[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fVD-kCdu7OY7cIHGVgUjEBA2RJzFiAJtqu5SzODIJRr0":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":25,"download_link":26,"security_score":27,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30,"vulnerabilities":31,"developer":32,"crawl_stats":29,"alternatives":38,"analysis":98,"fingerprints":236},"wm-simple-captcha","WM Simple Captcha","2.0.3","Web Mumbai","https:\u002F\u002Fprofiles.wordpress.org\u002Fwebmumbai\u002F","\u003Cp>WM Simple Captcha for registration page, customize captcha image according to your theme. Change image width, height, background color, set possible characters, add space between two characters, adjust font size, change form label, add your custom css, enable\u002Fdisable refresh button, change refresh button. Many think more on customization.\u003C\u002Fp>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Enable\u002FDisable Captcha for wordpress registration page\u003C\u002Fli>\n\u003Cli>Set the captcha image with\u003C\u002Fli>\n\u003Cli>Set  the captcha image height\u003C\u002Fli>\n\u003Cli>Set the captcha possible characters length\u003C\u002Fli>\n\u003Cli>Adjust font size\u003C\u002Fli>\n\u003Cli>Enable space between characters\u003C\u002Fli>\n\u003Cli>Change font\u003C\u002Fli>\n\u003Cli>Set possible letters\u003C\u002Fli>\n\u003Cli>Set random Dots\u003C\u002Fli>\n\u003Cli>Set random Line\u003C\u002Fli>\n\u003Cli>Set text color\u003C\u002Fli>\n\u003Cli>Set dots color\u003C\u002Fli>\n\u003Cli>Set line color\u003C\u002Fli>\n\u003Cli>Change form label\u003C\u002Fli>\n\u003Cli>Enable captcha border\u003C\u002Fli>\n\u003Cli>Set captcha border color\u003C\u002Fli>\n\u003Cli>Enable\u002FDisable refresh button\u003C\u002Fli>\n\u003Cli>Change refresh images as your theme\u003C\u002Fli>\n\u003Cli>Not case sensitive\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>In Short you can change captcha image style as your theme style.\u003C\u002Fp>\n","Captcha image for registration page, customize according to your theme.",100,11782,76,4,"2016-01-03T07:34:00.000Z","4.4.34","3.6","",[20,21,22,23,24],"custom-captcha-image","register-captcha-image","registration-captcha","simple-captcha","theme-my-captcha","http:\u002F\u002Fplugins.web-mumbai.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwm-simple-captcha.2.0.3.zip",85,0,null,"2026-03-15T15:16:48.613Z",[],{"slug":33,"display_name":7,"profile_url":8,"plugin_count":34,"total_installs":11,"avg_security_score":27,"avg_patch_time_days":35,"trust_score":36,"computed_at":37},"webmumbai",1,30,84,"2026-04-04T21:14:31.695Z",[39,60,81],{"slug":40,"name":41,"version":42,"author":43,"author_profile":44,"description":45,"short_description":46,"active_installs":35,"downloaded":47,"rating":11,"num_ratings":34,"last_updated":48,"tested_up_to":49,"requires_at_least":50,"requires_php":18,"tags":51,"homepage":58,"download_link":59,"security_score":27,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"kcaptcha","Kcaptcha","1.0.1","Ksolves - Emerging Ahead Always","https:\u002F\u002Fprofiles.wordpress.org\u002Fksolves\u002F","\u003Cp>Kcaptcha plugin is the perfect security plugin for your wordpress website forms that protects your website from spam bots. Kcaptcha allows you to implement security captcha anywhere in website’s form. It is very easy for humans and hard for robots. Kcaptcha is designed to recognise the difference between a bot and human and sometimes even malicious software to provide the security to the system. This captcha can be used for login, registration,password recovery, comments and contact forms.If you want to prevent the entry of bots into your website, then you must start using Kcaptcha as it is the smartest way to stop it.\u003Cbr \u002F>\n\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002FyiMMJrLIdWY?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\u003C\u002Fp>\n\u003Cp>Like WordPress, Kcaptcha is, and always will be free. We’ll continue supporting and developing it for many years to come. It’ll only get better from here. If you are facing any issue or challenges please contact us and help us making it better and rich in features.\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"http:\u002F\u002Fproducts.ksolves.com\u002Fkcaptcha.php\" rel=\"nofollow ugc\">We offer free support \u003C\u002Fa>\u003C\u002Fp>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cp>Add captcha to:\u003C\u002Fp>\n\u003Cp>Registration form\u003C\u002Fp>\n\u003Cp>Login form\u003C\u002Fp>\n\u003Cp>Reset password form\u003C\u002Fp>\n\u003Cp>Comments form\u003C\u002Fp>\n\u003Cp>Easy for humans and hard for robots\u003C\u002Fp>\n","Kcaptcha plugin is the perfect security plugin for your wordpress website forms that protects your website from spam bots.",2993,"2016-09-14T17:39:00.000Z","4.6.30","3.1",[52,53,54,55,56,22,57],"anti-spam","captcha-plugin","comment-captcha","form-captcha","login-captcha","wordpress-captcha-plugin","http:\u002F\u002Fksolves.com\u002Fplugins.php","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fkcaptcha.1.0.1.zip",{"slug":61,"name":62,"version":63,"author":64,"author_profile":65,"description":66,"short_description":67,"active_installs":68,"downloaded":69,"rating":28,"num_ratings":28,"last_updated":70,"tested_up_to":16,"requires_at_least":71,"requires_php":18,"tags":72,"homepage":79,"download_link":80,"security_score":27,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"nf-captcha","NF Captcha","1.0","macnetic-labs","https:\u002F\u002Fprofiles.wordpress.org\u002Fmacnetic-labs\u002F","\u003Cp>NF Captcha adds really simple captcha elements to the Elements’ block. It also includes labels and custom classes for the element to allow for more styling. It ist a good alternative, if you don’t want use reCAPTCHA or Anti-Spam-Question.\u003C\u002Fp>\n\u003Cp>This plugin requires the Ninja Forms and Really Simple CAPTCHA plugin.\u003C\u002Fp>\n","NF Captcha adds Really Simple CAPTCHA element for human check.",10,1426,"2016-02-04T05:47:00.000Z","3.9",[73,74,61,75,76,77,78],"antispam","captcha","ninja-forms","really-simple-captcha","security","spam","http:\u002F\u002Fmacnetic-labs.de","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fnf-captcha.zip",{"slug":82,"name":83,"version":84,"author":85,"author_profile":86,"description":87,"short_description":88,"active_installs":68,"downloaded":89,"rating":11,"num_ratings":34,"last_updated":90,"tested_up_to":91,"requires_at_least":92,"requires_php":18,"tags":93,"homepage":96,"download_link":97,"security_score":27,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"really-simple-captcha-for-buddypress","Really Simple CAPTCHA for Buddypress","1.2","Bernie","https:\u002F\u002Fprofiles.wordpress.org\u002Ffruitshakes\u002F","\u003Cp>This plugin integrates \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Freally-simple-captcha\u002F\" title=\"widely used captcha plugin in WordPress\" rel=\"ugc\">Really Simple Captcha\u003C\u002Fa> plugin to the \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fbuddypress\u002F\" title=\"BuddyPress lets users sign-up and start creating profiles...\" rel=\"ugc\">Buddypress\u003C\u002Fa> registration page. Thus, its function is dependent on both of them.\u003C\u002Fp>\n\u003Ch4>Why RS Captcha for Buddypress registration page?\u003C\u002Fh4>\n\u003Ch4>– Number of Downloads\u003C\u002Fh4>\n\u003Cp>By the time of writing, RS Captcha has already been downloaded 2,569,017 times by users of Contact Form 7 and plugin developers.\u003C\u002Fp>\n\u003Ch4>– Less conflict with other plugins\u003C\u002Fh4>\n\u003Cp>RS Captcha is supported by Contact Form 7 and other WordPress plugins. Running two or more Captcha plugins at the same time can cause undesirable effects on your site’s performance. Why not choose the Captcha plugin with wide range of support?\u003C\u002Fp>\n\u003Ch4>– Really Simple to use\u003C\u002Fh4>\n\u003Cp>As the name of this plugin suggests, it’s really easy to use. This plugin is just a little addition to the security of the Buddypress registration page.\u003C\u002Fp>\n\u003Ch4>– Prevent piling up of pending users\u003C\u002Fh4>\n\u003Cp>Users who don’t activate their accounts, in the case of spammers, are still being recorded in the database as pending users. If you’re one the people who don’t like them piling up like that (like me!), then you’ll love this plugin.\u003C\u002Fp>\n\u003Ch4>Requirements\u003C\u002Fh4>\n\u003Cp>Apparently, the activation of RS Captcha and Buddypress plugins is required for this plugin to work.\u003C\u002Fp>\n\u003Cp>You can also check \u003Ca href=\"http:\u002F\u002Fb-ernie.com\u002Freally-simple-captcha-for-buddypress-plugin\" title=\"b-ernie.com\" rel=\"nofollow ugc\">this page\u003C\u002Fa> out for updates.\u003C\u002Fp>\n","This plugin integrates Really Simple Captcha to the Buddypress registration page.",8127,"2015-05-26T02:29:00.000Z","4.2.39","3.0.1",[94,74,76,95],"buddypress","registration","http:\u002F\u002Fb-ernie.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Freally-simple-captcha-for-buddypress.1.2.zip",{"attackSurface":99,"codeSignals":157,"taintFlows":220,"riskAssessment":221,"analyzedAt":235},{"hooks":100,"ajaxHandlers":145,"restRoutes":153,"shortcodes":154,"cronEvents":155,"entryPointCount":156,"unprotectedCount":156},[101,106,110,113,116,120,124,128,132,135,138,142],{"type":102,"name":103,"callback":103,"file":104,"line":105},"action","admin_menu","classes\\wm_simple_captcha_admin.php",20,{"type":102,"name":107,"callback":108,"file":104,"line":109},"admin_init","font_exist",23,{"type":102,"name":111,"callback":111,"file":104,"line":112},"admin_notices",24,{"type":102,"name":107,"callback":114,"file":104,"line":115},"init_settings",25,{"type":102,"name":117,"callback":118,"file":104,"line":119},"admin_print_scripts","wp_gear_manager_admin_scripts",27,{"type":102,"name":121,"callback":122,"file":104,"line":123},"admin_print_styles","wp_gear_manager_admin_styles",28,{"type":102,"name":125,"callback":126,"priority":11,"file":127,"line":123},"register_form","wmcaptcha_display","classes\\wm_simple_captcha_front.php",{"type":102,"name":129,"callback":130,"priority":105,"file":127,"line":131},"registration_errors","registration_captcha_errors",29,{"type":102,"name":133,"callback":134,"priority":105,"file":127,"line":35},"init","wmsimplecaptcha_scripts_front",{"type":102,"name":133,"callback":136,"file":127,"line":137},"wmsimplecaptcha_init_enqueue_scripts",40,{"type":102,"name":139,"callback":140,"file":127,"line":141},"wp_footer","wmsimplecaptcha_wp_footer",147,{"type":102,"name":143,"callback":140,"file":127,"line":144},"login_footer",148,[146,150],{"action":147,"nopriv":148,"callback":147,"hasNonce":148,"hasCapCheck":148,"file":127,"line":149},"wmsimplecaptcha_action",false,41,{"action":147,"nopriv":151,"callback":147,"hasNonce":148,"hasCapCheck":148,"file":127,"line":152},true,42,[],[],[],2,{"dangerousFunctions":158,"sqlUsage":159,"outputEscaping":164,"fileOperations":34,"externalRequests":34,"nonceChecks":34,"capabilityChecks":28,"bundledLibraries":219},[],{"prepared":28,"raw":34,"locations":160},[161],{"file":162,"line":105,"context":163},"uninstall.php","$wpdb->get_col() with variable interpolation",{"escaped":156,"rawEcho":165,"locations":166},26,[167,170,172,174,176,178,180,182,184,186,188,190,192,194,196,198,200,202,204,206,208,210,211,213,215,217],{"file":104,"line":168,"context":169},185,"raw output",{"file":104,"line":171,"context":169},213,{"file":104,"line":173,"context":169},245,{"file":104,"line":175,"context":169},282,{"file":104,"line":177,"context":169},288,{"file":104,"line":179,"context":169},315,{"file":104,"line":181,"context":169},351,{"file":104,"line":183,"context":169},428,{"file":104,"line":185,"context":169},429,{"file":104,"line":187,"context":169},434,{"file":104,"line":189,"context":169},435,{"file":104,"line":191,"context":169},449,{"file":104,"line":193,"context":169},586,{"file":104,"line":195,"context":169},591,{"file":104,"line":197,"context":169},608,{"file":104,"line":199,"context":169},695,{"file":104,"line":201,"context":169},697,{"file":104,"line":203,"context":169},703,{"file":127,"line":205,"context":169},127,{"file":127,"line":207,"context":169},135,{"file":127,"line":209,"context":169},136,{"file":127,"line":209,"context":169},{"file":127,"line":212,"context":169},138,{"file":127,"line":214,"context":169},208,{"file":127,"line":216,"context":169},252,{"file":127,"line":218,"context":169},274,[],[],{"summary":222,"deductions":223},"The wm-simple-captcha plugin exhibits several concerning security practices that significantly increase its risk profile, despite a lack of recorded past vulnerabilities. The most critical issue is the presence of two AJAX handlers that lack any authentication checks. This exposes the plugin to potential unauthorized access and manipulation, as any user, including unauthenticated ones, could trigger these actions. Furthermore, the plugin's SQL queries are not using prepared statements, which leaves it vulnerable to SQL injection attacks. While the static analysis did not reveal any taint flows, the combination of unprotected entry points and raw SQL queries is a substantial risk. The plugin also shows poor output escaping practices, with only 7% of outputs being properly escaped, potentially leading to cross-site scripting (XSS) vulnerabilities. The absence of any recorded vulnerabilities in its history is not a strong indicator of security, given the identified weaknesses in the codebase. Overall, the plugin's current state presents a high risk due to critical flaws in authentication and data sanitization, outweighing the lack of historical issues.",[224,226,229,232],{"reason":225,"points":68},"Unprotected AJAX handlers",{"reason":227,"points":228},"SQL queries not using prepared statements",8,{"reason":230,"points":231},"Low percentage of properly escaped output",6,{"reason":233,"points":234},"No capability checks on entry points",5,"2026-03-16T21:03:41.243Z",{"wat":237,"direct":245},{"assetPaths":238,"generatorPatterns":240,"scriptPaths":241,"versionParams":243},[239],"\u002Fwp-content\u002Fplugins\u002Fwm-simple-captcha\u002Fassets\u002Fjs\u002Fwmsimplecaptcha_scripts_admin.js",[],[242],"assets\u002Fjs\u002Fwmsimplecaptcha_scripts_admin.js",[244],"wm-simple-captcha\u002Fassets\u002Fjs\u002Fwmsimplecaptcha_scripts_admin.js?ver=",{"cssClasses":246,"htmlComments":248,"htmlAttributes":249,"restEndpoints":272,"jsGlobals":273,"shortcodeOutput":274},[247],"wmsimplecaptcha_scripts_admin",[],[250,251,252,253,254,255,256,257,258,259,260,261,262,263,264,265,266,267,268,269,270,271],"label_for=\"captcha_enable_registration\"","id=\"captcha_enable_registration\"","label_for=\"captcha_image_width\"","id=\"captcha_image_width\"","label_for=\"captcha_image_height\"","id=\"captcha_image_height\"","label_for=\"captcha_image_characters\"","id=\"captcha_image_characters\"","label_for=\"captcha_image_font_adj\"","id=\"captcha_image_font_adj\"","label_for=\"captcha_enable_space\"","id=\"captcha_enable_space\"","label_for=\"captcha_image_font\"","id=\"captcha_image_font\"","label_for=\"captcha_possible_letters\"","id=\"captcha_possible_letters\"","label_for=\"captcha_random_dots\"","id=\"captcha_random_dots\"","label_for=\"captcha_random_lines\"","id=\"captcha_random_lines\"","label_for=\"captcha_text_color\"","class=\"color_picker_callback\"",[],[],[]]