[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fDQaKbzIQdreHHTV0d6Zf8WM96NCXwb78IRamFhhOqoY":3,"$fbvEs2SYXHkvpYF9hbi6Fa2RoXgm2JPZdOkk37DTDmwo":179,"$f6bIruPQNJLBZW4djdg48lhlREZz7ted9pEuM-DTLkkM":184},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":11,"num_ratings":11,"last_updated":13,"tested_up_to":14,"requires_at_least":15,"requires_php":16,"tags":17,"homepage":22,"download_link":23,"security_score":24,"vuln_count":11,"unpatched_count":11,"last_vuln_date":25,"fetched_at":26,"discovery_status":27,"vulnerabilities":28,"developer":29,"crawl_stats":25,"alternatives":35,"analysis":95,"fingerprints":151},"zverejnit-sk","Zverejniť.sk","1.0","Pinf s.r.o.","https:\u002F\u002Fprofiles.wordpress.org\u002Fpinfsro\u002F","\u003Cp>Plugin umožňuje vložiť na stránku tabuľky s dokumentami – objednávkami, zmluvami či faktúrami a tiež pridá možnosť vkladať dokumenty do systému Zverejniť.sk.\u003C\u002Fp>\n\u003Cp>Právne a technické informácie:\u003C\u002Fp>\n\u003Cp>Plugin Zverejniť.sk nekomunikuje so serverom zverejnit.sk bez vedomia užívateľa. K priamej komunikácií medzi systémom WordPress a serverom www.zverejnit.sk nikdy nedochádza – komunikácia môže prebiehať len pomocou odkazov (napr. Vložiť dokument, Test konfigurácie…) – tieto odkazy sú načítané len prostredníctvom webového prehliadača. Plugin Zverejniť.sk nevytvára žiadne Cookies bez výslovného súhlasu užívateľa a\u002Falebo návštevníka tejto webovej stránky. Plugin Zverejniť.sk nezasiela a nezhromažďuje žiadne osobné údaje. Plugin Zverejniť.sk po vložení shortcode vloží do webstránky vlastný script uložený na serveri zverejnit.sk, ktorý vykreslí dáta v tabuľke, záložné zobrazenie v prípade nepovolených scriptov a záložné zobrazenie v prípade nepovolenia rámov.\u003C\u002Fp>\n\u003Cp>https:\u002F\u002Fwww.zverejnit.sk\u002Fochrana-sukromia\u002F – Zásady ochrany osobných údajov\u003Cbr \u002F>\nhttps:\u002F\u002Fwww.zverejnit.sk\u002Fpodmienky.pdf – Podmienky používania služby Zverejniť.sk\u003C\u002Fp>\n\u003Ch3>Podpora a pomoc s inštaláciou\u003C\u002Fh3>\n\u003Cp>Viac informácií na https:\u002F\u002Fwww.zverejnit.sk\u003C\u002Fp>\n","Plugin umožňuje vložiť na stránku tabuľky s dokumentami - objednávkami, zmluvami či faktúrami a tiež pridá možnosť vkladať dokumenty do systému Zverej &hellip;",0,1066,"2022-01-22T23:51:00.000Z","5.9.0","4.0","",[18,19,20,21,4],"faktury","objednavky","povinne-zverejnovanie","zmluvy","https:\u002F\u002Fwww.zverejnit.sk","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fzverejnit-sk.zip",85,null,"2026-04-16T10:56:18.058Z","no_bundle",[],{"slug":30,"display_name":7,"profile_url":8,"plugin_count":31,"total_installs":11,"avg_security_score":24,"avg_patch_time_days":32,"trust_score":33,"computed_at":34},"pinfsro",1,30,84,"2026-05-20T01:13:47.311Z",[36,58,77],{"slug":37,"name":38,"version":39,"author":40,"author_profile":41,"description":42,"short_description":43,"active_installs":44,"downloaded":45,"rating":11,"num_ratings":11,"last_updated":46,"tested_up_to":47,"requires_at_least":48,"requires_php":49,"tags":50,"homepage":55,"download_link":56,"security_score":57,"vuln_count":11,"unpatched_count":11,"last_vuln_date":25,"fetched_at":26},"ing-ksiegowosc","ING Księgowość","1.0.5","radoslawlyzniak","https:\u002F\u002Fprofiles.wordpress.org\u002Fradoslawlyzniak\u002F","\u003Cp>ING Księgowość to aplikacja pozwalająca na rejestrowanie faktur zakupu i sprzedaży oraz ich zaksięgowanie – dzięki temu masz wszystkie sprawy firmy w jednym miejscu. Jeśli dodatkowo posiadasz rachunek firmowy w ING, możesz zlecać płatności za dokumenty kosztowe.\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.ing.pl\u002Flp\u002Fkonto-dla-firmy-otworz?site=1&utm_source=udb&utm_medium=ksiegowosc&utm_campaign=WordPress_appstore\" rel=\"nofollow ugc\">Załóż rachunek dla firmy w ING Banku\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>Nasza wtyczka działa w powiązaniu z wtyczką WooCommerce.\u003Cbr \u002F>\nPo dokonaniu zakupu w Twoim sklepie informacja na temat zrealizowanej płatności trafia do ING Księgowość, gdzie automatycznie jest tworzona faktura dla klienta.\u003C\u002Fp>\n\u003Cp>Jeżeli prowadzisz sprzedaż także dla firm, zalecamy dodatkowo zainstalowanie wtyczki Flexible Chechout Fields for WooCommerce – pozwala ona na dodanie do formularza płatności pola na numer NIP.\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.ingksiegowosc.pl\u002F_fileserver\u002Fitem\u002Fqz7baiy\" rel=\"nofollow ugc\">Sprawdź, jak powiązać WooCommerce z ING Księgowość krok po kroku\u003C\u002Fa>\u003C\u002Fp>\n","Niech faktury za zakupy Twoich klientów wystawiają się automatycznie! Wtyczka pozwala na powiązanie sklepu z kontem firmy w aplikacji ING Księgowość",100,2268,"2025-03-19T12:57:00.000Z","6.7.5","4.7","5.6.0",[18,51,52,53,54],"ing","ingksiegowosc","invoices","ksiegowosc","https:\u002F\u002Fwww.ingksiegowosc.pl\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fing-ksiegowosc.1.0.5.zip",92,{"slug":59,"name":60,"version":61,"author":62,"author_profile":63,"description":64,"short_description":65,"active_installs":32,"downloaded":66,"rating":11,"num_ratings":11,"last_updated":67,"tested_up_to":68,"requires_at_least":69,"requires_php":70,"tags":71,"homepage":75,"download_link":76,"security_score":44,"vuln_count":11,"unpatched_count":11,"last_vuln_date":25,"fetched_at":26},"flexible-invoices-gtu","GTU dla Faktur WooCommerce","1.0.21","wpdesk","https:\u002F\u002Fprofiles.wordpress.org\u002Fwpdesk\u002F","\u003Cp>GTU is an abbreviation for “goods and services groups”. The GTU code defines 13 groups of goods or services. Active VAT taxpayers who sell goods or services requiring a GTU code designation are obliged to provide the GTU code.\u003C\u002Fp>\n\u003Cp>The plugin adds support for goods and services designations (GTU codes) on documents created by \u003Ca href=\"https:\u002F\u002Fwww.wpdesk.pl\u002Fsk\u002Fflexible-invoices-gtu-fi-pro\" rel=\"nofollow ugc\">\u003Cstrong>Flexible Invoices for WooCommerce PRO\u003C\u002Fstrong>\u003C\u002Fa> ⭐.\u003C\u002Fp>\n\u003Cp>It also works great with the \u003Ca href=\"https:\u002F\u002Fwww.wpdesk.pl\u002Fsk\u002Fflexible-invoices-gtu-adv-rep\" rel=\"nofollow ugc\">\u003Cstrong>Advanced Reports\u003C\u002Fstrong>\u003C\u002Fa> plugin, which allows exporting invoices to CSV files \u003Cstrong>along with GTU codes\u003C\u002Fstrong>.\u003C\u002Fp>\n\u003Ch3>Invoicing in WooCommerce with GTU codes\u003C\u002Fh3>\n\u003Cp>After installing Flexible Invoices for WooCommerce PRO and GTU for Flexible Invoices WooCommerce, follow the steps below to display GTU codes on generated invoices.\u003C\u002Fp>\n\u003Ch4>Configuration\u003C\u002Fh4>\n\u003Cp>The following configuration applies to sites where the Flexible Invoices for WooCommerce PRO plugin is already installed.\u003C\u002Fp>\n\u003Col>\n\u003Cli>Go to the product edit screen,\u003C\u002Fli>\n\u003Cli>Find the GTU Code selection field in the WooCommerce tabs (see screenshots),\u003C\u002Fli>\n\u003Cli>Select the GTU code that should be displayed on the invoice,\u003C\u002Fli>\n\u003Cli>Update the product.\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Cp>The code will be visible on invoices that include a product with a set GTU code, and on the invoice edit screen.\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.wpdesk.pl\u002Fsk\u002Fflexible-invoices-gtu-pro-docs\" rel=\"nofollow ugc\">\u003Cstrong>Visit the Flexible Invoices for WooCommerce PRO plugin documentation\u003C\u002Fstrong>\u003C\u002Fa> to learn more about the settings and advanced invoicing capabilities in WooCommerce.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>The plugin requires the PRO version of the\u003C\u002Fstrong> \u003Ca href=\"https:\u002F\u002Fwww.wpdesk.pl\u002Fsk\u002Fflexible-invoices-gtu-fi-pro\" rel=\"nofollow ugc\">\u003Cstrong>Flexible Invoices for WooCommerce\u003C\u002Fstrong>\u003C\u002Fa> ⭐ \u003Cstrong>plugin to work correctly\u003C\u002Fstrong>.\u003C\u002Fp>\n\u003Ch4>Key features of the Flexible Invoices for WooCommerce PRO plugin\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Automatic and secure issuing of invoices\u003C\u002Fstrong>, proformas, and correction invoices compliant with Polish and European law 🪙.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Invoices for VAT payers and companies exempt from VAT\u003C\u002Fstrong> 📑.\u003C\u002Fli>\n\u003Cli>Bulk download of invoices, reports, and advanced invoicing options in WooCommerce 📩.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Manual creation of invoices in WordPress and WooCommerce\u003C\u002Fstrong> and easy document editing 📝.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Issuing invoices with reverse charge, OSS, MOSS, and with automatic validation of VAT numbers in the VIES database\u003C\u002Fstrong> 🏴.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Currency conversion of the VAT amount\u003C\u002Fstrong> for sales in other currencies 💶.\u003C\u002Fli>\n\u003Cli>Automatic sending of invoices to customers, customization of invoice data, and modification of document templates ⏩.\u003C\u002Fli>\n\u003Cli>Support for WPML, WooCommerce Subscriptions, \u003Ca href=\"https:\u002F\u002Fwww.wpdesk.pl\u002Fsk\u002Fflexible-invoices-gtu-ap\" rel=\"nofollow ugc\">\u003Cstrong>Active Payments\u003C\u002Fstrong>\u003C\u002Fa>, \u003Ca href=\"https:\u002F\u002Fwww.wpdesk.pl\u002Fsk\u002Fflexible-invoices-gtu-allegro\" rel=\"nofollow ugc\">\u003Cstrong>Allegro WooCommerce\u003C\u002Fstrong>\u003C\u002Fa> and other \u003Ca href=\"https:\u002F\u002Fwww.wpdesk.pl\u002Fsk\u002Fflexible-invoices-gtu-plugins\" rel=\"nofollow ugc\">\u003Cstrong>WP Desk plugins\u003C\u002Fstrong>\u003C\u002Fa> ✅.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Professional technical support and plugin updates\u003C\u002Fstrong> 🏆.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Installation\u003C\u002Fh3>\n\u003Col>\n\u003Cli>Upload the plugin files to the \u003Ccode>\u002Fwp-content\u002Fplugins\u002F\u003C\u002Fcode> directory, or install the plugin through the WordPress plugins screen directly.\u003C\u002Fli>\n\u003Cli>Activate the plugin through the ‘Plugins’ screen in WordPress.\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch3>Demo\u003C\u002Fh3>\n\u003Cp>You can test GTU for Flexible Invoices WooCommerce in our free \u003Ca href=\"https:\u002F\u002Fwpdesk.link\u002Fflexible-invoices-gtu-demo\" rel=\"nofollow ugc\">\u003Cstrong>WP Desk plugins demo\u003C\u002Fstrong>\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch3>Data use policy\u003C\u002Fh3>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.wpdesk.pl\u002Fsk\u002Fflexible-invoices-gtu-privacy\" rel=\"nofollow ugc\">Data processing policy for WP Desk plugins\u003C\u002Fa>\u003C\u002Fp>\n","Support for goods and services designations (GTU codes) on documents created by the Flexible Invoices for WooCommerce PRO plugin.",4429,"2026-03-07T03:09:00.000Z","6.9.4","6.4","7.4",[18,72,73,74],"gtu","gtu-na-fakturze","jpk","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fflexible-invoices-gtu","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fflexible-invoices-gtu.1.0.21.zip",{"slug":78,"name":79,"version":6,"author":80,"author_profile":81,"description":82,"short_description":83,"active_installs":11,"downloaded":84,"rating":11,"num_ratings":11,"last_updated":85,"tested_up_to":86,"requires_at_least":15,"requires_php":87,"tags":88,"homepage":16,"download_link":93,"security_score":24,"vuln_count":11,"unpatched_count":11,"last_vuln_date":25,"fetched_at":94},"estrx-payu-purchase","PayU Purchase","kamilmucik","https:\u002F\u002Fprofiles.wordpress.org\u002Fkamilmucik\u002F","\u003Cp>Plug-in do a purchase in case you have PayU account\u003C\u002Fp>\n\u003Ch4>Contributions\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>This plugin was originally developed by \u003Ca href=\"http:\u002F\u002Fwww.e-strix.pl\u002F\" rel=\"nofollow ugc\">e-Strix Kamil Mucik\u003C\u002Fa>.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Support\u003C\u002Fh3>\n\u003Col>\n\u003Cli>Upload plug-in to wp-content\u002Fplugins\u003C\u002Fli>\n\u003C\u002Fol>\n","Plug-in do a purchase in case you have PayU account",1154,"2018-05-25T10:35:00.000Z","4.9.29","5.6",[89,18,90,91,92],"e-strix","payu","purchase","platnosci","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Festrx-payu-purchase.zip","2026-04-06T09:54:40.288Z",{"attackSurface":96,"codeSignals":120,"taintFlows":141,"riskAssessment":142,"analyzedAt":150},{"hooks":97,"ajaxHandlers":112,"restRoutes":113,"shortcodes":114,"cronEvents":119,"entryPointCount":31,"unprotectedCount":11},[98,104,108],{"type":99,"name":100,"callback":101,"file":102,"line":103},"action","admin_menu","pinf_zverejnit_menu","zverejnit-sk.php",13,{"type":99,"name":105,"callback":106,"file":102,"line":107},"admin_init","pinf_zverejnit_register_settings",99,{"type":99,"name":109,"callback":110,"file":102,"line":111},"init","pinf_zverejnit_register_shortcodes",114,[],[],[115],{"tag":116,"callback":117,"file":102,"line":118},"zverejnit","pinf_zverejnit_shortcode",117,[],{"dangerousFunctions":121,"sqlUsage":122,"outputEscaping":124,"fileOperations":11,"externalRequests":11,"nonceChecks":11,"capabilityChecks":31,"bundledLibraries":140},[],{"prepared":11,"raw":11,"locations":123},[],{"escaped":11,"rawEcho":125,"locations":126},8,[127,130,131,132,134,136,138,139],{"file":102,"line":128,"context":129},27,"raw output",{"file":102,"line":128,"context":129},{"file":102,"line":128,"context":129},{"file":102,"line":133,"context":129},49,{"file":102,"line":135,"context":129},54,{"file":102,"line":137,"context":129},63,{"file":102,"line":137,"context":129},{"file":102,"line":137,"context":129},[],[],{"summary":143,"deductions":144},"The \"zverejnit-sk\" plugin v1.0 exhibits a mixed security posture. On the positive side, it demonstrates good practices by avoiding dangerous functions, performing all SQL queries using prepared statements, and having no recorded vulnerabilities or CVEs. The attack surface is minimal with only one shortcode and no AJAX, REST API routes, or cron events that are immediately apparent as unprotected entry points.\n\nHowever, a significant concern arises from the complete lack of output escaping for all identified outputs. This means that any data processed or displayed by the plugin, even if it originates from a trusted source, is not being sanitized before being rendered in the browser. This could lead to cross-site scripting (XSS) vulnerabilities if user-supplied data is ever incorporated into the plugin's output. Additionally, the absence of nonce checks on the single entry point, though it has a capability check, is a potential weakness that could be exploited in conjunction with other vulnerabilities.\n\nGiven the plugin's clean vulnerability history and avoidance of common pitfalls like raw SQL or dangerous functions, it appears to be developed with some security awareness. However, the unescaped output represents a critical oversight that significantly increases the risk profile. The presence of a capability check on the shortcode is a mitigating factor, but it does not address the fundamental issue of output sanitation.",[145,147],{"reason":146,"points":125},"0% output escaping",{"reason":148,"points":149},"No nonce checks on entry point",5,"2026-04-16T13:46:45.135Z",{"wat":152,"direct":159},{"assetPaths":153,"generatorPatterns":155,"scriptPaths":156,"versionParams":158},[154],"\u002Fwp-content\u002Fplugins\u002Fzverejnit-sk\u002Fzverejnit-sk.php",[],[157],"https:\u002F\u002Fdata.zverejnit.sk\u002F",[],{"cssClasses":160,"htmlComments":168,"htmlAttributes":169,"restEndpoints":172,"jsGlobals":173,"shortcodeOutput":175},[161,162,163,164,165,166,167],"zverejnit-wrap","zverejnit-title","zverejnitsk","zverejnitsk-faktury","zverejnitsk-zmluvy","zverejnitsk-objednavky","pinf-test-config",[],[170,171],"data-uid","data-secret",[],[174],"savedPinfConf",[176,177,178],"[zverejnit dokumenty=faktury]","[zverejnit dokumenty=zmluvy]","[zverejnit dokumenty=objednavky]",{"error":180,"url":181,"statusCode":182,"statusMessage":183,"message":183},true,"http:\u002F\u002Flocalhost\u002Fapi\u002Fplugins\u002Fzverejnit-sk\u002Fbundle",404,"no bundle for this plugin yet",{"slug":4,"current_version":6,"total_versions":11,"versions":185},[]]