
ShareMacro Security & Risk Analysis
wordpress.org/plugins/sharemacroThe ShareMacro widget empowers your visitors to email, bookmark and share your site with services, such as Facebook, Twitter, StumbleUpon, Digg..
Is ShareMacro Safe to Use in 2026?
Generally Safe
Score 85/100ShareMacro has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "sharemacro" v1.0.3 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of any identified entry points like AJAX handlers, REST API routes, or shortcodes significantly limits the plugin's attack surface. Furthermore, the complete lack of raw SQL queries and the presence of nonce and capability checks in the limited code signals are positive indicators of secure coding practices. The plugin also has no recorded vulnerability history, which is a significant strength.
However, a critical concern arises from the output escaping analysis: 100% of the 15 identified output points are not properly escaped. This means that any data displayed by the plugin, if originating from user input or external sources, could be vulnerable to cross-site scripting (XSS) attacks. While taint analysis did not reveal any specific unsanitized flows, the lack of output escaping creates a high risk for XSS vulnerabilities that could be triggered through various means, even with a small attack surface.
In conclusion, the "sharemacro" plugin benefits from a minimal attack surface and good foundational security practices regarding SQL queries and permission checks. Its clean vulnerability history further enhances its perceived safety. Nevertheless, the pervasive issue of unescaped output is a significant weakness that requires immediate attention to mitigate the risk of XSS attacks.
Key Concerns
- All output is unescaped
ShareMacro Security Vulnerabilities
ShareMacro Release Timeline
ShareMacro Code Analysis
Output Escaping
ShareMacro Attack Surface
WordPress Hooks 11
Maintenance & Trust
ShareMacro Maintenance & Trust
Maintenance Signals
Community Trust
ShareMacro Alternatives
Share+ by Grouptivity
grouptivity
Not just another sharing plugin. Share+ gives readers a simple way to save, share and discover your top content with friends, family and co-workers.
Share to Social Bookmarking
share-to-social-bookmarking
اشتراک گذاری مطالب در شبکههای اجتماعی ...
Social Share Love
social-share-love
Social Share Love plugin enables your blog readers to share articles on most important social bookmarking networks like Yahoo, Google, Facebook, etc.
Uptolike Social Share Buttons
uptolike-share
Uptolike Social Share Buttons - social bookmarking widget with sharing statistics.
WP Ya Share
wp-ya-share
Adds the Yandex 'Share in social networks' block into posts or widget to simplify saving URLs of your blog pages into social networks.
ShareMacro Developer Profile
2 plugins · 60 total installs
How We Detect ShareMacro
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/sharemacro/sharemacro.php/wp-content/plugins/sharemacro/js/sharemacro-share.js/wp-content/plugins/sharemacro/js/sharemacro-share.min.js/wp-content/plugins/sharemacro/js/sharemacro-share.js/wp-content/plugins/sharemacro/js/sharemacro-share.min.jssharemacro/style.css?ver=sharemacro-share.js?ver=sharemacro-share.min.js?ver=HTML / DOM Fingerprints
sm_kitsharemacro_listsharemacro-widgetsharemacro-linksharemacro-logodata-sharemacro-urldata-sharemacro-titledata-sharemacro-descriptiondata-sharemacro-imagesm_sharemacro_vars<div class="sm_kit sharemacro_list"><span class="sharemacro-widget" ><a class="sharemacro-link" href="http://www.sharemacro.com/share"<span class="sharemacro-logo "><strong>share</strong>macro</span>