[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fTXcL9BmCJCbEChttEQlPJ68mHbt_ojzM_ENGEOwRptk":3,"$fsSJLdtW2qOGL_OaXl8Oxu7cnoAXJscq6yogM3Ny_l9s":126,"$fhnVBpRNZ8OpN2kdhUYrQ_IQC4gWtmg47-cU_IAmiaI0":131},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":16,"requires_php":16,"tags":17,"homepage":16,"download_link":18,"security_score":19,"vuln_count":11,"unpatched_count":11,"last_vuln_date":20,"fetched_at":21,"discovery_status":22,"vulnerabilities":23,"developer":24,"crawl_stats":20,"alternatives":30,"analysis":31,"fingerprints":79},"basic-social-share","Basic Social Share","1.0","toms15","https:\u002F\u002Fprofiles.wordpress.org\u002Ftoms15\u002F","\u003Cp>Compatibility\u003Cbr \u002F>\nThis Basic Social Share plugin is compatible with:\u003Cbr \u002F>\n– WordPress 4.8 and latest versions.\u003C\u002Fp>\n\u003Cp>Installation\u003Cbr \u002F>\n1. Copy the basic-social-share folder into your wp-content\u002Fplugins folder\u003Cbr \u002F>\n2. Activate the plugin via the plugins admin page\u003C\u002Fp>\n\u003Cp>Get started\u003Cbr \u002F>\n1. Once the plugin is installed it creates the Basic Social Share item under Settings top level menu item.\u003Cbr \u002F>\n2. Select the social network in the plugin options page.\u003Cbr \u002F>\n3. Add shortcode [basic-social-share] where you want them to appear on the pages.\u003C\u002Fp>\n\u003Cp>You can add  to your theme code.\u003C\u002Fp>\n","Compatibility This Basic Social Share plugin is compatible with: - Wordpress 4.8 and latest versions. Installation 1. Copy the basic-social-share fol &hellip;",0,1145,100,1,"2017-12-11T09:59:00.000Z","",[],"https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbasic-social-share.zip",85,null,"2026-04-16T10:56:18.058Z","no_bundle",[],{"slug":7,"display_name":7,"profile_url":8,"plugin_count":25,"total_installs":11,"avg_security_score":26,"avg_patch_time_days":27,"trust_score":28,"computed_at":29},2,89,30,86,"2026-05-20T06:54:32.222Z",[],{"attackSurface":32,"codeSignals":59,"taintFlows":66,"riskAssessment":67,"analyzedAt":78},{"hooks":33,"ajaxHandlers":53,"restRoutes":54,"shortcodes":55,"cronEvents":58,"entryPointCount":14,"unprotectedCount":11},[34,40,44,49],{"type":35,"name":36,"callback":37,"file":38,"line":39},"action","admin_menu","bss_menu_item","basic-social-share.php",16,{"type":35,"name":41,"callback":42,"file":38,"line":43},"admin_init","social_share_settings",116,{"type":45,"name":46,"callback":47,"file":38,"line":48},"filter","the_content","add_social_share_icons",176,{"type":35,"name":50,"callback":51,"file":38,"line":52},"wp_enqueue_scripts","bss_style",185,[],[],[56],{"tag":4,"callback":47,"file":38,"line":57},177,[],{"dangerousFunctions":60,"sqlUsage":61,"outputEscaping":63,"fileOperations":25,"externalRequests":11,"nonceChecks":11,"capabilityChecks":11,"bundledLibraries":65},[],{"prepared":11,"raw":11,"locations":62},[],{"escaped":14,"rawEcho":11,"locations":64},[],[],[],{"summary":68,"deductions":69},"The \"basic-social-share\" v1.0 plugin exhibits a generally strong security posture based on the static analysis. The absence of dangerous functions, the use of prepared statements for all SQL queries, and proper output escaping for all identified outputs are commendable practices. The plugin also shows no recorded vulnerabilities (CVEs) in its history, indicating a likely focus on secure development. The limited attack surface with only one shortcode and no AJAX handlers or REST API routes further contributes to its apparent security. However, a significant concern is the complete lack of nonce checks and capability checks. While the current attack surface might be minimal, this omission leaves the plugin vulnerable to potential CSRF attacks or unauthorized actions if its functionality were to be expanded or if new entry points were introduced in future versions without proper authorization checks. The file operations also represent a potential area of risk if not handled with strict validation and sanitization, although no specific issues were flagged in the taint analysis.",[70,73,75],{"reason":71,"points":72},"Missing nonce checks",10,{"reason":74,"points":72},"Missing capability checks",{"reason":76,"points":77},"File operations present",3,"2026-04-16T15:03:52.686Z",{"wat":80,"direct":87},{"assetPaths":81,"generatorPatterns":83,"scriptPaths":84,"versionParams":85},[82],"\u002Fwp-content\u002Fplugins\u002Fbasic-social-share\u002Fstyle.css",[],[],[86],"basic-social-share\u002Fstyle.css?ver=",{"cssClasses":88,"htmlComments":101,"htmlAttributes":102,"restEndpoints":111,"jsGlobals":112,"shortcodeOutput":114},[89,90,91,92,93,94,95,96,97,98,99,100],"bss-container","bss-fb","bss-button","bss-tw","bss-wa","bss-tu","bss-tl","bss-pi","bss-gp","bss-li","bss-count","clear",[],[103,104,105,106,107,108,109,110],"name=\"bss-facebook\"","name=\"bss-twitter\"","name=\"bss-whatsapp\"","name=\"bss-tumblr\"","name=\"bss-telegram\"","name=\"bss-pinterest\"","name=\"bss-googleplus\"","name=\"bss-linkedin\"",[],[113],"window.open",[115,116,117,118,119,120,121,122,123,124,125],"\u003Cdiv class='bss-container'>","\u003Cdiv class='bss-fb bss-button'>","\u003Cdiv class='bss-tw bss-button'>","\u003Cdiv class='bss-wa bss-button'>","\u003Cdiv class='bss-tu bss-button'>","\u003Cdiv class='bss-tl bss-button'>","\u003Cdiv class='bss-pi bss-button'>","\u003Cdiv class='bss-gp bss-button'>","\u003Cdiv class='bss-li bss-button'>","\u003Cspan class='bss-count'>","\u003Cdiv class='clear'>\u003C\u002Fdiv>\u003C\u002Fdiv>",{"error":127,"url":128,"statusCode":129,"statusMessage":130,"message":130},true,"http:\u002F\u002Flocalhost\u002Fapi\u002Fplugins\u002Fbasic-social-share\u002Fbundle",404,"no bundle for this plugin yet",{"slug":4,"current_version":6,"total_versions":11,"versions":132},[]]