
Social Sharing Plugin – Social Warfare Security & Risk Analysis
wordpress.org/plugins/social-warfareThe most beautiful, responsive, lightning fast social share buttons built to boost shares and drive more traffic without slowing down your site.
Is Social Sharing Plugin – Social Warfare Safe to Use in 2026?
Mostly Safe
Score 84/100Social Sharing Plugin – Social Warfare is generally safe to use though it hasn't been updated recently. 8 past CVEs were resolved. Keep it updated.
The static analysis of Social Warfare v4.5.6 presents a deceptively clean picture, with zero identified attack surface points, dangerous functions, or taint flows. This suggests that in this specific version, common vulnerability classes like XSS and SQL injection might not be directly exploitable through standard entry points. The code also demonstrates good practices like 100% prepared SQL statements and proper output escaping. However, this static snapshot does not account for potential vulnerabilities in bundled libraries (though none are listed here) or complex logic flaws that might not be caught by basic static analysis. It's crucial to note that the lack of capability checks and nonce checks, while not flagged as an issue in the static analysis for this specific version's entry points, represents a significant potential risk if any new entry points were to be introduced or if these checks were implicitly relied upon by other components.
Key Concerns
- Significant past vulnerability history
- Past critical and high severity vulnerabilities
- Past code injection vulnerabilities
- Past cross-site scripting vulnerabilities
- Past missing authorization vulnerabilities
- Past cross-site request forgery vulnerabilities
- Lack of capability checks
- Lack of nonce checks
Social Sharing Plugin – Social Warfare Security Vulnerabilities
CVEs by Year
Severity Breakdown
8 total CVEs
Social Sharing Plugin – Social Warfare <= 4.5.5 - Authenticated (Contributor+) Stored Cross-Site Scripting
Social Sharing Plugin – Social Warfare <= 4.4.5.1 - Cross-Site Request Forgery
Social Sharing Plugin – Social Warfare <= 4.4.6.1 - Authenticated(Contributor+) Stored Cross-Site Scripting via Shortcode
Social Sharing Plugin - Social Warfare <= 4.4.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode
Social Warfare <= 4.3.0 - Missing Authorization
Social Warfare <= 4.3.1 - Cross-Site Request Forgery
Social Warfare <= 3.5.2 - Remote Code Execution
Social Warfare <= 3.5.2 - Unauthenticated Arbitrary Settings Update
Social Sharing Plugin – Social Warfare Code Analysis
Social Sharing Plugin – Social Warfare Attack Surface
WordPress Hooks 1
Maintenance & Trust
Social Sharing Plugin – Social Warfare Maintenance & Trust
Maintenance Signals
Community Trust
Social Sharing Plugin – Social Warfare Alternatives
Plain Social Sharing Buttons
plain-social-sharing-buttons
Simple and lightweight social sharing buttons for your wordpress site
Simple Social Media Share Buttons – Social Sharing for Everyone
simple-social-buttons
This Social Share Plugin adds advanced social media sharing buttons to your WordPress sites, such as Facebook, WhatsApp, X, LinkedIn, & Pinterest.
Block Referer Spam
block-referer-spam
Blocks referer/referral spam from accessing your site and cleans up your Google Analytics in the process!
Super Share
super-share
Super Share wordpress social plugin by MasterBlogster shows the social sharing buttons in a popup box only when reader reaches the end of the article.
Ultimate Social Share Buttons
ultimate-social-share-buttons
Ultimate Social Share Buttons is a most useful Social Media Share Plugin for your blog page and single page. It is a unique social sharing plugin.
Social Sharing Plugin – Social Warfare Developer Profile
1 plugin · 20K total installs
How We Detect Social Sharing Plugin – Social Warfare
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/social-warfare/css/style.css/wp-content/plugins/social-warfare/css/admin-style.css/wp-content/plugins/social-warfare/js/social-warfare.min.js/wp-content/plugins/social-warfare/js/admin.min.js/wp-content/plugins/social-warfare/js/social-warfare.min.js/wp-content/plugins/social-warfare/js/admin.min.jssocial-warfare/style.css?ver=social-warfare/admin-style.css?ver=social-warfare/social-warfare.min.js?ver=social-warfare/admin.min.js?ver=HTML / DOM Fingerprints
social-warfare-buttonsswp_facebook_buttonswp_twitter_buttonswp_pinterest_buttonswp_linked_in_buttonswp_share_buttondata-pin-descriptiondata-pin-urldata-pin-mediadata-tweet-textswptswpdSWP_SettingsSWP_Share_SourceSWP_Analytics[social_warfare]