Social Share Love Security & Risk Analysis

wordpress.org/plugins/social-share-love

Social Share Love plugin enables your blog readers to share articles on most important social bookmarking networks like Yahoo, Google, Facebook, etc.

10 active installs v1.0 PHP + WP 2.0.2+ Updated Oct 8, 2011
bookmarkssocial-bookmarkingsocial-bookmarkssocial-networkssocial-share
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Social Share Love Safe to Use in 2026?

Generally Safe

Score 85/100

Social Share Love has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 14yr ago
Risk Assessment

The security posture of the 'social-share-love' plugin v1.0, based on the provided static analysis and vulnerability history, appears to have significant concerns despite a lack of recorded CVEs. The code analysis reveals a complete absence of proper output escaping for all identified outputs, meaning any data processed by these outputs could potentially be rendered unsafely. Furthermore, all SQL queries are executed without prepared statements, posing a substantial risk of SQL injection vulnerabilities.

The static analysis indicates a very small attack surface, with no apparent AJAX handlers, REST API routes, shortcodes, or cron events exposed without checks, which is a positive sign. However, the "code signals" section starkly contrasts this with the identified security weaknesses in how data is handled. The complete lack of vulnerability history is reassuring on the surface, but it doesn't negate the serious flaws identified in the code itself. It's possible that previous versions were not widely used or have not been subjected to thorough security audits leading to discovered issues.

In conclusion, while the plugin currently has no publicly known vulnerabilities, the static analysis highlights critical implementation flaws, specifically unescaped output and raw SQL queries. These are fundamental security oversights that expose the plugin and any site using it to significant risk, particularly from SQL injection and cross-site scripting (XSS) attacks. The plugin's strengths lie in its limited attack surface, but its weaknesses in data sanitization and query handling are severe.

Key Concerns

  • 0% SQL queries using prepared statements
  • 0% properly escaped output
  • No nonce checks
  • No capability checks
Vulnerabilities
None known

Social Share Love Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Social Share Love Code Analysis

Dangerous Functions
0
Raw SQL Queries
2
0 prepared
Unescaped Output
6
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

0% prepared2 total queries

Output Escaping

0% escaped6 total outputs
Attack Surface

Social Share Love Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
actionadmin_menusocial_share_love.php:94
filterthe_contentsocial_share_love.php:97
filterthe_excerptsocial_share_love.php:99
filtercomment_postsocial_share_love.php:102
actionwp_headsocial_share_love.php:105
Maintenance & Trust

Social Share Love Maintenance & Trust

Maintenance Signals

WordPress version tested3.2.1
Last updatedOct 8, 2011
PHP min version
Downloads3K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Social Share Love Developer Profile

noucktourno

1 plugin · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Social Share Love

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/social-share-love/social_share_love.css

HTML / DOM Fingerprints

CSS Classes
wrap
HTML Comments
<!-- Option Tabs --><!-- Debug Screen -->
Data Attributes
rel="nofollow"name="dw_sites"value="dw_sites"
FAQ

Frequently Asked Questions about Social Share Love