Aspexi Social Media Sidebox Security & Risk Analysis

wordpress.org/plugins/aspexi-facebook-like-box-sidebox

Plugin adds fancy Facebook Page Plugin (formerly Like Box) Sidebox.

800 active installs v2.1.17 PHP + WP 3.0+ Updated Jun 9, 2022
buttonfacebookfloatinglike-boxlikebox
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Aspexi Social Media Sidebox Safe to Use in 2026?

Generally Safe

Score 85/100

Aspexi Social Media Sidebox has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The "aspexi-facebook-like-box-sidebox" plugin v2.1.17 exhibits a generally strong security posture based on the provided static analysis. The absence of known vulnerabilities (CVEs) and a clean vulnerability history suggest a history of good security practices by the developers. The code analysis reveals a very small attack surface with only one AJAX handler, which importantly, appears to be protected by authentication checks. Furthermore, the plugin demonstrates good security habits by using prepared statements for all SQL queries, avoiding file operations and external HTTP requests, and implementing both nonce and capability checks. However, a significant concern arises from the output escaping, where less than half of the output is properly escaped. This could leave the plugin vulnerable to Cross-Site Scripting (XSS) attacks if user-supplied data is directly rendered without adequate sanitization. While the taint analysis shows no current unsanitized flows, the poor output escaping is a latent risk that needs to be addressed.

Key Concerns

  • Output escaping is not properly implemented
Vulnerabilities
None known

Aspexi Social Media Sidebox Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Aspexi Social Media Sidebox Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
53
51 escaped
Nonce Checks
2
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

49% escaped104 total outputs
Attack Surface

Aspexi Social Media Sidebox Attack Surface

Entry Points1
Unprotected0

AJAX Handlers 1

authwp_ajax_afbsb_hide_noticeaspexi-facebook-side-box.php:53
WordPress Hooks 9
actionadmin_menuaspexi-facebook-side-box.php:48
actionadmin_noticesaspexi-facebook-side-box.php:49
actioninitaspexi-facebook-side-box.php:50
actionwp_footeraspexi-facebook-side-box.php:51
actionadmin_enqueue_scriptsaspexi-facebook-side-box.php:52
actionwp_enqueue_scriptsaspexi-facebook-side-box.php:54
filterplugin_action_linksaspexi-facebook-side-box.php:55
filteraspexifbsidebox_admin_settingsaspexi-facebook-side-box.php:856
filteraspexifbsidebox_admin_settingsaspexi-facebook-side-box.php:857
Maintenance & Trust

Aspexi Social Media Sidebox Maintenance & Trust

Maintenance Signals

WordPress version tested6.0.11
Last updatedJun 9, 2022
PHP min version
Downloads33K

Community Trust

Rating88/100
Number of ratings7
Active installs800
Developer Profile

Aspexi Social Media Sidebox Developer Profile

Aspexi

4 plugins · 3K total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Aspexi Social Media Sidebox

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/aspexi-facebook-like-box-sidebox/css/style.css/wp-content/plugins/aspexi-facebook-like-box-sidebox/js/script.js
Script Paths
/wp-content/plugins/aspexi-facebook-like-box-sidebox/js/script.js
Version Parameters
/wp-content/plugins/aspexi-facebook-like-box-sidebox/css/style.css?ver=/wp-content/plugins/aspexi-facebook-like-box-sidebox/js/script.js?ver=

HTML / DOM Fingerprints

CSS Classes
aspexifbsidebox-container
Data Attributes
data-aspexifbsidebox-urldata-aspexifbsidebox-localedata-aspexifbsidebox-status
JS Globals
aspexifbsidebox_ajaxurl
Shortcode Output
[aspexifbsidebox][/aspexifbsidebox]
FAQ

Frequently Asked Questions about Aspexi Social Media Sidebox