[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fN1HsFq3CP1IR_-72eRgKbDk17fL_CY97EysYfyNuMrg":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":16,"tags":18,"homepage":22,"download_link":23,"security_score":24,"vuln_count":25,"unpatched_count":25,"last_vuln_date":26,"fetched_at":27,"vulnerabilities":28,"developer":29,"crawl_stats":26,"alternatives":34,"analysis":137,"fingerprints":243},"wp-internetvista","Website Monitoring by internetVista","1.0.1","internetvista","https:\u002F\u002Fprofiles.wordpress.org\u002Finternetvista\u002F","\u003Cp>This plugin allows you to display directly and simply the performance of your website in your wordpress dashboard.\u003C\u002Fp>\n\u003Ch4>The website monitoring will help you to:\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Measure the performance of your website\u003C\u002Fli>\n\u003Cli>Put your web infrastructure under high surveillance\u003C\u002Fli>\n\u003Cli>Prevent breakdowns of your website or your blog\u003C\u002Fli>\n\u003Cli>Prove the quality of your web solutions\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>The major advantages of our web monitoring services are:\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Monitoring provided 24x7x365\u003C\u002Fli>\n\u003Cli>Nothing to install, nothing to develop\u003C\u002Fli>\n\u003Cli>Hosters-independent\u003C\u002Fli>\n\u003Cli>Monitoring managed from your mobile phone\u003C\u002Fli>\n\u003Cli>Monitoring of complex web scenarios\u003C\u002Fli>\n\u003Cli>Monitoring frequency of 1 minute\u003C\u002Fli>\n\u003Cli>Checking the downloaded content\u003C\u002Fli>\n\u003Cli>Alerts by email, sms, twitter, iphone notification,…\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Explanations\u003C\u002Fh4>\n\u003Cp>In order to use this plugin you need an (free) account on internetVista.  If you don’t have one, register for free at \u003Ca href=\"https:\u002F\u002Fwww.internetVista.com\u002Fregister.htm\" title=\"internetVista - web monitoring\" rel=\"nofollow ugc\">internetVista.com\u003C\u002Fa>.  It’s cool and easy!\u003C\u002Fp>\n","Show directly in your wordpress dashboard the performance of your website (uptime and response time).",10,2054,74,3,"2023-09-22T14:58:00.000Z","","3.0",[7,19,20,21],"monitoring","web-performance","website-monitoring","http:\u002F\u002Fwordpress.org\u002Fplugins\u002Fwp-internetvista\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-internetvista.1.0.1.zip",85,0,null,"2026-03-15T15:16:48.613Z",[],{"slug":7,"display_name":7,"profile_url":8,"plugin_count":30,"total_installs":11,"avg_security_score":24,"avg_patch_time_days":31,"trust_score":32,"computed_at":33},1,30,84,"2026-04-05T02:40:39.541Z",[35,60,80,99,118],{"slug":36,"name":37,"version":38,"author":39,"author_profile":40,"description":41,"short_description":42,"active_installs":43,"downloaded":44,"rating":45,"num_ratings":46,"last_updated":47,"tested_up_to":48,"requires_at_least":49,"requires_php":50,"tags":51,"homepage":56,"download_link":57,"security_score":58,"vuln_count":30,"unpatched_count":25,"last_vuln_date":59,"fetched_at":27},"vibes","Vibes","2.3.0","Pierre Lannoy","https:\u002F\u002Fprofiles.wordpress.org\u002Fpierrelannoy\u002F","\u003Cp>\u003Cstrong>Truthful user experience and browsing performances monitoring.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Vibes\u003C\u002Fstrong> is a robust user experience and browsing performances monitoring solution that analyzes perceived performances from users’ viewpoint.\u003C\u002Fp>\n\u003Cp>It is fully autonomous – does not rely on external services and does not require any API keys, works on any type of hosting and in any type of environment – including staging, intranets or password protected sites.\u003C\u002Fp>\n\u003Cp>By continuously monitoring user experience, \u003Cstrong>Vibes\u003C\u002Fstrong> can report:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>navigation performance KPIs per pages – like latency, redirections, browser caching hit rates, etc.;\u003C\u002Fli>\n\u003Cli>network timelines as if you were in the dev tools of your users’ browsers;\u003C\u002Fli>\n\u003Cli>resources details – like initiators, protocols, mime types, average sizes, etc.;\u003C\u002Fli>\n\u003Cli>Web Vitals: LCP, FID, CLS, FCP and TTFB.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>It can segment all this data per:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>user type (anonymous vs. authenticated);\u003C\u002Fli>\n\u003Cli>channel (frontend vs. backend);\u003C\u002Fli>\n\u003Cli>country (requires the free \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fip-locator\u002F\" rel=\"ugc\">IP Locator\u003C\u002Fa> plugin);\u003C\u002Fli>\n\u003Cli>device classes and types (requires the free \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fdevice-detector\u002F\" rel=\"ugc\">Device Detector\u003C\u002Fa> plugin).\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>Vibes\u003C\u002Fstrong> supports multisite report delegation (see FAQ).\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Vibes\u003C\u002Fstrong> supports WP-CLI commands to:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>display (past or current) performances signals in console – see \u003Ccode>wp help vibes tail\u003C\u002Fcode> for details;\u003C\u002Fli>\n\u003Cli>toggle on\u002Foff main settings – see \u003Ccode>wp help vibes settings\u003C\u002Fcode> for details.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>For a full help on WP-CLI commands in Vibes, please \u003Ca href=\"https:\u002F\u002Fperfops.one\u002Fvibes-wpcli\" rel=\"nofollow ugc\">read this guide\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cblockquote>\n\u003Cp>\u003Cstrong>Vibes\u003C\u002Fstrong> is part of \u003Ca href=\"https:\u002F\u002Fperfops.one\u002F\" rel=\"nofollow ugc\">PerfOps One\u003C\u002Fa>, a suite of free and open source WordPress plugins dedicated to observability and operations performance.\u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Cp>\u003Cstrong>Vibes\u003C\u002Fstrong> is a free and open source plugin for WordPress. It integrates many other free and open source works (as-is or modified). Please, see ‘about’ tab in the plugin settings to see the details.\u003C\u002Fp>\n\u003Ch4>Support\u003C\u002Fh4>\n\u003Cp>This plugin is free and provided without warranty of any kind. Use it at your own risk, I’m not responsible for any improper use of this plugin, nor for any damage it might cause to your site. Always backup all your data before installing a new plugin.\u003C\u002Fp>\n\u003Cp>Anyway, I’ll be glad to help you if you encounter issues when using this plugin. Just use the support section of this plugin page.\u003C\u002Fp>\n\u003Ch4>Donation\u003C\u002Fh4>\n\u003Cp>If you like this plugin or find it useful and want to thank me for the work done, please consider making a donation to \u003Ca href=\"https:\u002F\u002Fwww.laquadrature.net\u002Fen\" rel=\"nofollow ugc\">La Quadrature Du Net\u003C\u002Fa> or the \u003Ca href=\"https:\u002F\u002Fwww.eff.org\u002F\" rel=\"nofollow ugc\">Electronic Frontier Foundation\u003C\u002Fa> which are advocacy groups defending the rights and freedoms of citizens on the Internet. By supporting them, you help the daily actions they perform to defend our fundamental freedoms!\u003C\u002Fp>\n","Truthful user experience and browsing performances monitoring.",400,16959,100,2,"2025-11-14T06:40:00.000Z","6.9.4","6.2","8.1",[52,53,54,20,55],"real-user-monitoring","rum","ux","web-vitals","https:\u002F\u002Fperfops.one\u002Fvibes","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fvibes.2.3.0.zip",98,"2025-08-25 14:10:31",{"slug":61,"name":62,"version":63,"author":64,"author_profile":65,"description":66,"short_description":67,"active_installs":45,"downloaded":68,"rating":69,"num_ratings":30,"last_updated":70,"tested_up_to":71,"requires_at_least":72,"requires_php":73,"tags":74,"homepage":77,"download_link":78,"security_score":79,"vuln_count":25,"unpatched_count":25,"last_vuln_date":26,"fetched_at":27},"site24x7-rum","Site24x7 Real User Monitoring","1.3","Site24x7","https:\u002F\u002Fprofiles.wordpress.org\u002Fsite24x7integrations\u002F","\u003Cp>Real User Monitoring by Site24x7 gives accurate insight into real users application experience and helps visualise web app interaction patterns. Real User Monitoring provides deep insight into key performance metrics right from the initiation of the URL until the request is served back to the browser.\u003C\u002Fp>\n\u003Cp>The RUM plugin helps you add your Site24x7 RUM code snippet to the Head tag of your WordPress blog. Once added, Site24x7 immediately starts collecting data from your WordPress blog’s visitors. You can view all that collected data in \u003Ca href=\"https:\u002F\u002Fwww.site24x7.com\u002Fapp\u002Fapm#\u002Fapm\u002Frum\u002Flist\u002F\" rel=\"nofollow ugc\">Site24x7 console\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>Site24x7 Real User Monitoring provides better understanding of performance issues by providing actionable data like showing real user performance by region, browser type, device used to access the application and more, these metric assist in pinpointing issues faster to make applications more fluid and user friendly. The back-end response time provides metrics from a server perspective calculating the time taken by the server to serve the request and statistics such as the page rendering time, document processing time and document downloading time, all of which help developers tailor applications to be more fluid to end users.please refer the help document for more information \u003Ca href=\"https:\u002F\u002Fwww.site24x7.com\u002Fhelp\u002Fapm\u002Frum.html\" rel=\"nofollow ugc\">site24x7-rum\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>P.S: You will need a Site24x7 account for this plugin. If you don’t have one, grab one at \u003Ca href=\"https:\u002F\u002Fwww.site24x7.com\u002Fsignup.html?pack=4&l=en\" rel=\"nofollow ugc\">site24x7.com\u003C\u002Fa> – its super-easy!\u003C\u002Fp>\n","Real User Monitoring (RUM) by Site24x7 provides deep and accurate insight into real users’experience on your WordPress setup.",3664,80,"2025-01-22T12:28:00.000Z","6.7.5","2.8","5.2.4",[75,52,53,76,21],"application-performance","user-experience-monitoring","https:\u002F\u002Fwww.site24x7.com\u002Freal-user-monitoring.html","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsite24x7-rum.1.3.zip",92,{"slug":21,"name":81,"version":82,"author":83,"author_profile":84,"description":85,"short_description":86,"active_installs":87,"downloaded":88,"rating":89,"num_ratings":90,"last_updated":91,"tested_up_to":48,"requires_at_least":92,"requires_php":16,"tags":93,"homepage":97,"download_link":98,"security_score":45,"vuln_count":25,"unpatched_count":25,"last_vuln_date":26,"fetched_at":27},"Super Monitoring","2.97","siteimpulse","https:\u002F\u002Fprofiles.wordpress.org\u002Fsiteimpulse\u002F","\u003Cp>Super Monitoring is an external web application for monitoring website uptime and its basic functions.\u003Cbr \u002F>\nThis plugin integrates Super Monitoring interface into WordPress administration panel so you don’t have to log in to supermonitoring.com separately to see your reports or update settings.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Super Monitoring features\u003C\u002Fstrong>\u003Cbr \u002F>\n– checking your website every minute\u003Cbr \u002F>\n– detecting different kinds of failures\u003Cbr \u002F>\n– using a worldwide network of monitoring stations to avoid false positives\u003Cbr \u002F>\n– measuring response times\u003Cbr \u002F>\n– content checking\u003Cbr \u002F>\n– web form testing\u003Cbr \u002F>\n– file integrity monitoring\u003Cbr \u002F>\n– instant email & mobile text (SMS) alerts\u003Cbr \u002F>\n– unlimited event history\u003Cbr \u002F>\n– API.\u003C\u002Fp>\n\u003Cp>In order to use the plugin you need an account at \u003Ca href=\"https:\u002F\u002Fwww.supermonitoring.com\u002F\" title=\"website monitoring\" rel=\"nofollow ugc\">www.supermonitoring.com\u003C\u002Fa>.\u003Cbr \u002F>\nYou can sign up for a free trial \u003Ca href=\"https:\u002F\u002Fwww.supermonitoring.com\u002Fsign-up\" title=\"sign up for a free trial account\" rel=\"nofollow ugc\">here\u003C\u002Fa>.\u003C\u002Fp>\n","Monitor your website uptime and basic functions with www.supermonitoring.com and access your reports and settings directly in your WordPress panel.",60,11359,88,9,"2026-02-10T20:52:00.000Z","2.2",[94,95,19,96,21],"alerts","availability","uptime","https:\u002F\u002Fwww.supermonitoring.com\u002Fp\u002Fwordpress-plugin","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwebsite-monitoring.2.97.zip",{"slug":100,"name":101,"version":102,"author":103,"author_profile":104,"description":105,"short_description":106,"active_installs":107,"downloaded":108,"rating":25,"num_ratings":25,"last_updated":109,"tested_up_to":110,"requires_at_least":111,"requires_php":112,"tags":113,"homepage":16,"download_link":117,"security_score":24,"vuln_count":25,"unpatched_count":25,"last_vuln_date":26,"fetched_at":27},"better-uptime","Better Uptime","1.0.3","simonbetteruptime","https:\u002F\u002Fprofiles.wordpress.org\u002Fsimonbetteruptime\u002F","\u003Ch4>The best uptime monitoring plugin for WP\u003C\u002Fh4>\n\u003Cp>Better Uptime is a website uptime monitoring add-on. We call you when your website goes down.\u003C\u002Fp>\n\u003Cp>Can’t afford downtime? Get alerted with the fastest uptime monitoring service.\u003C\u002Fp>\n\u003Ch4>Better Uptime provides\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Unlimited phone call alerts, as well as SMS, e-mail, Slack, Teams, and push notifications.\u003C\u002Fli>\n\u003Cli>30-second multi-location checks. Each incident is verified from at least 3 locations before we proceed to alert you.\u003C\u002Fli>\n\u003Cli>Detailed incident timeline describing exactly what happened. This includes screenshots and error logs for every incident.\u003C\u002Fli>\n\u003Cli>Built-in incident management with on-call duties and automatic escalation.\u003C\u002Fli>\n\u003Cli>Scheduling of on-call rotations directly from Google Calendar.\u003C\u002Fli>\n\u003Cli>Beautiful status pages on your own sub-domain in just a few clicks. Customize design and set it up in 5 minutes.\u003C\u002Fli>\n\u003Cli>Over 100+ integrations with tools you already use.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Find out more on \u003Ca href=\"https:\u002F\u002Fbetteruptime.com\u002F\" rel=\"nofollow ugc\">betteruptime.com\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch4>About 3rd party integration\u003C\u002Fh4>\n\u003Cp>This plugin is the only official Better Uptime WordPress plugin. It is based and relies on the \u003Ca href=\"http:\u002F\u002Fbetteruptime.com\" rel=\"nofollow ugc\">betteruptime.com\u003C\u002Fa> platform for its proper functioning. All its operations are guided by the terms of use and the privacy policies of Better Uptime.\u003C\u002Fp>\n\u003Cp>Terms of service: \u003Ca href=\"https:\u002F\u002Fbetteruptime.com\u002Fterms\" rel=\"nofollow ugc\">https:\u002F\u002Fbetteruptime.com\u002Fterms\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>Privacy policy: \u003Ca href=\"https:\u002F\u002Fbetteruptime.com\u002Fprivacy\" rel=\"nofollow ugc\">https:\u002F\u002Fbetteruptime.com\u002Fprivacy\u003C\u002Fa>\u003C\u002Fp>\n","Better Uptime is a radically better infrastructure monitoring platform that calls the right person on your team if anything goes wrong.",20,1365,"2021-02-04T10:36:00.000Z","5.6.17","4.0","5.6",[114,115,96,116,21],"incident-management","status-pages","uptime-monitoring","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbetter-uptime.1.0.3.zip",{"slug":119,"name":120,"version":121,"author":122,"author_profile":123,"description":124,"short_description":125,"active_installs":25,"downloaded":126,"rating":25,"num_ratings":25,"last_updated":127,"tested_up_to":71,"requires_at_least":128,"requires_php":129,"tags":130,"homepage":135,"download_link":136,"security_score":45,"vuln_count":25,"unpatched_count":25,"last_vuln_date":26,"fetched_at":27},"dynamicip-watchdog","DynamicIP Watchdog","2.0","ThemeSupport","https:\u002F\u002Fprofiles.wordpress.org\u002Fthemesupport\u002F","\u003Cp>Do you need to know when the Outbound IP address of your website changes? Look no further, DynamicIP Watchdog does exactly that! You can choose who receives a notification and can even include your own notes with it. Changes are scanned for every 5 minutes but notifications will only be sent when a change in the outbound IP address is detected. That’s it, simple and easy.\u003C\u002Fp>\n\u003Ch3>Plugin Dependencies\u003C\u002Fh3>\n\u003Cp>Our plugin, DynamicIP Watchdog, is designed to keep you informed about changes in your website’s outbound IP address. It leverages a third-party service, namely ipify.org, to facilitate the retrieval of the current IP address.\u003C\u002Fp>\n\u003Ch4>Why Depend on Third-Party Service\u003C\u002Fh4>\n\u003Cp>Our decision to integrate ipify.org is rooted in its specialized expertise and the added value it brings to our plugin. This enables us to provide you with real-time updates on your website’s outbound IP address, ensuring accurate and timely information.\u003C\u002Fp>\n\u003Ch4>Service Reliability\u003C\u002Fh4>\n\u003Cp>It’s important to note that the reliability of our plugin is contingent on the availability and performance of ipify.org. We have conducted thorough assessments of their service and are confident in its capability to meet our standards and your expectations.\u003C\u002Fp>\n\u003Ch4>Circumstances for Third-Party Usage\u003C\u002Fh4>\n\u003Cp>The functionality of DynamicIP Watchdog relies on ipify.org for the accurate retrieval of your website’s current outbound IP address. This ensures that you receive up-to-date information about any changes in a timely manner.\u003C\u002Fp>\n\u003Cp>https:\u002F\u002Fgeo.ipify.org\u002Fprivacy-policy\u003Cbr \u002F>\nhttps:\u002F\u002Fgeo.ipify.org\u002Fterms-of-service\u003C\u002Fp>\n","DynamicIP Watchdog keeps you informed about changes in your website's outbound IP address.",1097,"2025-04-16T17:50:00.000Z","6.5","8.2",[131,132,133,134,21],"ip-change-notifier","ip-shift-detection","notification-plugin","outbound-ip-alerts","https:\u002F\u002Fthemesupport.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fdynamicip-watchdog.2.0.zip",{"attackSurface":138,"codeSignals":165,"taintFlows":232,"riskAssessment":233,"analyzedAt":242},{"hooks":139,"ajaxHandlers":156,"restRoutes":162,"shortcodes":163,"cronEvents":164,"entryPointCount":30,"unprotectedCount":30},[140,145,148,152],{"type":141,"name":142,"callback":142,"file":143,"line":144},"action","admin_init","wp-internetvista.php",125,{"type":141,"name":146,"callback":146,"file":143,"line":147},"admin_notices",126,{"type":141,"name":149,"callback":150,"file":143,"line":151},"wp_dashboard_setup","admin_dashboard_widget",133,{"type":141,"name":153,"callback":154,"file":143,"line":155},"admin_enqueue_scripts","admin_register_scripts",139,[157],{"action":158,"nopriv":159,"callback":160,"hasNonce":159,"hasCapCheck":159,"file":143,"line":161},"my_action",false,"admin_ajax_callback",145,[],[],[],{"dangerousFunctions":166,"sqlUsage":167,"outputEscaping":169,"fileOperations":25,"externalRequests":25,"nonceChecks":230,"capabilityChecks":14,"bundledLibraries":231},[],{"prepared":25,"raw":25,"locations":168},[],{"escaped":25,"rawEcho":31,"locations":170},[171,174,176,178,180,182,183,184,186,188,190,192,194,196,198,200,202,204,206,208,210,212,214,216,218,220,222,224,226,228],{"file":143,"line":172,"context":173},546,"raw output",{"file":143,"line":175,"context":173},547,{"file":143,"line":177,"context":173},548,{"file":143,"line":179,"context":173},603,{"file":143,"line":181,"context":173},617,{"file":143,"line":181,"context":173},{"file":143,"line":181,"context":173},{"file":143,"line":185,"context":173},630,{"file":143,"line":187,"context":173},631,{"file":143,"line":189,"context":173},663,{"file":143,"line":191,"context":173},675,{"file":143,"line":193,"context":173},677,{"file":143,"line":195,"context":173},837,{"file":143,"line":197,"context":173},857,{"file":143,"line":199,"context":173},917,{"file":143,"line":201,"context":173},1049,{"file":143,"line":203,"context":173},1180,{"file":143,"line":205,"context":173},1205,{"file":143,"line":207,"context":173},1234,{"file":143,"line":209,"context":173},1235,{"file":143,"line":211,"context":173},1237,{"file":143,"line":213,"context":173},1239,{"file":143,"line":215,"context":173},1241,{"file":143,"line":217,"context":173},1248,{"file":143,"line":219,"context":173},1250,{"file":143,"line":221,"context":173},1253,{"file":143,"line":223,"context":173},1261,{"file":143,"line":225,"context":173},1266,{"file":143,"line":227,"context":173},1274,{"file":143,"line":229,"context":173},1279,5,[],[],{"summary":234,"deductions":235},"The wp-internetvista plugin v1.0.1 exhibits a mixed security posture. While it demonstrates good practices in avoiding dangerous functions, performing all SQL queries using prepared statements, and making no external HTTP requests, significant concerns arise from its handling of entry points. The plugin has one unprotected AJAX handler, representing a critical attack surface that could be exploited if user-supplied data is not properly sanitized and validated. This lack of authentication on a direct entry point is a major security flaw.\n\nThe static analysis reveals a notable weakness in output escaping, with 0% of the 30 total outputs being properly escaped. This creates a high risk of Cross-Site Scripting (XSS) vulnerabilities, as malicious scripts could be injected and executed in the user's browser. The absence of taint analysis results is not necessarily a positive sign; it could indicate that the analysis was not performed or did not find any flows, but given the unescaped outputs, it's more likely that the analysis was incomplete or didn't cover these specific scenarios.\n\nThe vulnerability history for this plugin is clean, with no known CVEs recorded. This is a positive indicator, suggesting that in the past, the plugin has not been a target of significant vulnerabilities or has been well-maintained in terms of patching. However, the presence of an unprotected AJAX endpoint and pervasive unescaped output in the current version means that a new vulnerability could easily emerge. The plugin has strengths in its SQL handling and lack of external calls, but these are overshadowed by the immediate risks of XSS and the potential for arbitrary code execution or unauthorized actions via the unprotected AJAX handler.",[236,239],{"reason":237,"points":238},"Unprotected AJAX handler",8,{"reason":240,"points":241},"0% output escaping",6,"2026-03-17T00:36:55.907Z",{"wat":244,"direct":251},{"assetPaths":245,"generatorPatterns":247,"scriptPaths":248,"versionParams":250},[246],"\u002Fwp-content\u002Fplugins\u002Fwp-internetvista\u002Fassets\u002Fcss\u002Finternetvista.css",[],[249],"\u002Fwp-content\u002Fplugins\u002Fwp-internetvista\u002Fassets\u002Fjs\u002Finternetvista.js",[],{"cssClasses":252,"htmlComments":253,"htmlAttributes":254,"restEndpoints":262,"jsGlobals":263,"shortcodeOutput":265},[],[],[255,256,257,258,259,260,261],"data-wp-internetvista-login","data-wp-internetvista-password","data-wp-internetvista-id_app","data-wp-internetvista-interval_type","data-wp-internetvista-interval_date_start","data-wp-internetvista-interval_date_end","data-wp-internetvista-interval_date_diff",[],[264],"wp_internetvista",[]]