Jamie Social Icons Security & Risk Analysis
wordpress.org/plugins/jamie-social-iconsShare your posts & pages with your favourite social sites - Twitter, Facebook, Google Plus, Pinterest And LinkedIn and now trackable with your Goo …
Is Jamie Social Icons Safe to Use in 2026?
Generally Safe
Score 85/100Jamie Social Icons has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The jamie-social-icons plugin version 0.9.8.3 presents a mixed security posture. On the positive side, there are no known historical vulnerabilities (CVEs) associated with this plugin, and the static analysis indicates a lack of dangerous functions, file operations, and external HTTP requests. All SQL queries are also properly prepared. However, a significant concern arises from the output escaping. With 15 total outputs and 0% properly escaped, this indicates a high risk of cross-site scripting (XSS) vulnerabilities. Any user-supplied data that is displayed to other users without proper sanitization or escaping can be exploited by attackers.
The plugin has a small attack surface with only one shortcode as an entry point, and crucially, no unprotected entry points were identified in the static analysis. The presence of two capability checks suggests some level of access control is implemented. However, the complete absence of nonce checks is a notable weakness, especially for any functionality that might involve user interaction or data modification, as it leaves the plugin susceptible to cross-site request forgery (CSRF) attacks if such interactions were to occur.
In conclusion, while the plugin benefits from a clean vulnerability history and good practices in SQL handling and attack surface management, the critical lack of output escaping and the absence of nonce checks are significant security flaws. These issues create a considerable risk of XSS and potentially CSRF vulnerabilities, which could be exploited by attackers to compromise user sessions or inject malicious content. The plugin would require immediate attention to address these unescaped outputs.
Key Concerns
- No output escaping
- Missing nonce checks
Jamie Social Icons Security Vulnerabilities
Jamie Social Icons Code Analysis
Output Escaping
Jamie Social Icons Attack Surface
Shortcodes 1
WordPress Hooks 19
Maintenance & Trust
Jamie Social Icons Maintenance & Trust
Maintenance Signals
Community Trust
Jamie Social Icons Alternatives
Custom Share Buttons with Floating Sidebar
custom-share-buttons-with-floating-sidebar
Share buttons with extra features to sharing your website posts/pages on Facebook, Twitter, Instagram, Whatsapp, Pinterest etc.
Social Media Social Share Icon
add-social-share
Social Media Share Icons to increase social traffic and popularity. Social sharing to Facebook , Twitter, Pinterest,LinkedIn and Google Plus social me …
Social Share Buttons
social-share-floating-icons
Social Share is fully loaded with social media options, allows you to add Social buttons on your WordPress site to share your content on the web with …
ShareMe Simple Social Share Plugin
shareme
ShareMe is a lightweight and powerful social sharing plugin that helps you grow your social presence and increase shares.
CSS Share Buttons
css-share-buttons
Facebook, Twitter, Google Plus and LinkedIn Share buttons. Super Fast Loading, No Javascript, Only CSS. Responsive Design, Floting Sidebar Option
Jamie Social Icons Developer Profile
2 plugins · 210 total installs
How We Detect Jamie Social Icons
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/jamie-social-icons/css/social.css/wp-content/plugins/jamie-social-icons/js/googletracking.js/wp-content/plugins/jamie-social-icons/js/head_twitterlinkedin.js/wp-content/plugins/jamie-social-icons/js/social.jshttp://connect.facebook.net/.*/all.js#xfbml=1http://platform.linkedin.com/in.jshttp://assets.pinterest.com/js/pinit.jshttp://connect.facebook.net/.*/all.js#xfbml=1HTML / DOM Fingerprints
martiniboy_social_listjamie_socialmartinileftmartinicentermartinirightmartinifbpinpin-it-button+2 more<![if !lte IE 7]><!--><!--<![endif]--><!--[if lte IE 8]><!--<![endif]-->+4 moredata-countdata-urldata-textdata-counterdata-onsuccessproperty="fb:admins"+2 morerun_pinmarkletLinkedInShare<span class="martiniboy_social_list"><ul class="jamie_social<li class="martinifb"><fb:like