[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fujY1YZ3GjJ395r32UN8GHP1PhjsZ2Y0gAYluddygvQg":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":24,"download_link":25,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":28,"vulnerabilities":29,"developer":30,"crawl_stats":27,"alternatives":37,"analysis":123,"fingerprints":213},"wpftp","WPFTP","5.2","老蒋和他的小伙伴","https:\u002F\u002Fprofiles.wordpress.org\u002Flaobuluo\u002F","\u003Cp>WordPress FTP（简称:WPFTP），基于自建FTP空间存储与WordPress实现静态资源到FTP存储中。提高网站项目的访问速度，以及静态资源的安全存储功能。\u003C\u002Fp>\n\u003Cp>\u003Cstrong>主要功能：\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>1、下载和激活【WPFTP】插件后，配置FTP空间账户信息。\u003C\u002Fli>\n\u003Cli>2、可以选择只存储到FTP空间、也可以本地网站也同时备份。\u003C\u002Fli>\n\u003Cli>3、对于FTP空间，我们可以服务器配置WEB空间，也可以使用虚拟主机空间。\u003C\u002Fli>\n\u003Cli>插件更多详细介绍和安装：\u003Ca href=\"https:\u002F\u002Fwww.laojiang.me\u002F5997.html\" rel=\"nofollow ugc\">https:\u002F\u002Fwww.laojiang.me\u002F5997.html\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>网站支持\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.zhujipingjia.com\u002F\" title=\"主机评价网\" rel=\"nofollow ugc\">主机评价网\u003C\u002Fa>\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.lezaiyun.com\u002F\" title=\"乐在云\" rel=\"nofollow ugc\">乐在云\u003C\u002Fa>\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>欢迎加入插件和站长微信公众号：老蒋朋友圈（公众号）\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Ful>\n","WordPress FTP（简称:WPFTP），基于自建FTP空间存储与WordPress实现静态资源到FTP存储中。提高网站项目的访问速度，以及静态资源的安全存储功能。",20,4606,0,"","6.8.5","5.0","7.4",[19,20,21,22,23],"%e8%87%aa%e5%bb%ba%e4%ba%91%e5%ad%98%e5%82%a8","ftp%e7%a9%ba%e9%97%b4%e5%ad%98%e5%82%a8","wordpress-ftp%e7%a9%ba%e9%97%b4","wordpress%e5%8a%a0%e9%80%9f","wordpress%e5%af%b9%e8%b1%a1%e5%ad%98%e5%82%a8","https:\u002F\u002Fwww.laojiang.me\u002F5997.html","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwpftp.zip",100,null,"2026-03-15T10:48:56.248Z",[],{"slug":31,"display_name":7,"profile_url":8,"plugin_count":32,"total_installs":33,"avg_security_score":26,"avg_patch_time_days":34,"trust_score":35,"computed_at":36},"laobuluo",12,4450,30,94,"2026-04-05T04:18:21.360Z",[38,57,71,85,103],{"slug":39,"name":40,"version":16,"author":7,"author_profile":8,"description":41,"short_description":42,"active_installs":43,"downloaded":44,"rating":26,"num_ratings":45,"last_updated":46,"tested_up_to":47,"requires_at_least":48,"requires_php":17,"tags":49,"homepage":54,"download_link":55,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":56},"wpqiniu","WPQiNiu七牛云对象存储","\u003Cp>WordPress 七牛云对象存储（简称:WPQiNiu），基于七牛云对象存储与WordPress实现静态资源到对象存储中，让静态资源包括图片、附件分离WordPress根目录，提高网站打开速度。\u003C\u002Fp>\n\u003Ch3>插件特点\u003C\u002Fh3>\n\u003Col>\n\u003Cli>支持自定义域名设置\u003C\u002Fli>\n\u003Cli>支持一键禁止缩略图\u003C\u002Fli>\n\u003Cli>支持自定义任意对象存储目录，一个存储桶可以多网站\u003C\u002Fli>\n\u003Cli>支持自动文件重命名\u003C\u002Fli>\n\u003Cli>支持本地和对象存储分离和同步\u003C\u002Fli>\n\u003Cli>上传时正确设置 MIME 类型，确保七牛云中图片可正常预览\u003C\u002Fli>\n\u003Cli>兼容 PHP 7.4 及 PHP 8.x 版本\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Cp>七牛云对象存储插件安装方法：\u003Ca href=\"https:\u002F\u002Fwww.lezaiyun.com\u002F1097.html\" rel=\"nofollow ugc\">https:\u002F\u002Fwww.lezaiyun.com\u002F1097.html\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch3>网站支持\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.laojiang.me\u002F\" title=\"老蒋玩运营\" rel=\"nofollow ugc\">老蒋玩运营\u003C\u002Fa>\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.lezaiyun.com\u002F\" title=\"乐在云工作室\" rel=\"nofollow ugc\">乐在云工作室\u003C\u002Fa>\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>欢迎加入插件和站长微信公众号：老蒋朋友圈（公众号）\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Ful>\n","WordPress 七牛云对象存储（简称:WPQiNiu），基于七牛云对象存储与WordPress实现静态资源到对象存储中，让静态资源包括图片、附件分离WordPress根目录，提高网站打开速度。",400,21740,2,"2026-02-09T07:08:00.000Z","6.9.4","5.3",[23,50,51,52,53],"%e4%b8%83%e7%89%9bwordpress","%e4%b8%83%e7%89%9b%e5%8a%a0%e9%80%9fwordpress","%e4%b8%83%e7%89%9b%e5%af%b9%e8%b1%a1%e5%ad%98%e5%82%a8","%e4%b8%83%e7%89%9b%e4%ba%91%e5%ad%98%e5%82%a8wordpress","https:\u002F\u002Fwww.lezaiyun.com\u002F1097.html","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwpqiniu.5.0.zip","2026-03-15T15:16:48.613Z",{"slug":58,"name":59,"version":60,"author":7,"author_profile":8,"description":61,"short_description":62,"active_installs":26,"downloaded":63,"rating":26,"num_ratings":45,"last_updated":64,"tested_up_to":47,"requires_at_least":48,"requires_php":17,"tags":65,"homepage":69,"download_link":70,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":56},"wpupyun","WPUPYUN又拍云云存储","4.0","\u003Cp>WordPress又拍云云存储插件（简称:WPUPYUN），基于又拍云云存储与WordPress实现静态资源到又拍云对象存储中。提高网站项目的访问速度，以及静态资源的安全存储功能。 公众号： 老蒋朋友圈。\u003C\u002Fp>\n\u003Ch3>插件特点\u003C\u002Fh3>\n\u003Col>\n\u003Cli>支持自定义域名设置 可设置多级目录\u003C\u002Fli>\n\u003Cli>支持一键禁止缩略图\u003C\u002Fli>\n\u003Cli>支持自定义任意对象存储目录，一个存储桶可以多网站\u003C\u002Fli>\n\u003Cli>支持自动文件重命名\u003C\u002Fli>\n\u003Cli>支持本地和对象存储分离和同步\u003C\u002Fli>\n\u003Cli>优化重构加速上传\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Cp>又拍云插件安装方法：\u003Ca href=\"https:\u002F\u002Fwww.lezaiyun.com\u002F1099.html\" rel=\"nofollow ugc\">https:\u002F\u002Fwww.lezaiyun.com\u002F1099.html\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch3>网站支持\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.laojiang.me\u002F\" title=\"老蒋玩主机\" rel=\"nofollow ugc\">老蒋玩主机\u003C\u002Fa>\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.lezaiyun.com\u002F\" title=\"乐在云工作室\" rel=\"nofollow ugc\">乐在云工作室\u003C\u002Fa>\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>欢迎加入插件和站长微信公众号：老蒋朋友圈（公众号）\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Ful>\n","WordPress又拍云云存储插件（简称:WPUPYUN），基于又拍云云存储与WordPress实现静态资源到又拍云对象存储中。提高网站项目的访问速度，以及静态资源的安全存储功能。 公众号： 老蒋朋友圈。",10679,"2026-02-09T07:58:00.000Z",[66,22,23,67,68],"wordpress-%e5%8f%88%e6%8b%8d%e4%ba%91%e5%ad%98%e5%82%a8","%e5%8f%88%e6%8b%8d%e4%ba%91wordpress","%e5%8f%88%e6%8b%8d%e4%ba%91%e5%af%b9%e8%b1%a1%e5%ad%98%e5%82%a8","https:\u002F\u002Fwww.lezaiyun.com\u002F1099.html","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwpupyun.4.0.zip",{"slug":72,"name":73,"version":74,"author":7,"author_profile":8,"description":75,"short_description":76,"active_installs":77,"downloaded":78,"rating":13,"num_ratings":13,"last_updated":79,"tested_up_to":47,"requires_at_least":48,"requires_php":17,"tags":80,"homepage":83,"download_link":84,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":56},"wpufile-ucloud","优刻得UCloud对象存储插件","3.0","\u003Cp>优刻得UCloud对象存储插件（WPUFile），基于UCloud UFile与WordPress实现静态资源到对象存储中。提高网站项目的访问速度，以及静态资源的安全存储功能。目前UCLOUD对象存储提供每月20GB流量，适合入门用户使用。公众号： 老蒋朋友圈。\u003C\u002Fp>\n\u003Ch3>主要功能\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>1、下载和激活【WPUFile】插件后，配置UCLOUD对象存储参数。\u003C\u002Fli>\n\u003Cli>2、可以选择只存储到UCLOUD对象存储空间、也可以本地网站也同时备份。\u003C\u002Fli>\n\u003Cli>3、选择UCLOUD对象存储可以是免费域名，也可以自定义域名。\u003C\u002Fli>\n\u003Cli>4、WPUFile插件更多详细介绍和安装：\u003Ca href=\"https:\u002F\u002Fwww.lezaiyun.com\u002F1101.html\" rel=\"nofollow ugc\">https:\u002F\u002Fwww.lezaiyun.com\u002F1101.html\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>网站支持\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.laojiang.me\u002F\" title=\"老蒋玩运营\" rel=\"nofollow ugc\">老蒋玩运营\u003C\u002Fa>\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.lezaiyun.com\u002F\" title=\"乐在云工作室\" rel=\"nofollow ugc\">乐在云工作室\u003C\u002Fa>\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>欢迎加入插件和站长微信公众号：老蒋朋友圈（公众号）\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Ful>\n","优刻得UCloud对象存储插件（WPUFile），基于UCloud UFile与WordPress实现静态资源到对象存储中。提高网站项目的访问速度，以及静态资源的安全存储功能。目前UCLOUD对象存储提供每月20GB流量，适合入门用户使用。公众号： 老蒋朋友圈。",10,1552,"2026-02-09T08:23:00.000Z",[81,82,22,23],"ufile","wordpress-ucloud%e5%af%b9%e8%b1%a1%e5%ad%98%e5%82%a8","https:\u002F\u002Fwww.lezaiyun.com\u002F1101.html","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwpufile-ucloud.3.0.zip",{"slug":86,"name":87,"version":16,"author":7,"author_profile":8,"description":88,"short_description":89,"active_installs":90,"downloaded":91,"rating":92,"num_ratings":93,"last_updated":94,"tested_up_to":47,"requires_at_least":95,"requires_php":17,"tags":96,"homepage":101,"download_link":102,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":56},"wposs","WPOSS阿里云对象存储","\u003Cp>WordPress阿里云对象存储插件（简称:WPOSS），基于阿里云OSS对象存储与WordPress实现静态资源到OSS存储。支持阿里云OSS图片编辑，水印、裁剪、压缩等。\u003C\u002Fp>\n\u003Ch3>插件特点\u003C\u002Fh3>\n\u003Col>\n\u003Cli>新增支持图像自定义处理 设置水印、编辑图片、压缩WEBP等\u003C\u002Fli>\n\u003Cli>支持已有图片编辑功能\u003C\u002Fli>\n\u003Cli>提高上传速度\u003C\u002Fli>\n\u003Cli>支持一键替换静态本地化至对象存储远程URL\u003C\u002Fli>\n\u003Cli>支持一键禁止缩略图\u003C\u002Fli>\n\u003Cli>支持自定义任意对象存储目录，一个存储桶可以多网站\u003C\u002Fli>\n\u003Cli>支持自动文件重命名\u003C\u002Fli>\n\u003Cli>支持本地和对象存储分离和同步\u003C\u002Fli>\n\u003Cli>2020年重构代码改变传统逻辑模型\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Cp>阿里云对象存储插件安装方法：\u003Ca href=\"https:\u002F\u002Fwww.lezaiyun.com\u002F?p=1095\" rel=\"nofollow ugc\">https:\u002F\u002Fwww.lezaiyun.com\u002F?p=1095\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch3>网站支持\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.laojiang.me\u002F\" title=\"老蒋玩运营\" rel=\"nofollow ugc\">老蒋玩运营\u003C\u002Fa>\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.zhujipingjia.com\u002F\" title=\"主机评价网\" rel=\"nofollow ugc\">主机评价网\u003C\u002Fa>\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>欢迎加入插件和站长微信公众号：老蒋朋友圈（公众号）\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Ful>\n","WordPress阿里云对象存储插件（简称:WPOSS），基于阿里云OSS对象存储与WordPress实现静态资源到OSS存储。支持阿里云OSS图片编辑，水印、裁剪、压缩等。",900,23607,92,7,"2026-02-09T02:40:00.000Z","5.5",[97,98,99,100],"%e9%98%bf%e9%87%8c%e4%ba%91oss","oss","wordpress-oss","%e5%af%b9%e8%b1%a1%e5%ad%98%e5%82%a8","https:\u002F\u002Fwww.lezaiyun.com\u002F1095.html","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwposs.5.0.zip",{"slug":104,"name":105,"version":106,"author":7,"author_profile":8,"description":107,"short_description":108,"active_installs":109,"downloaded":110,"rating":111,"num_ratings":112,"last_updated":113,"tested_up_to":47,"requires_at_least":114,"requires_php":17,"tags":115,"homepage":121,"download_link":122,"security_score":26,"vuln_count":13,"unpatched_count":13,"last_vuln_date":27,"fetched_at":56},"wpcos","WPCOS腾讯云对象存储COS","4.8","\u003Cp>WordPress COS（简称:WPCOS），基于腾讯云COS存储与WordPress实现静态资源到COS存储中。提高网站项目的访问速度，以及静态资源的安全存储功能。\u003C\u002Fp>\n\u003Ch3>插件特点\u003C\u002Fh3>\n\u003Col>\n\u003Cli>新增支持腾讯云数据万象 设置水印、编辑图片、压缩WEBP等（取消）\u003C\u002Fli>\n\u003Cli>支持已有图片编辑功能\u003C\u002Fli>\n\u003Cli>支持自定义域名设置\u003C\u002Fli>\n\u003Cli>支持一键替换静态本地化至对象存储远程URL\u003C\u002Fli>\n\u003Cli>支持一键禁止缩略图\u003C\u002Fli>\n\u003Cli>支持自定义任意对象存储目录，一个存储桶可以多网站\u003C\u002Fli>\n\u003Cli>支持自动文件重命名\u003C\u002Fli>\n\u003Cli>支持本地和对象存储分离和同步\u003C\u002Fli>\n\u003Cli>优化重构加速上传\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Cp>WPCOS插件安装方法：\u003Ca href=\"https:\u002F\u002Fwww.lezaiyun.com\u002F1093.html\" rel=\"nofollow ugc\">https:\u002F\u002Fwww.lezaiyun.com\u002F1093.html\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch3>网站支持\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.laojiang.me\u002F\" title=\"老蒋玩运营\" rel=\"nofollow ugc\">老蒋玩运营\u003C\u002Fa>\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.zhujipingjia.com\u002F\" title=\"主机评价网\" rel=\"nofollow ugc\">主机评价网\u003C\u002Fa>\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>欢迎加入插件和站长微信公众号：老蒋朋友圈（公众号）\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Ful>\n","WordPress COS（简称:WPCOS），基于腾讯云COS存储与WordPress实现静态资源到COS存储中。提高网站项目的访问速度，以及静态资源的安全存储功能。",300,16355,74,6,"2026-02-08T12:09:00.000Z","6.0.1",[116,117,118,119,120],"%e8%85%be%e8%ae%af%e4%ba%91cos","%e8%85%be%e8%ae%af%e4%ba%91wordpress","%e8%85%be%e8%ae%af%e4%ba%91%e5%ad%98%e5%82%a8","%e8%85%be%e8%ae%af%e4%ba%91%e5%ad%98%e5%82%a8%e5%88%86%e7%a6%bb","%e8%85%be%e8%ae%af%e4%ba%91%e5%af%b9%e8%b1%a1%e5%ad%98%e5%82%a8","https:\u002F\u002Fwww.lezaiyun.com\u002F1093.html","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwpcos.4.8.zip",{"attackSurface":124,"codeSignals":161,"taintFlows":175,"riskAssessment":202,"analyzedAt":212},{"hooks":125,"ajaxHandlers":157,"restRoutes":158,"shortcodes":159,"cronEvents":160,"entryPointCount":13,"unprotectedCount":13},[126,132,136,140,145,149,153],{"type":127,"name":128,"callback":129,"file":130,"line":131},"filter","wp_handle_upload","wpftp_upload_attachments","index.php",55,{"type":127,"name":133,"callback":134,"file":130,"line":135},"wp_update_attachment_metadata","wpftp_upload_and_thumbs",59,{"type":127,"name":137,"callback":138,"file":130,"line":139},"wp_unique_filename","wpftp_unique_filename",62,{"type":141,"name":142,"callback":143,"file":130,"line":144},"action","delete_attachment","wpftp_delete_remote_attachment",65,{"type":141,"name":146,"callback":147,"file":130,"line":148},"admin_menu","wpftp_add_setting_page",68,{"type":127,"name":150,"callback":151,"priority":77,"file":130,"line":152},"plugin_action_links","wpftp_plugin_action_links",69,{"type":141,"name":154,"callback":155,"file":130,"line":156},"admin_enqueue_scripts","wpftp_enqueue_admin_scripts",75,[],[],[],[],{"dangerousFunctions":162,"sqlUsage":163,"outputEscaping":165,"fileOperations":173,"externalRequests":13,"nonceChecks":45,"capabilityChecks":167,"bundledLibraries":174},[],{"prepared":13,"raw":13,"locations":164},[],{"escaped":166,"rawEcho":167,"locations":168},18,1,[169],{"file":170,"line":171,"context":172},"setting_page.php",189,"raw output",4,[],[176,194],{"entryPoint":177,"graph":178,"unsanitizedCount":13,"severity":193},"wpftp_setting_page (setting_page.php:9)",{"nodes":179,"edges":190},[180,185],{"id":181,"type":182,"label":183,"file":170,"line":184},"n0","source","$_POST['upload_url_path']",53,{"id":186,"type":187,"label":188,"file":170,"line":184,"wp_function":189},"n1","sink","update_option() [Settings Manipulation]","update_option",[191],{"from":181,"to":186,"sanitized":192},true,"low",{"entryPoint":195,"graph":196,"unsanitizedCount":13,"severity":193},"\u003Csetting_page> (setting_page.php:0)",{"nodes":197,"edges":200},[198,199],{"id":181,"type":182,"label":183,"file":170,"line":184},{"id":186,"type":187,"label":188,"file":170,"line":184,"wp_function":189},[201],{"from":181,"to":186,"sanitized":192},{"summary":203,"deductions":204},"The wpftp plugin v5.2 exhibits a generally strong security posture based on the provided static analysis results. The absence of any known CVEs and a clean vulnerability history are positive indicators. The code analysis reveals good practices such as 100% prepared statement usage for SQL queries and a high percentage of properly escaped output, mitigating common risks. Nonce and capability checks are present, albeit limited, and there are no critical or high severity taint flows identified.  The plugin also has a very small attack surface, with no identified AJAX handlers, REST API routes, shortcodes, or cron events that are exposed to attack.\n\nHowever, a few areas warrant attention. The presence of file operations without a clear indication of sanitization or permission checks could pose a risk if not handled carefully. The limited number of nonce and capability checks, while not explicitly flagged as missing in this version, suggests that there might be fewer layers of defense than ideal, especially if the plugin were to expand its functionality in the future.  The lack of external HTTP requests is a positive sign, reducing the risk of supply chain attacks or SSRF vulnerabilities.\n\nIn conclusion, wpftp v5.2 appears to be a secure plugin with good development practices in place. The low attack surface and clean vulnerability history are significant strengths. The primary potential concerns lie in the file operation handling, which would require further code inspection to confirm its safety, and the overall limited number of security checks, which could become a concern if the plugin's functionality grows or if future versions introduce more complex interactions.",[205,208,210],{"reason":206,"points":207},"File operations present without explicit sanitization context",5,{"reason":209,"points":45},"Limited nonce checks present",{"reason":211,"points":45},"Limited capability checks present","2026-03-16T22:42:41.968Z",{"wat":214,"direct":220},{"assetPaths":215,"generatorPatterns":217,"scriptPaths":218,"versionParams":219},[216],"\u002Fwp-content\u002Fplugins\u002Fwpftp\u002Fcss\u002Fadmin.css",[],[],[],{"cssClasses":221,"htmlComments":222,"htmlAttributes":223,"restEndpoints":224,"jsGlobals":225,"shortcodeOutput":226},[],[],[],[],[],[]]