
Social Pin & Media Showcase Security & Risk Analysis
wordpress.org/plugins/dynamic-pin-it-button-on-image-hoverAdds a Pinterest “Save” button on images in posts, categories, and archives, plus TikTok, Instagram, and YouTube Elementor widgets.
Is Social Pin & Media Showcase Safe to Use in 2026?
Generally Safe
Score 100/100Social Pin & Media Showcase has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "dynamic-pin-it-button-on-image-hover" v1.1.5 demonstrates a generally strong security posture based on the provided static analysis. The absence of known vulnerabilities in its history and the complete lack of critical or high-severity taint analysis flows are significant positive indicators. All SQL queries are properly prepared, and there are no file operations, reducing common attack vectors.
However, there are areas that warrant attention. The analysis reveals that only 72% of output is properly escaped, indicating a potential for Cross-Site Scripting (XSS) vulnerabilities in the remaining 28%. Furthermore, the complete absence of nonce checks across all entry points (AJAX, REST API, shortcodes, cron events) is a notable concern, as it bypasses a fundamental WordPress security mechanism for verifying user intent. While there's a single capability check, its scope and effectiveness are not detailed, and the overall attack surface is stated as zero, which is unusual and might suggest an incomplete analysis or a very simple plugin.
In conclusion, while the plugin benefits from a clean vulnerability history and secure SQL practices, the potential for unescaped output and the complete lack of nonce checks present tangible risks that should be addressed to improve its overall security. The absence of identified entry points needs further investigation as it's an anomaly.
Key Concerns
- Output escaping not fully implemented
- Missing nonce checks on entry points
Social Pin & Media Showcase Security Vulnerabilities
Social Pin & Media Showcase Code Analysis
SQL Query Safety
Output Escaping
Social Pin & Media Showcase Attack Surface
WordPress Hooks 11
Maintenance & Trust
Social Pin & Media Showcase Maintenance & Trust
Maintenance Signals
Community Trust
Social Pin & Media Showcase Alternatives
Weblizar Pin It Button On Image Hover And Post
pinterest-pin-it-button-on-image-hover-and-post
Pin Your Images With weblizar pin it button on image hover and post.
Simple Pin It Button
simple-pin-it-button
Adds a "Pin it" button over images on hover with customizable options.
Simple Pin It Button for Pinterest
simple-pin-it-for-pinterest
Add a customizable Pinterest "Pin It" or "Save It" button to images in your posts.
Pinterest for WooCommerce
pinterest-for-woocommerce
Get your products in front of Pinterest users searching for ideas and things to buy. Connect your WooCommerce store to make your catalog browsable.
Professional Social Sharing Buttons, Icons & Related Posts – Shareaholic
shareaholic
Boost Audience Engagement with Award Winning Speed Optimized Social Tools: Share Buttons, Related Posts, Monetization & Google Analytics.
Social Pin & Media Showcase Developer Profile
10 plugins · 1K total installs
How We Detect Social Pin & Media Showcase
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/dynamic-pin-it-button-on-image-hover/assets/css/style.css/wp-content/plugins/dynamic-pin-it-button-on-image-hover/assets/js/script.js/wp-content/plugins/dynamic-pin-it-button-on-image-hover/assets/js/script.jsdynamic-pin-it-button-on-image-hover/assets/css/style.css?ver=dynamic-pin-it-button-on-image-hover/assets/js/script.js?ver=HTML / DOM Fingerprints
dwl-pin-it-buttondata-dynamic-pin-it-iddwlPinItButton