
MM Social Security & Risk Analysis
wordpress.org/plugins/mm-socialPlace you social profile at your website's anywhere using shortcode : [MM_SOCIAL_ICON]
Is MM Social Safe to Use in 2026?
Generally Safe
Score 85/100MM Social has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'mm-social' v1.1 plugin exhibits a generally positive security posture with several good practices observed. The absence of known vulnerabilities (CVEs) and a lack of dangerous functions are strong indicators of a well-maintained codebase. The plugin also demonstrates a commitment to secure database interactions by using prepared statements for all SQL queries. However, there are notable areas of concern. A significant portion of output (53%) is not properly escaped, which could lead to cross-site scripting (XSS) vulnerabilities if user-supplied data is displayed without adequate sanitization. Additionally, the taint analysis reveals two flows with unsanitized paths, indicating potential risks related to path traversal or insecure file handling, even though they are not classified as critical or high severity. The plugin's reliance on the Select2 library, without information on its version, could pose a risk if an outdated and vulnerable version is bundled. Finally, the lack of nonce and capability checks on the identified entry point (the shortcode) is a significant security weakness, as it allows any user, regardless of their permissions, to potentially interact with the plugin's functionality, opening the door for various exploits.
Key Concerns
- Unescaped output detected (47% properly escaped)
- Unsanitized paths found in taint analysis
- Missing nonce checks
- Missing capability checks
- Bundled library (Select2) - version unknown
MM Social Security Vulnerabilities
MM Social Code Analysis
Bundled Libraries
Output Escaping
Data Flow Analysis
MM Social Attack Surface
Shortcodes 1
WordPress Hooks 4
Maintenance & Trust
MM Social Maintenance & Trust
Maintenance Signals
Community Trust
MM Social Alternatives
Social Network Widget
social-network-widget
A simple customizable social networks widget for your sidebars.
Social Media Share & Widget
social-media-share-and-widget
Social Icons Widget to displays links to social sharing websites. Currently its Supports Only 15 sites.
Simple Social Icons
simple-social-icons
This plugin provides two ways to display social icons: a traditional widget (available on all WordPress versions) and block variations for the core So …
Social Icons Widget & Block – Social Media Icons & Share Buttons
social-icons-widget-by-wpzoom
Social media icons plugin for WordPress - Add 400+ social icons and share buttons. Gutenberg block, widget & Elementor support. GDPR compliant.
Lightweight Social Icons
lightweight-social-icons
Looking to add simple social icons to your widget areas? Choose the size and color of your icons, and then choose from 47 different social profiles.
MM Social Developer Profile
2 plugins · 0 total installs
How We Detect MM Social
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/mm-social/assets/css/all.min.css/wp-content/plugins/mm-social/assets/css/social-front.css/wp-content/plugins/mm-social/assets/css/mmso-admin.css/wp-content/plugins/mm-social/assets/css/fontawesome-iconpicker.min.css/wp-content/plugins/mm-social/assets/css/sweetalert2.min.css/wp-content/plugins/mm-social/assets/js/mmso-admin.js/wp-content/plugins/mm-social/assets/js/fontawesome-iconpicker.min.js/wp-content/plugins/mm-social/assets/js/sweetalert2.all.min.js+4 more/wp-content/plugins/mm-social/assets/js/mmso-admin.js/wp-content/plugins/mm-social/assets/js/fontawesome-iconpicker.min.js/wp-content/plugins/mm-social/assets/js/sweetalert2.all.min.js/wp-content/plugins/mm-social/assets/js/colorpicker.js/wp-content/plugins/mm-social/assets/js/eye.js/wp-content/plugins/mm-social/assets/js/utils.jsmm-social/all.min.css?ver=mm-social/social-front.css?ver=mm-social/mmso-admin.css?ver=mm-social/all.min.css?ver=mm-social/fontawesome-iconpicker.min.css?ver=mm-social/sweetalert2.min.css?ver=mm-social/mmso-admin.js?ver=mm-social/fontawesome-iconpicker.min.js?ver=mm-social/sweetalert2.all.min.js?ver=mm-social/colorpicker.css?ver=mm-social/colorpicker.js?ver=mm-social/eye.js?ver=mm-social/utils.js?ver=HTML / DOM Fingerprints
list_social_iconmmso-admin-stylemmso-releases-all-stylemmso-iconpicker-stylemmso-swat-stylemmso-colorone-styletarget='_blank'MMSO_VERSIONMMSO_BASEMMSO_DIRMMSO_URLMMSO_ASTMMSO_IMG+3 more<ul class='list_social_icon<li class='<a <i class='