ShareThis Reaction Buttons Security & Risk Analysis

wordpress.org/plugins/sharethis-reaction-buttons

Integrate ShareThis Reaction Buttons seamlessly into your WordPress site.

700 active installs v1.3.4 PHP + WP 5.9+ Updated Sep 25, 2025
emojireactionreaction-buttonsshare-thissharethis
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is ShareThis Reaction Buttons Safe to Use in 2026?

Generally Safe

Score 100/100

ShareThis Reaction Buttons has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6mo ago
Risk Assessment

The "sharethis-reaction-buttons" v1.3.4 plugin exhibits a strong security posture based on the provided static analysis. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events significantly limits the potential attack surface. Furthermore, the code demonstrates good development practices with 100% of SQL queries utilizing prepared statements and a high rate of output escaping (95%), mitigating common web vulnerabilities like SQL injection and cross-site scripting. The presence of nonce and capability checks, although not universally applied to all potential entry points (which are zero), indicates an awareness of security principles. The lack of any historical CVEs or recorded vulnerabilities further reinforces this positive assessment, suggesting a history of secure development and maintenance.

Key Concerns

  • Minor unescaped output detected
  • External HTTP requests are made
Vulnerabilities
None known

ShareThis Reaction Buttons Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

ShareThis Reaction Buttons Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
6
104 escaped
Nonce Checks
6
Capability Checks
3
File Operations
0
External Requests
2
Bundled Libraries
0

Output Escaping

95% escaped110 total outputs
Data Flows
All sanitized

Data Flow Analysis

3 flows
set_reaction_credentials (php\class-reaction-buttons.php:621)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

ShareThis Reaction Buttons Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 1
actionadmin_noticessharethis-reaction-buttons.php:39
Maintenance & Trust

ShareThis Reaction Buttons Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedSep 25, 2025
PHP min version
Downloads20K

Community Trust

Rating76/100
Number of ratings5
Active installs700
Developer Profile

ShareThis Reaction Buttons Developer Profile

ShareThis

5 plugins · 21K total installs

91
trust score
Avg Security Score
95/100
Avg Patch Time
10 days
View full developer profile
Detection Fingerprints

How We Detect ShareThis Reaction Buttons

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/sharethis-reaction-buttons/css/sharethis-reaction-buttons.css/wp-content/plugins/sharethis-reaction-buttons/js/sharethis-reaction-buttons.js
Script Paths
/wp-content/plugins/sharethis-reaction-buttons/js/sharethis-reaction-buttons.js
Version Parameters
sharethis-reaction-buttons/css/sharethis-reaction-buttons.css?ver=sharethis-reaction-buttons/js/sharethis-reaction-buttons.js?ver=

HTML / DOM Fingerprints

CSS Classes
sharethis-inline-reaction-buttons
Data Attributes
data-typedata-placementdata-postid
JS Globals
MinuteControl
Shortcode Output
[sharethis-reaction-buttons]
FAQ

Frequently Asked Questions about ShareThis Reaction Buttons