
Like to Unlock lite Security & Risk Analysis
wordpress.org/plugins/jcwp-like-to-unlock-liteThis plugin gives you control to initially hide part of your article from user. Content is displayed correctly once user Facebook Like or +1 your page
Is Like to Unlock lite Safe to Use in 2026?
Generally Safe
Score 85/100Like to Unlock lite has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "jcwp-like-to-unlock-lite" v1.1 plugin exhibits a mixed security posture. On one hand, the lack of identified CVEs and a clean vulnerability history are positive indicators, suggesting a generally secure development approach and diligent maintenance. The absence of dangerous functions, file operations, external requests, and the use of prepared statements for all SQL queries are strong security practices.
However, significant concerns arise from the static analysis. The most critical weakness is that 100% of the identified output operations are not properly escaped. This presents a substantial risk of Cross-Site Scripting (XSS) vulnerabilities, where malicious scripts could be injected and executed in the context of the user's browser. Furthermore, the complete absence of nonce and capability checks, even with zero identified entry points, is a notable oversight. While there are no current entry points, if any were to be introduced in future updates, they would likely be unprotected, leaving the plugin vulnerable to unauthorized actions or privilege escalation.
In conclusion, while the plugin benefits from a lack of historical vulnerabilities and good practices in data handling, the critical flaw of unescaped output and the complete absence of access control mechanisms are serious security concerns that significantly outweigh the positive aspects. This plugin requires immediate attention to address the output escaping issue and implement proper access control checks for any future development.
Key Concerns
- Unescaped output detected
- No nonce checks present
- No capability checks present
Like to Unlock lite Security Vulnerabilities
Like to Unlock lite Release Timeline
Like to Unlock lite Code Analysis
Output Escaping
Like to Unlock lite Attack Surface
WordPress Hooks 5
Maintenance & Trust
Like to Unlock lite Maintenance & Trust
Maintenance Signals
Community Trust
Like to Unlock lite Alternatives
Google Plus One Bottom
google-plus-one-bottom
Promotion your pr in google +1 with the google plus one bottom plugin. With google plus one bottom, your users can promote your content by sharing goo …
Google Plusone(+1) Button
googleplusone-button
Author Site|
WP PlusOne This
wp-plusone-this
The WP PlusOne This plugin, automatically adds the Google Plus One ( +1 ) Button to your WordPress posts and pages.
Mongoose Page Plugin
facebook-page-feed-graph-api
The most popular way to display the Facebook Page Plugin on your WordPress website. Easy implementation using a shortcode or widget.
Show-Hide / Collapse-Expand
show-hidecollapse-expand
Save space on your pages, posts, sidebars. Hide the content before user clicks to see it. Collapse long lists, create FAQs & more.
Like to Unlock lite Developer Profile
9 plugins · 590 total installs
How We Detect Like to Unlock lite
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/jcwp-like-to-unlock-lite/application.jsapplication.jsjcwp-like-to-unlock-lite/application.js?ver=1.1HTML / DOM Fingerprints
jcwp-like-to-unlockdata-hrefdata-app-iddata-show-facesdata-layoutdata-widthdata-font+1 morejcorg_ltugpcbjcorgltu_cnv<div class='jcwp-like-to-unlock'><p>