[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fiTlM4M7qtD3flrPBZpJy5qp0EY1cHAXqqhojhFM_1RQ":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":22,"download_link":23,"security_score":24,"vuln_count":25,"unpatched_count":25,"last_vuln_date":26,"fetched_at":27,"vulnerabilities":28,"developer":43,"crawl_stats":34,"alternatives":50,"analysis":160,"fingerprints":227},"wp-post-signature","WP Post Signature","0.4.1","Soli","https:\u002F\u002Fprofiles.wordpress.org\u002Fallnull\u002F","\u003Cp>This plugin allows you to append a signature after every post. Some variables can be used, such as %post_title%, %post_link%, %bloginfo_name%, %bloginfo_url%, and so on. It supports multiuser.\u003C\u002Fp>\n","This plugin allows you to append a signature after every post. Some variables can be used.",1000,51986,76,13,"2021-09-16T02:53:00.000Z","5.8.13","3.0","",[20,21],"post-signature","signature","http:\u002F\u002Fwordpress.org\u002Fextend\u002Fplugins\u002Fwp-post-signature\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-post-signature.zip",63,1,"2025-12-31 00:00:00","2026-03-15T15:16:48.613Z",[29],{"id":30,"url_slug":31,"title":32,"description":33,"plugin_slug":4,"theme_slug":34,"affected_versions":35,"patched_in_version":34,"severity":36,"cvss_score":37,"cvss_vector":38,"vuln_type":39,"published_date":26,"updated_date":40,"references":41,"days_to_patch":34},"CVE-2025-62124","post-signature-authenticated-author-stored-cross-site-scripting","Post Signature \u003C= 0.4.1 - Authenticated (Author+) Stored Cross-Site Scripting","The Post Signature plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 0.4.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with author-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.",null,"\u003C=0.4.1","medium",6.4,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:L\u002FUI:N\u002FS:C\u002FC:L\u002FI:L\u002FA:N","Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","2026-01-05 18:27:36",[42],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002Ff4fbf8d5-dae6-4db4-b4c3-7b2254983813?source=api-prod",{"slug":44,"display_name":7,"profile_url":8,"plugin_count":45,"total_installs":46,"avg_security_score":47,"avg_patch_time_days":48,"trust_score":13,"computed_at":49},"allnull",2,1200,74,30,"2026-04-05T15:18:00.600Z",[51,70,92,114,138],{"slug":52,"name":53,"version":54,"author":55,"author_profile":56,"description":57,"short_description":58,"active_installs":59,"downloaded":60,"rating":61,"num_ratings":61,"last_updated":18,"tested_up_to":62,"requires_at_least":63,"requires_php":18,"tags":64,"homepage":66,"download_link":67,"security_score":68,"vuln_count":61,"unpatched_count":61,"last_vuln_date":34,"fetched_at":69},"ab-post-signature","AB Post Signature","1.00","abjelosevic","https:\u002F\u002Fprofiles.wordpress.org\u002Fabjelosevic\u002F","\u003Cp>Plugin allows you to add a signature after every post.\u003C\u002Fp>\n","Plugin allows you to add a signature after every post.",10,3177,0,"4.95","3.8",[20,21,65],"wordpress-signature-post","http:\u002F\u002Faleksandar.bjelosevic.info\u002Fabpostsignature","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fab-post-signature.zip",100,"2026-03-15T10:48:56.248Z",{"slug":71,"name":72,"version":73,"author":74,"author_profile":75,"description":76,"short_description":77,"active_installs":59,"downloaded":78,"rating":79,"num_ratings":80,"last_updated":81,"tested_up_to":82,"requires_at_least":83,"requires_php":18,"tags":84,"homepage":88,"download_link":89,"security_score":90,"vuln_count":61,"unpatched_count":61,"last_vuln_date":34,"fetched_at":91},"author-signature","Author Signature","1.3.8","Zakir Sajib","https:\u002F\u002Fprofiles.wordpress.org\u002Fzakirstage\u002F","\u003Cp>The Author Signature plugin allows WordPress users to have signatures below every post and every page.\u003Cbr \u002F>\nThere is an option to turn off the display on post and page.\u003C\u002Fp>\n\u003Ch3>Features Request\u003C\u002Fh3>\n\u003Cp>Send me your requests here: zakirsajib@gmail.com\u003C\u002Fp>\n","This plugin appends the author's signature to blog posts or\u002Fand pages.",4569,80,4,"2024-04-15T05:18:00.000Z","6.5.8","2.8",[85,86,20,21,87],"author","page-signature","wordpress-signature","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fauthor-signature\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fauthor-signature.zip",92,"2026-03-15T14:54:45.397Z",{"slug":93,"name":94,"version":95,"author":96,"author_profile":97,"description":98,"short_description":99,"active_installs":100,"downloaded":101,"rating":102,"num_ratings":103,"last_updated":104,"tested_up_to":105,"requires_at_least":18,"requires_php":106,"tags":107,"homepage":18,"download_link":113,"security_score":68,"vuln_count":61,"unpatched_count":61,"last_vuln_date":34,"fetched_at":27},"digital-signature-for-contact-form-7","Digital Signature For Contact Form 7","1.0","silverplugins217","https:\u002F\u002Fprofiles.wordpress.org\u002Fsilverplugins217\u002F","\u003Cp>\u003Cstrong>Contact Form 7 Signature Addon\u003C\u002Fstrong> making autographs of people who want to get an E-signature in the system. We build too easy to access and use for users can sign your contact forms.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>For Example\u003C\u002Fstrong>\u003Cbr \u002F>\nIf some of the agreements and contracts need to sign digitally then via mouse and touch screen they can do an autograph on the form. that for a reason we build \u003Cstrong>Contact form 7 Signature Field\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cspan class=\"embed-youtube\" style=\"text-align:center; display: block;\">\u003Ciframe loading=\"lazy\" class=\"youtube-player\" width=\"750\" height=\"422\" src=\"https:\u002F\u002Fwww.youtube.com\u002Fembed\u002FlPfBadQp44E?version=3&rel=1&showsearch=0&showinfo=1&iv_load_policy=1&fs=1&hl=en-US&autohide=2&wmode=transparent\" allowfullscreen=\"true\" style=\"border:0;\" sandbox=\"allow-scripts allow-same-origin allow-popups allow-presentation allow-popups-to-escape-sandbox\">\u003C\u002Fiframe>\u003C\u002Fspan>\n\u003Ch3>FEATURES FOR DIGITAL SIGNATURE FOR CONTACT FORM 7:\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Easy to use\u003C\u002Fli>\n\u003Cli>Can change the signature pad background color and pen color.\u003C\u002Fli>\n\u003Cli>Signature field is required or not an option.\u003C\u002Fli>\n\u003Cli>Can add a custom class and id in signature pad\u003C\u002Fli>\n\u003Cli>open any form then you can see \u003Cstrong>digital_signature\u003C\u002Fstrong> button on top.\u003C\u002Fli>\n\u003Cli>Draw your signature then you can clear the signature pad\u003C\u002Fli>\n\u003Cli>Can add signature field name in File attachments then send signature attachment in the email.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.plugin999.com\u002Fplugin\u002Fdigital-signature-for-contact-form-7\u002F\" rel=\"nofollow ugc\">\u003Cstrong>📽Get Pro\u003C\u002Fstrong>\u003C\u002Fa> | \u003Ca href=\"https:\u002F\u002Fplugin999.com\u002Fdemo\u002Fdigital-signature-for-contact-form-7\u002F\" rel=\"nofollow ugc\">\u003Cstrong>📽Demo\u003C\u002Fstrong>\u003C\u002Fa> | \u003Ca href=\"https:\u002F\u002Fwww.plugin999.com\u002Fdocs-category\u002Fdigital-signature-for-contact-form-7\u002F\" rel=\"nofollow ugc\">\u003Cstrong>📽Documention\u003C\u002Fstrong>\u003C\u002Fa> | \u003Ca href=\"https:\u002F\u002Fwww.plugin999.com\u002Fsupport\u002F\" rel=\"nofollow ugc\">\u003Cstrong>📽Support\u003C\u002Fstrong>\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch3>FEATURES FOR DIGITAL SIGNATURE FOR CONTACT FORM 7 PREMIUM:\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Multiple Signature Support in One form\u003C\u002Fli>\n\u003Cli>Attachment In Signature Support\u003C\u002Fli>\n\u003Cli>Customize signature pad width and height options.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>CONTRIBUTE AND TRANSLATE\u003C\u002Fh3>\n\u003Cp>Digital Signature For Contact Form 7 is translated into multiple languages Chinese, Dutch, Russian, Spanish, and many more. Help localize Digital Signature For Contact Form 7 even further by adding your locale Language. \u003Ca href=\"https:\u002F\u002Ftranslate.wordpress.org\u002Fprojects\u002Fwp-plugins\u002Fdigital-signature-for-contact-form-7\" rel=\"nofollow ugc\">Click Here\u003C\u002Fa>\u003C\u002Fp>\n","Contact Form 7 Signature Addon making autographs of people who want to get an E-signature in the system. We build too easy to access and use for users &hellip;",5000,16282,98,15,"2026-01-24T04:54:00.000Z","6.9.4","5.0",[108,109,110,111,112],"contact-form-7","digital","digital-signature","signature-contact-form-7","signature-field","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fdigital-signature-for-contact-form-7.zip",{"slug":115,"name":116,"version":117,"author":118,"author_profile":119,"description":120,"short_description":121,"active_installs":122,"downloaded":123,"rating":47,"num_ratings":124,"last_updated":125,"tested_up_to":126,"requires_at_least":127,"requires_php":128,"tags":129,"homepage":134,"download_link":135,"security_score":136,"vuln_count":25,"unpatched_count":25,"last_vuln_date":137,"fetched_at":27},"gd-bbpress-tools","GD bbPress Tools","3.5.3","Milan Petrovic","https:\u002F\u002Fprofiles.wordpress.org\u002Fgdragon\u002F","\u003Cp>Adds various expansions and tools to the bbPress plugin implemented forums. Currently, included features:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Quote Reply or Topic\u003C\u002Fli>\n\u003Cli>Change allowed HTML tags and attributes\u003C\u002Fli>\n\u003Cli>User signature with BBCode and HTML support\u003C\u002Fli>\n\u003Cli>Signature field in BuddyPress profile edit\u003C\u002Fli>\n\u003Cli>Toolbar menu integration\u003C\u002Fli>\n\u003Cli>BBCode shortcodes with 30 BBCodes\u003C\u002Fli>\n\u003Cli>Limit bbPress admin side access\u003C\u002Fli>\n\u003Cli>Tweak: Disable bbPress breadcrumbs\u003C\u002Fli>\n\u003Cli>Tweak: Topic tags field in reply form for author only\u003C\u002Fli>\n\u003Cli>Tweak: Show lead topic\u003C\u002Fli>\n\u003Cli>Tweak: Show search form for all forums and topics\u003C\u002Fli>\n\u003Cli>Tweak: Disable ‘private’ title prefix\u003C\u002Fli>\n\u003Cli>Topics View: Topics with most replies\u003C\u002Fli>\n\u003Cli>Topics View: Latest Topics\u003C\u002Fli>\n\u003Cli>Topics View: Topics by freshness\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>bbPress Plugin Versions\u003C\u002Fh4>\n\u003Cp>GD bbPress Tools 3.5.3 supports bbPress 2.6.2 or newer. Older bbPress versions are no longer supported!\u003C\u002Fp>\n\u003Ch4>More free dev4Press.com plugins for bbPress\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fgd-forum-manager-for-bbpress\u002F\" rel=\"ugc\">GD Forum Manager\u003C\u002Fa> – quick and bulk forums and topics edit\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fgd-members-directory-for-bbpress\u002F\" rel=\"ugc\">GD Members Directory\u003C\u002Fa> – show filterable list of all forum members\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fgd-power-search-for-bbpress\u002F\" rel=\"ugc\">GD Power Search\u003C\u002Fa> – add advanced search to the bbPress topics\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fgd-bbpress-attachments\u002F\" rel=\"ugc\">GD bbPress Attachments\u003C\u002Fa> – attachments for topics and replies\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fgd-topic-polls\u002F\" rel=\"ugc\">GD Topic Polls\u003C\u002Fa> – add polls to the bbPress topics\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Upgrade to GD bbPress Toolbox Pro\u003C\u002Fh4>\n\u003Cp>The Pro version contains many more great features:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Enhanced attachments features\u003C\u002Fli>\n\u003Cli>Limit file types attachments upload\u003C\u002Fli>\n\u003Cli>Add custom file types for upload\u003C\u002Fli>\n\u003Cli>BBCodes editor toolbar\u003C\u002Fli>\n\u003Cli>Report topics and replies\u003C\u002Fli>\n\u003Cli>Say thanks to forum members\u003C\u002Fli>\n\u003Cli>Query Performance Booster\u003C\u002Fli>\n\u003Cli>Various SEO features\u003C\u002Fli>\n\u003Cli>Various privacy features\u003C\u002Fli>\n\u003Cli>Enable TinyMCE editor\u003C\u002Fli>\n\u003Cli>Private topics and replies\u003C\u002Fli>\n\u003Cli>Auto closing of inactive topics\u003C\u002Fli>\n\u003Cli>Notification email control\u003C\u002Fli>\n\u003Cli>Show user stats in topics and replies\u003C\u002Fli>\n\u003Cli>Track new and unread topics\u003C\u002Fli>\n\u003Cli>Mute Forums and Users\u003C\u002Fli>\n\u003Cli>Great new responsive admin UI\u003C\u002Fli>\n\u003Cli>Setup Wizard\u003C\u002Fli>\n\u003Cli>Forum based settings overrides\u003C\u002Fli>\n\u003Cli>Improved BuddyPress support\u003C\u002Fli>\n\u003Cli>40 BBCodes (including Hide and Spoiler)\u003C\u002Fli>\n\u003Cli>19 more Topics Views\u003C\u002Fli>\n\u003Cli>9 additional widgets\u003C\u002Fli>\n\u003Cli>Many great tweaks\u003C\u002Fli>\n\u003Cli>And much, much more\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>With more features on the roadmap exclusively for Pro version.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>More information about \u003Ca href=\"https:\u002F\u002Fwww.dev4press.com\u002Fplugins\u002Fgd-bbpress-toolbox\u002F\" rel=\"nofollow ugc\">GD bbPress Toolbox Pro\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>More Premium plugins for bbPress \u003Ca href=\"https:\u002F\u002Fwww.dev4press.com\u002Fbbpress-club\u002F\" rel=\"nofollow ugc\">bbPress Plugins Club\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n","Adds different expansions and tools to the bbPress plugin powered forums: BBCode support, signatures, various tweaks, custom views, quote...",2000,149983,23,"2024-08-19T08:42:00.000Z","6.6.5","5.9","7.4",[130,131,132,133,21],"bbcodes","bbpress","dev4press","quote","https:\u002F\u002Fwww.dev4press.com\u002Fplugins\u002Fgd-bbpress-tools\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fgd-bbpress-tools.zip",70,"2025-09-22 00:00:00",{"slug":139,"name":140,"version":141,"author":142,"author_profile":143,"description":144,"short_description":145,"active_installs":122,"downloaded":146,"rating":68,"num_ratings":147,"last_updated":148,"tested_up_to":149,"requires_at_least":150,"requires_php":151,"tags":152,"homepage":157,"download_link":158,"security_score":159,"vuln_count":61,"unpatched_count":61,"last_vuln_date":34,"fetched_at":27},"pryc-wp-add-custom-content-to-bottom-of-post","PRyC WP: Add custom content to post and page (top\u002Fbottom)","2.6.6","Patryk","https:\u002F\u002Fprofiles.wordpress.org\u002Fprycpl\u002F","\u003Cp>Add custom content to post and\u002For page (top\u002Fbottom). You may use text, HTML, Shortcodes and JavaScript. Simple, but work…\u003C\u002Fp>\n","Add custom content to post and\u002For page (top\u002Fbottom). You may use text, HTML, Shortcodes and JavaScript. Simple, but work...",37127,7,"2023-06-20T11:43:00.000Z","6.2.9","3.3","5.6",[153,154,155,21,156],"footer","page","post","wordpress","http:\u002F\u002FPRyC.pl","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fpryc-wp-add-custom-content-to-bottom-of-post.zip",85,{"attackSurface":161,"codeSignals":186,"taintFlows":214,"riskAssessment":215,"analyzedAt":226},{"hooks":162,"ajaxHandlers":182,"restRoutes":183,"shortcodes":184,"cronEvents":185,"entryPointCount":61,"unprotectedCount":61},[163,169,173,177],{"type":164,"name":165,"callback":166,"priority":59,"file":167,"line":168},"filter","plugin_row_meta","RegisterPluginLinks","wp-post-signature.php",208,{"type":164,"name":170,"callback":171,"file":167,"line":172},"the_content","AppendSignature",217,{"type":164,"name":174,"callback":175,"file":167,"line":176},"the_excerpt","AppendSignatureExcerpt",218,{"type":178,"name":179,"callback":180,"priority":25,"file":167,"line":181},"action","admin_menu","WPPostSignature_Menu",229,[],[],[],[],{"dangerousFunctions":187,"sqlUsage":188,"outputEscaping":190,"fileOperations":45,"externalRequests":61,"nonceChecks":25,"capabilityChecks":45,"bundledLibraries":213},[],{"prepared":61,"raw":61,"locations":189},[],{"escaped":191,"rawEcho":192,"locations":193},3,9,[194,198,200,202,204,206,208,210,211],{"file":195,"line":196,"context":197},"wp-post-signature-page.php",124,"raw output",{"file":195,"line":199,"context":197},175,{"file":195,"line":201,"context":197},189,{"file":195,"line":203,"context":197},216,{"file":195,"line":205,"context":197},222,{"file":195,"line":207,"context":197},231,{"file":195,"line":209,"context":197},251,{"file":195,"line":209,"context":197},{"file":195,"line":212,"context":197},269,[],[],{"summary":216,"deductions":217},"The \"wp-post-signature\" plugin v0.4.1 presents a mixed security posture. While it demonstrates some good practices, such as exclusively using prepared statements for SQL queries and including nonce and capability checks, significant concerns remain. The static analysis reveals a notable weakness in output escaping, with only 25% of outputs being properly handled. This indicates a potential for Cross-Site Scripting (XSS) vulnerabilities, where malicious scripts could be injected into the website's content.  The absence of any taint analysis flows might be misleading, as it doesn't necessarily confirm the absence of vulnerabilities, especially in conjunction with the low output escaping rate. The plugin's vulnerability history is a major red flag. The presence of one unpatched medium-severity CVE, identified as Cross-Site Scripting, is a critical concern. The fact that this vulnerability is marked as \"currently unpatched\" and the \"last vulnerability\" date is in the future suggests potential issues with maintenance or a reporting anomaly, but the core issue of an unpatched XSS vulnerability remains. This history indicates a pattern of security weaknesses that require immediate attention and patching.",[218,221,224],{"reason":219,"points":220},"Unpatched CVE (Medium Severity)",18,{"reason":222,"points":223},"Low percentage of properly escaped output",8,{"reason":225,"points":45},"Zero taint flows analyzed is not definitive","2026-03-16T18:53:50.588Z",{"wat":228,"direct":233},{"assetPaths":229,"generatorPatterns":230,"scriptPaths":231,"versionParams":232},[],[],[],[],{"cssClasses":234,"htmlComments":235,"htmlAttributes":237,"restEndpoints":238,"jsGlobals":239,"shortcodeOutput":240},[],[236],"\u003C!-- SIGNATURE_MARK -->",[],[],[],[]]