
Sticky Action Buttons – Call, Chat, Navigate and more Security & Risk Analysis
wordpress.org/plugins/sticky-action-buttons-call-chat-navigate-and-moreThe ultimate flexible and lightweight responsive sticky floating contact buttons. over 100 different design options.
Is Sticky Action Buttons – Call, Chat, Navigate and more Safe to Use in 2026?
Generally Safe
Score 85/100Sticky Action Buttons – Call, Chat, Navigate and more has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "sticky-action-buttons-call-chat-navigate-and-more" plugin v1.0 exhibits a generally positive security posture, with several good practices in place. The absence of any known CVEs and the consistent use of prepared statements for SQL queries are significant strengths. Furthermore, the static analysis shows all entry points (AJAX handlers) are protected by capability checks, and there are no identified unsanitized paths in the taint analysis.
However, there are a couple of areas that warrant attention. The presence of the `create_function` dangerous function, while not directly exploited in the provided analysis, is a known security risk that can lead to arbitrary code execution if used with user-supplied input. Additionally, a significant portion of the output (29%) is not properly escaped. This could potentially lead to cross-site scripting (XSS) vulnerabilities if the unescaped output contains user-controlled data.
In conclusion, the plugin benefits from robust access control on its entry points and secure database interaction. The primary concerns stem from the use of a deprecated dangerous function and the less-than-ideal output escaping, which collectively represent a moderate risk that should be addressed to further strengthen the plugin's security.
Key Concerns
- Dangerous function 'create_function' used
- Significant portion of output not escaped
Sticky Action Buttons – Call, Chat, Navigate and more Security Vulnerabilities
Sticky Action Buttons – Call, Chat, Navigate and more Code Analysis
Dangerous Functions Found
Output Escaping
Data Flow Analysis
Sticky Action Buttons – Call, Chat, Navigate and more Attack Surface
AJAX Handlers 2
WordPress Hooks 14
Maintenance & Trust
Sticky Action Buttons – Call, Chat, Navigate and more Maintenance & Trust
Maintenance Signals
Community Trust
Sticky Action Buttons – Call, Chat, Navigate and more Alternatives
Floating Contact Buttons
degx-floating-buttons
Add customizable WhatsApp and Phone floating buttons to your WordPress website.
Button Generator – Easily Create Custom Buttons with Icons and Analytics
button-generation
Design and display custom buttons anywhere on your site. Add floating or inline buttons with icons, advanced targeting, and built-in analytics.
Floating Button – Easily Create Sticky, Fixed & Floating Buttons
floating-button
Floating Buttons let you easily create sticky, fixed, and floating action buttons
Nút Bấm Liên Hệ Dibrother
dibrother-floating-buttons
Thêm các nút liên hệ (Gọi, Zalo, Messenger) cố định vào website WordPress. Kết nối tức thì với khách hàng.
Mobile Contact Buttons
mobile-contact-buttons
Adds Call, Email and SMS buttons on bottom of website. Only for Mobile View of website.
Sticky Action Buttons – Call, Chat, Navigate and more Developer Profile
3 plugins · 550 total installs
How We Detect Sticky Action Buttons – Call, Chat, Navigate and more
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/sticky-action-buttons-call-chat-navigate-and-more/assets/css/main.css/wp-content/plugins/sticky-action-buttons-call-chat-navigate-and-more/assets/js/main.jssticky-action-buttons-call-chat-navigate-and-more/assets/css/main.css?ver=sticky-action-buttons-call-chat-navigate-and-more/assets/js/main.js?ver=HTML / DOM Fingerprints
combar-sab-containercombar-sab-desktop-settingscombar-sab-mobile-settingscombar-sab-buttons-managercombar-sab-general-settingscombar-sab-menu-itemcombar-sab-admin-bar-menu<!-- If this file is called directly, abort. --><!-- Set plugin version for internal use --><!-- Add plugin to admin panel menu --><!-- Admin pages callback -->+7 moredata-plugin="combar-sab"data-page="combar-sab-desktop"data-page="combar-sab-mobile"data-page="combar-sab-buttons"data-page="combar-sab-settings"class="combar-sab-desktopView"+2 morecombar_sab_versioncombar_sab_dir