
Simple Share Buttons Adder Security & Risk Analysis
wordpress.org/plugins/simple-share-buttons-adderA simple plugin that enables you to add share buttons to all of your posts and/or pages.
Is Simple Share Buttons Adder Safe to Use in 2026?
Generally Safe
Score 94/100Simple Share Buttons Adder has a strong security track record. Known vulnerabilities have been patched promptly.
The overall security posture of the simple-share-buttons-adder plugin shows mixed signals. On the positive side, the static analysis reveals a remarkably small attack surface, with no AJAX handlers, REST API routes, shortcodes, or cron events exposed without proper authentication or authorization checks. Furthermore, all SQL queries utilize prepared statements, and file operations are absent, indicating good development practices in these areas. Nonce and capability checks are present, though not extensively applied across all potential entry points.
However, a significant concern arises from the plugin's vulnerability history. With a total of six known CVEs, including two high-severity vulnerabilities (Cross-Site Scripting and CSRF) and four medium-severity ones, this plugin has a track record of security weaknesses. The fact that the most recent vulnerability was identified very recently, even if currently unpatched, suggests ongoing security issues. The static analysis also indicates that 37% of output is not properly escaped, which, while not flagged as a critical taint flow, can contribute to XSS vulnerabilities, especially when combined with the plugin's past.
Key Concerns
- High severity past vulnerabilities (XSS/CSRF)
- Medium severity past vulnerabilities
- Significant percentage of unescaped output
- External HTTP requests (potential for SSRF/compromise)
Simple Share Buttons Adder Security Vulnerabilities
CVEs by Year
Severity Breakdown
6 total CVEs
Simple Share Buttons Adder <= 8.5.0 - Authenticated (Administrator+) Stored Cross-Site Scripting
Simple Share Buttons Adder <= 8.4.11 - Authenticated(Administrator+) Stored Cross-Site Scripting via CSS Settings
Simple Share Buttons Adder <= 8.4.6 - Cross-Site Request Forgery
Simple Share Buttons Adder <= 6.0.0 - Reflected Cross-Site Scripting
Simple Share Buttons Adder <= 4.4 - Cross-Site Request Forgery
Simple Share Buttons Adder <= 4.4 - Cross-Site Request Forgery
Simple Share Buttons Adder Code Analysis
Output Escaping
Simple Share Buttons Adder Attack Surface
WordPress Hooks 4
Maintenance & Trust
Simple Share Buttons Adder Maintenance & Trust
Maintenance Signals
Community Trust
Simple Share Buttons Adder Alternatives
Buttonizer – Social Media Share Buttons, Social Icons, & Social Feeds
facebook-pagelike-widget
Floating Social Media Icons, Sticky Share Buttons, Facebook Feeds, & Popup builder. Also, create Call, Email, SMS, & Contact buttons to increa …
ShareThis Share Buttons
sharethis-share-buttons
Grow your website traffic and engagement by enabling one-click sharing with the free ShareThis Share Buttons plugin. The plugin is free (no upgrades a …
Simple Social Media Share Buttons – Social Sharing for Everyone
simple-social-buttons
This Social Share Plugin adds advanced social media sharing buttons to your WordPress sites, such as Facebook, WhatsApp, X, LinkedIn, & Pinterest.
Social Media Feather | social media sharing
social-media-feather
Lightweight, modern looking and effective social media sharing and profile buttons and icons. All your social media needs in 1 easy package!
Custom Share Buttons with Floating Sidebar
custom-share-buttons-with-floating-sidebar
Share buttons with extra features to sharing your website posts/pages on Facebook, Twitter, Instagram, Whatsapp, Pinterest etc.
Simple Share Buttons Adder Developer Profile
3 plugins · 40K total installs
How We Detect Simple Share Buttons Adder
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.