings":62,"last_updated":131,"tested_up_to":132,"requires_at_least":82,"requires_php":83,"tags":133,"homepage":134,"download_link":135,"security_score":69,"vuln_count":62,"unpatched_count":62,"last_vuln_date":35,"fetched_at":28},"mirrorgrid-demo-importer","Mirrorgrid Demo Importer","1.0.1","Mirrorgrid Store","https:\u002F\u002Fprofiles.wordpress.org\u002Fmirrorgrid\u002F","\u003Cp>ToolKit for Mirrorgrid themes and demo content importer for themes.\u003C\u002Fp>\n\u003Cp>This plugin will create a page in \u003Cstrong>APPEARANCE > Import Demo Content\u003C\u002Fstrong>.\u003C\u002Fp>\n\u003Cp>If you are not using our(mirrorgrid’s) official theme, then you will be presented with three file upload inputs.\u003C\u002Fp>\n\u003Ch3>License\u003C\u002Fh3>\n\u003Cp>Mirrorgrid Demo Importer uses ‘One Click Demo Import’ plugin script\u003Cbr \u002F>\nhttps:\u002F\u002Fgithub.com\u002Fproteusthemes\u002Fone-click-demo-import\u003Cbr \u002F>\n(C) 2016 ProteusThemes.com\u003Cbr \u002F>\nLicensed under the GNU General Public License v2.0,\u003Cbr \u002F>\nhttp:\u002F\u002Fwww.gnu.org\u002Flicenses\u002Fgpl-2.0.html\u003C\u002Fp>\n\u003Ch3>Copyright\u003C\u002Fh3>\n\u003Cp>Mirrorgrid Demo Importer is distributed under the terms of the GNU GPL\u003C\u002Fp>\n\u003Cp>This program is free software; you can redistribute it and\u002For modify\u003Cbr \u002F>\nit under the terms of the GNU General Public License as published by\u003Cbr \u002F>\nthe Free Software Foundation; either version 2 of the License, or\u003Cbr \u002F>\n(at your option) any later version.\u003C\u002Fp>\n\u003Cp>This program is distributed in the hope that it will be useful,\u003Cbr \u002F>\nbut WITHOUT ANY WARRANTY; without even the implied warranty of\u003Cbr \u002F>\nMERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the\u003Cbr \u002F>\nGNU General Public License for more details.\u003C\u002Fp>\n\u003Cp>You should have received a copy of the GNU General Public License along\u003Cbr \u002F>\nwith this program; if not, write to the Free Software Foundation, Inc.,\u003Cbr \u002F>\n51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA.\u003C\u002Fp>\n","ToolKit for Mirrorgrid themes and demo content importer for themes.",30,5042,"2018-10-12T09:42:00.000Z","4.9.29",[20,21,85,22,23],"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fmirrorgrid-demo-importer\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fmirrorgrid-demo-importer.1.0.1.zip",{"attackSurface":137,"codeSignals":353,"taintFlows":442,"riskAssessment":500,"analyzedAt":513},{"hooks":138,"ajaxHandlers":324,"restRoutes":343,"shortcodes":344,"cronEvents":345,"entryPointCount":352,"unprotectedCount":14},[139,145,148,151,157,161,165,171,173,176,179,183,187,191,195,200,204,209,211,214,220,224,227,232,237,241,244,247,249,253,257,261,265,269,273,277,281,285,289,293,297,300,303,306,308,312,315,318,321],{"type":140,"name":141,"callback":142,"file":143,"line":144},"action","init","anonymous","includes\\class-themebeez-toolkit.php",148,{"type":140,"name":146,"callback":142,"file":143,"line":147},"admin_enqueue_scripts",170,{"type":140,"name":149,"callback":142,"file":143,"line":150},"wp_dashboard_setup",171,{"type":152,"name":153,"callback":154,"file":155,"line":156},"filter","themebeez_toolkit_demo_content_import","import_files","includes\\demo-importer\\admin\\class-tt-admin-demo-config.php",44,{"type":140,"name":158,"callback":159,"file":155,"line":160},"themebeez_toolkit_after_demo_content_import","after_import",45,{"type":140,"name":162,"callback":162,"file":163,"line":164},"admin_notices","includes\\demo-importer\\admin\\class-tt-admin.php",29,{"type":140,"name":166,"callback":167,"priority":168,"file":169,"line":170},"after_setup_theme","include_template_functions",11,"includes\\demo-importer\\class-themebeez-demo-importer.php",106,{"type":140,"name":141,"callback":141,"priority":62,"file":169,"line":172},107,{"type":140,"name":146,"callback":146,"file":174,"line":175},"includes\\demo-importer\\class-tt-main.php",118,{"type":140,"name":141,"callback":177,"file":174,"line":178},"setup_plugin_with_filter_data",120,{"type":140,"name":180,"callback":181,"file":174,"line":182},"themebeez_toolkit_starter_templates","render_starter_templates_content",121,{"type":152,"name":184,"callback":185,"file":174,"line":186},"wxr_importer.pre_process.user","__return_false",522,{"type":152,"name":188,"callback":189,"file":174,"line":190},"wxr_importer.pre_process.post","new_ajax_request_maybe",525,{"type":152,"name":192,"callback":193,"file":174,"line":194},"intermediate_image_sizes_advanced","closure",529,{"type":152,"name":196,"callback":197,"file":198,"line":199},"import_post_meta_key","is_valid_meta_key","includes\\demo-importer\\importer\\class-tt-importer-wxr-importer.php",443,{"type":152,"name":201,"callback":202,"file":198,"line":203},"http_request_timeout","bump_request_timeout",444,{"type":140,"name":205,"callback":206,"file":207,"line":208},"themebeez_toolkit_load_theme_info_demo","themebeez_toolkit_theme_info_demo_loader","includes\\functions.php",99,{"type":152,"name":210,"callback":193,"file":207,"line":182},"wp_nav_menu_args",{"type":140,"name":141,"callback":212,"file":207,"line":213},"themebeez_toolkit_init_simple_mega_menu",136,{"type":140,"name":215,"callback":216,"priority":217,"file":218,"line":219},"wp_nav_menu_item_custom_fields","create_menu_fields",10,"includes\\simple-mega-menu\\class-simple-mega-menu-fields.php",34,{"type":140,"name":221,"callback":222,"priority":217,"file":218,"line":223},"wp_update_nav_menu_item","save_menu_fields",35,{"type":140,"name":146,"callback":225,"priority":217,"file":218,"line":226},"enqueue_scripts",36,{"type":152,"name":228,"callback":229,"priority":208,"file":230,"line":231},"wp_edit_nav_menu_walker","edit_nav_menu_walker","includes\\simple-mega-menu\\class-simple-mega-menu-walker-filter.php",26,{"type":140,"name":233,"callback":234,"file":235,"line":236},"admin_menu","register","includes\\theme-info\\class-themebeez-toolkit-theme-info.php",197,{"type":140,"name":238,"callback":239,"file":235,"line":240},"load-themes.php","activation_admin_notice",198,{"type":140,"name":146,"callback":242,"file":235,"line":243},"load_assets",199,{"type":140,"name":245,"callback":246,"file":235,"line":113},"admin_head","admin_style",{"type":140,"name":162,"callback":248,"priority":208,"file":235,"line":190},"welcome_admin_notice",{"type":140,"name":166,"callback":250,"file":251,"line":252},"themebeez_toolkit_cream_blog_config","includes\\theme-info\\configs\\cream-blog-config.php",317,{"type":140,"name":166,"callback":254,"file":255,"line":256},"themebeez_toolkit_cream_blog_pro_config","includes\\theme-info\\configs\\cream-blog-pro-config.php",229,{"type":140,"name":166,"callback":258,"file":259,"line":260},"themebeez_toolkit_cream_magazine_config","includes\\theme-info\\configs\\cream-magazine-config.php",398,{"type":140,"name":166,"callback":262,"file":263,"line":264},"themebeez_toolkit_cream_magazine_pro_config","includes\\theme-info\\configs\\cream-magazine-pro-config.php",292,{"type":140,"name":166,"callback":266,"file":267,"line":268},"themebeez_toolkit_fascinate_config","includes\\theme-info\\configs\\fascinate-config.php",345,{"type":140,"name":166,"callback":270,"file":271,"line":272},"themebeez_toolkit_fascinate_pro_config","includes\\theme-info\\configs\\fascinate-pro-config.php",256,{"type":140,"name":166,"callback":274,"file":275,"line":276},"themebeez_toolkit_orchid_store_config","includes\\theme-info\\configs\\orchid-store-config.php",327,{"type":140,"name":166,"callback":278,"file":279,"line":280},"themebeez_toolkit_royale_news_config","includes\\theme-info\\configs\\royale-news-config.php",318,{"type":140,"name":166,"callback":282,"file":283,"line":284},"themebeez_toolkit_royale_news_pro_config","includes\\theme-info\\configs\\royale-news-pro-config.php",202,{"type":140,"name":166,"callback":286,"file":287,"line":288},"themebeez_toolkit_styleblog_plus_config","includes\\theme-info\\configs\\styleblog-plus-config.php",238,{"type":140,"name":141,"callback":290,"file":291,"line":292},"on_init","includes\\udp\\class-udp-agent.php",76,{"type":140,"name":294,"callback":295,"file":291,"line":296},"admin_init","on_admin_init",77,{"type":140,"name":141,"callback":298,"file":291,"line":299},"udp_schedule_cron",80,{"type":140,"name":294,"callback":193,"file":301,"line":302},"includes\\udp\\init.php",53,{"type":140,"name":304,"callback":193,"file":301,"line":305},"load-index.php",113,{"type":140,"name":162,"callback":193,"file":301,"line":307},116,{"type":140,"name":309,"callback":310,"file":301,"line":311},"cc_udp_agent_send_data","cc_udp_agent_send_data_on_action",178,{"type":140,"name":313,"callback":193,"file":301,"line":314},"after_switch_theme",183,{"type":140,"name":316,"callback":193,"file":301,"line":317},"activate_plugin",212,{"type":140,"name":319,"callback":193,"file":301,"line":320},"deactivate_plugin",222,{"type":140,"name":322,"callback":193,"file":301,"line":323},"switch_theme",253,[325,330,336,338,342],{"action":326,"nopriv":327,"callback":328,"hasNonce":327,"hasCapCheck":327,"file":174,"line":329},"themebeez_toolkit_import_demo_data",false,"import_demo_data_ajax_callback",119,{"action":331,"nopriv":327,"callback":332,"hasNonce":333,"hasCapCheck":327,"file":334,"line":335},"simple_mega_menu_fontawesome_icons_list_action","simple_mega_menu_fontawesome_icons_list",true,"includes\\simple-mega-menu\\icon-fonts.php",58,{"action":331,"nopriv":333,"callback":332,"hasNonce":333,"hasCapCheck":327,"file":334,"line":337},59,{"action":339,"nopriv":327,"callback":340,"hasNonce":333,"hasCapCheck":327,"file":235,"line":341},"tt_about_action_dismiss_recommended_action","dismiss_recommended_action_callback",201,{"action":339,"nopriv":333,"callback":340,"hasNonce":333,"hasCapCheck":327,"file":235,"line":284},[],[],[346,348,350],{"hook":309,"callback":309,"file":301,"line":347},188,{"hook":309,"callback":309,"file":301,"line":349},215,{"hook":309,"callback":309,"file":301,"line":351},225,5,{"dangerousFunctions":354,"sqlUsage":360,"outputEscaping":368,"fileOperations":62,"externalRequests":352,"nonceChecks":440,"capabilityChecks":14,"bundledLibraries":441},[355],{"fn":356,"file":357,"line":358,"context":359},"unserialize","includes\\demo-importer\\importer\\class-tt-importer-customizer-importer.php",60,"$data = unserialize( $raw ); \u002F\u002F phpcs:ignore",{"prepared":352,"raw":361,"locations":362},2,[363,366],{"file":198,"line":364,"context":365},2456,"$wpdb->get_results() with variable interpolation",{"file":198,"line":367,"context":365},2512,{"escaped":369,"rawEcho":370,"locations":371},509,39,[372,374,376,378,380,381,383,384,386,387,389,390,392,394,395,397,399,400,402,404,405,407,409,410,412,414,415,417,419,420,422,424,426,428,430,432,434,436,438],{"file":174,"line":314,"context":373},"raw output",{"file":174,"line":375,"context":373},247,{"file":174,"line":377,"context":373},249,{"file":174,"line":379,"context":373},263,{"file":174,"line":379,"context":373},{"file":174,"line":382,"context":373},264,{"file":174,"line":382,"context":373},{"file":174,"line":385,"context":373},265,{"file":174,"line":385,"context":373},{"file":174,"line":388,"context":373},266,{"file":174,"line":388,"context":373},{"file":174,"line":391,"context":373},274,{"file":174,"line":393,"context":373},277,{"file":174,"line":393,"context":373},{"file":174,"line":396,"context":373},278,{"file":174,"line":398,"context":373},279,{"file":174,"line":398,"context":373},{"file":174,"line":401,"context":373},280,{"file":174,"line":403,"context":373},281,{"file":174,"line":403,"context":373},{"file":174,"line":406,"context":373},282,{"file":174,"line":408,"context":373},283,{"file":174,"line":408,"context":373},{"file":174,"line":411,"context":373},284,{"file":174,"line":413,"context":373},285,{"file":174,"line":413,"context":373},{"file":174,"line":416,"context":373},286,{"file":174,"line":418,"context":373},287,{"file":174,"line":418,"context":373},{"file":174,"line":421,"context":373},288,{"file":174,"line":423,"context":373},293,{"file":174,"line":425,"context":373},295,{"file":174,"line":427,"context":373},303,{"file":235,"line":429,"context":373},370,{"file":235,"line":431,"context":373},371,{"file":235,"line":433,"context":373},379,{"file":235,"line":435,"context":373},429,{"file":235,"line":437,"context":373},690,{"file":291,"line":439,"context":373},158,4,[],[443,461,472,480,492],{"entryPoint":444,"graph":445,"unsanitizedCount":62,"severity":460},"\u003Cclass-simple-mega-menu-fields> (includes\\simple-mega-menu\\class-simple-mega-menu-fields.php:0)",{"nodes":446,"edges":458},[447,452],{"id":448,"type":449,"label":450,"file":218,"line":451},"n0","source","$_POST (x2)",117,{"id":453,"type":454,"label":455,"file":218,"line":456,"wp_function":457},"n1","sink","echo() [XSS]",159,"echo",[459],{"from":448,"to":453,"sanitized":333},"low",{"entryPoint":462,"graph":463,"unsanitizedCount":62,"severity":460},"start_el (includes\\simple-mega-menu\\class-simple-mega-menu-walker-nav-menu-edit.php:59)",{"nodes":464,"edges":470},[465,469],{"id":448,"type":449,"label":466,"file":467,"line":468},"$_GET (x2)","includes\\simple-mega-menu\\class-simple-mega-menu-walker-nav-menu-edit.php",95,{"id":453,"type":454,"label":455,"file":467,"line":175,"wp_function":457},[471],{"from":448,"to":453,"sanitized":333},{"entryPoint":473,"graph":474,"unsanitizedCount":62,"severity":460},"\u003Cclass-simple-mega-menu-walker-nav-menu-edit> (includes\\simple-mega-menu\\class-simple-mega-menu-walker-nav-menu-edit.php:0)",{"nodes":475,"edges":478},[476,477],{"id":448,"type":449,"label":466,"file":467,"line":468},{"id":453,"type":454,"label":455,"file":467,"line":175,"wp_function":457},[479],{"from":448,"to":453,"sanitized":333},{"entryPoint":481,"graph":482,"unsanitizedCount":14,"severity":460},"process_user_tracking_choice (includes\\udp\\class-udp-agent.php:174)",{"nodes":483,"edges":490},[484,487],{"id":448,"type":449,"label":485,"file":291,"line":486},"$_GET",176,{"id":453,"type":454,"label":488,"file":291,"line":314,"wp_function":489},"update_option() [Settings Manipulation]","update_option",[491],{"from":448,"to":453,"sanitized":327},{"entryPoint":493,"graph":494,"unsanitizedCount":14,"severity":460},"\u003Cclass-udp-agent> (includes\\udp\\class-udp-agent.php:0)",{"nodes":495,"edges":498},[496,497],{"id":448,"type":449,"label":485,"file":291,"line":486},{"id":453,"type":454,"label":488,"file":291,"line":314,"wp_function":489},[499],{"from":448,"to":453,"sanitized":327},{"summary":501,"deductions":502},"The \"themebeez-toolkit\" v1.3.5 plugin exhibits a mixed security posture. While it demonstrates good practices in several areas, such as a high percentage of properly escaped output and a significant portion of SQL queries using prepared statements, there are notable areas of concern. The presence of a dangerous `unserialize` function without apparent context or mitigation, coupled with two unsanitized paths identified in the taint analysis, indicates potential vulnerabilities that could lead to code execution or data corruption if exploited.\n\nThe plugin's vulnerability history, including one medium-severity CVE that is currently unpatched, highlights a pattern of security weaknesses. The fact that the last known vulnerability was very recent (December 2025) and remains unpatched is particularly concerning, suggesting a lack of timely security maintenance. The identified \"Missing Authorization\" as a common vulnerability type further aligns with the static analysis finding of one AJAX handler without authentication checks, which is a direct entry point for unauthorized actions.\n\nIn conclusion, while the plugin has some strengths, the identified combination of a dangerous function, unsanitized taint flows, and an unpatched CVE with a history of authorization issues presents a significant risk. The single unprotected AJAX endpoint is a critical oversight that requires immediate attention.",[503,506,508,511],{"reason":504,"points":505},"Unpatched medium CVE",17,{"reason":507,"points":45},"AJAX handler without auth checks",{"reason":509,"points":510},"Dangerous function (unserialize)",7,{"reason":512,"points":217},"Taint flows with unsanitized paths","2026-03-16T17:52:24.453Z",{"wat":515,"direct":534},{"assetPaths":516,"generatorPatterns":524,"scriptPaths":525,"versionParams":526},[517,518,519,520,521,522,523],"\u002Fwp-content\u002Fplugins\u002Fthemebeez-toolkit\u002Fassets\u002Fcss\u002Fthemebeez-toolkit-public.css","\u002Fwp-content\u002Fplugins\u002Fthemebeez-toolkit\u002Fassets\u002Fjs\u002Fthemebeez-toolkit-public.js","\u002Fwp-content\u002Fplugins\u002Fthemebeez-toolkit\u002Fadmin\u002Fcss\u002Fthemebeez-toolkit-admin.css","\u002Fwp-content\u002Fplugins\u002Fthemebeez-toolkit\u002Fadmin\u002Fjs\u002Fthemebeez-toolkit-admin.js","\u002Fwp-content\u002Fplugins\u002Fthemebeez-toolkit\u002Fadmin\u002Fjs\u002Fthemebeez-toolkit-plugin-options.js","\u002Fwp-content\u002Fplugins\u002Fthemebeez-toolkit\u002Fadmin\u002Fjs\u002Fthemebeez-toolkit-settings.js","\u002Fwp-content\u002Fplugins\u002Fthemebeez-toolkit\u002Fadmin\u002Fjs\u002Fthemebeez-toolkit-wizard.js",[],[520,521,522,523],[527,528,529,530,531,532,533],"\u002Fwp-content\u002Fplugins\u002Fthemebeez-toolkit\u002Fassets\u002Fcss\u002Fthemebeez-toolkit-public.css?ver=","\u002Fwp-content\u002Fplugins\u002Fthemebeez-toolkit\u002Fassets\u002Fjs\u002Fthemebeez-toolkit-public.js?ver=","\u002Fwp-content\u002Fplugins\u002Fthemebeez-toolkit\u002Fadmin\u002Fcss\u002Fthemebeez-toolkit-admin.css?ver=","\u002Fwp-content\u002Fplugins\u002Fthemebeez-toolkit\u002Fadmin\u002Fjs\u002Fthemebeez-toolkit-admin.js?ver=","\u002Fwp-content\u002Fplugins\u002Fthemebeez-toolkit\u002Fadmin\u002Fjs\u002Fthemebeez-toolkit-plugin-options.js?ver=","\u002Fwp-content\u002Fplugins\u002Fthemebeez-toolkit\u002Fadmin\u002Fjs\u002Fthemebeez-toolkit-settings.js?ver=","\u002Fwp-content\u002Fplugins\u002Fthemebeez-toolkit\u002Fadmin\u002Fjs\u002Fthemebeez-toolkit-wizard.js?ver=",{"cssClasses":535,"htmlComments":538,"htmlAttributes":539,"restEndpoints":549,"jsGlobals":550,"shortcodeOutput":553},[536,537],"tt-rss-feed","community-events-footer",[],[540,541,542,543,544,545,546,547,548],"data-custom-content","data-custom-id","data-custom-target","data-custom-type","data-title","data-theme-color","data-theme-id","data-theme-title","data-theme-url",[],[551,552],"themebeez_toolkit_params","themebeez_wizard_params",[]]