[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fPUYN66Tgq-rQwBHIrLlqf92NCLBW7nZhbSGBWDTAEPA":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":21,"download_link":22,"security_score":23,"vuln_count":24,"unpatched_count":24,"last_vuln_date":25,"fetched_at":26,"vulnerabilities":27,"developer":28,"crawl_stats":25,"alternatives":35,"analysis":145,"fingerprints":212},"thoughts-of-the-day","Thoughts Of The Day","1.1","Mejar","https:\u002F\u002Fprofiles.wordpress.org\u002Fmejar\u002F","\u003Ch4>Requirements\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>WordPress 3.+ or 3.5 with WordPress plugin\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>How To Use\u003C\u002Fh3>\n\u003Cp>use shortcode : [THOUGHTSOFTHEDAY]\u003Cbr \u002F>\nFunction : \u003C\u002Fp>\n","This Plugin is to manage and show daily thought, admin can add thoughts in each line for each day and will show the each line according to day.",10,1774,60,2,"2013-09-12T06:00:00.000Z","3.5.2","3.5","",[20,4],"short-code","http:\u002F\u002Fwww.powerfaq.com\u002Fthoughts-of-the-day\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fthoughts-of-the-day.zip",85,0,null,"2026-03-15T15:16:48.613Z",[],{"slug":29,"display_name":7,"profile_url":8,"plugin_count":14,"total_installs":30,"avg_security_score":31,"avg_patch_time_days":32,"trust_score":33,"computed_at":34},"mejar",70,74,30,76,"2026-04-05T09:50:28.830Z",[36,59,80,104,123],{"slug":37,"name":38,"version":39,"author":40,"author_profile":41,"description":42,"short_description":43,"active_installs":44,"downloaded":45,"rating":46,"num_ratings":47,"last_updated":48,"tested_up_to":49,"requires_at_least":50,"requires_php":51,"tags":52,"homepage":57,"download_link":58,"security_score":23,"vuln_count":24,"unpatched_count":24,"last_vuln_date":25,"fetched_at":26},"code-widget","Code Widget","1.0.15","Sharaz Shahid","https:\u002F\u002Fprofiles.wordpress.org\u002Fsharaz\u002F","\u003Cp>Code Widget is simple widget allows you to insert any arbitrary Text\u002FHTML  and run  PHP Code or Short Code. This Widget parses PHP code  into simple text and much more.\u003C\u002Fp>\n\u003Cp>Only users with the unfiltered_html role will be allowed to insert unfiltered HTML. This includes PHP code, so users without admin or editor permissions will not be able to use this to execute code, even if they have widget editing permissions.\u003Cbr \u002F>\nThis plugin is developed and maintained by \u003Ca href=\"https:\u002F\u002Ftwitter.com\u002Fsharazghouri1\" rel=\"nofollow ugc\">Sharaz Shahid\u003C\u002Fa>\u003C\u002Fp>\n","Code widget help  to  add  Short Code, PHP Code, HTML, and Simple Text in widget.",4000,60271,98,35,"2022-06-11T11:06:00.000Z","6.1.0","4.0","7.0",[53,54,55,20,56],"code","html","php","widget","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fcode-widget\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcode-widget.1.0.15.zip",{"slug":60,"name":61,"version":62,"author":63,"author_profile":64,"description":65,"short_description":66,"active_installs":67,"downloaded":68,"rating":69,"num_ratings":70,"last_updated":71,"tested_up_to":72,"requires_at_least":73,"requires_php":18,"tags":74,"homepage":78,"download_link":79,"security_score":23,"vuln_count":24,"unpatched_count":24,"last_vuln_date":25,"fetched_at":26},"url-shortcodes","URL ShortCodes","1.2","cgarvey","https:\u002F\u002Fprofiles.wordpress.org\u002Fcgarvey\u002F","\u003Cp>Sometimes you want to put the base URL (that of the blog, or that of the active template) in your content editor. Times when the template customising isn’t quite flexible enough.\u003Cbr \u002F>\nWith this plugin you can use [url_base] to output the base URL of the blog (as set in your Settings). Or, you can use [url_template] to output the URL of the active template.\u003C\u002Fp>\n\u003Cp>For example \u003Ccode>\u003Cimg src=\"[url_base]\u002Ftest.png \u002F>\u003C\u002Fcode> in your editor might output \u003Ccode>\u003Cimg src=\"http:\u002F\u002Flocalhost\u002Fwordpress\u002Ftest.png\" \u002F>\u003C\u002Fcode> (if http:\u002F\u002Flocalhost\u002Fwordpress is what you have configured as your blog URL in Settings).\u003C\u002Fp>\n\u003Cp>The supported short codes are as follows:\u003Cbr \u002F>\n* [url_base] – the configured blog URL (set in Settings). E.g. http:\u002F\u002Flocalhost\u002Fwordpress\u003Cbr \u002F>\n* [url_template] – the URL of the active template. E.g. http:\u002F\u002Flocalhost\u002Fwordpress\u002Fwp-content\u002Fthemes\u002Fmytheme1\u003C\u002Fp>\n\u003Ch3>License\u003C\u002Fh3>\n\u003Cp>This plugin uses the GPLv3 license.\u003C\u002Fp>\n","URL ShortCodes plugin adds support for a basic short codes to use in your post\u002Fpage editor that produce correct absolute URLs.",2000,12824,100,1,"2018-12-08T00:33:00.000Z","5.0.25","2.9.0",[63,20,75,76,77],"shortcode","stylesheet","template","http:\u002F\u002Fcgarvey.ie\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Furl-shortcodes.rel_1-02.zip",{"slug":81,"name":82,"version":83,"author":84,"author_profile":85,"description":86,"short_description":87,"active_installs":88,"downloaded":89,"rating":69,"num_ratings":90,"last_updated":91,"tested_up_to":92,"requires_at_least":93,"requires_php":94,"tags":95,"homepage":99,"download_link":100,"security_score":101,"vuln_count":102,"unpatched_count":24,"last_vuln_date":103,"fetched_at":26},"uix-shortcodes","Uix Shortcodes","2.0.5","UIUX Lab","https:\u002F\u002Fprofiles.wordpress.org\u002Fuiuxlab\u002F","\u003Cp>Uix Shortcodes makes it easy and quick to add the shortcode you need to achieve the page layout or function you desire. It provides easy to use over 26+ shortcodes. The content elements are the heart of any page builder. These are the elements shortcodes that come with theme. You may customize the shortcode by changing\u002Fadding the parameters. \u003Cstrong>“Content Shortcode”\u003C\u002Fstrong>, \u003Cstrong>“Column Shortcode”\u003C\u002Fstrong>, \u003Cstrong>“Web Elements Shortcode”\u003C\u002Fstrong>, \u003Cstrong>“Container Shortcode”\u003C\u002Fstrong>, and so on. They could be used together. \u003Cstrong>It is compatible with Gutenberg.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>The Uix Shortcodes consists of several core features that are key to support multi-style switch. According to current progress, some styles can be summarized as follows: \u003Cstrong>Elegant (default), Slant, Rich.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>A variety of optional styles are available for Uix ShortCodes. Go to \u003Cstrong>“Uix ShortCodes -> Settings -> General Settings”\u003C\u002Fstrong>, you can choose the shortcodes style you want.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Included Modules\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>The currently available default elements:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>container\u003C\u002Fli>\n\u003Cli>parallax\u003C\u002Fli>\n\u003Cli>image slider\u003C\u002Fli>\n\u003Cli>timeline\u003C\u002Fli>\n\u003Cli>columns\u003C\u002Fli>\n\u003Cli>buttons\u003C\u002Fli>\n\u003Cli>progress bar\u003C\u002Fli>\n\u003Cli>google maps\u003C\u002Fli>\n\u003Cli>special heading\u003C\u002Fli>\n\u003Cli>pricing table\u003C\u002Fli>\n\u003Cli>icons\u003C\u002Fli>\n\u003Cli>features boxes\u003C\u002Fli>\n\u003Cli>testimonials carousel\u003C\u002Fli>\n\u003Cli>team\u003C\u002Fli>\n\u003Cli>list of clients\u003C\u002Fli>\n\u003Cli>responsive video\u003C\u002Fli>\n\u003Cli>audio\u003C\u002Fli>\n\u003Cli>accordion\u003C\u002Fli>\n\u003Cli>dividing line\u003C\u002Fli>\n\u003Cli>tabs\u003C\u002Fli>\n\u003Cli>code with highlighter\u003C\u002Fli>\n\u003Cli>share buttons\u003C\u002Fli>\n\u003Cli>contact form(use commenting form template)\u003C\u002Fli>\n\u003Cli>portfolio(support lightbox)\u003C\u002Fli>\n\u003Cli>recent posts with custom template\u003C\u002Fli>\n\u003Cli>author card\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002F8bX2vyA5iT4?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\u003C\u002Fp>\n","Uix Shortcodes brings an amazing set of beautiful and useful elements to your site that lets you do nifty things with very little effort.",400,42710,4,"2025-04-24T06:11:00.000Z","6.8.5","4.2","5.6",[96,97,20,75,98],"blocks","gutenberg","shortcodes","https:\u002F\u002Fuiux.cc\u002Fwp-plugins\u002Fuix-shortcodes\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fuix-shortcodes.2.0.5.zip",94,3,"2025-04-16 00:00:00",{"slug":105,"name":106,"version":107,"author":108,"author_profile":109,"description":110,"short_description":111,"active_installs":112,"downloaded":113,"rating":69,"num_ratings":102,"last_updated":114,"tested_up_to":115,"requires_at_least":116,"requires_php":18,"tags":117,"homepage":121,"download_link":122,"security_score":23,"vuln_count":24,"unpatched_count":24,"last_vuln_date":25,"fetched_at":26},"twitters-bootstrap-shortcodes-ultimate","Twitter's Bootstrap Shortcodes Ultimate Add-on","1.0.4","bassjobsen","https:\u002F\u002Fprofiles.wordpress.org\u002Fbassjobsen\u002F","\u003Cp>Add short codes for \u003Ca href=\"http:\u002F\u002Fwww.getbootstrap.com\u002F\" rel=\"nofollow ugc\">Twitter’s Bootstrap 3\u003C\u002Fa> CSS and components to your site add-on for \u003Ca href=\"http:\u002F\u002Fgndev.info\u002Fshortcodes-ultimate\u002F\" rel=\"nofollow ugc\">Shortcodes Ultimate\u003C\u002Fa>. Shortcodes Ultimate is WordPress plugin that provides mega pack of shortcodes. With this plugin you can easily create tabs, buttons, boxes, different sliders, responsive videos and much, much more. Turn your free theme to premium in just a few clicks. Bootstrap is a sleek, intuitive, and powerful mobile first front-end framework for faster and easier web development. This add-on give you the full power of Bootstrap without editing any code.\u003C\u002Fp>\n\u003Cp>Contribute!\u003C\u002Fp>\n\u003Cp>If you have suggestions for a new feature or improvement, feel free to contact us on \u003Ca href=\"http:\u002F\u002Ftwitter.com\u002FJamedoWebsites\" rel=\"nofollow ugc\">@JamedoWebsites\u003C\u002Fa>. Alternatively, you can fork the plugin from \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fbassjobsen\u002Ftwitterbootstrap-shortcodes-ultimate\" rel=\"nofollow ugc\">Github\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch3>Requirements\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fdownload\u002F\" rel=\"ugc\">WordPress\u003C\u002Fa> tested with >= 3.6\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fshortcodes-ultimate\u002F\" rel=\"ugc\">Shortcodes Ultimate\u003C\u002Fa> tested with >= 4.3.2\u003C\u002Fli>\n\u003Cli>A Bootstrap ready WordPress Theme, try \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fbassjobsen\u002Fjamedo-bootstrap-start-theme\u002F\" rel=\"nofollow ugc\">JBST\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Support\u003C\u002Fh3>\n\u003Cp>We are always happy to help you. If you have any question regarding this code. \u003Ca href=\"http:\u002F\u002Fwww.jamedowebsites.nl\u002Fcontact\u002F\" rel=\"nofollow ugc\">Send us a message\u003C\u002Fa> or contact us on twitter \u003Ca href=\"http:\u002F\u002Ftwitter.com\u002FJamedoWebsites\" rel=\"nofollow ugc\">@JamedoWebsites\u003C\u002Fa>.\u003C\u002Fp>\n","Add short codes for Twitter's Bootstrap 3 CSS and components to your site add-on for Shortcodes Ultimate.",300,14176,"2014-01-05T23:25:00.000Z","3.9.40","3.6",[118,119,120],"short-codes","shortcodes-ultimate","twitters-bootstrap-3","https:\u002F\u002Fgithub.com\u002Fbassjobsen\u002Ftwitterbootstrap-shortcodes-ultimate","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Ftwitters-bootstrap-shortcodes-ultimate.1.0.4.zip",{"slug":124,"name":125,"version":126,"author":127,"author_profile":128,"description":129,"short_description":130,"active_installs":131,"downloaded":132,"rating":69,"num_ratings":70,"last_updated":133,"tested_up_to":134,"requires_at_least":135,"requires_php":18,"tags":136,"homepage":141,"download_link":142,"security_score":143,"vuln_count":70,"unpatched_count":70,"last_vuln_date":144,"fetched_at":26},"ss-font-awesome-icon","SS Font Awesome Icon","4.1.3","Shiful H","https:\u002F\u002Fprofiles.wordpress.org\u002Fwsaiful\u002F","\u003Cp>Easiest way to integrate Font Awesome Icon in any post or widget.\u003C\u002Fp>\n\u003Cp>Example below :\u003C\u002Fp>\n\u003Cp>https:\u002F\u002Ffontawesome.com\u002Ficons?d=gallery\u003C\u002Fp>\n\u003Cp>You can use:\u003Cbr \u002F>\n[icon type=”s” name=”umbrella” size=”15″ padding=”2″]\u003C\u002Fp>\n\u003Cp>(All icons required font type or icon type. If solid please write type=”s”. If font type regular you need to write type=”r”, same thing b for brand.\u003C\u002Fp>\n\u003C\u002Fp>\n\u003Cp>You must use:\u003Cbr \u002F>\n[icon type=”b” name=”twitter”] All branded icons are now font type = b\u003C\u002Fp>\n\u003Cp>All the types are listed below and uses examples.\u003C\u002Fp>\n\u003Cblockquote>\n\u003Cp>Type Solid : [icon name=”” type=”s”]\u003Cbr \u002F>\n  Type Regular : [icon name=”” type=”r”]\u003Cbr \u002F>\n  Type Light : [icon name=”” type=”l”]\u003Cbr \u002F>\n  Type Brand : [icon name=”” type=”b”]\u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Cp>Use class parameter if you want to include any class. Below included all possible parameters.\u003Cbr \u002F>\n[icon name=”facebook-f” type=”b” size=”25″ padding=”3″ margin=”2″ bg=”blue” color=”white”]\u003Cbr \u002F>\nFont size is in pixel, i\u002Fe 25px, and padding margin are % i\u002Fe 3%, 2%.\u003C\u002Fp>\n\u003Cp>Please note- You must include the padding and margin, otherwise here default padding and margin are avail(2%)\u003C\u002Fp>\n\u003Cp>All of icons are in below list, grab your favorite icon and enjoy it!\u003C\u002Fp>\n\u003Cp>https:\u002F\u002Ffontawesome.com\u002Ficons?d=gallery or\u003C\u002Fp>\n\u003Cp>Find all type of icons and  use to WordPress post,  page, widgets.\u003C\u002Fp>\n\u003Cp>If you need more docs you can go below links—\u003Cbr \u002F>\nhttp:\u002F\u002Fsobshomoy.com\u002Fplugins\u002Fss-font-awesome-icon\u002F\u003C\u002Fp>\n\u003Ch3>Premium Plugin\u003C\u002Fh3>\n\u003Cp>This plugin has a latest premium update included on \u003Cstrong>“SS Total Short Code”\u003C\u002Fstrong> plugin. Very soon it will be available at: http:\u002F\u002Fsobshomoy.com\u002Fss-total-short-code\u003C\u002Fp>\n\u003Ch3>Version 4.1\u003C\u002Fh3>\n\u003Cp>Updated with latest fontawesome 5.3.1 version.\u003C\u002Fp>\n\u003Ch3>Version 3.1.2\u003C\u002Fh3>\n\u003Cp>We’re sorry for the last update where it was not fully tested with fontawesome v5. Now we made few more changes to get old version of icon and new version of icon in same plugin. Hope this update will recover your last two months issues.\u003C\u002Fp>\n\u003Ch3>Version 3\u003C\u002Fh3>\n\u003Cp>Latest Fontawesome 5.0 installed and supported. You’ll not get any icon missing. But apology on Pro support.\u003C\u002Fp>\n\u003Ch3>Version 2.1.4\u003C\u002Fh3>\n\u003Cp>Latest WordPress compatibility checked.\u003C\u002Fp>\n\u003Ch3>Version 2.1.3\u003C\u002Fh3>\n\u003Cp>Updated for new icons support.\u003Cbr \u002F>\nMargin and padding changed to 2% by default.\u003C\u002Fp>\n\u003Ch3>Version 2.1.2\u003C\u002Fh3>\n\u003Cp>1.updated with new font awesome icons\u003Cbr \u002F>\n2.Fixed few bugs\u003C\u002Fp>\n","Easiest way to integrate Font Awesome Icon in any post or widget.",200,8422,"2020-08-29T04:22:00.000Z","5.5.0","4.0.0",[137,138,139,140],"font-awesome-icon-inside-post","font-awesome-icon-short-codes","post-inside-icons","total-font-awesome-icons","http:\u002F\u002Fsobshomoy.com\u002Fplugins\u002Fss-font-awesome-icon","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fss-font-awesome-icon.zip",63,"2025-09-05 00:00:00",{"attackSurface":146,"codeSignals":162,"taintFlows":176,"riskAssessment":203,"analyzedAt":211},{"hooks":147,"ajaxHandlers":154,"restRoutes":155,"shortcodes":156,"cronEvents":161,"entryPointCount":70,"unprotectedCount":24},[148],{"type":149,"name":150,"callback":151,"file":152,"line":153},"action","admin_menu","thought_config_menu","thoughts-of-the-day.php",21,[],[],[157],{"tag":158,"callback":159,"file":152,"line":160},"THOUGHTSOFTHEDAY","thought_day",22,[],{"dangerousFunctions":163,"sqlUsage":164,"outputEscaping":166,"fileOperations":24,"externalRequests":24,"nonceChecks":24,"capabilityChecks":24,"bundledLibraries":175},[],{"prepared":24,"raw":24,"locations":165},[],{"escaped":24,"rawEcho":102,"locations":167},[168,171,173],{"file":152,"line":169,"context":170},29,"raw output",{"file":152,"line":172,"context":170},44,{"file":152,"line":174,"context":170},46,[],[177,195],{"entryPoint":178,"graph":179,"unsanitizedCount":70,"severity":194},"thoughtdss (thoughts-of-the-day.php:32)",{"nodes":180,"edges":191},[181,186],{"id":182,"type":183,"label":184,"file":152,"line":185},"n0","source","$_POST['thought_text']",34,{"id":187,"type":188,"label":189,"file":152,"line":185,"wp_function":190},"n1","sink","update_option() [Settings Manipulation]","update_option",[192],{"from":182,"to":187,"sanitized":193},false,"low",{"entryPoint":196,"graph":197,"unsanitizedCount":70,"severity":194},"\u003Cthoughts-of-the-day> (thoughts-of-the-day.php:0)",{"nodes":198,"edges":201},[199,200],{"id":182,"type":183,"label":184,"file":152,"line":185},{"id":187,"type":188,"label":189,"file":152,"line":185,"wp_function":190},[202],{"from":182,"to":187,"sanitized":193},{"summary":204,"deductions":205},"The \"thoughts-of-the-day\" plugin v1.1 demonstrates some positive security practices, such as the complete absence of direct SQL queries and file operations. The static analysis reveals no dangerous functions and a clean vulnerability history with zero recorded CVEs. This suggests a generally well-maintained and potentially secure codebase.\n\nHowever, significant concerns arise from the output escaping analysis and taint analysis. The fact that 100% of the observed outputs are not properly escaped presents a notable risk of Cross-Site Scripting (XSS) vulnerabilities. Furthermore, the taint analysis identified two flows with unsanitized paths. While these were not flagged as critical or high severity, they still indicate potential pathways for malicious data to be processed without adequate sanitization, which could lead to unexpected behavior or security issues if exploited.\n\nDespite the lack of known vulnerabilities and the absence of a large attack surface or unauthenticated entry points, the identified issues with output escaping and unsanitized taint flows represent a tangible risk. The plugin would benefit greatly from implementing proper output sanitization and reviewing the identified unsanitized paths to ensure data integrity and prevent potential XSS or other injection-style attacks.",[206,209],{"reason":207,"points":208},"Unescaped output detected",6,{"reason":210,"points":90},"Unsanitized paths in taint analysis","2026-03-17T00:50:55.438Z",{"wat":213,"direct":219},{"assetPaths":214,"generatorPatterns":216,"scriptPaths":217,"versionParams":218},[215],"\u002Fwp-content\u002Fplugins\u002Fthoughts-of-the-day\u002Fthought.png",[],[],[],{"cssClasses":220,"htmlComments":223,"htmlAttributes":224,"restEndpoints":229,"jsGlobals":230,"shortcodeOutput":231},[221,222],"thought_box","alert",[],[225,226,227,228],"name=\"thought_text\"","id=\"thought_text\"","name=\"satsang_date\"","id=\"satsang_date\"",[],[],[232,233],"\u003Cdiv style=\"width:100%;float:left;\">\u003Cdiv style=\" background: #D88740;padding:7px 5px 1px 13px;height: 32px; color:#E4F57A; width:30%; float:left;\">THOUGHTS OF THE DAY\u003C\u002Fdiv>\u003Cdiv style=\"background: #FAC591; padding:7px 5px 1px 13px;height: 32px; margin:0; float:left;width:60%\">","\u003C\u002Fdiv> \u003C\u002Fdiv>"]