
Like Button Rating ♥ LikeBtn Security & Risk Analysis
wordpress.org/plugins/likebtn-like-buttonAdd Like button to posts, pages, comments, WooCommerce, BuddyPress, bbPress, UM, custom posts! Sort content by likes! Get instant stats and insights!
Is Like Button Rating ♥ LikeBtn Safe to Use in 2026?
Generally Safe
Score 96/100Like Button Rating ♥ LikeBtn has a strong security track record. Known vulnerabilities have been patched promptly.
The 'likebtn-like-button' v2.6.59 plugin exhibits a mixed security posture. While it shows strengths in using prepared statements for SQL queries (86%) and proper output escaping (85%), these are overshadowed by significant concerns in its attack surface and historical vulnerability trends. The presence of 4 AJAX handlers without authentication checks is a notable weakness, potentially allowing unauthorized actions. Furthermore, the taint analysis reveals 4 high-severity flows with unsanitized paths, indicating a risk of malicious input being processed without adequate validation, which could lead to various exploits. The plugin's vulnerability history is also a red flag, with 5 known CVEs, including one high-severity and four medium-severity vulnerabilities. The common types of past vulnerabilities such as Cross-site Scripting, Missing Authorization, and SSRF, coupled with the recent discovery of a high-severity issue, suggest recurring security oversights. Although there are no currently unpatched CVEs, the pattern of past vulnerabilities and the identified code weaknesses point to a need for more robust security practices in development and a cautious approach to its deployment. The outdated bundled library (Select2 v3.5.1) adds another layer of potential risk.
Key Concerns
- AJAX handlers without authorization checks
- High severity taint flows with unsanitized paths
- Bundled outdated library (Select2 v3.5.1)
- High severity vulnerability in history
- Medium severity vulnerabilities in history
Like Button Rating ♥ LikeBtn Security Vulnerabilities
CVEs by Year
Severity Breakdown
5 total CVEs
Like Button Rating <= 2.6.53 - Cross-Site Request Forgery
Like Button Rating ♥ LikeBtn <= 2.6.44 - Arbitrary e-mail Sending
Like Button Rating <= 2.6.37 - Unauthorised Vote Export to Email & IP Addresses Disclosure
Like Button Rating ♥ LikeBtn < 2.6.32 - Server-Side Request Forgery
Like Button Rating <= 2.5.3 - Arbitrary Settings Change
Like Button Rating ♥ LikeBtn Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
Like Button Rating ♥ LikeBtn Attack Surface
AJAX Handlers 18
Shortcodes 5
WordPress Hooks 64
Maintenance & Trust
Like Button Rating ♥ LikeBtn Maintenance & Trust
Maintenance Signals
Community Trust
Like Button Rating ♥ LikeBtn Alternatives
Pro Like Button
prolike-button
Adds buttons to posts with the ability to sort them.
Managed posts rating ★ Like button
managed-posts-rating-like-button
Rating system for your WordPress site with a simple "like" button and advanced admin panel.
GD Rating System
gd-rating-system
Powerful, highly customizable and versatile ratings plugin to allow your users to vote for anything you want.
bbPress Voting
bbp-voting
Let visitors vote up and down on bbPress topics and replies just like Reddit or Stack Overflow!
Simple Vote – Share your Thought, By A Like/Dislike Vote!
simple-vote
ALLOW YOUR VISITORS TO SHARE THEIR THOUGHTS ON YOUR CONTENT, BY VOTE!
Like Button Rating ♥ LikeBtn Developer Profile
1 plugin · 4K total installs
How We Detect Like Button Rating ♥ LikeBtn
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/likebtn-like-button/css/styles.css/wp-content/plugins/likebtn-like-button/css/new-styles.css/wp-content/plugins/likebtn-like-button/js/likebtn.js/wp-content/plugins/likebtn-like-button/js/likebtn.min.jsw.likebtn.com/js/w/widget.jslikebtn-like-button/css/styles.css?ver=likebtn-like-button/css/new-styles.css?ver=likebtn-like-button/js/likebtn.js?ver=likebtn-like-button/js/likebtn.min.js?ver=HTML / DOM Fingerprints
likebtn-buttonlikebtn-render-containerdata-likebtn-iddata-likebtn-custom-styledata-likebtn-show-dislikedata-likebtn-selectordata-likebtn-counterLikeBtn[likebtn_off][likebtn_likes][likebtn_dislikes]