Cresta Social Share Counter Security & Risk Analysis

wordpress.org/plugins/cresta-social-share-counter

Share your posts and pages quickly and easily with Cresta Social Share Counter and show share counts.

2K active installs v2.9.9.7 PHP + WP 4.2+ Updated Feb 21, 2026
shareshare-buttonsocialsocial-buttonssocial-share
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Cresta Social Share Counter Safe to Use in 2026?

Generally Safe

Score 100/100

Cresta Social Share Counter has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The cresta-social-share-counter plugin v2.9.9.7 exhibits a generally strong security posture based on the provided static analysis and vulnerability history. The plugin demonstrates good practices by utilizing prepared statements for all SQL queries, performing a high percentage of output escaping (92%), and including nonce and capability checks. The absence of any recorded CVEs, including critical or high severity vulnerabilities, further indicates a history of secure development and maintenance. The limited attack surface, consisting of a single shortcode and no unprotected entry points, is a positive sign. However, a minor concern exists with the 6 external HTTP requests, which could potentially be a vector for server-side request forgery (SSRF) or man-in-the-middle attacks if not handled with proper validation and sanitization, though no specific vulnerabilities were flagged in the taint analysis. The lack of taint analysis results, while not explicitly indicating a problem, means that deeper, more complex vulnerabilities might not have been detected.

Key Concerns

  • External HTTP requests without explicit validation
Vulnerabilities
None known

Cresta Social Share Counter Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Cresta Social Share Counter Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
10
112 escaped
Nonce Checks
1
Capability Checks
2
File Operations
0
External Requests
6
Bundled Libraries
0

Output Escaping

92% escaped122 total outputs
Attack Surface

Cresta Social Share Counter Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[cresta-social-share] cresta-social-share-counter.php:19
WordPress Hooks 11
actionadd_meta_boxescresta-metabox.php:23
actionsave_postcresta-metabox.php:60
actionadmin_menucresta-social-share-counter.php:16
actionwp_enqueue_scriptscresta-social-share-counter.php:17
filterthe_contentcresta-social-share-counter.php:18
actionadmin_enqueue_scriptscresta-social-share-counter.php:20
actionwp_headcresta-social-share-counter.php:21
filterplugin_row_metacresta-social-share-counter.php:23
filterinitcresta-social-share-counter.php:35
actionadmin_initcresta-social-share-counter.php:250
actionwp_footercresta-social-share-counter.php:586
Maintenance & Trust

Cresta Social Share Counter Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 21, 2026
PHP min version
Downloads378K

Community Trust

Rating96/100
Number of ratings55
Active installs2K
Developer Profile

Cresta Social Share Counter Developer Profile

CrestaProject

25 plugins · 22K total installs

86
trust score
Avg Security Score
97/100
Avg Patch Time
36 days
View full developer profile
Detection Fingerprints

How We Detect Cresta Social Share Counter

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/cresta-social-share-counter/css/cresta-admin-css.min.css/wp-content/plugins/cresta-social-share-counter/css/csscfont.min.css/wp-content/plugins/cresta-social-share-counter/css/cresta-wp-css.min.css/wp-content/plugins/cresta-social-share-counter/js/jquery.cresta-social-share-counter-both.min.js/wp-content/plugins/cresta-social-share-counter/js/jquery.cresta-social-share-counter.min.js/wp-content/plugins/cresta-social-share-counter/js/jquery.cresta-social-effect.min.js
Script Paths
//fonts.googleapis.com/css
Version Parameters
cresta-social-share-counter/css/cresta-admin-css.min.css?ver=cresta-social-share-counter/css/csscfont.min.css?ver=cresta-social-share-counter/css/cresta-wp-css.min.css?ver=cresta-social-share-counter/js/jquery.cresta-social-share-counter-both.min.js?ver=cresta-social-share-counter/js/jquery.cresta-social-share-counter.min.js?ver=cresta-social-share-counter/js/jquery.cresta-social-effect.min.js?ver=

HTML / DOM Fingerprints

CSS Classes
cresta-social-share-buttons
HTML Comments
<!-- CRESTA SOCIAL SHARE COUNTER FREE -->
Data Attributes
data-urldata-title
JS Globals
crestaShareSSScrestaPermalink
Shortcode Output
[cresta-social-share]
FAQ

Frequently Asked Questions about Cresta Social Share Counter