
ShareMe Security & Risk Analysis
wordpress.org/plugins/share-meShare-me is a simple social share plugin.
Is ShareMe Safe to Use in 2026?
Generally Safe
Score 85/100ShareMe has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "share-me" v1.4.0 plugin exhibits a mixed security posture. On the positive side, it demonstrates excellent practices regarding SQL queries, utilizing prepared statements exclusively, and has no recorded vulnerability history, suggesting a history of stable and secure development.
However, significant concerns arise from the static analysis. The complete lack of output escaping is a critical flaw, presenting a high risk of Cross-Site Scripting (XSS) vulnerabilities, especially given the presence of a shortcode which typically handles user-facing content. Additionally, the absence of nonce and capability checks across all identified entry points, including the shortcode, means that any functionality exposed through these could be exploited by unauthenticated or low-privileged users.
The taint analysis revealing a flow with unsanitized paths, even without a critical or high severity assigned, warrants attention. Coupled with the lack of output escaping, this unsanitized path could potentially be leveraged to inject malicious data that is later rendered insecurely. The plugin's strengths in SQL handling and vulnerability history are overshadowed by these fundamental security oversights in input validation and output sanitization.
Key Concerns
- All outputs unescaped
- No nonce checks
- No capability checks
- Flow with unsanitized paths
- Shortcode without auth checks
ShareMe Security Vulnerabilities
ShareMe Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
ShareMe Attack Surface
Shortcodes 1
WordPress Hooks 6
Maintenance & Trust
ShareMe Maintenance & Trust
Maintenance Signals
Community Trust
ShareMe Alternatives
WP Social Share
wp-social-share
Add Social Networks Share Button at Home, Category and Single Posts Pages.
Social Share
kento-social-share
Fancy Social share tool by https://pluginspoint.com
KP Social Share
kp-social-share
KP Social Share plugin adds beautiful social media sharing buttons to your WordPress site.
Postsquirrel
postsquirrel
Allows you to share post to multiple connected social networks
AddToAny Share Buttons
add-to-any
Share buttons for WordPress including the AddToAny button, Facebook, Bluesky, Mastodon, WhatsApp, Pinterest, Reddit, many more, and follow icons too.
ShareMe Developer Profile
1 plugin · 50 total installs
How We Detect ShareMe
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/assets/css/style.css/assets/js/scripts.js/assets/css/admin-style.css/assets/js/scripts.jsHTML / DOM Fingerprints
share-meshare-leftshare-rightshare-upshare-downid='share-me'<div id='share-me'><ul class='share-