| #3351 | POEditor | 37 | 78 | 140 | 500 | | | Output is not escaped |
| #3352 | Poptics – Popup Builder, Email Opt-ins, Exit-Intent & WooCommerce Popups Sales | 37 | 59 | 64 | 2k+ | | | SQL query is not prepared |
| #3353 | Post Terms Order – per Post based | 37 | 70 | 36 | 2k+ | | | Output is not escaped |
| #3354 | Product Image Hover Effects WOOC – WPSHARE247 | 37 | 161 | 94 | 800 | | | Output is not escaped |
| #3355 | Product page shipping calculator for WooCommerce | 37 | 217 | 117 | 1k+ | | | Text Domain Mismatch |
| #3356 | Publish to Schedule | 37 | 195 | 43 | 4k+ | | | Text Domain Mismatch |
| #3357 | PublishPress Statuses – Custom Post Status and Workflow | 37 | 231 | 78 | 1k+ | | | Missing Arg Domain |
| #3358 | Quantities and Units for WooCommerce | 37 | 133 | 118 | 1k+ | | | Output is not escaped |
| #3359 | Quentn WP | 37 | 4 | 251 | 500 | | | Nonce verification recommended |
| #3360 | Quick Restaurant Menu | 37 | 136 | 40 | 1k+ | | | Text Domain Mismatch |
| #3361 | rapidmail: Newsletter & E-Mail Marketing for WooCommerce | 37 | 79 | 47 | 400 | | | Text Domain Mismatch |
| #3362 | Recent Posts Widget With Thumbnails | 37 | 222 | 46 | 100k+ | | | Output is not escaped |
| #3363 | resmio button & widget | 37 | 99 | 36 | 400 | | | Text Domain Mismatch |
| #3364 | Reusable Content Blocks | 37 | 349 | 14 | 4k+ | | | Text Domain Mismatch |
| #3365 | Rich Table of Contents | 37 | 262 | 57 | 20k+ | | | Output is not escaped |
| #3366 | Robots & Sitemap | 37 | 199 | 28 | 500 | | | Text Domain Mismatch |
| #3367 | RSS for Yandex Zen | 37 | 240 | 100 | 4k+ | | | Unsafe printing function |
| #3368 | RSS Image Feed | 37 | 147 | 16 | 2k+ | | | Output is not escaped |
| #3369 | Ryviu – Review Importer & Product Reviews | 37 | 72 | 95 | 1k+ | | | Output is not escaped |
| #3370 | Invoice123 | 37 | 138 | 98 | 400 | | | Text Domain Mismatch |
| #3371 | SB RSS feed plus | 37 | 172 | 24 | 1k+ | | | Output is not escaped |
| #3372 | Scroll Back To Top | 37 | 149 | 12 | 10k+ | | | Output is not escaped |
| #3373 | Send PDF for Contact Form 7 | 37 | 22 | 308 | 9k+ | | | Non-prefixed global variable |
| #3374 | SendWP | 37 | 47 | 42 | 10k+ | | | Output is not escaped |
| #3375 | Sensei LMS Certificates | 37 | 97 | 362 | 4k+ | | | Non-prefixed global variable |
| #3376 | Sezzle Woocommerce Payment | 37 | 108 | 105 | 1k+ | | | Text Domain Mismatch |
| #3377 | Snippet Shortcodes | 37 | 359 | 133 | 4k+ | | | Non Singular String Literal Domain |
| #3378 | Shortcoder — Create Shortcodes for Anything | 37 | 25 | 70 | 100k+ | | | Non-prefixed global variable |
| #3379 | Weaver Show Sliders | 37 | 177 | 132 | 900 | | | Text Domain Mismatch |
| #3380 | Simple Countdown Timer | 37 | 110 | 113 | 1k+ | | | Missing Arg Domain |
| #3381 | Simple Image XML Sitemap | 37 | 119 | 16 | 1k+ | | | Output is not escaped |
| #3382 | Lightbox slider – Responsive Lightbox Gallery | 37 | 36 | 173 | 3k+ | | | Non-prefixed global variable |
| #3383 | Site Offline Or Coming Soon Or Maintenance Mode | 37 | 127 | 138 | 30k+ | | | Unsafe printing function |
| #3384 | Skimlinks Affiliate Marketing Tool | 37 | 84 | 19 | 800 | | | wp function not compatible with requires wp |
| #3385 | Slider Pro | 37 | 78 | 260 | 1k+ | | | Non-prefixed global variable |
| #3386 | Smart Send Logistics | 37 | 92 | 81 | 400 | | | Output is not escaped |
| #3387 | Social Comments | 37 | 59 | 32 | 400 | | | Output is not escaped |
| #3388 | Spam Destroyer | 37 | 63 | 43 | 6k+ | | | rand rand |
| #3389 | StagTools | 37 | 476 | 53 | 1k+ | | | Text Domain Mismatch |
| #3390 | Website Pop-up Builder by BDOW! (formerly Sumo): Pop-ups + forms for email opt-ins and lead generation | 37 | 42 | 33 | 10k+ | | | Output is not escaped |
| #3391 | SuperCPT | 37 | 172 | 27 | 600 | | | Output is not escaped |
| #3392 | Super Simple Site Offline | 37 | 115 | 59 | 6k+ | | | Text Domain Mismatch |
| #3393 | Swifty Bar, sticky bar by WPGens | 37 | 112 | 81 | 400 | | | Output is not escaped |
| #3394 | TelSender – Сontact form 7, Events, Wpforms, ninja forms and woocommerce to telegram bot | 37 | 48 | 40 | 6k+ | | | Unsafe printing function |
| #3395 | Theme Builder For Elementor | 37 | 477 | 28 | 2k+ | | | Text Domain Mismatch |
| #3396 | Tilopay | 37 | 35 | 130 | 1k+ | | | Nonce verification recommended |
| #3397 | Time Clock – A WordPress Employee & Volunteer Time Clock Plugin | 37 | 166 | 107 | 500 | | | Output is not escaped |
| #3398 | Tracking Code Manager | 37 | 55 | 42 | 90k+ | | | Output is not escaped |
| #3399 | Tracking Script Manager | 37 | 82 | 57 | 2k+ | | | Non Singular String Literal Domain |
| #3400 | Ultimate WordPress Auction Plugin | 37 | 623 | 146 | 1k+ | | | Text Domain Mismatch |