| #1 | Podlove Podcast Publisher | 18 | 2,326 | 1,429 | 3k+ | | Output Not Escaped |
| #2 | Shopping Cart & eCommerce Store | 18 | 5,459 | 17,298 | 4k+ | | Non Prefixed Variable Found |
| #3 | WP Import Export Lite | 18 | 738 | 979 | 40k+ | | Non Prefixed Variable Found |
| #4 | Matomo Analytics – Powerful, Privacy-First Insights for WordPress | 19 | 1,909 | 878 | 100k+ | | Exception Not Escaped |
| #5 | Pinpoint Booking System – Version 2 | 21 | 634 | 328 | 3k+ | | missing direct file access protection |
| #6 | Duplicator – Backups & Migration Plugin – Cloud Backups, Scheduled Backups, & More | 21 | 2,572 | 1,277 | 1m+ | | Output Not Escaped |
| #7 | Campaign Monitor for WordPress | 21 | 386 | 461 | 2k+ | | Non Prefixed Variable Found |
| #8 | MailChimp Subscribe Form, Optin Builder, PopUp Builder, Form Builder | 21 | 1,133 | 3,011 | 2k+ | | Non Prefixed Variable Found |
| #9 | Packeta | 21 | 802 | 333 | 8k+ | | Exception Not Escaped |
| #10 | Landing Page Builder – Coming Soon page, Maintenance Mode, Lead Page, WordPress Landing Pages | 21 | 1,173 | 2,983 | 9k+ | | Non Prefixed Variable Found |
| #11 | Five Star Restaurant Reservations – WordPress Booking Plugin | 21 | 1,099 | 1,147 | 10k+ | | Output Not Escaped |
| #12 | Seamless Donations is Sunset | 21 | 600 | 514 | 2k+ | | Text Domain Mismatch |
| #13 | WCFM – Frontend Manager for WooCommerce | 21 | 4,721 | 5,067 | 20k+ | | Non Prefixed Variable Found |
| #14 | Paysera Payment Gateway for WooCommerce | 21 | 1,866 | 195 | 7k+ | | Exception Not Escaped |
| #15 | WP phpMyAdmin | 21 | 4,528 | 6,435 | 50k+ | | Missing Arg Domain |
| #16 | wpDataTables – WordPress Data Table, Dynamic Tables & Table Charts Plugin | 21 | 1,354 | 1,140 | 70k+ | | Output Not Escaped |
| #17 | WPScan – WordPress Security Scanner | 21 | 527 | 265 | 8k+ | | Text Domain Mismatch |
| #18 | WP Customer Area | 22 | 3,308 | 941 | 10k+ | | Text Domain Mismatch |
| #19 | Events Manager – Calendar, Bookings, Tickets, and more! | 22 | 4,722 | 5,621 | 70k+ | | Output Not Escaped |
| #20 | GeoDirectory – WP Business Directory Plugin and Classified Listings Directory | 22 | 4,462 | 3,972 | 10k+ | | Output Not Escaped |
| #21 | InfiniteWP Client | 22 | 2,286 | 1,812 | 200k+ | | Exception Not Escaped |
| #22 | MailOptin – Popup, Optin Forms & Email Newsletters for Mailchimp, HubSpot, AWeber Etc. | 22 | 2,619 | 2,453 | 10k+ | | Output Not Escaped |
| #23 | Molongui Authorship – Author Boxes, Guest Authors & Co-Authors for WordPress | 22 | 919 | 1,230 | 10k+ | | Output Not Escaped |
| #24 | NinjaFirewall (WP Edition) – Advanced Security Plugin and Firewall | 22 | 1,265 | 2,065 | 100k+ | | Non Prefixed Variable Found |
| #25 | NinjaScanner – Virus & Malware scan | 22 | 596 | 551 | 30k+ | | Non Prefixed Variable Found |
| #26 | Search & Replace Everything – Quick and Easy Way to Find and Replace Text, Links | 22 | 1,044 | 1,797 | 20k+ | | Non Prefixed Variable Found |
| #27 | URL Shortify – Simple and Easy URL Shortener | 22 | 1,520 | 2,689 | 10k+ | | Non Prefixed Variable Found |
| #28 | WP Umbrella: Update Backup Restore & Monitoring | 22 | 915 | 905 | 70k+ | | Exception Not Escaped |
| #29 | WPSSO Core – Complete Schema Markup and Meta Tags | 22 | 1,407 | 412 | 5k+ | | Missing Translators Comment |
| #30 | Advanced Contact form 7 DB | 23 | 761 | 1,959 | 70k+ | | Non Prefixed Variable Found |
| #31 | Autoptimize | 23 | 288 | 191 | 800k+ | | Output Not Escaped |
| #32 | B2BKing — Ultimate WooCommerce B2B and Wholesale Plugin — Wholesale Prices, Bulk Order Form & More | 23 | 1,347 | 409 | 10k+ | | Text Domain Mismatch |
| #33 | Easy Digital Downloads – eCommerce Payments and Subscriptions made easy | 23 | 3,723 | 10,283 | 40k+ | | Non Prefixed Namespace Found |
| #34 | Flexmls® IDX Plugin | 23 | 1,268 | 957 | 1k+ | | Output Not Escaped |
| #35 | Futurio Extra | 23 | 787 | 205 | 20k+ | | Text Domain Mismatch |
| #36 | MailPoet – Newsletters, Email Marketing, and Automation | 23 | 858 | 711 | 500k+ | | Exception Not Escaped |
| #37 | MyWorks Sync for WooCommerce & QuickBooks Online | 23 | 2,292 | 9,101 | 5k+ | | Non Prefixed Variable Found |
| #38 | Next Active Directory Integration | 23 | 683 | 284 | 2k+ | | Exception Not Escaped |
| #39 | Ninja Forms – The Contact Form Builder That Grows With You | 23 | 755 | 1,536 | 600k+ | | Recommended |
| #40 | NitroPack – Performance, Page Speed & Cache Plugin for Core Web Vitals, CDN & Image Optimization | 23 | 315 | 631 | 100k+ | | Output Not Escaped |
| #41 | Ocean Extra | 23 | 1,494 | 2,106 | 500k+ | | Non Prefixed Variable Found |
| #42 | Advanced Booking & Appointment System – Webba Booking Calendar | 23 | 1,615 | 3,300 | 2k+ | | Non Prefixed Variable Found |
| #43 | AcyMailing – An Ultimate Newsletter Plugin and Marketing Automation Solution for WordPress | 24 | 5,230 | 1,464 | 7k+ | | Output Not Escaped |
| #44 | Backuply – Backup, Restore, Migrate and Clone | 24 | 704 | 551 | 700k+ | | Non Prefixed Variable Found |
| #45 | SilentShield – Captcha & Anti-Spam for WordPress (CF7, WPForms, Elementor, WooCommerce) | 24 | 236 | 214 | 10k+ | | Unescaped DBParameter |
| #46 | Easy Form Builder by WhiteStudio — Drag & Drop Form Builder | 24 | 193 | 363 | 1k+ | | Recommended |
| #47 | Simple Calendar – Google Calendar Plugin | 24 | 2,035 | 591 | 50k+ | | missing direct file access protection |
| #48 | Mailchimp for WooCommerce | 24 | 523 | 663 | 200k+ | | Non Prefixed Variable Found |
| #49 | miniOrange Social Login and Register (Discord, Google, Twitter, LinkedIn) | 24 | 3,702 | 902 | 10k+ | | wp function not compatible with requires wp |
| #50 | NEX-Forms – Ultimate Forms Plugin for WordPress | 24 | 1,997 | 1,200 | 6k+ | | Text Domain Mismatch |