[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f59I4Vczij7bIKzlKvC9Pxvc56n4kh6mXj96RH0gGBgk":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":25,"download_link":26,"security_score":27,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30,"vulnerabilities":31,"developer":32,"crawl_stats":29,"alternatives":40,"analysis":149,"fingerprints":255},"ultimate-debugbar","Ultimate DebugBar","0.2","Avram","https:\u002F\u002Fprofiles.wordpress.org\u002Favram\u002F","\u003Cp>Ultimate debug bar for your WordPress website. On each page of your website a neat debug bar will be displayed with the following info:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>PHP version\u003C\u002Fli>\n\u003Cli>Request execution time\u003C\u002Fli>\n\u003Cli>Request memory consumption\u003C\u002Fli>\n\u003Cli>WordPress-related PHP constants defined in your wp-config.php file\u003C\u002Fli>\n\u003Cli>All website options (wp_options)\u003C\u002Fli>\n\u003Cli>Request data\u003C\u002Fli>\n\u003Cli>Timeline (waterfall) where you can see which portion of execution takes too much time\u003C\u002Fli>\n\u003Cli>List of all hooks triggered on the page whose execution time exceeds 1ms, along with some stats\u003C\u002Fli>\n\u003Cli>List of all database queries performed on the page, along with their source and execution time\u003C\u002Fli>\n\u003Cli>Last 100 lines of your debug.log file (if it exists in wp-content)\u003C\u002Fli>\n\u003Cli>List of loaded PHP files (categorized)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Besides that, it will track request data\u002Fhooks\u002Fdb queries\u002Fmem. consumption in AJAX calls too (beta).\u003C\u002Fp>\n\u003Cp>This plugin is meant to be used during development and\u002For debugging only. Only administrators and network administrators (in multi-site environment) can see the debugbar, unless the \u003Ccode>WP_DEBUG\u003C\u002Fcode> is set to \u003Ccode>true\u003C\u002Fcode>. In that case, everyone will see the debugbar.\u003C\u002Fp>\n\u003Cp>Try it instantly on \u003Ca href=\"https:\u002F\u002Ftastewp.com\u002Fnew?pre-installed-plugin-slug=ultimate-debugbar&redirect=%2F&ni=true\" rel=\"nofollow ugc\">tastewp.com\u003C\u002Fa>!\u003C\u002Fp>\n","Ultimate debug bar for your Wordpress website.",10,2337,100,3,"2021-11-01T18:56:00.000Z","5.8.13","4.5","7.1",[20,21,22,23,24],"database","debugging","queries","slow","sql","http:\u002F\u002Fwordpress.org\u002Fplugins\u002Fultimate-debugbar\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fultimate-debugbar.zip",85,0,null,"2026-03-15T15:16:48.613Z",[],{"slug":33,"display_name":7,"profile_url":8,"plugin_count":34,"total_installs":35,"avg_security_score":36,"avg_patch_time_days":37,"trust_score":38,"computed_at":39},"avram",6,410,93,30,89,"2026-04-05T01:59:42.962Z",[41,62,83,104,128],{"slug":42,"name":43,"version":44,"author":45,"author_profile":46,"description":47,"short_description":48,"active_installs":49,"downloaded":50,"rating":13,"num_ratings":51,"last_updated":52,"tested_up_to":53,"requires_at_least":54,"requires_php":55,"tags":56,"homepage":60,"download_link":61,"security_score":13,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"sql-buddy","SQL Buddy – Database Management Made Easy","1.0.0","WP Engine","https:\u002F\u002Fprofiles.wordpress.org\u002Fwpengine\u002F","\u003Cp>\u003Cstrong>⚠️ WARNING\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cstrong>SQL Buddy is no longer actively maintained.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>This software is still free to use under the license provided, but users should be aware that it is not currently maintained. No additional releases, including security releases, will be made available.\u003C\u002Fp>\n\u003Cp>Your one-stop solution for WordPress database management. Edit your table data with a clean and straightforward user interface.\u003C\u002Fp>\n\u003Cp>SQL Buddy is a WordPress plugin that makes it easy to manage your database table contents right from your WordPress dashboard.\u003C\u002Fp>\n\u003Cp>The Dashboard screen gives you a detailed overview of all your WordPress tables, along with useful data like the number of records, and the size of the table.\u003C\u002Fp>\n\u003Cp>The Tables screen allows you to search for a specific table, or view the table rows. Clicking on a row presents options to edit and save the column values, or delete the row. You are also able to control which table columns to display, as well as options to filter the table data.\u003C\u002Fp>\n\u003Cp>Each screen has pagination controls for navigating through a large number of tables or rows.\u003C\u002Fp>\n\u003Ch3>Features\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>View a list of all your database tables, including details like number of records, data usage, and index usage per table.\u003C\u002Fli>\n\u003Cli>Navigate through table records quickly, or search for specific tables by name.\u003C\u002Fli>\n\u003Cli>Filter table records using custom query conditions\u003C\u002Fli>\n\u003Cli>Choose which table columns to display on a per-table basis\u003C\u002Fli>\n\u003Cli>View the full contents of a single table record with one click.\u003C\u002Fli>\n\u003Cli>Easily edit the record contents or delete a table record\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Why Use a Database Management Plugin?\u003C\u002Fh3>\n\u003Cp>While not common, there are often situations where you might need to make changes to your WordPress database. Perhaps you’ve moved from a staging environment to live, and you need to update your site URL, or you need to clean up some data left behind by a deleted plugin. Whatever the reason, a solid solution for browsing and editing your WordPress database is a vital tool in any site owner’s belt.\u003C\u002Fp>\n\u003Cp>You could use the database management tool your web host provides, which is typically based on PHPMyAdmin, but the user interface is clumsy and not all that intuitive. You could try an application like Navicat, SQLyog, or TablePlus, but these require you to know your database access credentials.\u003C\u002Fp>\n\u003Cp>SQL Buddy is the WordPress plugin that gives you the ability to manage your database directly from your WordPress dashboard, without needing to worry about database credentials, installing third-party applications, or navigating a confusing user interface.\u003C\u002Fp>\n\u003Ch3>Built by WordPress Database Experts\u003C\u002Fh3>\n\u003Cp>We’re Delicious Brains, the team behind \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fwp-migrate-db\u002F\" rel=\"ugc\">WP Migrate DB\u003C\u002Fa> and \u003Ca href=\"https:\u002F\u002Fdeliciousbrains.com\u002Fwp-migrate-db-pro\u002F\" rel=\"nofollow ugc\">WP Migrate DB Pro\u003C\u002Fa>. For the last 15 years, we’ve helped WordPress developers migrate their database, site files and themes, and plugins between multiple different environments. We pride ourselves on being WordPress database experts, so you don’t have to be.\u003C\u002Fp>\n\u003Cp>SQL Buddy is everything we require from a WordPress database management plugin. A beautiful, intuitive interface, coupled with straightforward yet powerful features.\u003C\u002Fp>\n","Your one-stop solution for easy WordPress database management",6000,44408,14,"2025-06-16T13:13:00.000Z","6.4.8","5.3","5.6",[20,57,58,59,24],"database-browser","database-management","database-queries","https:\u002F\u002Fdeliciousbrains.com\u002Fsql-buddy","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsql-buddy.1.0.0.zip",{"slug":63,"name":64,"version":65,"author":66,"author_profile":67,"description":68,"short_description":69,"active_installs":70,"downloaded":71,"rating":28,"num_ratings":28,"last_updated":72,"tested_up_to":73,"requires_at_least":74,"requires_php":75,"tags":76,"homepage":81,"download_link":82,"security_score":27,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"admin-bar-queries","Admin Bar Queries","0.5.21","carmelosantana","https:\u002F\u002Fprofiles.wordpress.org\u002Fcarmelosantana\u002F","\u003Cp>Adds MySQL queries, rendering time (in seconds), and CPU load to your admin bar. If installed on a multi-site installation, output is restricted to super admins.\u003C\u002Fp>\n","MySQL queries and load details added to your admin bar.",20,3586,"2016-12-09T02:21:00.000Z","4.7.32","3.1","",[77,21,78,79,80],"adminbar","mysql","mysql-queries","script-timer","http:\u002F\u002Fcarmelosantana.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fadmin-bar-queries.zip",{"slug":84,"name":85,"version":86,"author":45,"author_profile":46,"description":87,"short_description":88,"active_installs":89,"downloaded":90,"rating":91,"num_ratings":92,"last_updated":93,"tested_up_to":94,"requires_at_least":95,"requires_php":54,"tags":96,"homepage":99,"download_link":100,"security_score":101,"vuln_count":102,"unpatched_count":28,"last_vuln_date":103,"fetched_at":30},"wp-db-backup","Database Backup for WordPress","2.5.2","\u003Cp>Backup your database instantly, send the backup via email, or schedule backups to run automatically.\u003C\u002Fp>\n\u003Cp>Database Backup for WordPress allows you to quickly back up your core WordPress database tables, and either download the backup as a gzipped file, or send it via email to an address you choose.\u003C\u002Fp>\n\u003Cp>By default, the plugin will always back up all the core WordPress database tables. However, you may also selectively back up any custom tables that might be created by other plugins\u003C\u002Fp>\n\u003Cp>Additional options include the ability to exclude spam comments from the comments table, or post revisions from the posts table, saving you space and bandwidth.\u003C\u002Fp>\n\u003Cp>You can also enable scheduled backups to run automatically at set intervals, and configure the email address to send the scheduled backups to.\u003C\u002Fp>\n\u003Ch4>Backup Before You Mess Up\u003C\u002Fh4>\n\u003Cp>Backups are the one thing you don’t think of until you need them. You might have the best web host, the most secure server, and a tried and tested process for running plugin, theme, or core updates. But all it takes is one little thing to go wrong, and you lose your entire website.\u003C\u002Fp>\n\u003Cp>You need a reliable and automated solution which backs up your WordPress data and sends it to an off-site location. Database Backup for WordPress is that solution.\u003C\u002Fp>\n\u003Ch4>Why You Should Back Up Your Website\u003C\u002Fh4>\n\u003Cp>As much planning as you do, any CMS like WordPress that stores its data in a database is vulnerable. Hardware, software, and security hiccups are rare, but they do happen. Even the best enterprise systems in the world have multiple levels of backup in place.\u003C\u002Fp>\n\u003Cp>Think about the data you store in your WordPress site. Your blog posts since the day you launched the site. Your customers, products, and order history if you run an ecommerce site. Backups are like implementing an insurance policy for your data. With backups, you have a reliable way of restoring that data if anything goes wrong.\u003C\u002Fp>\n\u003Cp>Simple, automated backups save you time and give you peace of mind that you are prepared for the worst case scenario, even if you never need it. Better to have it and not need it, than to not have it and suddenly need it.\u003C\u002Fp>\n\u003Ch4>Scheduled Backups\u003C\u002Fh4>\n\u003Cp>Depending on your needs, you might want to back up your database every few minutes, hourly, daily, weekly, or monthly. You’ll want to automate this process, or it becomes another possible point of failure.\u003C\u002Fp>\n\u003Cp>Scheduled backups give you peace of mind that your data is being backed up as much or as little as you need, without your intervention. By emailing the backups to an email address you choose, you can verify that the backup has run, and store it in a safe location.\u003C\u002Fp>\n\u003Ch3>Translators\u003C\u002Fh3>\n\u003Cp>Thanks to the following people for providing translation files for Database Backup for WordPress:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Abel Cheung\u003C\u002Fli>\n\u003Cli>Alejandro Urrutia\u003C\u002Fli>\n\u003Cli>Alexander Kanakaris\u003C\u002Fli>\n\u003Cli>Angelo Andrea Iorio\u003C\u002Fli>\n\u003Cli>Calle\u003C\u002Fli>\n\u003Cli>Daniel Erb\u003C\u002Fli>\n\u003Cli>Daniel Villoldo\u003C\u002Fli>\n\u003Cli>Diego Pierotto\u003C\u002Fli>\n\u003Cli>Eilif Nordseth\u003C\u002Fli>\n\u003Cli>Eric Lassauge\u003C\u002Fli>\n\u003Cli>Friedlich\u003C\u002Fli>\n\u003Cli>Gilles Wittezaele\u003C\u002Fli>\n\u003Cli>Icemanpro\u003C\u002Fli>\n\u003Cli>İzzet Emre Erkan\u003C\u002Fli>\n\u003Cli>Jong-In Kim\u003C\u002Fli>\n\u003Cli>Kaveh\u003C\u002Fli>\n\u003Cli>Kessia Pinheiro\u003C\u002Fli>\n\u003Cli>Kuratkoo\u003C\u002Fli>\n\u003Cli>Majed Alotaibi\u003C\u002Fli>\n\u003Cli>Michał Gołuński\u003C\u002Fli>\n\u003Cli>Michele Spagnuolo\u003C\u002Fli>\n\u003Cli>Paopao\u003C\u002Fli>\n\u003Cli>Philippe Galliard\u003C\u002Fli>\n\u003Cli>Robert Buj\u003C\u002Fli>\n\u003Cli>Roger\u003C\u002Fli>\n\u003Cli>Rune Gulbrandsøy\u003C\u002Fli>\n\u003Cli>Serge Rauber\u003C\u002Fli>\n\u003Cli>Sergey Biryukov\u003C\u002Fli>\n\u003Cli>Tai\u003C\u002Fli>\n\u003Cli>Timm Severin\u003C\u002Fli>\n\u003Cli>Tzafrir Rehan\u003C\u002Fli>\n\u003Cli>吴曦\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Past Contributors\u003C\u002Fh3>\n\u003Cp>filosofo, skippy, Firas, LaughingLizard, MtDewVirus, Podz, Ringmaster\u003C\u002Fp>\n","Database Backup for WordPress is your one-stop database backup solution for WordPress.",70000,3731269,90,66,"2022-05-26T11:49:00.000Z","6.0.11","3.6.0",[97,20,98,78],"backup","database-backup","https:\u002F\u002Fgithub.com\u002Fdeliciousbrains\u002Fwp-db-backup","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-db-backup.2.5.2.zip",82,4,"2022-05-11 00:00:00",{"slug":105,"name":106,"version":107,"author":108,"author_profile":109,"description":110,"short_description":111,"active_installs":112,"downloaded":113,"rating":114,"num_ratings":115,"last_updated":116,"tested_up_to":117,"requires_at_least":118,"requires_php":75,"tags":119,"homepage":123,"download_link":124,"security_score":125,"vuln_count":126,"unpatched_count":28,"last_vuln_date":127,"fetched_at":30},"wp-phpmyadmin-extension","WP phpMyAdmin","5.2.2.01","Puvox Software","https:\u002F\u002Fprofiles.wordpress.org\u002Fpuvoxsoftware\u002F","\u003Ch4>[ ✅ 𝐒𝐄𝐂𝐔𝐑𝐄 𝐏𝐋𝐔𝐆𝐈𝐍𝐒 𝐵𝓎 𝒫𝓊𝓋𝑜𝓍 ] :\u003C\u002Fh4>\n\u003Cblockquote>\n\u003Cp>• Checked against vulnerability holes.\u003Cbr \u002F>\n  • No extra load\u002Fslowness to site.\u003Cbr \u002F>\n  • Does not collect & share private data.\u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Ch4>Plugin Description\u003C\u002Fh4>\n\u003Cp>The famous database browser & manager (for MySQL & MariaDB) – use it inside WordPress Dashboard without an extra hassle.\u003C\u002Fp>\n\u003Ch3>NOTES\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>This plugin has been started from 2018 year, and we have no connections to the old age’s vulnerable wp-phpMyAdmin plugin (published elsewhere by 3rd party scammers) . So, this current plugin is just a wrapper for official phpMyAdmin release and depends itself on the realiability & security of the \u003Ccode>phpMyAdmin\u003C\u002Fcode> itself. Also, initially we wanted to put PhpMyAdmin released \u003Ccode>.zip\u003C\u002Fcode> file untouched (to ensure the checksums are same) and unpack that \u003Ccode>.zip\u003C\u002Fcode> directly upon plugin’s installation, but unfortunately WordPress Plugin Team didn’t allow to put \u003Ccode>.zip\u003C\u002Fcode> file in the package (saying that SVN doesn’t like working with \u003Ccode>.zip\u003C\u002Fcode> files). Thus, we had to submit extracted PMA (but still original & untouched) to the repository.\u003C\u002Fli>\n\u003Cli>PHP >= 7.2.5 is required to for \u003Cstrong>phpMyAdmin\u003C\u002Fstrong> latest version (otherwise you will have option to use older version of PMA, which is not encouraged to be used).\u003C\u002Fli>\n\u003Cli>For the reason to make it compact, some unnecessary files (language files, OpenLayer\u002FGIS map lib, extra themes, etc) are removed.\u003C\u002Fli>\n\u003Cli>It’s recommended, that you enable the plugin only while you need to use PhpMyAdmin. Otherwise, for longer periods, you can deactivate plugin.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Liability\u003C\u002Fh4>\n\u003Cp>We are not developers of PhpMyAdmin itself, neither affiliated with them. We just made this plugin as a wrapper (container) of official PhpMyAdmin, to make it possible to be installed as a WP plugin. However, we don’t monitor PhpMyAdmin package’s source code itself. We take no responsibility about this plugin. Use it at your own responsibility (However, as it’s also visible in stats, thousands of users are using this extendion and only few people have complained about errors).\u003C\u002Fp>\n\u003Ch4>Available Options\u003C\u002Fh4>\n\u003Cp>See all available options and their description on plugin’s settings page.\u003C\u002Fp>\n","[ ✅ 𝐒𝐄𝐂𝐔𝐑𝐄 𝐏𝐋𝐔𝐆𝐈𝐍𝐒 𝐵𝓎 𝒫𝓊𝓋𝑜𝓍 ] phpMyAdmin -  Database Browser & Manager (for MySQL & MariaDB)",50000,1055306,92,58,"2025-10-17T18:58:00.000Z","6.7.5","6.0",[20,120,78,121,122],"manager","phpminiadmin","phpmyadmin","https:\u002F\u002Fpuvox.software\u002Fsoftware\u002Fwordpress-plugins\u002F?plugin=wp-phpmyadmin-extension","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-phpmyadmin-extension.zip",99,2,"2022-08-01 00:00:00",{"slug":129,"name":130,"version":131,"author":132,"author_profile":133,"description":134,"short_description":135,"active_installs":136,"downloaded":137,"rating":13,"num_ratings":138,"last_updated":139,"tested_up_to":140,"requires_at_least":141,"requires_php":142,"tags":143,"homepage":75,"download_link":146,"security_score":13,"vuln_count":147,"unpatched_count":28,"last_vuln_date":148,"fetched_at":30},"pexlechris-adminer","Database Manager – WP Adminer","4.3.3","Pexle Chris","https:\u002F\u002Fprofiles.wordpress.org\u002Fpexlechris\u002F","\u003Cp>The best database management tool for the best CMS.\u003C\u002Fp>\n\u003Cp>This plugin uses the tool \u003Ca href=\"https:\u002F\u002Fwww.adminer.org\u002F\" rel=\"nofollow ugc\">Adminer\u003C\u002Fa>, in order to give database access to administrators directly from the Dashboard.\u003Cbr \u002F>\nAs simple as the previous sentence!\u003C\u002Fp>\n\u003Cp>I am not the author of Adminer. I am only the author who does the WordPress integration with Adminer.\u003Cbr \u002F>\nAuthor of Adminer is Jakub Vrana and you can donate him from \u003Ca href=\"https:\u002F\u002Fwww.paypal.com\u002Fdonate\u002F?item_name=Donation+to+Adminer&cmd=_donations&business=jakub%40vrana.cz\" rel=\"nofollow ugc\">there\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>Compatible also with WordPress Multisite installations\u003C\u002Fp>\n\u003Ch3>WP Adminer access positions\u003C\u002Fh3>\n\u003Cp>You can access the WP Adminer from the below positions:\u003Cbr \u002F>\n1. WP Adminer URL in the Admin Bar\u003Cbr \u002F>\n2. WP Adminer Tools Page (Dashboard > Tools > WP Adminer)\u003C\u002Fp>\n\u003Ch3>Explore my other plugins\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.pexlechris.dev\u002Flibrary-viewer\u002Fwp-wpadminer\" rel=\"nofollow ugc\">Library Viewer\u003C\u002Fa>: With Library Viewer, you can display the containing files and the containing folders of a “specific folder” of your (FTP) server to your users in the front-end.\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fgift-wrapping-for-woocommerce\" rel=\"ugc\">Gift Wrapping for WooCommerce\u003C\u002Fa>: This plugin allows customers to select a gift wrapper for their orders, via a checkbox in the checkout page.\u003C\u002Fli>\n\u003C\u002Ful>\n","Manage the database from your WordPress Dashboard using Adminer.",20000,296374,27,"2026-03-13T07:59:00.000Z","6.9.4","4.7.0","7.0",[144,20,145,78,24],"adminer","mariadb","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fpexlechris-adminer.4.3.3.zip",1,"2022-08-16 00:00:00",{"attackSurface":150,"codeSignals":224,"taintFlows":239,"riskAssessment":240,"analyzedAt":254},{"hooks":151,"ajaxHandlers":220,"restRoutes":221,"shortcodes":222,"cronEvents":223,"entryPointCount":28,"unprotectedCount":28},[152,158,162,167,170,173,176,179,182,185,188,191,194,198,201,205,207,211,214,218],{"type":153,"name":154,"callback":155,"file":156,"line":157},"action","all","collectHook","src\\Collectors\\HookCollector.php",16,{"type":153,"name":159,"callback":160,"file":161,"line":70},"query","collectQuery","src\\Collectors\\SimpleQueryCollector.php",{"type":153,"name":163,"callback":164,"file":165,"line":166},"plugins_loaded","closure","src\\Collectors\\TimeLineCollector.php",23,{"type":153,"name":168,"callback":164,"file":165,"line":169},"setup_theme",28,{"type":153,"name":171,"callback":164,"file":165,"line":172},"after_setup_theme",34,{"type":153,"name":174,"callback":164,"file":165,"line":175},"wp_loaded",40,{"type":153,"name":177,"callback":164,"file":165,"line":178},"loop_start",46,{"type":153,"name":180,"callback":164,"file":165,"line":181},"loop_end",52,{"type":153,"name":183,"callback":164,"file":165,"line":184},"get_header",57,{"type":153,"name":186,"callback":164,"file":165,"line":187},"get_sidebar",62,{"type":153,"name":189,"callback":164,"file":165,"line":190},"get_footer",67,{"type":153,"name":192,"callback":164,"file":165,"line":193},"wp_print_footer_scripts",73,{"type":153,"name":195,"callback":196,"file":197,"line":37},"init","handleAjax","src\\WPDebugBar.php",{"type":153,"name":199,"callback":196,"file":197,"line":200},"admin_init",31,{"type":153,"name":202,"callback":203,"file":197,"line":204},"wp_head","renderHead",33,{"type":153,"name":206,"callback":203,"file":197,"line":172},"admin_head",{"type":153,"name":208,"callback":209,"file":197,"line":210},"wp_footer","renderDebugBar",36,{"type":153,"name":212,"callback":209,"file":197,"line":213},"admin_footer",37,{"type":153,"name":215,"callback":216,"file":197,"line":217},"wp_enqueue_scripts","addRendererAssets",39,{"type":153,"name":219,"callback":216,"file":197,"line":175},"admin_enqueue_scripts",[],[],[],[],{"dangerousFunctions":225,"sqlUsage":231,"outputEscaping":233,"fileOperations":147,"externalRequests":28,"nonceChecks":28,"capabilityChecks":147,"bundledLibraries":238},[226],{"fn":227,"file":228,"line":229,"context":230},"unserialize","src\\Collectors\\ConfigCollector.php",21,"$test = unserialize($var);",{"prepared":28,"raw":28,"locations":232},[],{"escaped":28,"rawEcho":126,"locations":234},[235,237],{"file":197,"line":114,"context":236},"raw output",{"file":197,"line":125,"context":236},[],[],{"summary":241,"deductions":242},"The 'ultimate-debugbar' v0.2 plugin presents a mixed security posture. On one hand, it demonstrates good practices by utilizing prepared statements for all SQL queries and having a seemingly small attack surface with no recorded CVEs. However, significant concerns arise from the static code analysis. The presence of the `unserialize` function without any apparent sanitization or input validation is a critical security risk, as it can lead to Remote Code Execution (RCE) if an attacker can control the data being unserialized. Furthermore, the fact that 0% of its outputs are properly escaped is highly problematic, opening the door to Cross-Site Scripting (XSS) vulnerabilities across any data displayed by the plugin.  While the vulnerability history is clean, this could be due to its low version number and limited usage, rather than inherent security. The combination of a potentially dangerous function like `unserialize` and unescaped output, coupled with a lack of detailed taint analysis results, suggests a high potential for severe vulnerabilities despite the absence of historical CVEs.",[243,246,248,250,252],{"reason":244,"points":245},"Dangerous unserialize function found",15,{"reason":247,"points":11},"No output escaping found",{"reason":249,"points":126},"File operations found without details",{"reason":251,"points":126},"Capability checks found without details",{"reason":253,"points":14},"Non-existent taint analysis data","2026-03-17T01:04:09.599Z",{"wat":256,"direct":264},{"assetPaths":257,"generatorPatterns":261,"scriptPaths":262,"versionParams":263},[258,259,260],"\u002Fwp-content\u002Fplugins\u002Fultimate-debugbar\u002Fultimate-debugbar.css","\u002Fwp-content\u002Fplugins\u002Fultimate-debugbar\u002Fvendor\u002Fmaximebf\u002Fdebugbar\u002Fsrc\u002FDebugBar\u002FResources\u002Fwidgets\u002Fsqlqueries\u002Fwidget.css","\u002Fwp-content\u002Fplugins\u002Fultimate-debugbar\u002Fvendor\u002Fmaximebf\u002Fdebugbar\u002Fsrc\u002FDebugBar\u002FResources\u002Fwidgets\u002Fsqlqueries\u002Fwidget.js",[],[],[],{"cssClasses":265,"htmlComments":269,"htmlAttributes":270,"restEndpoints":272,"jsGlobals":273,"shortcodeOutput":275},[266,267,268],"phpdebugbar","phpdebugbar-open","phpdebugbar-closed",[],[271],"data-phpdebugbar",[],[274],"phpDebugBar",[]]