[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fDoP6xRiG9YKiTB1_bnn3vM3xgdoshQB4SYWY9k8U0UY":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":15,"tags":18,"homepage":15,"download_link":20,"security_score":13,"vuln_count":21,"unpatched_count":21,"last_vuln_date":22,"fetched_at":23,"vulnerabilities":24,"developer":25,"crawl_stats":22,"alternatives":32,"analysis":33,"fingerprints":471},"trendmag-toolkit","Trendmag Toolkit","1.0.1","kopatheme","https:\u002F\u002Fprofiles.wordpress.org\u002Fkopatheme\u002F","\u003Cp>A specific plugin use in Trendmag Theme, included some custom widgets, and layout.\u003C\u002Fp>\n","A specific plugin use in Trendmag Theme, included some custom widgets, and layout.",10,1515,100,1,"","4.0.38","3.8",[19],"trendmag-theme","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Ftrendmag-toolkit.zip",0,null,"2026-03-15T10:48:56.248Z",[],{"slug":7,"display_name":7,"profile_url":8,"plugin_count":26,"total_installs":27,"avg_security_score":28,"avg_patch_time_days":29,"trust_score":30,"computed_at":31},4,240,93,30,89,"2026-04-04T10:37:53.580Z",[],{"attackSurface":34,"codeSignals":295,"taintFlows":461,"riskAssessment":462,"analyzedAt":470},{"hooks":35,"ajaxHandlers":243,"restRoutes":248,"shortcodes":249,"cronEvents":294,"entryPointCount":136,"unprotectedCount":14},[36,42,47,51,55,59,62,64,67,72,74,76,78,80,82,85,87,91,94,96,98,100,102,104,106,108,110,112,114,116,118,121,123,127,129,131,133,137,139,143,147,151,154,158,162,167,171,175,177,180,183,187,190,193,197,201,205,209,213,217,221,225,228,232,236,239],{"type":37,"name":38,"callback":39,"file":40,"line":41},"action","wp_head","trendmag_set_view_count_for_post","inc\\hook.php",132,{"type":37,"name":43,"callback":44,"priority":21,"file":45,"line":46},"init","register_post_type","inc\\post-types\\megamenu.php",8,{"type":37,"name":48,"callback":49,"file":45,"line":50},"admin_init","register_metabox",9,{"type":52,"name":53,"callback":54,"file":45,"line":11},"filter","manage_megamenu_posts_columns","manage_colums",{"type":37,"name":56,"callback":57,"file":45,"line":58},"manage_megamenu_posts_custom_column","manage_colum",11,{"type":37,"name":48,"callback":48,"file":60,"line":61},"inc\\shortcode.php",6,{"type":52,"name":63,"callback":63,"file":60,"line":58},"mce_external_plugins",{"type":52,"name":65,"callback":65,"file":60,"line":66},"mce_buttons",12,{"type":37,"name":68,"callback":69,"file":70,"line":71},"widgets_init","register_widget","inc\\widgets\\contact\\contact-simple.php",3,{"type":37,"name":68,"callback":69,"file":73,"line":71},"inc\\widgets\\contact\\contact-text.php",{"type":37,"name":68,"callback":69,"file":75,"line":71},"inc\\widgets\\contact\\google-map.php",{"type":37,"name":68,"callback":69,"file":77,"line":71},"inc\\widgets\\contact\\newsletter-feedburner.php",{"type":37,"name":68,"callback":69,"file":79,"line":71},"inc\\widgets\\contact\\social-links.php",{"type":37,"name":68,"callback":69,"file":81,"line":71},"inc\\widgets\\intro\\advertisement.php",{"type":52,"name":83,"callback":84,"file":81,"line":26},"dynamic_sidebar_params","dynamic_sidebar_params_for_widget_grid_post",{"type":37,"name":68,"callback":69,"file":86,"line":71},"inc\\widgets\\post\\carousel-slide-five.php",{"type":52,"name":88,"callback":89,"file":90,"line":71},"kpb_get_widgets_list","register_block","inc\\widgets\\post\\carousel-slide-media.php",{"type":37,"name":68,"callback":69,"file":92,"line":93},"inc\\widgets\\post\\carousel-slide-one.php",2,{"type":37,"name":68,"callback":69,"file":95,"line":71},"inc\\widgets\\post\\carousel-slide-three.php",{"type":37,"name":68,"callback":69,"file":97,"line":71},"inc\\widgets\\post\\grid-posts-carousel.php",{"type":37,"name":68,"callback":69,"file":99,"line":71},"inc\\widgets\\post\\grid-posts-more-link.php",{"type":37,"name":68,"callback":69,"file":101,"line":71},"inc\\widgets\\post\\grid-posts.php",{"type":37,"name":68,"callback":69,"file":103,"line":71},"inc\\widgets\\post\\list-videos.php",{"type":37,"name":68,"callback":69,"file":105,"line":71},"inc\\widgets\\post\\megamenu-posts.php",{"type":37,"name":68,"callback":69,"file":107,"line":71},"inc\\widgets\\post\\posts-bxslider.php",{"type":37,"name":68,"callback":69,"file":109,"line":71},"inc\\widgets\\post\\posts-carousel.php",{"type":37,"name":68,"callback":69,"file":111,"line":71},"inc\\widgets\\post\\recent-posts.php",{"type":37,"name":68,"callback":69,"file":113,"line":71},"inc\\widgets\\post\\sticky-posts.php",{"type":37,"name":68,"callback":69,"file":115,"line":71},"inc\\widgets\\social\\flickr-photos.php",{"type":37,"name":68,"callback":69,"file":117,"line":71},"inc\\widgets\\social\\instagram-photos.php",{"type":37,"name":68,"callback":69,"file":119,"line":120},"inc\\widgets\\woocomerce\\latest-products.php",15,{"type":37,"name":68,"callback":69,"file":122,"line":61},"inc\\widgets\\woocomerce\\list-products.php",{"type":52,"name":124,"callback":125,"file":122,"line":126},"posts_clauses","order_by_rating_post_clauses",265,{"type":37,"name":68,"callback":69,"file":128,"line":61},"inc\\widgets\\woocomerce\\product-category-carousel.php",{"type":37,"name":68,"callback":69,"file":130,"line":61},"inc\\widgets\\woocomerce\\product-category.php",{"type":37,"name":43,"callback":43,"file":132,"line":58},"inc\\woocommerce.php",{"type":52,"name":134,"callback":135,"file":132,"line":136},"kopa_layout_manager_settings","add_layout_product_archive",14,{"type":52,"name":134,"callback":138,"file":132,"line":120},"add_layout_product_single",{"type":52,"name":140,"callback":141,"file":132,"line":142},"kopa_custom_template_setting_id","set_layout_setting_id",16,{"type":52,"name":144,"callback":145,"priority":11,"file":132,"line":146},"kopa_custom_template_setting","get_layout_setting",17,{"type":52,"name":148,"callback":149,"file":132,"line":150},"trendmag_get_breadcrumb","__return_false",22,{"type":52,"name":152,"callback":149,"file":132,"line":153},"woocommerce_show_page_title",23,{"type":52,"name":155,"callback":156,"file":132,"line":157},"woocommerce_breadcrumb_defaults","edit_breadcrumb_args",24,{"type":37,"name":159,"callback":160,"file":132,"line":161},"trendmag_breadcrumb","woocommerce_breadcrumb",25,{"type":37,"name":163,"callback":164,"priority":165,"file":132,"line":166},"woocommerce_before_main_content","before_main_content",5,27,{"type":37,"name":168,"callback":169,"priority":165,"file":132,"line":170},"woocommerce_after_main_content","after_main_content",28,{"type":37,"name":172,"callback":173,"priority":165,"file":132,"line":174},"woocommerce_sidebar","get_sidebar",29,{"type":52,"name":176,"callback":176,"file":132,"line":29},"loop_shop_columns",{"type":37,"name":178,"callback":178,"file":179,"line":157},"plugins_loaded","trendmag-toolkit.php",{"type":37,"name":181,"callback":181,"priority":182,"file":179,"line":161},"after_setup_theme",20,{"type":52,"name":184,"callback":185,"file":179,"line":186},"wp_video_shortcode","trendmag_toolkit_make_video_shortcode_responsive",42,{"type":37,"name":188,"callback":188,"priority":182,"file":179,"line":189},"admin_enqueue_scripts",44,{"type":37,"name":48,"callback":191,"file":179,"line":192},"trendmag_toolkit_register_metabox_post_featured",45,{"type":52,"name":194,"callback":195,"priority":11,"file":179,"line":196},"kopa_admin_meta_box_field_quote","trendmag_toolkit_metabox_field_quote",48,{"type":52,"name":198,"callback":199,"priority":11,"file":179,"line":200},"kopa_admin_meta_box_field_icon","trendmag_toolkit_metabox_field_icon",49,{"type":52,"name":202,"callback":203,"priority":11,"file":179,"line":204},"kopa_admin_meta_box_field_gallery","trendmag_toolkit_metabox_field_gallery",50,{"type":52,"name":206,"callback":207,"priority":11,"file":179,"line":208},"kopa_widget_form_field_link_icon","trendmag_toolkit_widget_field_link_icon",53,{"type":52,"name":210,"callback":211,"priority":11,"file":179,"line":212},"kopa_widget_form_field_icon","trendmag_toolkit_widget_field_icon",54,{"type":52,"name":214,"callback":215,"priority":11,"file":179,"line":216},"kopa_admin_meta_box_wrap_start","trendmag_toolkit_meta_box_wrap_start",57,{"type":52,"name":218,"callback":219,"priority":11,"file":179,"line":220},"kopa_admin_meta_box_wrap_end","trendmag_toolkit_meta_box_wrap_end",58,{"type":52,"name":222,"callback":223,"file":179,"line":224},"user_contactmethods","trendmag_modify_user_profile",61,{"type":37,"name":226,"callback":226,"priority":50,"file":179,"line":227},"wp_enqueue_scripts",63,{"type":37,"name":229,"callback":230,"file":179,"line":231},"trendmag_seach_share_post_via_social","trendmag_toolkit_search_share_via_social",64,{"type":52,"name":233,"callback":234,"file":179,"line":235},"embed_handler_html","trendmag_toolkit_youtube_settings",66,{"type":52,"name":237,"callback":234,"file":179,"line":238},"embed_oembed_html",67,{"type":52,"name":240,"callback":241,"file":179,"line":242},"excerpt_more","trendmag_toolkit_excerpt_more",69,[244],{"action":245,"nopriv":246,"callback":245,"hasNonce":246,"hasCapCheck":246,"file":179,"line":247},"trendmag_toolkit_get_lighbox_icons",false,73,[],[250,254,256,260,264,268,272,276,278,282,286,288,292],{"tag":251,"callback":252,"file":253,"line":71},"trendmag_accordions","trendmag_toolkit_shortcode_accordions","inc\\shortcodes\\accordions.php",{"tag":255,"callback":149,"file":253,"line":26},"trendmag_accordion",{"tag":257,"callback":258,"file":259,"line":71},"trendmag_alert","trendmag_toolkit_shortcode_alert","inc\\shortcodes\\alert.php",{"tag":261,"callback":262,"file":263,"line":71},"trendmag_button","trendmag_toolkit_shortcode_button","inc\\shortcodes\\button.php",{"tag":265,"callback":266,"file":267,"line":71},"trendmag_caption","trendmag_toolkit_shortcode_caption","inc\\shortcodes\\caption.php",{"tag":269,"callback":270,"file":271,"line":71},"trendmag_dropcap","trendmag_toolkit_shortcode_dropcap","inc\\shortcodes\\dropcaps.php",{"tag":273,"callback":274,"file":275,"line":71},"trendmag_row","trendmag_toolkit_shortcode_row","inc\\shortcodes\\grid.php",{"tag":277,"callback":149,"file":275,"line":26},"trendmag_col",{"tag":279,"callback":280,"file":281,"line":71},"trendmag_megamenu","trendmag_toolkit_shortcode_megamenu","inc\\shortcodes\\megamenu.php",{"tag":283,"callback":284,"file":285,"line":71},"trendmag_tabs","trendmag_toolkit_shortcode_tabs","inc\\shortcodes\\tabs.php",{"tag":287,"callback":149,"file":285,"line":26},"trendmag_tab",{"tag":289,"callback":290,"file":291,"line":71},"trendmag_toggles","trendmag_toolkit_shortcode_toggles","inc\\shortcodes\\toggle.php",{"tag":293,"callback":149,"file":291,"line":26},"trendmag_toggle",[],{"dangerousFunctions":296,"sqlUsage":297,"outputEscaping":299,"fileOperations":21,"externalRequests":21,"nonceChecks":14,"capabilityChecks":93,"bundledLibraries":457},[],{"prepared":21,"raw":21,"locations":298},[],{"escaped":300,"rawEcho":301,"locations":302},261,94,[303,306,307,309,310,312,313,315,317,318,320,321,323,325,326,328,330,331,333,335,336,338,340,341,343,345,347,349,350,351,353,355,357,358,360,362,364,365,366,368,369,371,373,375,377,378,379,380,382,384,386,388,390,392,394,396,397,398,400,401,403,405,406,407,408,410,411,412,414,415,416,418,419,420,421,422,424,426,428,430,432,434,436,438,440,442,444,446,447,448,450,452,454,456],{"file":304,"line":61,"context":305},"inc\\fields\\metabox\\gallery.php","raw output",{"file":304,"line":150,"context":305},{"file":308,"line":61,"context":305},"inc\\fields\\metabox\\icon.php",{"file":308,"line":150,"context":305},{"file":311,"line":61,"context":305},"inc\\fields\\widget\\icon.php",{"file":311,"line":157,"context":305},{"file":314,"line":61,"context":305},"inc\\fields\\widget\\link-icon.php",{"file":314,"line":316,"context":305},52,{"file":45,"line":301,"context":305},{"file":45,"line":319,"context":305},113,{"file":70,"line":242,"context":305},{"file":70,"line":322,"context":305},103,{"file":70,"line":324,"context":305},105,{"file":73,"line":242,"context":305},{"file":73,"line":327,"context":305},125,{"file":73,"line":329,"context":305},127,{"file":75,"line":208,"context":305},{"file":75,"line":332,"context":305},70,{"file":75,"line":334,"context":305},74,{"file":77,"line":204,"context":305},{"file":77,"line":337,"context":305},85,{"file":77,"line":339,"context":305},87,{"file":79,"line":316,"context":305},{"file":79,"line":342,"context":305},81,{"file":79,"line":344,"context":305},83,{"file":81,"line":346,"context":305},86,{"file":81,"line":348,"context":305},98,{"file":81,"line":13,"context":305},{"file":86,"line":212,"context":305},{"file":86,"line":352,"context":305},114,{"file":86,"line":354,"context":305},118,{"file":90,"line":356,"context":305},47,{"file":90,"line":28,"context":305},{"file":90,"line":359,"context":305},120,{"file":90,"line":361,"context":305},124,{"file":92,"line":363,"context":305},34,{"file":92,"line":332,"context":305},{"file":92,"line":334,"context":305},{"file":95,"line":367,"context":305},35,{"file":95,"line":28,"context":305},{"file":95,"line":370,"context":305},97,{"file":97,"line":372,"context":305},40,{"file":97,"line":374,"context":305},59,{"file":97,"line":376,"context":305},112,{"file":97,"line":352,"context":305},{"file":97,"line":354,"context":305},{"file":99,"line":204,"context":305},{"file":99,"line":381,"context":305},111,{"file":99,"line":383,"context":305},115,{"file":101,"line":385,"context":305},56,{"file":101,"line":387,"context":305},141,{"file":101,"line":389,"context":305},145,{"file":103,"line":391,"context":305},51,{"file":103,"line":393,"context":305},133,{"file":103,"line":395,"context":305},137,{"file":105,"line":316,"context":305},{"file":105,"line":324,"context":305},{"file":105,"line":399,"context":305},109,{"file":107,"line":374,"context":305},{"file":107,"line":402,"context":305},119,{"file":107,"line":404,"context":305},123,{"file":109,"line":196,"context":305},{"file":109,"line":342,"context":305},{"file":109,"line":337,"context":305},{"file":111,"line":409,"context":305},38,{"file":111,"line":301,"context":305},{"file":111,"line":348,"context":305},{"file":113,"line":413,"context":305},60,{"file":113,"line":235,"context":305},{"file":113,"line":370,"context":305},{"file":113,"line":417,"context":305},101,{"file":115,"line":204,"context":305},{"file":115,"line":342,"context":305},{"file":115,"line":344,"context":305},{"file":117,"line":204,"context":305},{"file":117,"line":423,"context":305},76,{"file":117,"line":425,"context":305},78,{"file":119,"line":427,"context":305},71,{"file":119,"line":429,"context":305},138,{"file":119,"line":431,"context":305},144,{"file":119,"line":433,"context":305},164,{"file":119,"line":435,"context":305},168,{"file":122,"line":437,"context":305},102,{"file":122,"line":439,"context":305},179,{"file":122,"line":441,"context":305},181,{"file":122,"line":443,"context":305},200,{"file":122,"line":445,"context":305},204,{"file":128,"line":242,"context":305},{"file":128,"line":429,"context":305},{"file":128,"line":449,"context":305},140,{"file":130,"line":451,"context":305},75,{"file":130,"line":453,"context":305},149,{"file":130,"line":455,"context":305},166,{"file":130,"line":435,"context":305},[458],{"name":459,"version":22,"knownCves":460},"TinyMCE",[],[],{"summary":463,"deductions":464},"The 'trendmag-toolkit' v1.0.1 plugin exhibits a generally good security posture, with no known historical vulnerabilities or critical code analysis findings. The absence of dangerous functions, raw SQL queries, file operations, and external HTTP requests are all positive indicators. Furthermore, the plugin utilizes prepared statements for all SQL queries and has a reasonable percentage of properly escaped output. The presence of nonce and capability checks, while limited in number, suggests an awareness of security best practices.\n\nHowever, there are specific areas of concern that slightly detract from its otherwise strong security. The most significant is the presence of one AJAX handler that lacks proper authentication checks. This creates an unprotected entry point that could be exploited if it performs any sensitive actions. While taint analysis found no issues, this one unprotected AJAX endpoint represents a potential vulnerability vector. The plugin's attack surface is moderate, and the single unprotected entry point is the primary weakness identified.\n\nIn conclusion, 'trendmag-toolkit' v1.0.1 is a relatively secure plugin due to its adherence to many secure coding practices and its clean vulnerability history. The lack of reported CVEs and the use of prepared statements are commendable. The main risk lies in the single AJAX handler without authentication. Addressing this specific weakness would significantly enhance the plugin's overall security.",[465,468],{"reason":466,"points":467},"AJAX handler without authentication",7,{"reason":469,"points":165},"Unescaped output present","2026-03-16T23:27:58.943Z",{"wat":472,"direct":487},{"assetPaths":473,"generatorPatterns":484,"scriptPaths":485,"versionParams":486},[474,475,476,477,478,479,480,481,482,483],"\u002Fwp-content\u002Fplugins\u002Ftrendmag-toolkit\u002Fassets\u002Fcss\u002Ffont-awesome.css","\u002Fwp-content\u002Fplugins\u002Ftrendmag-toolkit\u002Fassets\u002Fcss\u002Fflaticon.css","\u002Fwp-content\u002Fplugins\u002Ftrendmag-toolkit\u002Fassets\u002Fcss\u002Fdatagrid.css","\u002Fwp-content\u002Fplugins\u002Ftrendmag-toolkit\u002Fassets\u002Fcss\u002Fwidget.css","\u002Fwp-content\u002Fplugins\u002Ftrendmag-toolkit\u002Fassets\u002Fcss\u002Fmetabox.css","\u002Fwp-content\u002Fplugins\u002Ftrendmag-toolkit\u002Fassets\u002Fcss\u002Fjquery-ui\u002Fjquery-ui.css","\u002Fwp-content\u002Fplugins\u002Ftrendmag-toolkit\u002Fassets\u002Fcss\u002Fjquery-ui\u002Fjquery-ui.structure.css","\u002Fwp-content\u002Fplugins\u002Ftrendmag-toolkit\u002Fassets\u002Fcss\u002Fjquery-ui\u002Fjquery-ui.theme.css","\u002Fwp-content\u002Fplugins\u002Ftrendmag-toolkit\u002Fassets\u002Fjs\u002Ficon_picker.js","\u002Fwp-content\u002Fplugins\u002Ftrendmag-toolkit\u002Fassets\u002Fjs\u002Fgallery.js",[],[],[],{"cssClasses":488,"htmlComments":496,"htmlAttributes":497,"restEndpoints":499,"jsGlobals":500,"shortcodeOutput":502},[489,490,491,492,493,494,495],"ysg-metabox-wrap","ysg-metabox-wrap-first","ysg-row","ysg-col-xs-3","ysg-col-xs-9","ysg-col-xs-12","ysg-help",[],[498],"data-security",[],[501],"trendmag_toolkit",[]]