
Superb Social Media Share Buttons and Follow Buttons Security & Risk Analysis
wordpress.org/plugins/superb-social-share-and-follow-buttonsSocial Media Share Buttons & Follow Buttons. Social Share Icons. 25+ Social networks. Icon & Button Shortcodes. Floating Sidebar.
Is Superb Social Media Share Buttons and Follow Buttons Safe to Use in 2026?
Generally Safe
Score 99/100Superb Social Media Share Buttons and Follow Buttons has a strong security track record. Known vulnerabilities have been patched promptly.
The "superb-social-share-and-follow-buttons" plugin v1.2.5 exhibits a mixed security posture. On the positive side, the static analysis shows a strong adherence to secure coding practices regarding SQL queries, utilizing prepared statements exclusively. Furthermore, there are no detected critical or high-severity taint flows, and file operations and external HTTP requests are absent, which significantly reduces certain attack vectors. The presence of nonce and capability checks on entry points is also commendable.
However, a significant concern arises from the plugin's vulnerability history. It has two known medium-severity CVEs, both of which are reported as patched. While this is good, the common vulnerability types associated with these CVEs – Missing Authorization and Cross-Site Request Forgery (CSRF) – suggest a recurring pattern in how the plugin handles user input and access control. The static analysis indicates a small number of entry points, but the absence of explicit checks for all AJAX handlers could potentially be exploited if authorization is not implicitly handled elsewhere. The moderate percentage of properly escaped output (72%) also presents a potential risk for cross-site scripting (XSS) vulnerabilities.
In conclusion, while the plugin demonstrates good practices in areas like SQL querying and avoiding dangerous functions, the historical prevalence of authorization and CSRF vulnerabilities, coupled with the minor concern of imperfect output escaping, warrants careful consideration. Users should ensure they are running the latest patched version and remain vigilant for any future security advisories.
Key Concerns
- Medium severity CVEs in history
- Output escaping is not fully proper (72%)
- Vulnerability types include Missing Authorization
- Vulnerability types include CSRF
Superb Social Media Share Buttons and Follow Buttons Security Vulnerabilities
CVEs by Year
Severity Breakdown
2 total CVEs
Superb Social Media Share Buttons and Follow Buttons <= 1.1.3 - Missing Authorization via spbsmAjax
Superb Social Media Share Buttons and Follow Buttons <= 1.1.3 - Cross-Site Request Forgery via spbsmAjax
Superb Social Media Share Buttons and Follow Buttons Code Analysis
SQL Query Safety
Output Escaping
Superb Social Media Share Buttons and Follow Buttons Attack Surface
AJAX Handlers 2
Shortcodes 2
WordPress Hooks 10
Maintenance & Trust
Superb Social Media Share Buttons and Follow Buttons Maintenance & Trust
Maintenance Signals
Community Trust
Superb Social Media Share Buttons and Follow Buttons Alternatives
AddToAny Share Buttons
add-to-any
Share buttons for WordPress including the AddToAny button, Facebook, Bluesky, Mastodon, WhatsApp, Pinterest, Reddit, many more, and follow icons too.
Social Sharing Plugin – Sassy Social Share
sassy-social-share
The Simplest and Optimized Social Share buttons. Facebook, X, Reddit, Pinterest, Whatsapp, Grok, ChatGPT, Gab, Gettr and over 100 more.
Social Icons Widget & Block – Social Media Icons & Share Buttons
social-icons-widget-by-wpzoom
Social media icons plugin for WordPress - Add 400+ social icons and share buttons. Gutenberg block, widget & Elementor support. GDPR compliant.
Buttonizer – Social Media Share Buttons, Social Icons, & Social Feeds
facebook-pagelike-widget
Floating Social Media Icons, Sticky Share Buttons, Facebook Feeds, & Popup builder. Also, create Call, Email, SMS, & Contact buttons to increa …
Hubbub Lite – Fast, free social sharing and follow buttons
social-pug
Your content is worth sharing. Let's makes it easier!
Superb Social Media Share Buttons and Follow Buttons Developer Profile
6 plugins · 108K total installs
How We Detect Superb Social Media Share Buttons and Follow Buttons
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/superb-social-share-and-follow-buttons/assets/css/backend.css/wp-content/plugins/superb-social-share-and-follow-buttons/assets/css/frontend.css/wp-content/plugins/superb-social-share-and-follow-buttons/assets/lato/styles.css/wp-content/plugins/superb-social-share-and-follow-buttons/js/jquery.tablednd.js/wp-content/plugins/superb-social-share-and-follow-buttons/js/backend.js/wp-content/plugins/superb-social-share-and-follow-buttons/js/jquery.tablednd.js/wp-content/plugins/superb-social-share-and-follow-buttons/js/backend.jssuperb-social-share-and-follow-buttons/assets/css/backend.css?ver=superb-social-share-and-follow-buttons/assets/css/frontend.css?ver=superb-social-share-and-follow-buttons/assets/lato/styles.css?ver=superb-social-share-and-follow-buttons/js/jquery.tablednd.js?ver=superb-social-share-and-follow-buttons/js/backend.js?ver=HTML / DOM Fingerprints
spbsm-backendspbsm-stylesheetspbsm-lato-font<!-- Superb Social Share and Follow Buttons -->msgs[spbsm-share-buttons][spbsm-follow-buttons]