| #4601 | WPUpper Share Buttons | 86 | 4 | 74 | 4k+ | | | Dynamic hook name |
| #4602 | Apaczka.pl Mapa Punktów | 87 | 8 | 9 | 2k+ | | | Missing nonce verification |
| #4603 | Authors List | 87 | 2 | 16 | 5k+ | | | Nonce verification recommended |
| #4604 | LocoAI – Auto Translate for Loco Translate | 87 | 10 | 41 | 70k+ | | | Non-prefixed global variable |
| #4605 | Better Addons for Elementor | 87 | 125 | 221 | 4k+ | | | Non-prefixed global variable |
| #4606 | Block Editor Colors | 87 | 24 | 9 | 3k+ | | | Missing Arg Domain |
| #4607 | Catch Infinite Scroll | 87 | | 20 | 10k+ | | | Non-prefixed global variable |
| #4608 | Contact Form 7 Spam Killer | 87 | 1 | 21 | 4k+ | | | Missing nonce verification |
| #4609 | CF7 Google Captcha Load After Page | 87 | 7 | 2 | 2k+ | | | Output is not escaped |
| #4610 | Click To Tweet | 87 | 8 | 7 | 2k+ | | | trademarked term |
| #4611 | CookieYes – Cookie Banner for Cookie Consent (Easy to setup GDPR/CCPA Compliant Cookie Notice) | 87 | 1 | 291 | 1m+ | | | Non-prefixed global variable |
| #4612 | Customizer Search | 87 | 10 | 1 | 50k+ | | | Missing direct file access protection |
| #4613 | Autolinks Manager – SEO Auto Linker | 87 | 7 | 16 | 1k+ | | | Database parameter is not escaped |
| #4614 | Donorbox – Free Recurring Donation Plugin and Fundraising Platform | 87 | 5 | 6 | 8k+ | | | Missing Arg Domain |
| #4615 | Easy Notification Bar | 87 | 6 | 2 | 9k+ | | | Output is not escaped |
| #4616 | Embed Any Document – Embed PDF, Word, PowerPoint and Excel Files | 87 | 7 | 5 | 50k+ | | | Setting is missing a sanitization callback |
| #4617 | Entry Expiration for Gravity Forms | 87 | 8 | 2 | 1k+ | | | Missing direct file access protection |
| #4618 | GTM Kit – Google Tag Manager & GA4 integration | 87 | 5 | 17 | 30k+ | | | Missing direct file access protection |
| #4619 | I Recommend This – Love/Like Button for WordPress Posts | 87 | 3 | 49 | 5k+ | | | Direct Query |
| #4620 | Image Optimizer – Optimize Images and Convert to WebP or AVIF | 87 | 14 | 24 | 1m+ | | | Missing Translators Comment |
| #4621 | iPanorama 360 – Advanced Virtual Tour Builder | 87 | 726 | 34 | 5k+ | | | Text Domain Mismatch |
| #4622 | Last Modified Timestamp | 87 | 9 | 3 | 7k+ | | | Output is not escaped |
| #4623 | Minimum Purchase Amount For Woo Cart – For WooCommerce | 87 | 72 | 8 | 5k+ | | | Text Domain Mismatch |
| #4624 | No Category Base (WPML) | 87 | 5 | 5 | 100k+ | | | Missing direct file access protection |
| #4625 | Object Cache 4 everyone | 87 | 2 | 65 | 5k+ | | | Non-prefixed function |
| #4626 | Bulk Page Generator and Mass Page Builder – Page Generator | 87 | 26 | 87 | 4k+ | | | Non-prefixed global variable |
| #4627 | Parallax Section Block – Add Parallax Scrolling Effects to Sections. | 87 | 3 | 22 | 3k+ | | | Non-prefixed global variable |
| #4628 | ParcelWILL (Formerly ParcelPanel) – Shipment Tracking, Tracking & Order Tracking for WooCommerce | 87 | 6 | 81 | 8k+ | | | Non-prefixed global variable |
| #4629 | Simple Catalog for WooCommerce | 87 | 2 | 4 | 1k+ | | | wp redirect wp redirect |
| #4630 | Export Single Post Page | 87 | 3 | 6 | 2k+ | | | Nonce verification recommended |
| #4631 | Smaily Connect | 87 | | 52 | 2k+ | | | Non-prefixed global variable |
| #4632 | Invoice Payment Gateway for WooCommerce | 87 | 5 | 4 | 3k+ | | | Output is not escaped |
| #4633 | Variations as Single Product – Display Single Variation for WooCommerce | 87 | 8 | 33 | 1k+ | | | Direct Query |
| #4634 | Coupon Box for WooCommerce | 87 | 11 | 85 | 1k+ | | | Non-prefixed global variable |
| #4635 | WP Admin Basic Auth | 87 | 5 | 6 | 2k+ | | | Input is not sanitized |
| #4636 | WP Auto Updater | 87 | 5 | 19 | 7k+ | | | Database parameter is not escaped |
| #4637 | WP CountUP JS | 87 | 3 | 3 | 1k+ | | | trademarked term |
| #4638 | WP Missed Schedule Posts | 87 | 7 | 9 | 10k+ | | | trademarked term |
| #4639 | Related Products – Create Upsells, Cross-sells, and Product Recommendations for WooCommerce | 87 | 79 | 446 | 10k+ | | | Non-prefixed global variable |
| #4640 | Redirect 404 to Homepage | 88 | 4 | 4 | 70k+ | | | parse url parse url |
| #4641 | ACF Dropzone | 88 | 4 | 3 | 1k+ | | | Exception output is not escaped |
| #4642 | Autocomplete Location Field for Contact Form 7 | 88 | 3 | 9 | 1k+ | | | Missing nonce verification |
| #4643 | Worldline Online Checkout | 88 | 4 | 16 | 1k+ | | | Nonce verification recommended |
| #4644 | Captcha by Yandex for Contact Form 7 | 88 | 9 | 12 | 3k+ | | | Text Domain Mismatch |
| #4645 | Catch IDs | 88 | | 16 | 20k+ | | | Non-prefixed global variable |
| #4646 | Color Mobile Browser Address Bar | 88 | 5 | 0 | 2k+ | | | Output is not escaped |
| #4647 | Content Control – The Ultimate Content Restriction Plugin! Restrict Content, Create Conditional Blocks & More | 88 | 20 | 116 | 40k+ | | | Non-prefixed hook name |
| #4648 | CPO Content Types | 88 | 13 | 25 | 3k+ | | | Missing direct file access protection |
| #4649 | Custom CSS for Elementor | 88 | 4 | 1 | 5k+ | | | Output is not escaped |
| #4650 | Custom Header Footer Scripts for Customizer | 88 | 6 | 5 | 2k+ | | | Non-prefixed function |