Links With Icons Widget Security & Risk Analysis
wordpress.org/plugins/links-with-icons-widgetA widget to display links with icons alongside.
Is Links With Icons Widget Safe to Use in 2026?
Generally Safe
Score 85/100Links With Icons Widget has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "links-with-icons-widget" v1.2 plugin exhibits a strong security posture based on the provided static analysis. The absence of AJAX handlers, REST API routes, shortcodes, and cron events significantly limits the plugin's attack surface. Furthermore, the fact that all identified SQL queries utilize prepared statements is a positive indicator of secure database interaction. The lack of dangerous functions, file operations, and external HTTP requests further bolsters its security profile.
However, a significant concern arises from the low percentage of properly escaped output (21%). This suggests a potential for Cross-Site Scripting (XSS) vulnerabilities, where untrusted data displayed to users might not be adequately sanitized, allowing malicious scripts to be injected and executed. The absence of nonce checks and capability checks on any potential entry points, while limited in number, also represents a weakness, as these are standard security mechanisms for preventing common WordPress attacks.
The plugin's vulnerability history is clean, with no recorded CVEs. This, combined with the static analysis findings, suggests that the current codebase is likely free of known, critical vulnerabilities. Nevertheless, the identified output escaping issue is a tangible risk that warrants attention. Overall, while the plugin has a strong foundation with a small attack surface and secure database practices, the significant lack of output escaping presents a notable security concern.
Key Concerns
- Low percentage of properly escaped output
- Missing nonce checks
- Missing capability checks
Links With Icons Widget Security Vulnerabilities
Links With Icons Widget Code Analysis
Output Escaping
Links With Icons Widget Attack Surface
WordPress Hooks 3
Maintenance & Trust
Links With Icons Widget Maintenance & Trust
Maintenance Signals
Community Trust
Links With Icons Widget Alternatives
Socials Ignited
socials-ignited
The Socials Ignited plugin gives you a widget, allowing you to display and link icons on your website of more than 50 social networks.
Custom Link Widget
custom-link-widget
Custom Link Widget Plugin is a Free WordPress plugin which allows you to add Hyperlinks directly using a Widget. This is quite similar to WordPress Li …
Tipsy Social Icons
tipsy-social-icons
Tipsy Social Icons aims to be the easiest way to include access to your social networking profiles.
Classic Widgets
classic-widgets
Enables the previous "classic" widgets settings screens in Appearance - Widgets and the Customizer. Disables the block editor from managing widgets.
ElementsKit Elementor Addons – Advanced Widgets & Templates Addons for Elementor
elementskit-lite
Join millions who empower their websites with ElementsKit Elementor Addons. Get templates, & 100+ widgets like header-footer, mega menu, custom widget
Links With Icons Widget Developer Profile
6 plugins · 2K total installs
How We Detect Links With Icons Widget
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/links-with-icons-widget/script.js/wp-content/plugins/links-with-icons-widget/style.css/wp-content/plugins/links-with-icons-widget/script.jslinks-with-icons-widget/script.js?ver=links-with-icons-widget/style.css?ver=HTML / DOM Fingerprints
links_with_iconslink_with_icon<!-- New Window Opening Option: --><!-- /New Window Opening Option --><!-- No Follow Option: --><!-- /No Follow Option: -->+6 moredata-target-id