
KN Mobile ShareBar Security & Risk Analysis
wordpress.org/plugins/kn-mobile-sharebarDisplays a floating share bar with custom shared text on Facebook, Twitter and WhatsApp at bottom or top of your website via mobile.
Is KN Mobile ShareBar Safe to Use in 2026?
Generally Safe
Score 85/100KN Mobile ShareBar has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin 'kn-mobile-sharebar' v1.1.2 presents a mixed security posture. On the positive side, the plugin exhibits strong practices regarding SQL queries, utilizing prepared statements exclusively. It also shows no history of known vulnerabilities (CVEs), indicating a potentially stable and well-maintained codebase in the past. Furthermore, the static analysis did not reveal any critical or high-severity taint flows, dangerous functions, or file operations, and there are no external HTTP requests, which reduces potential attack vectors.
However, significant concerns arise from the lack of output escaping and the absence of nonce and capability checks. The fact that 0% of the 8 total outputs are properly escaped is a critical weakness, making the plugin highly susceptible to Cross-Site Scripting (XSS) vulnerabilities. Any dynamic content rendered by the plugin could be injected with malicious scripts. Additionally, the complete absence of nonce and capability checks on its entry points (shortcodes in this case) means that any user, regardless of their role or permissions, could potentially trigger actions or manipulate the plugin's behavior if those shortcodes allow for any form of interaction beyond simple display. The lack of taint analysis data for flows is also a minor concern, as it implies either no flows were found or the analysis couldn't be performed, leaving a blind spot.
In conclusion, while the plugin avoids common pitfalls like unpatched CVEs and raw SQL queries, the severe lack of output escaping and the absence of essential security checks like nonces and capability checks create substantial risks, primarily related to XSS and potential unauthorized actions. These weaknesses need to be addressed urgently to improve the plugin's security.
Key Concerns
- Output escaping: 0% properly escaped
- Nonce checks: 0
- Capability checks: 0
- Taint analysis: 0 flows analyzed
KN Mobile ShareBar Security Vulnerabilities
KN Mobile ShareBar Code Analysis
Output Escaping
KN Mobile ShareBar Attack Surface
Shortcodes 2
WordPress Hooks 7
Maintenance & Trust
KN Mobile ShareBar Maintenance & Trust
Maintenance Signals
Community Trust
KN Mobile ShareBar Alternatives
Spice Social Share
spice-social-share
Effortlessly add social share buttons to your posts.
Custom Socials Share
custom-socials-share
Custom Social Share buttons for your Custom blockquotes tags are including sharing button, Facebook, whatsapp, and telegran and copy to clipboard..
IAF Social Share
iaf-social-share
Share your content on several social media networks.
Kehittämö Share Buttons
kehittamo-share-buttons
Add Facebook, Twitter & Whatsapp (in mobile size) share buttons to posts.
Simple Social Bar
simple-social-bar
A simple, easy to use, easy to configure social share bar that follows you down the page for sharing your posts.
KN Mobile ShareBar Developer Profile
4 plugins · 300 total installs
How We Detect KN Mobile ShareBar
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/kn-mobile-sharebar/css/mobile_sharebar.cssHTML / DOM Fingerprints
knfbkntwknwsshare-iconid="mobile-share-boxid="horizontal-listclass="hyperlink"id="mobile-sharebar-footername="kn_mobile_sharebar_twitter"id="kn_mobile_sharebar_twitter"+2 more<a href="https://www.facebook.com/sharer/sharer.php?u=<a href="https://twitter.com/intent/tweet?source=tweetbutton&original_referer=<a href="https://api.whatsapp.com/send?text=<img class="share-icon"