OG — Better Share on Social Media Security & Risk Analysis

wordpress.org/plugins/og

The simple method to add Open Graph metadata to your entries so that they look great when shared on sites.

30K active installs v3.3.8 PHP 8.0+ WP 6.0+ Updated Oct 8, 2025
facebooklinkedinopen-graphsocial-mediax
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is OG — Better Share on Social Media Safe to Use in 2026?

Generally Safe

Score 100/100

OG — Better Share on Social Media has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7mo ago
Risk Assessment

The 'og' plugin version 3.3.8 exhibits a generally strong security posture based on the static analysis. The absence of any dangerous functions, the exclusive use of prepared statements for all SQL queries, and the high percentage of properly escaped output indicate good development practices in preventing common vulnerabilities. Furthermore, the complete lack of known CVEs, including critical and high severity ones, and the absence of any recorded past vulnerabilities suggest a well-maintained and secure plugin.

However, there are a few areas that warrant attention. The static analysis identified a total of 1 AJAX handler, and crucially, this handler lacks any authentication checks. While the attack surface is small, this single unprotected entry point presents a potential risk for unauthorized actions. Additionally, the plugin makes two external HTTP requests, which, although not inherently a vulnerability, can become a vector if the target endpoint is compromised or if the data sent or received is not properly handled. The presence of capability checks is zero, which could be a concern if the AJAX handler were to perform sensitive operations, but given the context, it's more of a missed opportunity for enhanced security.

Key Concerns

  • AJAX handler without auth checks
  • External HTTP requests (2)
  • Zero capability checks
Vulnerabilities
None known

OG — Better Share on Social Media Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

OG — Better Share on Social Media Release Timeline

v3.3.8Current
v3.3.7
v3.3.6
v3.3.5
v3.3.4
v3.3.3
v3.3.2
v3.3.1
v3.3.0
v3.2.7
v3.2.6
v3.2.5
v3.2.4
v3.2.3
v3.2.2
v3.2.1
v3.2.0
v3.1.9
v3.1.8
v3.1.7
Code Analysis
Analyzed Mar 16, 2026

OG — Better Share on Social Media Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
4 prepared
Unescaped Output
12
138 escaped
Nonce Checks
2
Capability Checks
0
File Operations
0
External Requests
2
Bundled Libraries
0

SQL Query Safety

100% prepared4 total queries

Output Escaping

92% escaped150 total outputs
Attack Surface

OG — Better Share on Social Media Attack Surface

Entry Points1
Unprotected0

AJAX Handlers 1

authwp_ajax_iworks_rate_buttonincludes\iworks\rate\rate.php:113
WordPress Hooks 39
actionedit_attachmentincludes\iworks\class-iworks-opengraph.php:115
actioninitincludes\iworks\class-iworks-opengraph.php:116
actioninitincludes\iworks\class-iworks-opengraph.php:117
actioniworks_rate_cssincludes\iworks\class-iworks-opengraph.php:118
actionsave_postincludes\iworks\class-iworks-opengraph.php:119
actionsave_postincludes\iworks\class-iworks-opengraph.php:120
actionsave_postincludes\iworks\class-iworks-opengraph.php:121
actionwp_headincludes\iworks\class-iworks-opengraph.php:122
filterlanguage_attributesincludes\iworks\class-iworks-opengraph.php:123
filterplugin_row_metaincludes\iworks\class-iworks-opengraph.php:124
filteriworks_rate_notice_logo_styleincludes\iworks\class-iworks-opengraph.php:135
filterog_schema_datePublishedincludes\iworks\class-iworks-opengraph.php:139
filterog_get_image_dimensionsincludes\iworks\class-iworks-opengraph.php:140
filterog_twitter_arrayincludes\iworks\class-iworks-opengraph.php:141
actioninitincludes\iworks\class-iworks-opengraph.php:147
filterog_get_og_arrayincludes\iworks\class-iworks-opengraph.php:153
filterog/is_activeincludes\iworks\class-iworks-opengraph.php:165
filterorphan_skip_replacementincludes\iworks\class-iworks-opengraph.php:415
filterdebug_bar_panelsincludes\iworks\opengraph\integrations\class-iworks-opengraph-integration-debug-bar.php:17
filterog_arrayincludes\iworks\opengraph\integrations\class-iworks-opengraph-integration-woocommerce.php:17
filterog_arrayincludes\iworks\opengraph\integrations\class-iworks-opengraph-integrations-categories-images.php:17
filterog_og_arrayincludes\iworks\opengraph\integrations\class-iworks-opengraph-integrations-contextual-related-posts.php:17
filterog_article_arrayincludes\iworks\opengraph\integrations\class-iworks-opengraph-integrations-post-expirator.php:17
filterog_twitter_arrayincludes\iworks\opengraph\integrations\class-iworks-opengraph-integrations-reading-time-wp.php:17
filterog_og_arrayincludes\iworks\opengraph\integrations\class-iworks-opengraph-integrations-related-posts-for-wp.php:17
filterog_og_arrayincludes\iworks\opengraph\integrations\class-iworks-opengraph-integrations-sitepress-multilingual-cms.php:17
filterog_twitter_arrayincludes\iworks\opengraph\integrations\class-iworks-opengraph-integrations-twitter.php:23
filtertwitter_cardincludes\iworks\opengraph\integrations\class-iworks-opengraph-integrations-twitter.php:24
filterog_og_arrayincludes\iworks\opengraph\integrations\class-iworks-opengraph-integrations-yarpp.php:17
actionload-index.phpincludes\iworks\rate\rate.php:111
actioniworks-register-pluginincludes\iworks\rate\rate.php:112
actionadmin_initincludes\iworks\rate\rate.php:114
filteriworks_rate_assistanceincludes\iworks\rate\rate.php:118
filteriworks_rate_loveincludes\iworks\rate\rate.php:119
filteriworks_rate_advertising_ogincludes\iworks\rate\rate.php:125
actionadmin_enqueue_scriptsincludes\iworks\rate\rate.php:190
actionadmin_noticesincludes\iworks\rate\rate.php:191
actionadmin_enqueue_scriptsincludes\iworks\rate\rate.php:200
actionadmin_noticesincludes\iworks\rate\rate.php:201
Maintenance & Trust

OG — Better Share on Social Media Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedOct 8, 2025
PHP min version8.0
Downloads770K

Community Trust

Rating96/100
Number of ratings214
Active installs30K
Developer Profile

OG — Better Share on Social Media Developer Profile

Marcin Pietrzak

23 plugins · 89K total installs

77
trust score
Avg Security Score
97/100
Avg Patch Time
274 days
View full developer profile
Detection Fingerprints

How We Detect OG — Better Share on Social Media

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/og/assets/css/frontend.css/wp-content/plugins/og/assets/js/frontend.js
Script Paths
/wp-content/plugins/og/assets/js/frontend.js
Version Parameters
og/assets/css/frontend.css?ver=og/assets/js/frontend.js?ver=

HTML / DOM Fingerprints

CSS Classes
iworks-open-graph
HTML Comments
<!-- OG:BEGIN<!-- OG:END
FAQ

Frequently Asked Questions about OG — Better Share on Social Media