
All-in-one contact buttons – WPSHARE247 Security & Risk Analysis
wordpress.org/plugins/all-in-one-contact-buttons-wpshare247Floating click to contact buttons All-In-One Tạo nút liên hệ gôm tất cả vào trong một nút duy nhất bao gồm: số hotline, zalo, facebook, messenger, ema …
Is All-in-one contact buttons – WPSHARE247 Safe to Use in 2026?
Generally Safe
Score 100/100All-in-one contact buttons – WPSHARE247 has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The static analysis of the 'all-in-one-contact-buttons-wpshare247' plugin version 1.7 reveals a generally strong security posture in terms of its attack surface and common vulnerability indicators. There are no identified AJAX handlers, REST API routes, shortcodes, or cron events, which significantly limits potential entry points for attackers. The absence of dangerous functions, file operations, external HTTP requests, and bundled libraries further contributes to a cleaner codebase. Additionally, the plugin demonstrates good output escaping practices with 91% of outputs properly escaped and no critical or high severity taint flows were detected. This indicates a proactive effort to prevent common web vulnerabilities.
However, a notable concern arises from the single SQL query identified, which is not using prepared statements. This represents a potential risk for SQL injection vulnerabilities, even if the overall attack surface is small. While the vulnerability history is clean with no recorded CVEs, this does not guarantee future safety and should be monitored. The lack of nonce and capability checks on its limited entry points, though currently minimal in impact due to the zero entry points, could become a concern if functionality is added without these security measures.
In conclusion, this plugin exhibits a promising security foundation with a minimal attack surface and good output escaping. The primary area of improvement lies in addressing the unescaped SQL query to fully mitigate the risk of injection attacks. Continued vigilance regarding vulnerability history and adherence to WordPress security best practices, especially if new features are introduced, will be crucial for maintaining its security.
Key Concerns
- Raw SQL query without prepared statements
All-in-one contact buttons – WPSHARE247 Security Vulnerabilities
All-in-one contact buttons – WPSHARE247 Code Analysis
SQL Query Safety
Output Escaping
All-in-one contact buttons – WPSHARE247 Attack Surface
WordPress Hooks 12
Maintenance & Trust
All-in-one contact buttons – WPSHARE247 Maintenance & Trust
Maintenance Signals
Community Trust
All-in-one contact buttons – WPSHARE247 Alternatives
Floating Click to Contact Buttons
floating-click-to-contact-buttons
Tạo các nút gọi, nút chat Zalo, nút Chat messenger, nút để lại thông tin để tư vấn, nút chỉ đường. Trình bày các nút đẹp mắt ở góc phải dưới màn hình, …
Call Now – Group Contact Buttons – PHT Blog
group-contact-buttons-pht-blog
Insert call now buttons, chat Facebook, quick contact via Zalo, Viber, Skype, Line, Contact Form 7 ... all wrapped up in a Group Contact button neatly …
Call Now Button – The #1 Click to Call Button for WordPress
call-now-button
The web's #1 click to call button for your website! A simple and powerful plugin that adds a Call Now Button to your website.
WP Call Button – Easy Click to Call Button for WordPress
wp-call-button
The best WordPress call now button plugin. We help you add a clickable phone link (quick call button), so people can easily call your business phone.
Really Simple Click To Call Bar
really-simple-click-to-call
A simple plugin that adds a click to call bar/call now button for mobile visitors.
All-in-one contact buttons – WPSHARE247 Developer Profile
7 plugins · 5K total installs
How We Detect All-in-one contact buttons – WPSHARE247
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/all-in-one-contact-buttons-wpshare247/inc/aio_ct_button_admin_css.css/wp-content/plugins/all-in-one-contact-buttons-wpshare247/inc/js/fancybox/dist/jquery.fancybox.min.css/wp-content/plugins/all-in-one-contact-buttons-wpshare247/inc/js/font-awesome-4.7.0/css/font-awesome.min.css/wp-content/plugins/all-in-one-contact-buttons-wpshare247/inc/admin_aio_ct_button.js/wp-content/plugins/all-in-one-contact-buttons-wpshare247/inc/js/fancybox/dist/jquery.fancybox.min.js/wp-content/plugins/all-in-one-contact-buttons-wpshare247/inc/admin_aio_ct_button.js/wp-content/plugins/all-in-one-contact-buttons-wpshare247/inc/js/fancybox/dist/jquery.fancybox.min.js/wp-content/plugins/all-in-one-contact-buttons-wpshare247/inc/aio_ct_button_admin_css.css?ver=/wp-content/plugins/all-in-one-contact-buttons-wpshare247/inc/js/fancybox/dist/jquery.fancybox.min.css?ver=/wp-content/plugins/all-in-one-contact-buttons-wpshare247/inc/js/font-awesome-4.7.0/css/font-awesome.min.css?ver=/wp-content/plugins/all-in-one-contact-buttons-wpshare247/inc/admin_aio_ct_button.js?ver=/wp-content/plugins/all-in-one-contact-buttons-wpshare247/inc/js/fancybox/dist/jquery.fancybox.min.js?ver=HTML / DOM Fingerprints
tr-icon-groupws247-aio-ct-button<!-- Ws247_aio_ct_button Plugin -->ws247_aio_ct_button-fields-groupWS247_AIO_CT_BUTTON_SETTING_PAGE_SLUGWS247_AIO_CT_BUTTON_TEXTDOMAINWS247_AIO_CT_BUTTON_PREFIXWS247_AIO_CT_BUTTON_PLUGIN_INC_ASSETS_URL