
Post Admin Social Stats Security & Risk Analysis
wordpress.org/plugins/post-admin-social-statsAdd social stats to the Dashboard and "Edit" pages of the WordPress admin.
Is Post Admin Social Stats Safe to Use in 2026?
Generally Safe
Score 85/100Post Admin Social Stats has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'post-admin-social-stats' plugin v1.0.6 exhibits a mixed security posture. On the positive side, there are no recorded vulnerabilities (CVEs) and the plugin doesn't appear to use any dangerous functions, perform file operations, make external HTTP requests, or bundle external libraries. Furthermore, all SQL queries are prepared, which is a strong security practice.
However, significant concerns arise from the static analysis. The complete lack of output escaping for all 11 identified outputs represents a high risk of Cross-Site Scripting (XSS) vulnerabilities. While the attack surface is reported as zero entry points, this may be an oversimplification if the plugin relies solely on frontend JavaScript or has no user-facing features. The absence of nonce and capability checks, even with a reported zero attack surface, is concerning as it suggests a potential reliance on other security mechanisms or an oversight that could lead to vulnerabilities if entry points are discovered or introduced in future versions.
Given the clean vulnerability history, it's possible the plugin is either very simple, not widely used, or has historically been well-maintained. However, the identified lack of output escaping presents a critical security flaw that needs immediate attention. The absence of these fundamental security checks, despite a clean history, means the plugin is not robustly protected against common web attack vectors.
Key Concerns
- All outputs lack proper escaping (XSS risk)
- Missing nonce checks
- Missing capability checks
Post Admin Social Stats Security Vulnerabilities
Post Admin Social Stats Code Analysis
Output Escaping
Post Admin Social Stats Attack Surface
WordPress Hooks 3
Maintenance & Trust
Post Admin Social Stats Maintenance & Trust
Maintenance Signals
Community Trust
Post Admin Social Stats Alternatives
Social Media Stats
wpsocialstats
Social Media Stats is a social analytics plugin that tracks and reports the performance of your blog or website posts on social networks.
AddToAny Share Buttons
add-to-any
Share buttons for WordPress including the AddToAny button, Facebook, Bluesky, Mastodon, WhatsApp, Pinterest, Reddit, many more, and follow icons too.
Astra Widgets
astra-widgets
Quickest solution to add widgets like Address, Social Profiles and List icons on a website built with Astra.
Social Sharing Plugin – Sassy Social Share
sassy-social-share
The Simplest and Optimized Social Share buttons. Facebook, X, Reddit, Pinterest, Whatsapp, Grok, ChatGPT, Gab, Gettr and over 100 more.
Simple Social Icons
simple-social-icons
This plugin provides two ways to display social icons: a traditional widget (available on all WordPress versions) and block variations for the core So …
Post Admin Social Stats Developer Profile
2 plugins · 50 total installs
How We Detect Post Admin Social Stats
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/post-admin-social-stats/style.csspost-admin-social-stats/style.css?ver=HTML / DOM Fingerprints
post-admin-social-stats