IAF Social Share Security & Risk Analysis

wordpress.org/plugins/iaf-social-share

Share your content on several social media networks.

10 active installs v1.2.1 PHP 5.2.4+ WP 4.4+ Updated Jul 2, 2021
facebooksharesocial-mediatwitterwhatsapp
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is IAF Social Share Safe to Use in 2026?

Generally Safe

Score 85/100

IAF Social Share has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4yr ago
Risk Assessment

The iaf-social-share plugin version 1.2.1 exhibits a generally strong security posture based on the static analysis. The absence of dangerous functions, SQL queries executed without prepared statements, and no identified taint flows suggest robust coding practices. Furthermore, the plugin demonstrates good security hygiene by implementing nonce and capability checks, and properly escaping a high percentage (77%) of its output. The plugin also has no recorded vulnerabilities (CVEs), which is a significant positive indicator. The primary area of potential concern lies within the file operations, as the static analysis does not provide details on how these operations are handled. Without further context, it's difficult to assess the risk associated with these two file operations. However, given the overall clean analysis and lack of historical vulnerabilities, the plugin appears to be well-maintained and secure. The limited attack surface and minimal entry points further contribute to its low risk profile.

Key Concerns

  • Potential risk in file operations without detailed analysis
  • Some output is not properly escaped
Vulnerabilities
None known

IAF Social Share Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

IAF Social Share Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
10
33 escaped
Nonce Checks
1
Capability Checks
1
File Operations
2
External Requests
0
Bundled Libraries
0

Output Escaping

77% escaped43 total outputs
Attack Surface

IAF Social Share Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[iaf-share-buttons] iaf-social-share.php:36
WordPress Hooks 7
actionwp_enqueue_scriptsiaf-social-share.php:27
actionadmin_enqueue_scriptsiaf-social-share.php:28
actionwp_headiaf-social-share.php:29
actionadmin_menuiaf-social-share.php:30
filterthe_contentiaf-social-share.php:31
actionadmin_post_iaf_save_optionsiaf-social-share.php:32
actionplugins_loadediaf-social-share.php:33
Maintenance & Trust

IAF Social Share Maintenance & Trust

Maintenance Signals

WordPress version tested5.7.15
Last updatedJul 2, 2021
PHP min version5.2.4
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

IAF Social Share Developer Profile

Fotso Fonkam

4 plugins · 20 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect IAF Social Share

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/iaf-social-share/assets/css/style.css/wp-content/plugins/iaf-social-share/assets/css/style-default.css/wp-content/plugins/iaf-social-share/assets/css/style-light.css/wp-content/plugins/iaf-social-share/assets/css/style-dark.css/wp-content/plugins/iaf-social-share/assets/css/style-custom.css/wp-content/plugins/iaf-social-share/assets/css/admin-style.css/wp-content/plugins/iaf-social-share/assets/font-awesome/css/all.css/wp-content/plugins/iaf-social-share/assets/js/socialSharePopup.js+2 more
Script Paths
https://fonts.googleapis.com/css2?family=Roboto&display=swaphttps://kit.fontawesome.com/5d7ba09a50.jshttps://connect.facebook.net/en_US/sdk.js#xfbml=1&version=v3.0https://platform.twitter.com/widgets.js

HTML / DOM Fingerprints

CSS Classes
iaf-social-share-wrapiaf-textiaf-icon
HTML Comments
Opengraph tags inserted by IAF Social ShareLoad Facebook SDK for JavaScriptLoad Twitter JavaScript
Data Attributes
data-contentdata-url
JS Globals
FBtwttr
Shortcode Output
[iaf-share-buttons]
FAQ

Frequently Asked Questions about IAF Social Share