
flodjiShare Security & Risk Analysis
wordpress.org/plugins/flodjishareJust install flodjiShare to enable Social Sharing on your Wordpress site.
Is flodjiShare Safe to Use in 2026?
Generally Safe
Score 85/100flodjiShare has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "flodjishare" v5.2 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of known CVEs, dangerous functions, raw SQL queries, and external HTTP requests is highly commendable. The plugin also demonstrates good practices in handling output, with 91% of outputs being properly escaped, and it implements a capability check for its single entry point. The fact that there are no unpatched vulnerabilities and no recorded past vulnerabilities further reinforces this positive outlook.
However, a few areas warrant attention. The taint analysis revealed one flow with unsanitized paths. While classified as not critical or high, unsanitized paths can sometimes lead to subtle but exploitable vulnerabilities, particularly if the data originates from user input. Furthermore, the plugin has zero nonce checks. For any entry point that might process user-supplied data, especially AJAX or REST API endpoints (though none are present here), the absence of nonce checks can expose the plugin to Cross-Site Request Forgery (CSRF) attacks. The single shortcode, which represents the entire attack surface, is the sole entry point and does not appear to have explicit nonce checks, which is a potential weakness.
In conclusion, "flodjishare" v5.2 has a solid foundation with many security best practices implemented. The most significant concern is the unsanitized path flow in the taint analysis and the lack of nonce checks, which could be exploited under specific circumstances. The vulnerability history is excellent, suggesting a mature and well-maintained codebase. Addressing the unsanitized path and considering nonce checks for its shortcode would further enhance its security.
Key Concerns
- Taint flow with unsanitized path
- Missing nonce checks on entry points
flodjiShare Security Vulnerabilities
flodjiShare Code Analysis
Output Escaping
Data Flow Analysis
flodjiShare Attack Surface
Shortcodes 1
WordPress Hooks 15
Maintenance & Trust
flodjiShare Maintenance & Trust
Maintenance Signals
Community Trust
flodjiShare Alternatives
fShare
fshare
Just install fShare to enable Social Sharing on your Wordpress site.
Seed Social
seed-social
Minimal Social Sharing WordPress Plugin (Just Facebook, Twitter and Line)
Custom Share Buttons with Floating Sidebar
custom-share-buttons-with-floating-sidebar
Share buttons with extra features to sharing your website posts/pages on Facebook, Twitter, Instagram, Whatsapp, Pinterest etc.
Spice Social Share
spice-social-share
Effortlessly add social share buttons to your posts.
Social Share Buttons
share-button
Our Share Button addon to MaxButtons and MaxButtons Pro plugins gets you up and sharing within minutes. It's easy to setup and offers flexibility …
flodjiShare Developer Profile
5 plugins · 50 total installs
How We Detect flodjiShare
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/flodjishare/js/flodjishare.js/wp-content/plugins/flodjishare/css/flodjishare.css/wp-content/plugins/flodjishare/js/flodjishare.jsflodjishare/style.css?ver=flodjishare/js/flodjishare.js?ver=HTML / DOM Fingerprints
fsmainfsbtncenterfsbtnfloatfsbarflatmixfsspanflatmixfsbasefscounter+28 moredata-fssocialdata-fsactivedata-fssizedata-fscolordata-fscountdata-fslink+3 morewindow.popup<div class="fsmain<p style="font-size:<a class="fsfb<a class="fsfl