Naked Social Share Security & Risk Analysis

wordpress.org/plugins/naked-social-share

Simple, unstyled social share icons for theme designers.

100 active installs v1.5.2 PHP + WP 3.0+ Updated Oct 25, 2020
facebookpinterestsocialstumbleupontwitter
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Naked Social Share Safe to Use in 2026?

Generally Safe

Score 85/100

Naked Social Share has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5yr ago
Risk Assessment

The plugin 'naked-social-share' v1.5.2 exhibits a generally good security posture based on the static analysis. The absence of critical or high severity taint flows, along with a lack of recorded vulnerabilities, suggests a mature and secure codebase. The plugin also implements some essential security measures like nonce and capability checks, which are positive indicators. However, there are areas for improvement. The significant number of external HTTP requests (5) could introduce risks if not properly managed or if external endpoints are compromised. Furthermore, the sole SQL query not utilizing prepared statements is a notable concern, as it represents a potential pathway for SQL injection vulnerabilities if the data involved is user-controlled. The medium output escaping rate also leaves room for cross-site scripting (XSS) vulnerabilities.

Key Concerns

  • SQL queries not using prepared statements
  • Moderate output escaping rate
  • High number of external HTTP requests
Vulnerabilities
None known

Naked Social Share Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Naked Social Share Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
0 prepared
Unescaped Output
46
60 escaped
Nonce Checks
1
Capability Checks
1
File Operations
0
External Requests
5
Bundled Libraries
0

SQL Query Safety

0% prepared1 total queries

Output Escaping

57% escaped106 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
nss_options_page (includes\admin\settings\display-settings.php:23)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Naked Social Share Attack Surface

Entry Points4
Unprotected0

AJAX Handlers 3

authwp_ajax_naked_social_share_restore_default_settingsincludes\admin\settings\register-settings.php:418
authwp_ajax_nss_update_share_numbersincludes\functions.php:155
noprivwp_ajax_nss_update_share_numbersincludes\functions.php:156

Shortcodes 1

[naked-social-share] includes\functions.php:130
WordPress Hooks 13
actionadmin_menuincludes\admin\admin-pages.php:27
actionadmin_enqueue_scriptsincludes\admin\admin-pages.php:96
actionadmin_initincludes\admin\settings\register-settings.php:110
actionadmin_initincludes\admin\settings\register-settings.php:365
filternaked-social-share/settings/sanitize/textincludes\admin\settings\register-settings.php:432
filternaked-social-share/settings/sanitize/numberincludes\admin\settings\register-settings.php:446
filternaked-social-share/settings/sanitize/colorincludes\admin\settings\register-settings.php:466
filternaked-social-share/settings/sanitize/checkboxincludes\admin\settings\register-settings.php:482
filternaked-social-share/settings/sanitize/sorterincludes\admin\settings\register-settings.php:501
actionadmin_initincludes\admin\upgrades.php:42
actionwp_enqueue_scriptsincludes\functions.php:54
filterthe_contentincludes\functions.php:108
actionplugins_loadednaked-social-share.php:66
Maintenance & Trust

Naked Social Share Maintenance & Trust

Maintenance Signals

WordPress version tested5.5.18
Last updatedOct 25, 2020
PHP min version
Downloads13K

Community Trust

Rating98/100
Number of ratings12
Active installs100
Developer Profile

Naked Social Share Developer Profile

Ashley

3 plugins · 3K total installs

80
trust score
Avg Security Score
89/100
Avg Patch Time
87 days
View full developer profile
Detection Fingerprints

How We Detect Naked Social Share

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/naked-social-share/assets/css/admin-styles.css/wp-content/plugins/naked-social-share/assets/js/admin-scripts.js
Script Paths
/wp-content/plugins/naked-social-share/assets/js/admin-scripts.js
Version Parameters
naked-social-share/assets/css/admin-styles.css?ver=naked-social-share/assets/js/admin-scripts.js?ver=

HTML / DOM Fingerprints

CSS Classes
nss-social-share
Data Attributes
data-nss-social-share
JS Globals
NSS
Shortcode Output
<div class="nss-social-share" data-nss-social-share="" data-nss-share-text="" data-nss-share-url=""></div>
FAQ

Frequently Asked Questions about Naked Social Share