Social Bar Lite Security & Risk Analysis

wordpress.org/plugins/social-bar-lite

A floating bar plugin that allows your visitors connect them to your Twitter and Facebook social network

10 active installs v1.0.2 PHP + WP 4.x+ Updated Aug 17, 2016
barlitesocialsocial-bartwitter
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Social Bar Lite Safe to Use in 2026?

Generally Safe

Score 85/100

Social Bar Lite has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 9yr ago
Risk Assessment

The social-bar-lite v1.0.2 plugin exhibits a strong static security posture with a clean vulnerability history. The absence of any known CVEs and the lack of identified taint flows, dangerous functions, or file operations are positive indicators. The code also demonstrates good practices with the use of prepared statements for SQL queries and the presence of nonce and capability checks, suggesting an effort to implement basic security measures.

However, a significant concern arises from the complete lack of output escaping (0% properly escaped). This means that any data processed and outputted by the plugin is not being sanitized, creating a high risk of Cross-Site Scripting (XSS) vulnerabilities. While the plugin has a limited attack surface with no identified entry points, this single weakness can be exploited to inject malicious scripts into the user's browser, potentially leading to session hijacking, data theft, or defacement.

In conclusion, while the plugin has a commendable history and avoids several common pitfalls, the critical failure in output escaping presents a severe security risk that overshadows its other strengths. This plugin should be considered highly risky due to the high probability of XSS vulnerabilities until the output escaping issue is addressed.

Key Concerns

  • Output not properly escaped
Vulnerabilities
None known

Social Bar Lite Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Social Bar Lite Release Timeline

v1.0.1
v1.0.0
Code Analysis
Analyzed Mar 17, 2026

Social Bar Lite Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
12
0 escaped
Nonce Checks
1
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped12 total outputs
Attack Surface

Social Bar Lite Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 7
actionwp_enqueue_scriptscontrollers\social_bl_appController.php:29
actionadmin_enqueue_scriptscontrollers\social_bl_appController.php:33
actionadmin_enqueue_scriptscontrollers\social_bl_appController.php:34
actionadmin_menusocial_bl_wp-socialbarlite.php:116
filterwp_footersocial_bl_wp-socialbarlite.php:117
actionwp_print_stylessocial_bl_wp-socialbarlite.php:118
actionwp_enqueue_scriptssocial_bl_wp-socialbarlite.php:119
Maintenance & Trust

Social Bar Lite Maintenance & Trust

Maintenance Signals

WordPress version tested4.7.33
Last updatedAug 17, 2016
PHP min version
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Social Bar Lite Developer Profile

infranetworking

2 plugins · 40 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Social Bar Lite

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/social-bar-lite/statics/css/sbd-styles.css/wp-content/plugins/social-bar-lite/statics/js/sbd-functions.js/wp-content/plugins/social-bar-lite/statics/js/twitter.js/wp-content/plugins/social-bar-lite/statics/js/countrys/facebook-en.js/wp-content/plugins/social-bar-lite/statics/js/countrys/facebook-es.js/wp-content/plugins/social-bar-lite/statics/css/styles.css/wp-content/plugins/social-bar-lite/statics/js/functions.js
Script Paths
statics/js/sbd-functions.jsstatics/js/twitter.jsstatics/js/countrys/facebook-en.jsstatics/js/countrys/facebook-es.jsstatics/js/functions.js
Version Parameters
social-bar-lite/statics/js/countrys/facebook-en.js?ver=1.0.1social-bar-lite/statics/js/countrys/facebook-es.js?ver=1.0.1

HTML / DOM Fingerprints

CSS Classes
floatsocialbarfloatsocialbar .message
FAQ

Frequently Asked Questions about Social Bar Lite