
Grid Social Boxes Security & Risk Analysis
wordpress.org/plugins/grid-social-boxesAdditional boxes for Grid Plugin
Is Grid Social Boxes Safe to Use in 2026?
Generally Safe
Score 85/100Grid Social Boxes has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "grid-social-boxes" plugin v1.6.2 demonstrates several positive security practices, including the absence of known CVEs and a commitment to using prepared statements for SQL queries. The static analysis also indicates a low attack surface, with no identified AJAX handlers, REST API routes, shortcodes, or cron events that are directly exposed without authentication or permission checks. However, there are significant areas for concern. The plugin exhibits a very low rate of output escaping (12%), suggesting a high likelihood of cross-site scripting (XSS) vulnerabilities. Furthermore, the presence of unsanitized paths in taint analysis, even if not classified as critical or high severity, points to potential file inclusion or manipulation risks. The plugin also performs file operations and external HTTP requests, which, without proper validation or sanitization, could be leveraged for malicious purposes. The lack of nonce checks on any entry points and a limited number of capability checks (3) also indicate potential weaknesses in authorization and session management.
Key Concerns
- Low output escaping rate
- Unsanitized paths in taint analysis
- File operations without clear context
- External HTTP requests without clear context
- Lack of nonce checks
- Limited capability checks
Grid Social Boxes Security Vulnerabilities
Grid Social Boxes Code Analysis
Bundled Libraries
Output Escaping
Data Flow Analysis
Grid Social Boxes Attack Surface
WordPress Hooks 14
Maintenance & Trust
Grid Social Boxes Maintenance & Trust
Maintenance Signals
Community Trust
Grid Social Boxes Alternatives
Grid
grid
Grid is a containerist landingpage editor.
Post and Page Builder by BoldGrid – Visual Drag and Drop Editor
post-and-page-builder
Post and Page Builder is a standalone plugin which adds functionality to the existing TinyMCE Editor.
WP Table Tag Gen
wp-table-tag-gen
This plugin generates table tags with simple operations.
Admin Posts Navigation
admin-posts-navigation
Navigate between posts and pages without returning to the post list. Works with Classic Editor, Gutenberg, and all Custom Post Types.
Admin Setting
admin-setting
With Admin Setting you can easily customize the WordPress admin menu and toolbar and customize the admin and login interfaces Admin Setting provides a …
Grid Social Boxes Developer Profile
22 plugins · 2K total installs
How We Detect Grid Social Boxes
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/grid-social-boxes/public-functions.php/wp-content/plugins/grid-social-boxes/grid/grid_fb_like_box_box.php/wp-content/plugins/grid-social-boxes/grid/grid_facebook_feed_box.php/wp-content/plugins/grid-social-boxes/grid/grid_social_timeline_box.php/wp-content/plugins/grid-social-boxes/grid/grid_youtube_feed_box.php/wp-content/plugins/grid-social-boxes/grid/grid_youtube_box.php/wp-content/plugins/grid-social-boxes/grid/grid_instagram_box.php/wp-content/plugins/grid-social-boxes/grid/grid_wp_twitterboxes.php+2 moreHTML / DOM Fingerprints
grid-social-boxes-facebookgrid-social-boxes-twittergrid-social-boxes-youtubegrid-social-boxes-instagramgrid_social_boxes_facebook_js_args