Showcase Social Media (icons) Security & Risk Analysis

wordpress.org/plugins/showcase-social-media-icons

The Showcase Social Media (icons) plugin enables you to easily display social media icons anywhere on your WordPress website via a shortcode.

10 active installs v1.0.0 PHP 7.2+ WP 5.0+ Updated Aug 30, 2024
iconssocialsocial-media
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Showcase Social Media (icons) Safe to Use in 2026?

Generally Safe

Score 92/100

Showcase Social Media (icons) has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The "showcase-social-media-icons" plugin v1.0.0 exhibits a strong security posture based on the static analysis. It demonstrates good practices by avoiding dangerous functions, using prepared statements for all SQL queries, and generally performing adequate output escaping. The absence of file operations, external HTTP requests, and recorded vulnerability history further strengthens this assessment. There are no identified taint flows, indicating a lack of potential for arbitrary code execution or data manipulation through user input.

However, there are areas for improvement. The plugin lacks nonce checks and capability checks. While the current attack surface is small and currently unprotected entry points are zero, the absence of these checks on its single shortcode opens a potential avenue for cross-site request forgery (CSRF) or unauthorized action execution if the shortcode's functionality were to evolve or be exploited in conjunction with other vulnerabilities. The vulnerability history being empty is positive but does not guarantee future security, especially given the lack of explicit authorization checks.

In conclusion, the plugin is currently in a good security state with no critical or high-risk vulnerabilities detected. The primary weakness lies in the missing authorization checks, which represent a latent risk. While the absence of past vulnerabilities is a positive indicator, the development team should prioritize implementing nonce and capability checks to bolster the plugin's defense against potential future threats.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

Showcase Social Media (icons) Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Showcase Social Media (icons) Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
4
27 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

87% escaped31 total outputs
Attack Surface

Showcase Social Media (icons) Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[ssmi_icons] showcase-social-media-plugin.php:261
WordPress Hooks 4
actionadmin_menushowcase-social-media-plugin.php:25
actionadmin_initshowcase-social-media-plugin.php:162
actionwp_enqueue_scriptsshowcase-social-media-plugin.php:239
actionadmin_enqueue_scriptsshowcase-social-media-plugin.php:274
Maintenance & Trust

Showcase Social Media (icons) Maintenance & Trust

Maintenance Signals

WordPress version tested6.5.8
Last updatedAug 30, 2024
PHP min version7.2
Downloads826

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Showcase Social Media (icons) Developer Profile

KNEET

6 plugins · 1K total installs

92
trust score
Avg Security Score
97/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Showcase Social Media (icons)

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/showcase-social-media-icons/admin/css/settings.css/wp-content/plugins/showcase-social-media-icons/admin/js/settings.js/wp-content/plugins/showcase-social-media-icons/public/css/style.css/wp-content/plugins/showcase-social-media-icons/public/js/script.js
Script Paths
/wp-content/plugins/showcase-social-media-icons/admin/js/settings.js/wp-content/plugins/showcase-social-media-icons/public/js/script.js
Version Parameters
showcase-social-media-icons/admin/css/settings.css?ver=showcase-social-media-icons/admin/js/settings.js?ver=showcase-social-media-icons/public/css/style.css?ver=showcase-social-media-icons/public/js/script.js?ver=

HTML / DOM Fingerprints

CSS Classes
ssmi-social-icons-wrapper
Data Attributes
data-icon-orderdata-icon-sizedata-icon-spacingdata-icon-style
JS Globals
ssmi_settings
Shortcode Output
[ssmi_icons]
FAQ

Frequently Asked Questions about Showcase Social Media (icons)