| #5951 | Guestplan Booking Widget | 68 | 43 | 6 | 1k+ | | | Text Domain Mismatch |
| #5952 | Guten Post Layout – An Advanced Post Grid Collection | 97 | 1 | 13 | 1k+ | | | Non-prefixed class |
| #5953 | Gutena Kit – Gutenberg Blocks and Templates | 36 | 39 | 87 | 1k+ | | | Nonce verification recommended |
| #5954 | Gutena Video Lightbox | 97 | 7 | 2 | 1k+ | | | Missing Arg Domain |
| #5955 | Gutena Star Ratings | 97 | 6 | 1 | 1k+ | | | Missing Arg Domain |
| #5956 | Ailo – AI Slug Translator | 80 | 8 | 14 | 1k+ | | | wp function not compatible with requires wp |
| #5957 | Hangul font nanumgothic – google | 52 | 35 | 16 | 1k+ | | | Output is not escaped |
| #5958 | Hash Link Scroll Offset | 94 | 9 | 4 | 1k+ | | | Text Domain Mismatch |
| #5959 | HD Quiz – Save Results Light | 86 | 4 | 8 | 1k+ | | | Missing nonce verification |
| #5960 | Header Footer Script Adder – Insert Code in Header, Body & Footer | 36 | 203 | 78 | 1k+ | | | Text Domain Mismatch |
| #5961 | Header Footer Custom Html | 40 | 95 | 22 | 1k+ | | | Unsafe printing function |
| #5962 | Headline Analyzer | 50 | 13 | 31 | 1k+ | | | Nonce verification recommended |
| #5963 | Heartbeat Controller | 99 | 1 | 0 | 1k+ | | | outdated tested upto header |
| #5964 | heatmap for WordPress – Realtime analytics | 40 | 94 | 15 | 1k+ | | | Non Singular String Literal Domain |
| #5965 | HEIC to JPEG | 97 | 4 | 0 | 1k+ | | | invalid license |
| #5966 | Hestia Nginx Cache | 62 | 21 | 8 | 1k+ | | | Output is not escaped |
| #5967 | HFD ePost Integration | 31 | 186 | 110 | 1k+ | | | Text Domain Mismatch |
| #5968 | Hide Admin Bar From Front End | 63 | 8 | 17 | 1k+ | | | Input is not validated |
| #5969 | Hide Categories On Shop Page | 92 | 11 | 4 | 1k+ | | | Text Domain Mismatch |
| #5970 | Hide Comments Feature | 96 | 4 | 5 | 1k+ | | | Missing direct file access protection |
| #5971 | Hide Content by User Role for WPBakery | 97 | 5 | 5 | 1k+ | | | Missing direct file access protection |
| #5972 | Hide Drafts in Menus | 100 | | 0 | 1k+ | | | No open findings |
| #5973 | Jetpack Without Promotions | 98 | 2 | 2 | 1k+ | | | trademarked term |
| #5974 | Hide Plugins | 67 | 7 | 15 | 1k+ | | | Nonce verification recommended |
| #5975 | Hide Related Video Youtube | 90 | 3 | 8 | 1k+ | | | Direct Query |
| #5976 | Hide WP Admin Notifications | 99 | | 4 | 1k+ | | | trademarked term |
| #5977 | Hide Comment Author Link | 98 | 4 | 1 | 1k+ | | | Missing direct file access protection |
| #5978 | Hide WP Toolbar | 73 | 4 | 13 | 1k+ | | | trademarked term |
| #5979 | Hippoo Mobile App for WooCommerce | 35 | 5 | 92 | 1k+ | | | Direct Query |
| #5980 | HivePress Authentication | 98 | 1 | 5 | 1k+ | | | Missing Version |
| #5981 | HM Multiple Roles | 27 | 537 | 1,287 | 1k+ | | | Non-prefixed global variable |
| #5982 | Honeypot Anti Spam for Forminator Forms | 75 | 4 | 7 | 1k+ | | | Missing nonce verification |
| #5983 | Hoot Import | 92 | 1 | 10 | 1k+ | | | Direct Query |
| #5984 | Houzez Property Feed | 23 | 1,464 | 1,615 | 1k+ | | | Text Domain Mismatch |
| #5985 | HTML5 Cumulus | 39 | 132 | 33 | 1k+ | | | Output is not escaped |
| #5986 | HTML5 jQuery Audio Player | 32 | 251 | 153 | 1k+ | | | Unsafe printing function |
| #5987 | HTTP Requests Manager | 36 | 98 | 90 | 1k+ | | | Output is not escaped |
| #5988 | HW Image Widget | 39 | 138 | 41 | 1k+ | | | Output is not escaped |
| #5989 | I Order Terms | 44 | 40 | 24 | 1k+ | | | Output is not escaped |
| #5990 | Icegram Mailer – Reliable Email Deliverability, No-code SMTP Replacement & Email logs | 37 | 37 | 102 | 1k+ | | | Non-prefixed global variable |
| #5991 | Web Icons | 49 | 51 | 10 | 1k+ | | | Output is not escaped |
| #5992 | Icon List | 59 | 83 | 11 | 1k+ | | | Text Domain Mismatch |
| #5993 | Icon Separator | 100 | | 0 | 1k+ | | | No open findings |
| #5994 | iConvert Promoter | 57 | 98 | 217 | 1k+ | | | Non-prefixed global variable |
| #5995 | Idle User Logout | 39 | 96 | 13 | 1k+ | | | Output is not escaped |
| #5996 | If Modified Since | 91 | 2 | 4 | 1k+ | | | Request data is not unslashed |
| #5997 | If-So Conditional Content for Elementor | 90 | 5 | 1 | 1k+ | | | Missing direct file access protection |
| #5998 | If-So Geolocation | 36 | 50 | 57 | 1k+ | | | Non-prefixed global variable |
| #5999 | If Widget – Visibility control for Widgets | 40 | 99 | 25 | 1k+ | | | Unsafe printing function |
| #6000 | Online Payments with iK Pay Gateway | 64 | 12 | 28 | 1k+ | | | Missing nonce verification |