View raw JSON
{
"slug": "wp-all-import",
"finding_count": 16,
"findings": [
{
"pattern": "base64_decode",
"kind": "builtin",
"file": "classes/handler.php",
"line": 79,
"snippet": "$session_clear = \\maybe_unserialize( base64_decode( $session ) );",
"confidence": "medium"
},
{
"pattern": "base64_decode",
"kind": "builtin",
"file": "classes/api.php",
"line": 454,
"snippet": "if ( $file_type == 'images' && base64_encode(base64_decode($url)) == $url && $is_base64_images_allowed ) {",
"confidence": "medium"
},
{
"pattern": "base64_decode",
"kind": "builtin",
"file": "classes/api.php",
"line": 475,
"snippet": "$img = @imagecreatefromstring(base64_decode($url));",
"confidence": "medium"
},
{
"pattern": "base64_decode",
"kind": "builtin",
"file": "helpers/wp_all_import_base64_decode_image.php",
"line": 11,
"snippet": "return base64_decode($image);",
"confidence": "medium"
},
{
"pattern": "base64_decode",
"kind": "builtin",
"file": "helpers/wp_all_import_is_base64_encoded.php",
"line": 13,
"snippet": "$decoded = base64_decode($data, true);",
"confidence": "medium"
},
{
"pattern": "eval_call",
"kind": "builtin",
"file": "helpers/functions.php",
"line": 80,
"snippet": "return (eval (\"return ($str);\")) ? $then : $else;",
"confidence": "medium"
},
{
"pattern": "gzinflate",
"kind": "builtin",
"file": "libraries/wpaipclzip.lib.php",
"line": 3584,
"snippet": "$v_file_content = @gzinflate($v_buffer);",
"confidence": "medium"
},
{
"pattern": "gzinflate",
"kind": "builtin",
"file": "libraries/wpaipclzip.lib.php",
"line": 3789,
"snippet": "$v_file_content = gzinflate($v_buffer);",
"confidence": "medium"
},
{
"pattern": "gzinflate",
"kind": "builtin",
"file": "libraries/wpaipclzip.lib.php",
"line": 3890,
"snippet": "if (($p_string = @gzinflate($v_data)) === false) {",
"confidence": "medium"
},
{
"pattern": "base64_decode",
"kind": "builtin",
"file": "models/import/record.php",
"line": 2451,
"snippet": "$gallery_images[] = json_decode(base64_decode($img), true);",
"confidence": "medium"
},
{
"pattern": "base64_decode",
"kind": "builtin",
"file": "models/import/record.php",
"line": 2952,
"snippet": "'image_url' => (base64_encode(base64_decode($url)) == $url && $is_base64_images_allowed) ? '' : $url,",
"confidence": "medium"
},
{
"pattern": "base64_decode",
"kind": "builtin",
"file": "models/import/record.php",
"line": 2962,
"snippet": "'image_url' => (base64_encode(base64_decode($url)) == $url && $is_base64_images_allowed) ? '' : $url,",
"confidence": "medium"
},
{
"pattern": "base64_decode",
"kind": "builtin",
"file": "models/import/record.php",
"line": 3087,
"snippet": "'image_url' => (base64_encode(base64_decode($url)) == $url && $is_base64_images_allowed) ? '' : $url",
"confidence": "medium"
},
{
"pattern": "createfunc",
"kind": "builtin",
"file": "controllers/controller/admin.php",
"line": 59,
"snippet": "$filter = create_function('$str', 'return \"http://\" == $str || \"ftp://\" == $str ? \"\" : $str;');",
"confidence": "medium"
},
{
"pattern": "createfunc",
"kind": "builtin",
"file": "plugin.php",
"line": 831,
"snippet": "$exception_handler = create_function('$e', 'trigger_error($e->getMessage(), E_USER_ERROR);');",
"confidence": "medium"
}
],
"resolved_sha": "5d228a243d81e4fe9cefa0111f81850af74ad9da"
}