| #1 | Really Simple Security – Simple and Performant Security (formerly Really Simple SSL) | 19 | 541 | 385 | 3m+ | | Missing Translators Comment |
| #2 | BetterDocs – AI Documentation, Knowledge Base, Docs, Wikis, FAQ with Chatbot | 20 | 508 | 1,406 | 30k+ | | Non Prefixed Variable Found |
| #3 | Pix por Piggly (para Woocommerce) | 20 | 547 | 195 | 4k+ | | Exception Not Escaped |
| #4 | Backup Migration | 21 | 981 | 1,093 | 80k+ | | Non Prefixed Variable Found |
| #5 | EventPrime – Events Calendar, Bookings and Tickets | 21 | 872 | 4,297 | 7k+ | | Non Prefixed Variable Found |
| #6 | WebP Express | 21 | 160 | 427 | 300k+ | | Non Prefixed Variable Found |
| #7 | Paysera Payment Gateway for WooCommerce | 21 | 1,866 | 195 | 7k+ | | Exception Not Escaped |
| #8 | BuddyPress | 22 | 583 | 9,008 | 100k+ | | Non Prefixed Function Found |
| #9 | RegistrationMagic – User Registration Forms Plugin | 22 | 3,654 | 5,062 | 8k+ | | Non Prefixed Variable Found |
| #10 | Easy Social Feed – Social Photos Gallery and Post Feed for WordPress | 22 | 1,567 | 1,277 | 30k+ | | Non Prefixed Variable Found |
| #11 | GeoDirectory – WP Business Directory Plugin and Classified Listings Directory | 22 | 4,462 | 3,972 | 10k+ | | Output Not Escaped |
| #12 | IMPress for IDX Broker | 22 | 1,085 | 636 | 7k+ | | Text Domain Mismatch |
| #13 | PagBank / PagSeguro Connect para WooCommerce | 22 | 504 | 743 | 4k+ | | Non Prefixed Variable Found |
| #14 | Post SMTP – Complete Email Deliverability and SMTP Solution with Email Logs, Alerts, Backup SMTP & Mobile App | 22 | 1,581 | 2,326 | 300k+ | | Non Prefixed Variable Found |
| #15 | Social Sharing Plugin – Sassy Social Share | 22 | 1,689 | 233 | 100k+ | | wp function not compatible with requires wp |
| #16 | SNS Count Cache | 22 | 918 | 120 | 8k+ | | Non Singular String Literal Domain |
| #17 | Easy Digital Downloads – eCommerce Payments and Subscriptions made easy | 23 | 3,723 | 10,283 | 40k+ | | Non Prefixed Namespace Found |
| #18 | Gmedia Photo Gallery | 23 | 350 | 1,121 | 7k+ | | Non Prefixed Variable Found |
| #19 | License Manager for WooCommerce | 23 | 129 | 819 | 6k+ | | Missing Unslash |
| #20 | Postie | 23 | 407 | 261 | 10k+ | | Output Not Escaped |
| #21 | Schema | 23 | 1,173 | 245 | 40k+ | | Text Domain Mismatch |
| #22 | Widgets on Pages | 23 | 809 | 1,306 | 20k+ | | Non Prefixed Variable Found |
| #23 | WP Editor | 23 | 502 | 335 | 20k+ | | Unsafe Printing Function |
| #24 | Awesome Support – WordPress HelpDesk & Support Plugin | 24 | 225 | 1,239 | 6k+ | | Non Prefixed Variable Found |
| #25 | DSGVO All in one for WP | 24 | 75 | 1,637 | 20k+ | | Non Prefixed Variable Found |
| #26 | Gallery by BestWebSoft – Customizable Image and Photo Galleries for WordPress | 24 | 536 | 324 | 10k+ | | Text Domain Mismatch |
| #27 | Cookie Banner for GDPR / CCPA – WPLP Cookie Consent | 24 | 1,201 | 1,912 | 9k+ | | Non Prefixed Variable Found |
| #28 | Joli Table Of Contents | 24 | 653 | 1,755 | 7k+ | | Non Prefixed Variable Found |
| #29 | Limit Attempts by BestWebSoft – WordPress Anti-Bot and Security Plugin for Login and Forms | 24 | 563 | 548 | 4k+ | | Text Domain Mismatch |
| #30 | miniOrange Social Login and Register (Discord, Google, Twitter, LinkedIn) | 24 | 3,702 | 902 | 10k+ | | wp function not compatible with requires wp |
| #31 | PeproDev Ultimate Invoice | 24 | 379 | 234 | 4k+ | | Output Not Escaped |
| #32 | ProfileGrid – User Profiles, Groups and Communities | 24 | 473 | 2,463 | 6k+ | | Non Prefixed Variable Found |
| #33 | ShortPixel Adaptive Images – WebP, AVIF, CDN, Image Optimization | 24 | 926 | 322 | 10k+ | | Output Not Escaped |
| #34 | Product Feed Manager for WooCommerce – CTX Feed – Support 220+ Shopping & Social Channels | 24 | 1,615 | 1,381 | 70k+ | | Text Domain Mismatch |
| #35 | WP-Stateless – Google Cloud Storage | 24 | 1,036 | 482 | 4k+ | | Non Singular String Literal Domain |
| #36 | AliExpress Dropshipping Plugin for WooCommerce Stores | 25 | 550 | 728 | 4k+ | | Text Domain Mismatch |
| #37 | Booking Activities | 25 | 1,036 | 1,469 | 3k+ | | Output Not Escaped |
| #38 | CSS & JavaScript Toolbox | 25 | 155 | 617 | 10k+ | | Non Prefixed Class Found |
| #39 | Fluid Checkout for WooCommerce – Lite | 25 | 370 | 841 | 20k+ | | Non Prefixed Hookname Found |
| #40 | Logo Slider – Logo Showcase, Logo Carousel, Logo Gallery and Client Logo Presentation | 25 | 789 | 313 | 30k+ | | Text Domain Mismatch |
| #41 | PDF & Print by BestWebSoft – WordPress Posts and Pages PDF Generator Plugin | 25 | 1,084 | 1,296 | 9k+ | | Non Prefixed Variable Found |
| #42 | phpinfo() WP — Site Health, PHP Compatibility & Server Audit | 25 | 276 | 704 | 3k+ | | Non Prefixed Variable Found |
| #43 | Post Snippets – Custom WordPress Code Snippets Customizer | 25 | 808 | 1,640 | 20k+ | | Non Prefixed Variable Found |
| #44 | Quttera ThreatSign – Web Malware Scanner for WordPress | 25 | 334 | 471 | 10k+ | | Non Prefixed Variable Found |
| #45 | Sitemap by click5 | 25 | 286 | 132 | 6k+ | | Unsafe Printing Function |
| #46 | Smart Manager – Advanced WooCommerce Bulk Edit & Inventory Management | 25 | 387 | 935 | 10k+ | | Not Prepared |
| #47 | Spectra Gutenberg Blocks – Website Builder for the Block Editor | 25 | 253 | 3,227 | 1m+ | | Non Prefixed Variable Found |
| #48 | WP Statistics – Simple, privacy-friendly Google Analytics alternative | 25 | 610 | 2,465 | 600k+ | | Non Prefixed Variable Found |
| #49 | Transbank Webpay | 27 | 198 | 211 | 10k+ | | Non Prefixed Variable Found |
| #50 | WP Booking System – Booking Calendar | 27 | 502 | 550 | 20k+ | | Output Not Escaped |