The unofficial WordPress Plugin Directory
Fixes the target="_blank" vulnerability by adding rel="noopener noreferrer" to the 'a' tag.