
Social Viral Downloader Security & Risk Analysis
wordpress.org/plugins/fb-viral-downloaderThis is a "Share to Download" plugin, and works for Facebook, Google+ and Twitter.
Is Social Viral Downloader Safe to Use in 2026?
Generally Safe
Score 100/100Social Viral Downloader has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "fb-viral-downloader" v2.0.3 plugin exhibits a concerning security posture due to a significant number of unprotected AJAX handlers. While the static analysis shows no dangerous functions, external HTTP requests, or raw SQL queries, the lack of authentication checks on 11 out of 11 AJAX entry points presents a substantial risk. The taint analysis, although limited in scope (3 flows), did identify flows with unsanitized paths, which is a critical indicator of potential vulnerabilities. The fact that these were not classified as critical or high severity in the taint analysis might be due to the limited number of flows analyzed or the specific nature of the sanitization, but it remains a point of concern. The plugin's vulnerability history is clean, with no recorded CVEs. This could indicate good development practices, or it could simply mean that vulnerabilities have not yet been discovered or publicly disclosed. In conclusion, while the plugin avoids several common pitfalls like raw SQL and outdated libraries, the extensive unprotected AJAX endpoints and the presence of unsanitized paths in the taint analysis are significant weaknesses that require immediate attention.
Key Concerns
- Unprotected AJAX handlers
- Unsanitized paths in taint flows
- Low percentage of properly escaped output
- No nonce checks on AJAX handlers
- No capability checks on AJAX handlers
Social Viral Downloader Security Vulnerabilities
Social Viral Downloader Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Social Viral Downloader Attack Surface
AJAX Handlers 11
Shortcodes 1
WordPress Hooks 22
Maintenance & Trust
Social Viral Downloader Maintenance & Trust
Maintenance Signals
Community Trust
Social Viral Downloader Alternatives
Nextend Social Login and Register
nextend-facebook-connect
One click registration & login plugin for Facebook, Google, X (formerly Twitter) and more. Quick setup and easy configuration.
Social Media Widget
social-media-widget
Adds links to all of your social media and sharing site profiles. Tons of icons come in 3 sizes, 4 icon styles, and 4 animations.
miniOrange Social Login and Register (Discord, Google, Twitter, LinkedIn)
miniorange-login-openid
Social Login with Discord, Facebook, Google, Twitter, LinkedIn and 40+ apps. Social login with social share and comments. Free, fast & easy! WooCo …
Tagembed: Embed Twitter Feed, Google Reviews, YouTube Videos, TikTok, RSS Feed & More Social Media Feeds
tagembed-widget
Collect & Embed Instagram Feed, Embed Facebook Feed, Embed YouTube Videos, Embed Twitter Feed, Google Reviews & 15+ Social Media Feed on website.
Optimize Social Share
heateor-open-graph-meta-tags
Optimizes social share by inserting Facebook Open Graph Meta Tags, General Meta Tags, Schema.org Meta Tags, Twitter Cards and Other Meta Tags in HTML …
Social Viral Downloader Developer Profile
4 plugins · 830 total installs
How We Detect Social Viral Downloader
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/fb-viral-downloader/assets/admin/css/admin.css/wp-content/plugins/fb-viral-downloader/assets/admin/js/admin.js/wp-content/plugins/fb-viral-downloader/assets/admin/js/fileupload.js/wp-content/plugins/fb-viral-downloader/assets/admin/js/insert.js/wp-content/plugins/fb-viral-downloader/assets/admin/css/insert.css/wp-content/plugins/fb-viral-downloader/assets/frontend/js/script.js/wp-content/plugins/fb-viral-downloader/assets/frontend/css/frontend.css/wp-content/plugins/fb-viral-downloader/assets/admin/js/editor_plugin.js+1 morehttp://maxcdn.bootstrapcdn.com/font-awesome/4.4.0/css/font-awesome.min.csshttp://maxcdn.bootstrapcdn.com/bootstrap/3.2.0/css/bootstrap.min.csshttp://cdn.datatables.net/1.10.2/css/jquery.dataTables.min.csshttp://cdn.datatables.net/1.10.2/js/jquery.dataTables.min.jshttp://maxcdn.bootstrapcdn.com/bootstrap/3.2.0/js/bootstrap.min.jshttp://dualcube.com/wp-content/plugins/fb-viral-downloader/assets/admin/css/admin.css?ver=/wp-content/plugins/fb-viral-downloader/assets/admin/js/admin.js?ver=/wp-content/plugins/fb-viral-downloader/assets/admin/js/fileupload.js?ver=/wp-content/plugins/fb-viral-downloader/assets/admin/js/insert.js?ver=/wp-content/plugins/fb-viral-downloader/assets/admin/css/insert.css?ver=/wp-content/plugins/fb-viral-downloader/assets/frontend/js/script.js?ver=/wp-content/plugins/fb-viral-downloader/assets/frontend/css/frontend.css?ver=/wp-content/plugins/fb-viral-downloader/assets/admin/js/editor_plugin.js?ver=/wp-content/plugins/fb-viral-downloader/assets/admin/js/editor_plugin_4.js?ver=HTML / DOM Fingerprints
dc_admin_footervd_buttonviraldownloader_data