
pbSocialNetworks Security & Risk Analysis
wordpress.org/plugins/pbsocialnetworkspbSocialNetworks is a powerful Plugin that helps you to integrate social netwok buttons + widgets and track your social media traffic!
Is pbSocialNetworks Safe to Use in 2026?
Generally Safe
Score 85/100pbSocialNetworks has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "pbsocialnetworks" v1.1.3 presents a mixed security posture. On the positive side, it has a very small attack surface with only one shortcode, and importantly, no direct AJAX handlers or REST API routes that are exposed without authentication. The vulnerability history is also clean, with no recorded CVEs, suggesting a history of responsible development or simply a lack of past discoveries. Furthermore, the presence of nonces and capability checks, along with a decent percentage of SQL queries using prepared statements, indicates some adherence to security best practices.
However, significant concerns arise from the static analysis. The presence of the `create_function` function is a major red flag, as it can lead to serious vulnerabilities if not handled with extreme care. More critically, the taint analysis reveals two flows with unsanitized paths, classified as high severity. This strongly suggests potential for injection vulnerabilities where user-supplied data could be used in a dangerous manner. Compounding this, none of the output is properly escaped, creating a high risk of Cross-Site Scripting (XSS) attacks across all its output points. The vulnerability history, while currently clean, doesn't negate the risks identified in the code itself. The clean history could be a temporary state, and the identified code weaknesses pose immediate threats.
In conclusion, while the plugin has a small attack surface and a clean vulnerability history, the identified high-severity taint flows and the complete lack of output escaping represent significant, exploitable risks. The use of `create_function` also adds to the potential for vulnerabilities. These issues significantly outweigh the positive aspects, making the plugin a moderate to high risk until these specific code weaknesses are addressed.
Key Concerns
- High severity taint flows
- All outputs unescaped (XSS risk)
- Use of dangerous function create_function
- SQL queries with low prepared statement usage
pbSocialNetworks Security Vulnerabilities
pbSocialNetworks Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Data Flow Analysis
pbSocialNetworks Attack Surface
Shortcodes 1
WordPress Hooks 16
Maintenance & Trust
pbSocialNetworks Maintenance & Trust
Maintenance Signals
Community Trust
pbSocialNetworks Alternatives
Advanced Random Posts Widget
advanced-random-posts-widget
Provides flexible and advanced random posts. Display it via shortcode or widget with thumbnails, post excerpt, and much more!
Newpost Catch
newpost-catch
Thumbnails in new articles setting widget.
RaraTheme Companion
raratheme-companion
23 extremely useful custom widgets to create an engaging website.
Recent Posts by Category Widget
recent-posts-by-category-widget
Just like the default Recent Posts widget except you can choose a category to pull posts from.
Expanding Archives
expanding-archives
This plugin adds a new widget where you can view your old posts by expanding certain years and months.
pbSocialNetworks Developer Profile
3 plugins · 8K total installs
How We Detect pbSocialNetworks
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/pbsocialnetworks/css/pbSocialNetworks.css/wp-content/plugins/pbsocialnetworks/css/visualize.css/wp-content/plugins/pbsocialnetworks/js/excanvas.js/wp-content/plugins/pbsocialnetworks/js/visualize.jQuery.js/wp-content/plugins/pbsocialnetworks/js/excanvas.js/wp-content/plugins/pbsocialnetworks/js/visualize.jQuery.jspbsocialnetworks/css/pbSocialNetworks.css?ver=pbsocialnetworks/css/visualize.css?ver=pbsocialnetworks/js/excanvas.js?ver=pbsocialnetworks/js/visualize.jQuery.js?ver=HTML / DOM Fingerprints
<!-- This Websites uses pbSocialNetworks Pro by Pascal-Bajorat.com to include and display Social Media Buttons: visit pbSocialNetworks.Pascal-Bajorat.com -->[pbsn]