Sharing Image Security & Risk Analysis

wordpress.org/plugins/sharing-image

Sharing Image is a WordPress plugin for generating sharing posters in social networks.

600 active installs v3.7 PHP 5.6+ WP 5.3+ Updated Jul 26, 2025
facebookog-imagesharing-imagesocial-imagetwitter
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Sharing Image Safe to Use in 2026?

Generally Safe

Score 100/100

Sharing Image has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8mo ago
Risk Assessment

The "sharing-image" v3.7 plugin exhibits a strong security posture based on the provided static analysis and vulnerability history. It demonstrates excellent adherence to WordPress security best practices by implementing nonce checks and capability checks for all identified entry points, including AJAX handlers and REST API routes. The code's use of prepared statements for SQL queries and proper output escaping further mitigates common web application vulnerabilities. The absence of known CVEs and any recorded past vulnerabilities is a significant strength, suggesting a well-maintained and secure codebase. The plugin's low attack surface, with all entry points secured, is also a positive indicator. Currently, there are no apparent critical security risks identified in the static analysis, taint analysis, or vulnerability history. The plugin appears to be developed with security in mind, prioritizing the protection of user data and system integrity.

Vulnerabilities
None known

Sharing Image Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Sharing Image Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
1 prepared
Unescaped Output
1
61 escaped
Nonce Checks
14
Capability Checks
16
File Operations
2
External Requests
2
Bundled Libraries
0

SQL Query Safety

100% prepared1 total queries

Output Escaping

98% escaped62 total outputs
Data Flows
All sanitized

Data Flow Analysis

4 flows
<class-config> (classes\class-config.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Sharing Image Attack Surface

Entry Points6
Unprotected0

AJAX Handlers 5

authwp_ajax_sharing_image_verify_premiumclasses\class-premium.php:55
authwp_ajax_sharing_image_revoke_premiumclasses\class-premium.php:56
authwp_ajax_sharing_image_show_previewclasses\class-templates.php:43
authwp_ajax_sharing_image_save_previewclasses\class-templates.php:44
authwp_ajax_sharing_image_generateclasses\class-widget.php:54

REST API Routes 1

POST/wp-json/sharing-image/v1/poster/(?P<id>\d+)classes\class-widget.php:408
WordPress Hooks 50
actionadmin_initclasses\class-config.php:32
actionadmin_post_sharing_image_save_configclasses\class-config.php:39
actionwp_headclasses\class-meta.php:25
actionadmin_initclasses\class-migrations.php:32
actionload-post.phpclasses\class-migrations.php:33
actionadmin_initclasses\class-premium.php:46
actionadmin_initclasses\class-settings.php:51
actionadmin_menuclasses\class-settings.php:52
actionadmin_titleclasses\class-settings.php:53
actionadmin_initclasses\class-settings.php:54
filterplugin_action_linksclasses\class-settings.php:56
actionadmin_enqueue_scriptsclasses\class-settings.php:83
actionadmin_enqueue_scriptsclasses\class-settings.php:84
filterwp_check_filetype_and_extclasses\class-settings.php:105
filterupload_mimesclasses\class-settings.php:108
actioninitclasses\class-snippets.php:32
actionadmin_initclasses\class-templates.php:33
actionadmin_post_sharing_image_save_editorclasses\class-templates.php:40
actionadmin_post_sharing_image_delete_templateclasses\class-templates.php:41
actionadmin_initclasses\class-tools.php:32
actionadmin_post_sharing_image_save_configclasses\class-tools.php:39
actionadmin_post_sharing_image_export_templatesclasses\class-tools.php:40
actionadmin_post_sharing_image_import_templatesclasses\class-tools.php:41
actionadmin_post_sharing_image_clone_templateclasses\class-tools.php:42
actionadmin_post_sharing_image_clear_templatesclasses\class-tools.php:43
actioninitclasses\class-widget.php:49
actioninitclasses\class-widget.php:50
actioninitclasses\class-widget.php:51
actionrest_api_initclasses\class-widget.php:55
actionwp_after_insert_postclasses\class-widget.php:58
actionenqueue_block_editor_assetsclasses\class-widget.php:129
actionadd_meta_boxesclasses\class-widget.php:140
actionsave_postclasses\class-widget.php:143
actionadmin_enqueue_scriptsclasses\class-widget.php:146
actionadmin_enqueue_scriptsclasses\class-widget.php:168
filtersharing_image_get_licensepremium-sample.php:22
actionplugins_loadedsharing-image.php:83
filteraioseo_facebook_tagssnippets\class-aioseo.php:48
filteraioseo_twitter_tagssnippets\class-aioseo.php:49
filtersharing_image_show_headersnippets\class-aioseo.php:50
filtersharing_image_show_headersnippets\class-rankmath.php:52
filterseopress_social_og_thumbsnippets\class-seopress.php:48
filterseopress_social_twitter_card_thumbsnippets\class-seopress.php:49
filterslim_seo_open_graph_tagssnippets\class-slimseo.php:48
filterslim_seo_twitter_card_imagesnippets\class-slimseo.php:49
filtersq_open_graphsnippets\class-squirrly.php:48
filtersq_twitter_cardsnippets\class-squirrly.php:49
filtersharing_image_show_headersnippets\class-squirrly.php:51
filterthe_seo_framework_meta_render_datasnippets\class-theseoframework.php:48
filterwpseo_frontend_presenter_classessnippets\class-yoastseo.php:48
Maintenance & Trust

Sharing Image Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedJul 26, 2025
PHP min version5.6
Downloads16K

Community Trust

Rating94/100
Number of ratings3
Active installs600
Developer Profile

Sharing Image Developer Profile

Anton Lukin

2 plugins · 650 total installs

91
trust score
Avg Security Score
96/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Sharing Image

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/sharing-image/assets/settings/index.css/wp-content/plugins/sharing-image/assets/settings/index.js
Script Paths
/wp-content/plugins/sharing-image/assets/settings/index.js
Version Parameters
sharing-image/assets/settings/index.css?ver=sharing-image/assets/settings/index.js?ver=

HTML / DOM Fingerprints

CSS Classes
sharing-image-settings
Data Attributes
sharingImageSettings
JS Globals
sharingImageSettings
FAQ

Frequently Asked Questions about Sharing Image