notable Security & Risk Analysis

wordpress.org/plugins/notable

Adds social bookmark links to each blog entry.

10 active installs v2.3 PHP + WP 3.0+ Updated Nov 25, 2015
del-icio-usdiggnotableredditsocial-networks
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is notable Safe to Use in 2026?

Generally Safe

Score 85/100

notable has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 10yr ago
Risk Assessment

The "notable" plugin v2.3 exhibits a strong security posture based on the provided static analysis and vulnerability history. The absence of any identified attack surface points, dangerous functions, direct SQL queries, file operations, or external HTTP requests is a significant strength. Furthermore, the complete lack of known CVEs and past vulnerabilities suggests a mature and well-maintained codebase.

However, a notable concern arises from the output escaping. With only 20% of outputs properly escaped, there's a significant risk of Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is not handled with sufficient sanitization before being displayed. This is the primary area of potential weakness in an otherwise robust plugin.

In conclusion, the "notable" plugin v2.3 appears to be a secure choice with a commendable track record. The main area requiring attention is improving output escaping to mitigate potential XSS risks. The lack of any identified taint flows or direct vulnerabilities in its history is a positive indicator of ongoing security efforts.

Key Concerns

  • Low output escaping percentage
Vulnerabilities
None known

notable Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

notable Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
12
3 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

20% escaped15 total outputs
Attack Surface

notable Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 2
actionadmin_menuwp-notable.php:346
actionactivate_notable/wp-notable.phpwp-notable.php:358
Maintenance & Trust

notable Maintenance & Trust

Maintenance Signals

WordPress version tested4.4.34
Last updatedNov 25, 2015
PHP min version
Downloads3K

Community Trust

Rating20/100
Number of ratings1
Active installs10
Developer Profile

notable Developer Profile

Scott Grayban

2 plugins · 20 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect notable

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/notable/notable.css
Script Paths
/wp-content/plugins/notable/notable.js
Version Parameters
notable/style.css?ver=notable/notable.js?ver=

HTML / DOM Fingerprints

CSS Classes
wp-notable_imagewp-notablewp-notable-line
HTML Comments
<!-- notable icons per row --><!-- notable image path --><!-- notable spacer string --><!-- notable settings -->
Data Attributes
name="notable_settings[icons_per_row]"name="notable_settings[image_path]"name="notable_settings[spacer_string]"name="notable_settings[sites][*][show]"name="notable_settings[sites][*][header]"
FAQ

Frequently Asked Questions about notable