
Dimbal Social Popup Security & Risk Analysis
wordpress.org/plugins/dimbal-social-popupAdd this plugin to show a Social Sharing Popup for your posts
Is Dimbal Social Popup Safe to Use in 2026?
Generally Safe
Score 85/100Dimbal Social Popup has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "dimbal-social-popup" v1.2.0 plugin exhibits a generally strong security posture based on the provided static analysis. There are no identified AJAX handlers, REST API routes, shortcodes, or cron events, which significantly limits the plugin's attack surface. Furthermore, the code signals indicate the absence of dangerous functions, raw SQL queries, and file operations. The plugin also benefits from the lack of known vulnerabilities (CVEs) and a clean vulnerability history, suggesting a history of stable and secure development.
However, a significant concern arises from the output escaping analysis, where 100% of the 14 identified outputs are not properly escaped. This presents a considerable risk of Cross-Site Scripting (XSS) vulnerabilities, allowing attackers to inject malicious scripts into the website. While the plugin appears robust in other areas, this lack of output sanitization is a critical weakness that needs immediate attention. The sole capability check offers some level of access control, but the pervasive unescaped output overshadows this positive aspect.
Key Concerns
- All outputs are unescaped
Dimbal Social Popup Security Vulnerabilities
Dimbal Social Popup Code Analysis
Output Escaping
Dimbal Social Popup Attack Surface
WordPress Hooks 2
Maintenance & Trust
Dimbal Social Popup Maintenance & Trust
Maintenance Signals
Community Trust
Dimbal Social Popup Alternatives
Social Icons Widget & Block – Social Media Icons & Share Buttons
social-icons-widget-by-wpzoom
Social media icons plugin for WordPress - Add 400+ social icons and share buttons. Gutenberg block, widget & Elementor support. GDPR compliant.
Buttonizer – Floating Menus, Sticky Buttons, & Popup Builder
buttonizer-multifunctional-button
Floating Menus, Sticky Buttons, & Popup builder. WhatsApp Chat, Facebook Messenger, Telegram, Live Chat, Call, SMS, Email & more.
Ocean Social Sharing
ocean-social-sharing
Website: https://oceanwp.org/ Support: https://oceanwp.org/support/ Documentation: https://docs.oceanwp.org/ Extensions: https://oceanwp.
Jetpack Social
jetpack-social
Write once, publish everywhere. Reach your target audience by sharing your content with Jetpack Social!
Hubbub Lite – Fast, free social sharing and follow buttons
social-pug
Your content is worth sharing. Let's makes it easier!
Dimbal Social Popup Developer Profile
5 plugins · 40 total installs
How We Detect Dimbal Social Popup
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/dimbal-social-popup/dimbal_popup.css/wp-content/plugins/dimbal-social-popup/dimbal_popup.js/wp-content/plugins/dimbal-social-popup/cancel.png/wp-content/plugins/dimbal-social-popup/dimbal_popup.jsdimbal_popup.css?ver=dimbal_popup.js?ver=HTML / DOM Fingerprints
dimbal_popup_wrapperdimbal_popup_containerdimbal_popup_close_icondimbal_popup_content_wrapperdimbal_popup_content_leftdimbal_popup_content_rightdimbal_popup_content_titledp_creditdp_cooldown_minutesdp_initial_delaydp_fade_in_delaydp_fade_out_delaydimbal_popup_close