
CodeManas Social Share Security & Risk Analysis
wordpress.org/plugins/codemanas-social-shareA simple social plugin, built with flexibility in mind.
Is CodeManas Social Share Safe to Use in 2026?
Generally Safe
Score 100/100CodeManas Social Share has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "codemanas-social-share" plugin v1.0.1 exhibits a mixed security posture. On the positive side, there are no recorded vulnerabilities (CVEs) and the static analysis indicates no dangerous functions or raw SQL queries. The presence of a nonce check and a single entry point (a shortcode) with a capability check, while limited, are good signs. However, a significant concern is the complete lack of output escaping across all 31 identified outputs. This opens the door to potential Cross-Site Scripting (XSS) vulnerabilities if any user-supplied data or dynamic content is rendered without proper sanitization. The absence of taint analysis results is noted, but the lack of output escaping is a more direct and immediate risk.
Given the absence of historical vulnerabilities and critical code signals, the overall risk appears moderate, but the unescaped output presents a clear and actionable security weakness. While the attack surface is small, the vulnerability could still be exploited. A balanced conclusion would highlight the positive aspects of the plugin's limited attack surface and lack of critical code signals, but strongly emphasize the critical need to address the output escaping issue to prevent potential XSS attacks. Proactive security measures, particularly input validation and robust output sanitization, are essential for this plugin's continued safe operation.
Key Concerns
- All outputs are unescaped
CodeManas Social Share Security Vulnerabilities
CodeManas Social Share Code Analysis
Output Escaping
CodeManas Social Share Attack Surface
Shortcodes 1
WordPress Hooks 9
Maintenance & Trust
CodeManas Social Share Maintenance & Trust
Maintenance Signals
Community Trust
CodeManas Social Share Alternatives
Social Icons Widget & Block – Social Media Icons & Share Buttons
social-icons-widget-by-wpzoom
Social media icons plugin for WordPress - Add 400+ social icons and share buttons. Gutenberg block, widget & Elementor support. GDPR compliant.
Ocean Social Sharing
ocean-social-sharing
Website: https://oceanwp.org/ Support: https://oceanwp.org/support/ Documentation: https://docs.oceanwp.org/ Extensions: https://oceanwp.
Jetpack Social
jetpack-social
Write once, publish everywhere. Reach your target audience by sharing your content with Jetpack Social!
Hubbub Lite – Fast, free social sharing and follow buttons
social-pug
Your content is worth sharing. Let's makes it easier!
Ocean Product Sharing
ocean-product-sharing
Website: https://oceanwp.org/ Support: https://oceanwp.org/support/ Documentation: https://docs.oceanwp.org/ Extensions: https://oceanwp.
CodeManas Social Share Developer Profile
15 plugins · 2K total installs
How We Detect CodeManas Social Share
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/codemanas-social-share/assets/css/style.css/wp-content/plugins/codemanas-social-share/assets/js/frontend-script.js/wp-content/plugins/codemanas-social-share/assets/js/frontend-script.jscodemanas-social-share/style.css?ver=codemanas-social-sharer?ver=HTML / DOM Fingerprints
cm-left-floatercm-feature-image-wrapcm-icon-facebook-officialcm-icon-twittercm-icon-gpluscm-icon-linkedincm-icon-pinterestcm-icon-whatsapp+6 moredata-nonce-namedata-nonce-valuecodemanas_social_sharing_options[codemanas_social_share]