[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fT_OdiR0oW6t9ayAG_L6DnLJU1Sr4IG1O5_0G7zT7_b4":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":25,"download_link":26,"security_score":27,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30,"vulnerabilities":31,"developer":32,"crawl_stats":29,"alternatives":39,"analysis":127,"fingerprints":216},"wp-updates-settings","WP Updates Settings","1.1.4","Yslo","https:\u002F\u002Fprofiles.wordpress.org\u002Fyslo\u002F","\u003Cp>Allows you the ability to set Updates and Automatic Background Updates through Settings panel.\u003C\u002Fp>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Show\u002Fhide Updates notification\u003C\u002Fli>\n\u003Cli>Use default WordPress behaviors\u003C\u002Fli>\n\u003Cli>Enable\u002FDisable Updates capabilities to Administrator users\u003C\u002Fli>\n\u003Cli>Set Major Core Automatic Background Updates\u003C\u002Fli>\n\u003Cli>Set Minor Core Automatic Background Updates\u003C\u002Fli>\n\u003Cli>Set Plugin Automatic Background Updates\u003C\u002Fli>\n\u003Cli>Set Theme Automatic Background Updates\u003C\u002Fli>\n\u003Cli>Set Translation files Automatic Background Updates\u003C\u002Fli>\n\u003Cli>Set Auto Core Update Notification emails.\u003C\u002Fli>\n\u003Cli>Add Updates panel (Settings > Updates)\u003C\u002Fli>\n\u003Cli>Contextual Help\u003C\u002Fli>\n\u003Cli>Translation MO\u002FPO files\u003C\u002Fli>\n\u003Cli>Multisite\u003C\u002Fli>\n\u003Cli>Desactivate restore default WordPress behavior\u003C\u002Fli>\n\u003Cli>Uninstall restore default WordPress behavior\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Languages\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>English\u003C\u002Fli>\n\u003Cli>French\u003C\u002Fli>\n\u003C\u002Ful>\n","Configure WordPress updates settings through UI (User Interface).",1000,21138,88,5,"2017-12-20T22:09:00.000Z","4.9.29","3.7","",[20,21,22,23,24],"admin","automatic","background","core","updates","http:\u002F\u002Fwordpress.org\u002Fplugins\u002Fwp-updates-settings\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-updates-settings.1.1.4.zip",85,0,null,"2026-03-15T15:16:48.613Z",[],{"slug":33,"display_name":7,"profile_url":8,"plugin_count":34,"total_installs":35,"avg_security_score":27,"avg_patch_time_days":36,"trust_score":37,"computed_at":38},"yslo",6,3300,30,84,"2026-04-04T07:00:53.989Z",[40,63,82,96,112],{"slug":41,"name":42,"version":43,"author":44,"author_profile":45,"description":46,"short_description":47,"active_installs":48,"downloaded":49,"rating":50,"num_ratings":51,"last_updated":52,"tested_up_to":53,"requires_at_least":54,"requires_php":55,"tags":56,"homepage":61,"download_link":62,"security_score":50,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"wp-auto-updater","WP Auto Updater","1.7.3","thingsym","https:\u002F\u002Fprofiles.wordpress.org\u002Fthingsym\u002F","\u003Cp>WP Auto Updater plugin enables automatic updates of WordPress Core, Themes, Plugins and Translations. Version control of WordPress Core makes automatic update more safely.\u003C\u002Fp>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Automatically update WordPress Core\u003C\u002Fli>\n\u003Cli>Automatically updates Themes, Plugins and Translations\u003C\u002Fli>\n\u003Cli>Set up a schedule automatic updates\u003C\u002Fli>\n\u003Cli>Disable automatic updating of each Themes and Plugins\u003C\u002Fli>\n\u003Cli>Record update history\u003C\u002Fli>\n\u003Cli>Update notification\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>Important\u003C\u002Fstrong>: before updating, please back up your database and files.\u003C\u002Fp>\n\u003Ch4>Auto Update Scenario\u003C\u002Fh4>\n\u003Cp>First of all, we will make an \u003Cstrong>Auto Update Scenario\u003C\u002Fstrong> which decide the policy of WordPress automatic updates.\u003C\u002Fp>\n\u003Cp>You can choose from the following five automatic updates of WordPress Core.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Minor Version Update\u003C\u002Fli>\n\u003Cli>Major Version Update\u003C\u002Fli>\n\u003Cli>Minor Only Version Update\u003C\u002Fli>\n\u003Cli>Previous Generation Version Update\u003C\u002Fli>\n\u003Cli>Manual Update\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Minor Version Update\u003C\u002Fh4>\n\u003Cp>\u003Cstrong>Minor Version Update\u003C\u002Fstrong> enable minor updates. Minor updates is default behavior in WordPress for security updates. The transition of the version number is as follows: update from 4.8 to 4.8.1, 4.8.2 …\u003C\u002Fp>\n\u003Ch4>Major Version Update\u003C\u002Fh4>\n\u003Cp>\u003Cstrong>Major Version Update\u003C\u002Fstrong> enable major updates. The transition of the version number is as follows: update from 4.7 to 4.8, 4.9 …\u003C\u002Fp>\n\u003Ch4>Minor Only Version Update\u003C\u002Fh4>\n\u003Cp>\u003Cstrong>Minor Only Version Update\u003C\u002Fstrong> enable major updates and minor updates \u003Cstrong>except version x.y.0\u003C\u002Fstrong>. It make sense to take a “skip” approach to avoid introducing new vulnerabilities into the latest major version release.\u003C\u002Fp>\n\u003Cp>Update the WordPress Core version (eg. x.y.1 or later) with security fixed. Not automatically update the latest major version of x.y.0. The transition of the version number is as follows: update from 4.7.z to 4.8.z, 4.9.z … skiped 4.7.0, 4.8.0, 4.9.0 …\u003C\u002Fp>\n\u003Ch4>Previous Generation Version Update\u003C\u002Fh4>\n\u003Cp>\u003Cstrong>Previous Generation Version Update\u003C\u002Fstrong> enable major updates and minor updates \u003Cstrong>except the latest major version\u003C\u002Fstrong>. It make sense to take a “wait and see” approach to ensure the latest major version release is stable before.\u003C\u002Fp>\n\u003Cp>With the installed WordPress Core version as 4.6.z. If the latest WordPress Core version released to 4.8.0, automatically update it to version 4.7.z. It will be always automatically updated to the previous generation WordPress Core version with probably security fixed.\u003C\u002Fp>\n\u003Ch4>Manual Update\u003C\u002Fh4>\n\u003Cp>\u003Cstrong>Manual Update\u003C\u002Fstrong> disable automatic updates. You update WordPress Core manually on the Dashboard Updates Screen.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Automatic updates\u003C\u002Fstrong> and \u003Cstrong>manual updates\u003C\u002Fstrong> are available for themes, plugins and Translations.\u003Cbr \u002F>\nIt is also possible to disable automatic updating of each Themes and Plugins.\u003C\u002Fp>\n\u003Ch4>Scheduled automatic updates\u003C\u002Fh4>\n\u003Cp>Next we will set up a schedule for automatic updates.\u003Cbr \u002F>\nThe update interval can be selected from the following four.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Twice Daily (12 hours interval)\u003C\u002Fli>\n\u003Cli>Daily\u003C\u002Fli>\n\u003Cli>Weekly\u003C\u002Fli>\n\u003Cli>Monthly\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>You can also set the day, the day of the week, the hour and the minute of the Update Date.\u003C\u002Fp>\n\u003Cp>At the time of automatic update, Automatically updates WordPress Core, Themes, Plugins and Translations to be updated.\u003C\u002Fp>\n\u003Ch4>Support\u003C\u002Fh4>\n\u003Cp>If you have any trouble, you can use the forums or report bugs.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Forum: \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fsupport\u002Fplugin\u002Fwp-auto-updater\u002F\" rel=\"ugc\">https:\u002F\u002Fwordpress.org\u002Fsupport\u002Fplugin\u002Fwp-auto-updater\u002F\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>Issues: \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fthingsym\u002Fwp-auto-updater\u002Fissues\" rel=\"nofollow ugc\">https:\u002F\u002Fgithub.com\u002Fthingsym\u002Fwp-auto-updater\u002Fissues\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Contribution\u003C\u002Fh4>\n\u003Cp>Small patches and bug reports can be submitted a issue tracker in Github. Forking on Github is another good way. You can send a pull request.\u003C\u002Fp>\n\u003Cp>Translating a plugin takes a lot of time, effort, and patience. I really appreciate the hard work from these contributors.\u003C\u002Fp>\n\u003Cp>If you have created or updated your own language pack, you can send gettext PO and MO files to author. I can bundle it into plugin.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fthingsym\u002Fwp-auto-updater\" rel=\"nofollow ugc\">VCS – GitHub\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fwp-auto-updater\u002F\" rel=\"ugc\">Homepage – WordPress Plugin\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Ftranslate.wordpress.org\u002Fprojects\u002Fwp-plugins\u002Fwp-auto-updater\" rel=\"nofollow ugc\">Translate WP Auto Updater into your language.\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>You can also contribute by answering issues on the forums.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Forum: \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fsupport\u002Fplugin\u002Fwp-auto-updater\u002F\" rel=\"ugc\">https:\u002F\u002Fwordpress.org\u002Fsupport\u002Fplugin\u002Fwp-auto-updater\u002F\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>Issues: \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fthingsym\u002Fwp-auto-updater\u002Fissues\" rel=\"nofollow ugc\">https:\u002F\u002Fgithub.com\u002Fthingsym\u002Fwp-auto-updater\u002Fissues\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Contribute guidlines\u003C\u002Fh4>\n\u003Cp>If you would like to contribute, here are some notes and guidlines.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>All development happens on the \u003Cstrong>develop\u003C\u002Fstrong> branch, so it is always the most up-to-date\u003C\u002Fli>\n\u003Cli>The \u003Cstrong>master\u003C\u002Fstrong> branch only contains tagged releases\u003C\u002Fli>\n\u003Cli>If you are going to be submitting a pull request, please submit your pull request to the \u003Cstrong>develop\u003C\u002Fstrong> branch\u003C\u002Fli>\n\u003Cli>See about \u003Ca href=\"https:\u002F\u002Fhelp.github.com\u002Farticles\u002Ffork-a-repo\u002F\" rel=\"nofollow ugc\">forking\u003C\u002Fa> and \u003Ca href=\"https:\u002F\u002Fhelp.github.com\u002Farticles\u002Fusing-pull-requests\u002F\" rel=\"nofollow ugc\">pull requests\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Test Matrix\u003C\u002Fh4>\n\u003Cp>For operation compatibility between PHP version and WordPress version, see below \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fthingsym\u002Fwp-auto-updater\u002Factions\" rel=\"nofollow ugc\">Github Actions\u003C\u002Fa>.\u003C\u002Fp>\n","WP Auto Updater plugin enables automatic updates of WordPress Core, Themes, Plugins and Translations. Version control of WordPress Core makes automati &hellip;",7000,111423,92,10,"2024-08-23T07:15:00.000Z","6.6.5","4.9","5.6",[57,58,59,60,24],"auto-update","automatic-updates","background-updates","core-updates","https:\u002F\u002Fgithub.com\u002Fthingsym\u002Fwp-auto-updater","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-auto-updater.1.7.3.zip",{"slug":64,"name":65,"version":66,"author":67,"author_profile":68,"description":69,"short_description":70,"active_installs":71,"downloaded":72,"rating":73,"num_ratings":74,"last_updated":75,"tested_up_to":76,"requires_at_least":17,"requires_php":18,"tags":77,"homepage":80,"download_link":81,"security_score":27,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"wp-automatic-updates","WP Automatic Updates","1.1.6","Ankit Singla","https:\u002F\u002Fprofiles.wordpress.org\u002Faksingla\u002F","\u003Cp>An easy-to-use plugin settings panel where you can set automatic updates on or off for themes, plugins, and core updates from plugin options.\u003C\u002Fp>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cp>In a matter of few clicks, you will be able to:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Set Minor\u002FMajor Core Updates\u003C\u002Fli>\n\u003Cli>Set Plugin Updates\u003C\u002Fli>\n\u003Cli>Set Theme Updates\u003C\u002Fli>\n\u003Cli>Set Translations Updates\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Languages\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>English\u003C\u002Fli>\n\u003Cli>Dutch\u003C\u002Fli>\n\u003Cli>French\u003C\u002Fli>\n\u003C\u002Ful>\n","Configure WordPress automatic updates settings through backend options. Just install, setup and forget.",400,27182,100,2,"2018-08-16T12:22:00.000Z","4.8.28",[58,59,60,78,79],"plugin-updates","translation-updates","http:\u002F\u002Fwww.omaksolutions.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-automatic-updates.1.1.6.zip",{"slug":83,"name":84,"version":85,"author":7,"author_profile":8,"description":86,"short_description":87,"active_installs":88,"downloaded":89,"rating":73,"num_ratings":74,"last_updated":90,"tested_up_to":16,"requires_at_least":91,"requires_php":18,"tags":92,"homepage":94,"download_link":95,"security_score":27,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"wp-excerpt-settings","WP Excerpt Settings","1.1.2","\u003Cp>Allows you the ability to set Excerpt through Settings panel.\u003C\u002Fp>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Set text to symbolize the excerpt end\u003C\u002Fli>\n\u003Cli>Set words length used by automatic excerpt\u003C\u002Fli>\n\u003Cli>Use default WordPress behaviors\u003C\u002Fli>\n\u003Cli>Excerpt settings added on Reading Settings (Settings > Reading)\u003C\u002Fli>\n\u003Cli>Contextual Help\u003C\u002Fli>\n\u003Cli>Translation MO\u002FPO files\u003C\u002Fli>\n\u003Cli>Desactivate restore default WordPress behavior\u003C\u002Fli>\n\u003Cli>Uninstall restore default WordPress behavior\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Languages\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>English\u003C\u002Fli>\n\u003Cli>French\u003C\u002Fli>\n\u003C\u002Ful>\n","Configure WordPress Excerpt through UI (User Interface).",200,8475,"2017-12-20T22:37:00.000Z","3.0",[20,21,23,93,24],"theme","http:\u002F\u002Fwordpress.org\u002Fplugins\u002Fwp-excerpt-settings\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-excerpt-settings.1.1.2.zip",{"slug":57,"name":97,"version":98,"author":99,"author_profile":100,"description":101,"short_description":102,"active_installs":73,"downloaded":103,"rating":28,"num_ratings":28,"last_updated":104,"tested_up_to":105,"requires_at_least":106,"requires_php":107,"tags":108,"homepage":110,"download_link":111,"security_score":73,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"Auto Update","1.0.2","Valeriu Tihai","https:\u002F\u002Fprofiles.wordpress.org\u002Fvaleriutihai\u002F","\u003Cp>Auto Update is built for site owners who want WordPress to stay current without logging in to run updates manually.\u003C\u002Fp>\n\u003Cp>It keeps WordPress core, plugins, and themes updated automatically, which helps reduce maintenance work, apply security fixes sooner, and keep the site closer to the latest stable releases.\u003C\u002Fp>\n\u003Cp>Once activated, it enables both minor and major core updates and allows installed plugins and themes to update in the background.\u003C\u002Fp>\n\u003Cp>There is no settings page. Activate the plugin and let WordPress handle updates automatically.\u003C\u002Fp>\n","Keeps WordPress core, plugins, and themes updated automatically to reduce manual maintenance and improve security.",3683,"2026-03-14T02:42:00.000Z","6.9.4","5.8","7.4",[58,59,60,78,109],"theme-updates","https:\u002F\u002Fstylishwp.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fauto-update.1.0.2.zip",{"slug":113,"name":114,"version":115,"author":116,"author_profile":117,"description":118,"short_description":119,"active_installs":73,"downloaded":120,"rating":73,"num_ratings":121,"last_updated":122,"tested_up_to":76,"requires_at_least":17,"requires_php":18,"tags":123,"homepage":125,"download_link":126,"security_score":27,"vuln_count":28,"unpatched_count":28,"last_vuln_date":29,"fetched_at":30},"background-update-notification-email-address","Background Update Notification Email Address","1.1.1","Kanuka Digital","https:\u002F\u002Fprofiles.wordpress.org\u002Fiwebsolutions\u002F","\u003Cp>\u003Cstrong>This plugin changes the email address update notifications are sent to following an automatic background update.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>Automatic background updates were introduced in WordPress 3.7. An email notification is sent following the success or failure. The email is sent to the website administrator specified in WordPress under Settings > General. This may not always be the best recipient.\u003C\u002Fp>\n\u003Cp>This plugin is ideal for those who manage WordPress on their clients behalf. The client carries on receiving WordPress emails as before, with automatic background update notifications being redirected to the developers email address specified in this plugins settings.\u003C\u002Fp>\n\u003Cp>We originally \u003Ca href=\"https:\u002F\u002Fwww.iweb.co.uk\u002F2013\u002F10\u002Fchange-wordpress-auto-update-email-address\u002F\" rel=\"nofollow ugc\">published a solution\u003C\u002Fa> following the release of WordPress 3.7.1. This plugin provides a simple interface for setting the email address without having to touch code.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Once installed, navigate to Settings > Update Notifications. From here you can set the email address where background update notifications should be sent to. Background update notifications can be sent to multiple recipients by entering a comma-separated list of email addresses.\u003C\u002Fstrong>\u003C\u002Fp>\n","Change the email address update notifications are sent to following an automatic background update.",3491,3,"2015-12-11T09:44:00.000Z",[20,58,59,124,24],"manage","http:\u002F\u002Fwordpress.org\u002Fplugins\u002Fbackground-update-notification-email-address\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbackground-update-notification-email-address.1.1.1.zip",{"attackSurface":128,"codeSignals":183,"taintFlows":209,"riskAssessment":210,"analyzedAt":215},{"hooks":129,"ajaxHandlers":179,"restRoutes":180,"shortcodes":181,"cronEvents":182,"entryPointCount":28,"unprotectedCount":28},[130,136,140,144,147,151,156,160,163,166,169,172,175],{"type":131,"name":132,"callback":133,"file":134,"line":135},"action","init","wpus_init_action","wp-updates-settings.php",41,{"type":131,"name":137,"callback":138,"file":134,"line":139},"admin_init","wpus_admin_init",42,{"type":131,"name":141,"callback":142,"file":134,"line":143},"admin_menu","wpus_notification_action",99,{"type":131,"name":137,"callback":145,"file":134,"line":146},"wpus_menu_updates_action",104,{"type":131,"name":148,"callback":149,"file":134,"line":150},"wp_before_admin_bar_render","wpus_remove_admin_bar_updates_links",105,{"type":152,"name":153,"callback":154,"file":134,"line":155},"filter","allow_minor_auto_core_updates","__return_false",110,{"type":152,"name":157,"callback":158,"file":134,"line":159},"allow_major_auto_core_updates","__return_true",115,{"type":152,"name":161,"callback":158,"file":134,"line":162},"auto_update_plugin",120,{"type":152,"name":164,"callback":158,"file":134,"line":165},"auto_update_theme",125,{"type":152,"name":167,"callback":154,"file":134,"line":168},"auto_update_translation",130,{"type":152,"name":170,"callback":154,"file":134,"line":171},"auto_core_update_send_email",135,{"type":131,"name":141,"callback":173,"file":134,"line":174},"register_wpus_menu_page",140,{"type":152,"name":176,"callback":177,"priority":51,"file":134,"line":178},"plugin_action_links","add_action_link",143,[],[],[],[],{"dangerousFunctions":184,"sqlUsage":185,"outputEscaping":187,"fileOperations":28,"externalRequests":28,"nonceChecks":28,"capabilityChecks":207,"bundledLibraries":208},[],{"prepared":28,"raw":28,"locations":186},[],{"escaped":28,"rawEcho":188,"locations":189},8,[190,193,195,197,199,201,203,205],{"file":134,"line":191,"context":192},317,"raw output",{"file":134,"line":194,"context":192},324,{"file":134,"line":196,"context":192},331,{"file":134,"line":198,"context":192},338,{"file":134,"line":200,"context":192},345,{"file":134,"line":202,"context":192},352,{"file":134,"line":204,"context":192},359,{"file":134,"line":206,"context":192},366,1,[],[],{"summary":211,"deductions":212},"The \"wp-updates-settings\" v1.1.4 plugin exhibits a generally good security posture based on the provided static analysis. The absence of AJAX handlers, REST API routes, shortcodes, and cron events significantly limits the plugin's attack surface. Furthermore, the code signals indicate a lack of dangerous functions, file operations, and external HTTP requests, which are positive indicators. The use of prepared statements for SQL queries is also a strong security practice. The plugin also performs at least one capability check, suggesting some level of access control is implemented.\n\nHowever, a significant concern arises from the output escaping. With 8 total outputs and 0% properly escaped, this presents a notable risk of Cross-Site Scripting (XSS) vulnerabilities. While taint analysis did not reveal any specific unsanitized paths or critical\u002Fhigh severity flows, the lack of output escaping means that any user-supplied data that is outputted by the plugin could potentially be exploited. The plugin's vulnerability history is clean, with no recorded CVEs, which is a positive sign. This suggests that the developers have historically maintained a secure codebase. However, the current lack of output escaping must be addressed to maintain this secure track record. The plugin's strengths lie in its minimal attack surface and secure handling of database operations, but the unescaped output is a critical weakness that requires immediate attention.",[213],{"reason":214,"points":188},"Unescaped output detected","2026-03-16T19:10:03.730Z",{"wat":217,"direct":226},{"assetPaths":218,"generatorPatterns":221,"scriptPaths":222,"versionParams":223},[219,220],"\u002Fwp-content\u002Fplugins\u002Fwp-updates-settings\u002Fcss\u002Fupdates-count.css","\u002Fwp-content\u002Fplugins\u002Fwp-updates-settings\u002Fcss\u002Fstyle.css",[],[],[224,225],"wp-updates-settings\u002Fcss\u002Fupdates-count.css?ver=","wp-updates-settings\u002Fcss\u002Fstyle.css?ver=",{"cssClasses":227,"htmlComments":230,"htmlAttributes":231,"restEndpoints":234,"jsGlobals":235,"shortcodeOutput":236},[228,229],"wrap","form-table",[],[232,233],"name=\"yslo_wpus_options\"","id=\"wp-updates-settings\"",[],[],[]]