Jamie Social Icons Security & Risk Analysis

wordpress.org/plugins/jamie-social-icons

Share your posts & pages with your favourite social sites - Twitter, Facebook, Google Plus, Pinterest And LinkedIn and now trackable with your Goo …

200 active installs v0.9.8.3 PHP + WP 3.1+ Updated Apr 2, 2013
facebookgoogle-pluslinkedinsocial-sharetwitter
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Jamie Social Icons Safe to Use in 2026?

Generally Safe

Score 85/100

Jamie Social Icons has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 13yr ago
Risk Assessment

The jamie-social-icons plugin version 0.9.8.3 presents a mixed security posture. On the positive side, there are no known historical vulnerabilities (CVEs) associated with this plugin, and the static analysis indicates a lack of dangerous functions, file operations, and external HTTP requests. All SQL queries are also properly prepared. However, a significant concern arises from the output escaping. With 15 total outputs and 0% properly escaped, this indicates a high risk of cross-site scripting (XSS) vulnerabilities. Any user-supplied data that is displayed to other users without proper sanitization or escaping can be exploited by attackers.

The plugin has a small attack surface with only one shortcode as an entry point, and crucially, no unprotected entry points were identified in the static analysis. The presence of two capability checks suggests some level of access control is implemented. However, the complete absence of nonce checks is a notable weakness, especially for any functionality that might involve user interaction or data modification, as it leaves the plugin susceptible to cross-site request forgery (CSRF) attacks if such interactions were to occur.

In conclusion, while the plugin benefits from a clean vulnerability history and good practices in SQL handling and attack surface management, the critical lack of output escaping and the absence of nonce checks are significant security flaws. These issues create a considerable risk of XSS and potentially CSRF vulnerabilities, which could be exploited by attackers to compromise user sessions or inject malicious content. The plugin would require immediate attention to address these unescaped outputs.

Key Concerns

  • No output escaping
  • Missing nonce checks
Vulnerabilities
None known

Jamie Social Icons Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Jamie Social Icons Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
15
0 escaped
Nonce Checks
0
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped15 total outputs
Attack Surface

Jamie Social Icons Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[jamiesocial] jamie-social_icons.php:96
WordPress Hooks 19
filterthe_contentinc\showpage.php:11
filterthe_contentinc\showpage.php:22
filterthe_contentinc\showpage.php:33
filterthe_contentinc\showpost.php:11
filterthe_contentinc\showpost.php:23
filterthe_contentinc\showpost.php:34
actioninitinc\wysiwyg_button.php:2
filtermce_external_pluginsinc\wysiwyg_button.php:7
filtermce_buttonsinc\wysiwyg_button.php:8
filterplugin_action_linksjamie-social_icons.php:39
actionadmin_head jamie-social_icons.php:101
actionwp_enqueue_scriptsjamie-social_icons.php:102
actionwp_enqueue_scriptsjamie-social_icons.php:183
actionadmin_enqueue_scriptsjamie-social_icons.php:184
actionwp_footerjamie-social_icons.php:185
actionadmin_footerjamie-social_icons.php:186
actionadmin_initsocial-admin.php:2
actionadmin_menusocial-admin.php:3
actionadmin_headsocial-admin.php:19
Maintenance & Trust

Jamie Social Icons Maintenance & Trust

Maintenance Signals

WordPress version tested3.5.2
Last updatedApr 2, 2013
PHP min version
Downloads38K

Community Trust

Rating88/100
Number of ratings7
Active installs200
Developer Profile

Jamie Social Icons Developer Profile

martiniboy

2 plugins · 210 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Jamie Social Icons

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/jamie-social-icons/css/social.css/wp-content/plugins/jamie-social-icons/js/googletracking.js/wp-content/plugins/jamie-social-icons/js/head_twitterlinkedin.js/wp-content/plugins/jamie-social-icons/js/social.js
Script Paths
http://connect.facebook.net/.*/all.js#xfbml=1http://platform.linkedin.com/in.jshttp://assets.pinterest.com/js/pinit.jshttp://connect.facebook.net/.*/all.js#xfbml=1

HTML / DOM Fingerprints

CSS Classes
martiniboy_social_listjamie_socialmartinileftmartinicentermartinirightmartinifbpinpin-it-button+2 more
HTML Comments
<![if !lte IE 7]><!--><!--<![endif]--><!--[if lte IE 8]><!--<![endif]-->+4 more
Data Attributes
data-countdata-urldata-textdata-counterdata-onsuccessproperty="fb:admins"+2 more
JS Globals
run_pinmarkletLinkedInShare
Shortcode Output
<span class="martiniboy_social_list"><ul class="jamie_social<li class="martinifb"><fb:like
FAQ

Frequently Asked Questions about Jamie Social Icons