
Mobile Contact Line Security & Risk Analysis
wordpress.org/plugins/mobile-contact-lineSimple plugin that allow you add mobile contact line to your wordpress site
Is Mobile Contact Line Safe to Use in 2026?
Generally Safe
Score 99/100Mobile Contact Line has a strong security track record. Known vulnerabilities have been patched promptly.
This plugin, "mobile-contact-line" v2.4.2, exhibits a generally good security posture based on the static analysis. The absence of vulnerable AJAX handlers, REST API routes, shortcodes, and cron events, along with the complete lack of critical or high severity taint flows, are strong indicators of secure coding practices. Furthermore, all SQL queries utilize prepared statements, and the presence of nonce and capability checks on entry points is commendable.
However, there are minor areas for improvement. While the attack surface is small and currently shows no unprotected entry points, 70% output escaping is not ideal. This means that approximately 30% of output operations are not properly escaped, potentially leaving the plugin vulnerable to cross-site scripting (XSS) attacks if user-supplied data is involved in these unescaped outputs. The vulnerability history reveals a past medium severity vulnerability, specifically related to "Missing Authorization." While this vulnerability is currently patched, it suggests that the plugin has had security flaws in the past, and continuous vigilance is required.
In conclusion, "mobile-contact-line" v2.4.2 is relatively secure with many best practices being followed. The primary concern lies in the incomplete output escaping, which could be a vector for XSS. The past medium vulnerability, though patched, serves as a reminder that even well-coded plugins can have exploitable flaws. Continued development and rigorous testing are recommended to maintain its security.
Key Concerns
- Incomplete output escaping (30% unescaped)
- Past medium vulnerability (Missing Authorization)
Mobile Contact Line Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Mobile Contact Line <= 2.4.0 - Missing Authorization
Mobile Contact Line Code Analysis
Output Escaping
Mobile Contact Line Attack Surface
AJAX Handlers 2
WordPress Hooks 7
Maintenance & Trust
Mobile Contact Line Maintenance & Trust
Maintenance Signals
Community Trust
Mobile Contact Line Alternatives
Astro Sticky Buttons
astro-sticky-buttons
Add sticky buttons for easy contact and social sharing on your site. Supports email, phone, WhatsApp, Skype, Facebook, Instagram, and more.
Click to Call or Chat Buttons
click-to-call-or-chat-buttons
This plugin adds Phone Call and WhatsApp button on your webpage.
Simple Contact Bar
simple-contact-bar
Simple Contact Bar: A plugin that easily adds Call Now and WhatsApp Message buttons to your site, along with customizable options and a popup feature …
Polanger Contact Buttons
polanger-contact-buttons
Add floating WhatsApp and Phone call buttons to your website with advanced customization options.
Call Now Button – The #1 Click to Call Button for WordPress
call-now-button
The web's #1 click to call button for your website! A simple and powerful plugin that adds a Call Now Button to your website.
Mobile Contact Line Developer Profile
11 plugins · 51K total installs
How We Detect Mobile Contact Line
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/mobile-contact-line/include/css/style.css/wp-content/plugins/mobile-contact-line/include/js/scripts.js/wp-content/plugins/mobile-contact-line/include/js/scripts.jsmobile-contact-line/include/css/style.css?ver=mobile-contact-line/include/js/scripts.js?ver=HTML / DOM Fingerprints
yydev-mobile-linedata-phone_button_hrefdata-phone_button_textdata-phone_background_colordata-phone_button_widthdata-phone_button_positiondata-email_button_href+20 more