| #151 | Dropify | 30 | 130 | 252 | 2k+ | | | Nonce verification recommended |
| #152 | WP Inventory Manager | 30 | 856 | 233 | 1k+ | | | Output is not escaped |
| #153 | WP Mail SMTP by WPForms – The Most Popular SMTP and Email Log Plugin | 30 | 32 | 346 | 4m+ | | | Non-prefixed hook name |
| #154 | zahls.ch Credit Cards, PostFinance and TWINT for WooCommerce | 30 | 121 | 265 | 3k+ | | | Non-prefixed global variable |
| #155 | Advanced Woo Search – Product Search for WooCommerce | 31 | 228 | 377 | 70k+ | | | Nonce verification recommended |
| #156 | Apaczka.pl WooCommerce | 31 | 99 | 276 | 1k+ | | | Non-prefixed global variable |
| #157 | Better Robots.txt – AI-Ready Crawl Control & Bot Governance | 31 | 90 | 85 | 6k+ | | | Text Domain Mismatch |
| #158 | HFD ePost Integration | 31 | 186 | 110 | 1k+ | | | Text Domain Mismatch |
| #159 | Openpay Cards Plugin | 31 | 166 | 105 | 3k+ | | | Text Domain Mismatch |
| #160 | Post Pay Counter | 31 | 639 | 238 | 2k+ | | | Output is not escaped |
| #161 | Product Configurator for WooCommerce | 31 | 41 | 557 | 3k+ | | | Non-prefixed hook name |
| #162 | Social Share Buttons | 31 | 462 | 156 | 1k+ | | | Text Domain Mismatch |
| #163 | Project Manager – AI Powered Project Management, Task Management, Kanban Board & Time Tracker | 31 | 63 | 933 | 6k+ | | | Interpolated SQL is not prepared |
| #164 | ThumbPress – Compress Images, Manage Thumbnails, Detect Image Issues, WebP/AVIF, Lazy Loading, Hotlinking & More | 32 | 101 | 308 | 30k+ | | | Non-prefixed global variable |
| #165 | DEPRECATED – Shipmondo – A complete shipping solution for WooCommerce | 32 | 166 | 119 | 5k+ | | | Output is not escaped |
| #166 | Quick Featured Images | 32 | 436 | 323 | 50k+ | | | Non-prefixed global variable |
| #167 | Gallery Custom Links | 33 | 64 | 62 | 30k+ | | | Non Singular String Literal Domain |
| #168 | IP2Location Redirection | 33 | 194 | 115 | 8k+ | | | Output is not escaped |
| #169 | Merge + Minify + Refresh | 33 | 78 | 26 | 4k+ | | | date date |
| #170 | Min Max Control – Min Max Quantity & Step Control for WooCommerce | 33 | 96 | 215 | 10k+ | | | Non-prefixed global variable |
| #171 | affiliate-toolkit – Multi-Network Affiliate & Amazon Product Display | 34 | 326 | 75 | 2k+ | | | Output is not escaped |
| #172 | All In One Favicon | 34 | 214 | 62 | 60k+ | | | Output is not escaped |
| #173 | FluentAuth – The Ultimate Authorization & Security Plugin for WordPress | 34 | 44 | 229 | 10k+ | | | Nonce verification recommended |
| #174 | mowomo Social Share | 34 | 202 | 156 | 1k+ | | | Output is not escaped |
| #175 | Optima Express IDX | 34 | 71 | 237 | 10k+ | | | Non-prefixed class |
| #176 | Giveaways and Contests by RafflePress – Get More Website Traffic, Email Subscribers, and Social Followers | 34 | 261 | 863 | 30k+ | | | Non-prefixed global variable |
| #177 | Software License Manager | 34 | 69 | 289 | 900 | | | Nonce verification recommended |
| #178 | Automatic Internal Links for SEO by Pagup | 35 | 34 | 215 | 1k+ | | | error log error log |
| #179 | Basic Google Maps Placemarks | 35 | 189 | 80 | 3k+ | | | Output is not escaped |
| #180 | CF7 Submissions – Securely Store Contact Form 7 Data and Attachments, Reply to the Sender and more | 35 | 16 | 119 | 2k+ | | | Non-prefixed global variable |
| #181 | Duplica – Duplicate Posts, Pages, Custom Posts or Users | 35 | 14 | 31 | 2k+ | | | Non-prefixed global variable |
| #182 | Nobs • Share Buttons | 35 | 314 | 85 | 3k+ | | | Output is not escaped |
| #183 | Restaurant Menu – Food Ordering System – Table Reservation | 35 | 317 | 186 | 8k+ | | | Unsafe printing function |
| #184 | Pie Calendar – Events Calendar Made Simple | 35 | 83 | 53 | 1k+ | | | Text Domain Mismatch |
| #185 | Real Time Validation for Gravity Forms | 35 | 185 | 30 | 2k+ | | | Output is not escaped |
| #186 | Robots.txt rewrite | 35 | 56 | 19 | 1k+ | | | Output is not escaped |
| #187 | The Social Links | 35 | 16 | 29 | 2k+ | | | Non-prefixed global variable |
| #188 | authLdap | 36 | 47 | 30 | 5k+ | | | Exception output is not escaped |
| #189 | Bit Form – Contact Form, Payment Forms, Multi Step Forms, Calculator & Custom Form Builder | 36 | 3 | 321 | 10k+ | | | Nonce verification recommended |
| #190 | PDF Flipbook, WPBakery Addon – Unreal FlipBook | 36 | 400 | 92 | 1k+ | | | Non Singular String Literal Domain |
| #191 | Quantity Plus Minus Button for WooCommerce | 36 | 83 | 84 | 10k+ | | | Output is not escaped |
| #192 | Disable Payment Methods based on cart conditions for WooCommerce | 36 | 158 | 57 | 1k+ | | | Non Singular String Literal Domain |
| #193 | Hide admin notices – Admin Notification Center | 36 | 114 | 67 | 8k+ | | | Output is not escaped |
| #194 | Adaptive Images for WordPress | 37 | 51 | 75 | 3k+ | | | Output is not escaped |
| #195 | Apaczka: integracja z WooCommerce | 37 | 8 | 316 | 3k+ | | | Non-prefixed global variable |
| #196 | Clearpay Gateway for WooCommerce | 37 | 185 | 63 | 1k+ | | | Text Domain Mismatch |
| #197 | Job Manager & Career – Manage job board listings, and recruitments | 37 | 112 | 205 | 2k+ | | | Missing nonce verification |
| #198 | Meks Video Importer | 37 | 62 | 239 | 2k+ | | | Input is not sanitized |
| #199 | RSS Image Feed | 37 | 147 | 16 | 2k+ | | | Output is not escaped |
| #200 | Afterpay Gateway for WooCommerce | 38 | 183 | 62 | 10k+ | | | Text Domain Mismatch |