
Share This Image Security & Risk Analysis
wordpress.org/plugins/share-this-imageImage sharing plugin for WordPress. Share exactly needed images with fully customizable content.
Is Share This Image Safe to Use in 2026?
Generally Safe
Score 92/100Share This Image has a strong security track record. Known vulnerabilities have been patched promptly.
The "share-this-image" plugin v2.13 presents a mixed security posture. On one hand, the static analysis shows a commendable effort in securing its entry points, with all identified AJAX handlers and REST API routes having associated authorization checks. The presence of nonce checks and capability checks further bolsters this. However, the significant percentage of improperly escaped output (39%) raises a concern about potential Cross-Site Scripting (XSS) vulnerabilities. The taint analysis, while not revealing critical or high-severity issues, did identify flows with unsanitized paths, which could be a precursor to vulnerabilities if not properly handled. The vulnerability history is a significant red flag. With a total of 7 known CVEs, including one high-severity vulnerability and six medium-severity ones, the plugin has a history of introducing security flaws. The common types of past vulnerabilities (Missing Authorization, Open Redirect, XSS) are recurring themes in WordPress plugin security and suggest persistent oversight in specific areas. The fact that there are currently no unpatched vulnerabilities is positive, but the frequent discovery of issues indicates a need for more rigorous security testing and development practices. The presence of bundled libraries like Select2 and Freemius v1.0 could also introduce risks if they are outdated and contain known vulnerabilities, though this is not explicitly detailed in the provided data.
Key Concerns
- Significant percentage of improperly escaped output
- Taint flows with unsanitized paths
- History of 7 known CVEs
- History of 1 high severity vulnerability
- History of 6 medium severity vulnerabilities
- Bundled outdated library (Freemius v1.0)
Share This Image Security Vulnerabilities
CVEs by Year
Severity Breakdown
7 total CVEs
Share This Image <= 2.09 - Missing Authorization
Share This Image <= 2.01 - Reflected Cross-Site Scripting
Share This Image <= 2.03 - Open Redirect via link Parameter
Share This Image <= 2.02 - Authenticated (Contributor+) Stored Cross-Site Scripting via STI Buttons Shortcode
Share This Image <= 2.01 - Authenticated (Contributor+) Stored Cross-Site Scripting via alignment Parameter
Share This Image <= 1.98 - Open Redirect
Share This Image < 1.04 - Cross-Site Scripting
Share This Image Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
Share This Image Attack Surface
AJAX Handlers 6
Shortcodes 2
WordPress Hooks 58
Maintenance & Trust
Share This Image Maintenance & Trust
Maintenance Signals
Community Trust
Share This Image Alternatives
Sharing Image
sharing-image
Sharing Image is a WordPress plugin for generating sharing posters in social networks.
WP Share
wp-share
Add social sharing buttons to your content in 5 minutes. You can choose from 3 different icon styles including the original ones.
Social Media Feather | social media sharing
social-media-feather
Lightweight, modern looking and effective social media sharing and profile buttons and icons. All your social media needs in 1 easy package!
Social Sharing (by Danny)
dvk-social-sharing
Adds social sharing buttons for Twitter, Facebook and LinkedIn to your blog posts or pages.
WP Social Preview
wp-social-preview
Increase social media engagement by previewing and managing how your content will look on social media sites before sharing it!
Share This Image Developer Profile
4 plugins · 81K total installs
How We Detect Share This Image
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/share-this-image/assets/css/admin.css/wp-content/plugins/share-this-image/assets/css/frontend.css/wp-content/plugins/share-this-image/assets/js/share-this-image.js/wp-content/plugins/share-this-image/assets/js/share-this-image.jsshare-this-image/assets/css/admin.css?ver=share-this-image/assets/css/frontend.css?ver=share-this-image/assets/js/share-this-image.js?ver=HTML / DOM Fingerprints
sti-stars<!-- Main plugin class --><!-- Main STI_Main Instance --><!-- Constructor --><!-- Include required core files used in admin and on the frontend -->+10 moreSTI