Sidebar Widget To Display Eye Candy Icon to Display Your Social Network Profile

40 active installs v1.0 PHP + WP 2.5+ Updated Feb 6, 2009
bookmarkbookmarkingbookmarkssocial-bookmarkingsocial-bookmarks
63
C · Use Caution
CVEs total1
Unpatched1
Last CVEDec 31, 2025
Safety Verdict

Is Social Profilr Safe to Use in 2026?

Use With Caution

Score 63/100

Social Profilr has 1 unpatched vulnerability. Evaluate alternatives or apply available mitigations.

1 known CVE 1 unpatched Last CVE: Dec 31, 2025Updated 17yr ago
Risk Assessment

The "social-profilr-display-social-network-profile" plugin v1.0 exhibits a concerning security posture despite a seemingly small attack surface and the absence of directly identified dangerous functions or SQL injection vulnerabilities in the static analysis. The most significant red flag is the complete lack of output escaping (0% properly escaped), which opens the door to Cross-Site Scripting (XSS) vulnerabilities. Any data displayed by this plugin, if not inherently sanitized by WordPress core functions, could be injected with malicious scripts. Furthermore, the taint analysis reveals two flows with unsanitized paths, indicating potential vulnerabilities related to file operations or command execution, although their severity is not specified as critical or high. The plugin's vulnerability history, including one unpatched medium severity vulnerability (likely CSRF based on common types), suggests a pattern of security oversights. While the plugin avoids raw SQL and has no identified external HTTP requests, the critical deficiency in output escaping and the presence of unsanitized paths, coupled with past vulnerabilities, make it a risky choice without further investigation and remediation.

Key Concerns

  • Unpatched CVE identified
  • No output escaping
  • Taint flows with unsanitized paths
  • No nonce checks
  • No capability checks
Vulnerabilities
1

Social Profilr Security Vulnerabilities

CVEs by Year

1 CVE in 2025 · unpatched
2025
Patched Has unpatched

Severity Breakdown

Medium
1

1 total CVE

CVE-2025-49343medium · 4.3Cross-Site Request Forgery (CSRF)

Social Profilr <= 1.0 - Cross-Site Request Forgery

Dec 31, 2025Unpatched
Code Analysis
Analyzed Mar 16, 2026

Social Profilr Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
56
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped56 total outputs
Data Flows
2 unsanitized

Data Flow Analysis

2 flows2 with unsanitized paths
optionsPage (socialprofilr.php:377)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Social Profilr Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 3
actionadmin_menusocialprofilr.php:573
actionwp_headsocialprofilr.php:575
actionwidgets_initsocialprofilr.php:577
Maintenance & Trust

Social Profilr Maintenance & Trust

Maintenance Signals

WordPress version tested2.7
Last updatedFeb 6, 2009
PHP min version
Downloads16K

Community Trust

Rating0/100
Number of ratings0
Active installs40
Developer Profile

Social Profilr Developer Profile

socialprofilr

1 plugin · 40 total installs

68
trust score
Avg Security Score
63/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Social Profilr

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/social-profilr-display-social-network-profile/images/ms_16.png/wp-content/plugins/social-profilr-display-social-network-profile/images/ms_24.png/wp-content/plugins/social-profilr-display-social-network-profile/images/ms_32.png/wp-content/plugins/social-profilr-display-social-network-profile/images/ms_48.png/wp-content/plugins/social-profilr-display-social-network-profile/images/fb_16.png/wp-content/plugins/social-profilr-display-social-network-profile/images/fb_24.png/wp-content/plugins/social-profilr-display-social-network-profile/images/fb_32.png/wp-content/plugins/social-profilr-display-social-network-profile/images/fb_48.png+49 more
Version Parameters
social-profilr-display-social-network-profile/socialprofilr.php?ver=social-profilr-display-social-network-profile/images/ms_16.png?ver=social-profilr-display-social-network-profile/images/ms_24.png?ver=social-profilr-display-social-network-profile/images/ms_32.png?ver=social-profilr-display-social-network-profile/images/ms_48.png?ver=social-profilr-display-social-network-profile/images/fb_16.png?ver=social-profilr-display-social-network-profile/images/fb_24.png?ver=social-profilr-display-social-network-profile/images/fb_32.png?ver=social-profilr-display-social-network-profile/images/fb_48.png?ver=social-profilr-display-social-network-profile/images/yt_16.png?ver=social-profilr-display-social-network-profile/images/yt_24.png?ver=social-profilr-display-social-network-profile/images/yt_32.png?ver=social-profilr-display-social-network-profile/images/yt_48.png?ver=social-profilr-display-social-network-profile/images/di_16.png?ver=social-profilr-display-social-network-profile/images/di_24.png?ver=social-profilr-display-social-network-profile/images/di_32.png?ver=social-profilr-display-social-network-profile/images/di_48.png?ver=social-profilr-display-social-network-profile/images/fl_16.png?ver=social-profilr-display-social-network-profile/images/fl_24.png?ver=social-profilr-display-social-network-profile/images/fl_32.png?ver=social-profilr-display-social-network-profile/images/fl_48.png?ver=social-profilr-display-social-network-profile/images/su_16.png?ver=social-profilr-display-social-network-profile/images/su_24.png?ver=social-profilr-display-social-network-profile/images/su_32.png?ver=social-profilr-display-social-network-profile/images/su_48.png?ver=social-profilr-display-social-network-profile/images/ti_16.png?ver=social-profilr-display-social-network-profile/images/ti_24.png?ver=social-profilr-display-social-network-profile/images/ti_32.png?ver=social-profilr-display-social-network-profile/images/ti_48.png?ver=social-profilr-display-social-network-profile/images/tw_16.png?ver=social-profilr-display-social-network-profile/images/tw_24.png?ver=social-profilr-display-social-network-profile/images/tw_32.png?ver=social-profilr-display-social-network-profile/images/tw_48.png?ver=social-profilr-display-social-network-profile/images/li_16.png?ver=social-profilr-display-social-network-profile/images/li_24.png?ver=social-profilr-display-social-network-profile/images/li_32.png?ver=social-profilr-display-social-network-profile/images/li_48.png?ver=social-profilr-display-social-network-profile/images/po_16.png?ver=social-profilr-display-social-network-profile/images/po_24.png?ver=social-profilr-display-social-network-profile/images/po_32.png?ver=social-profilr-display-social-network-profile/images/po_48.png?ver=social-profilr-display-social-network-profile/images/mb_16.png?ver=social-profilr-display-social-network-profile/images/mb_24.png?ver=social-profilr-display-social-network-profile/images/mb_32.png?ver=social-profilr-display-social-network-profile/images/mb_48.png?ver=social-profilr-display-social-network-profile/images/fr_16.png?ver=social-profilr-display-social-network-profile/images/fr_24.png?ver=social-profilr-display-social-network-profile/images/fr_32.png?ver=social-profilr-display-social-network-profile/images/fr_48.png?ver=social-profilr-display-social-network-profile/images/be_16.png?ver=social-profilr-display-social-network-profile/images/be_24.png?ver=social-profilr-display-social-network-profile/images/be_32.png?ver=social-profilr-display-social-network-profile/images/be_48.png?ver=social-profilr-display-social-network-profile/images/ff_16.png?ver=social-profilr-display-social-network-profile/images/ff_24.png?ver=social-profilr-display-social-network-profile/images/ff_32.png?ver=social-profilr-display-social-network-profile/images/ff_48.png?ver=social-profilr-display-social-network-profile/images/sp_16.png?ver=

HTML / DOM Fingerprints

CSS Classes
sp_link_16sp_link_24sp_link_32sp_link_48sp_linkback
Data Attributes
id="sp_div_outer"id="sp_div_list"id="sp_ul"id="socialprofilr-icon"
JS Globals
onSPOutonSPOver
FAQ

Frequently Asked Questions about Social Profilr