Vk.com sharing for Jetpack Security & Risk Analysis

wordpress.org/plugins/vk-sharing-jetpack

Add a Vk.com sharing button to the Jetpack Sharing module

70 active installs v1.2.3 PHP + WP 4.1.1+ Updated Feb 14, 2022
jetpacksharingvkvk-comwordpress-com
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Vk.com sharing for Jetpack Safe to Use in 2026?

Generally Safe

Score 85/100

Vk.com sharing for Jetpack has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4yr ago
Risk Assessment

The vk-sharing-jetpack plugin exhibits a strong security posture based on the provided static analysis. The complete absence of AJAX handlers, REST API routes, shortcodes, and cron events, particularly those lacking authentication checks, significantly minimizes its attack surface. Furthermore, the code signals indicate a commendable approach to security, with no dangerous functions, 100% of SQL queries using prepared statements, and no file operations or external HTTP requests. This suggests diligent development practices focused on preventing common vulnerabilities.

However, a few areas warrant attention. The output escaping is only 60% properly escaped, which presents a potential risk for cross-site scripting (XSS) vulnerabilities. While no critical or high severity taint flows were identified, the lack of explicit taint analysis results (total flows analyzed: 0) means we cannot definitively rule out the existence of unsanitized data handling that could lead to vulnerabilities. The vulnerability history being completely empty is positive, but it doesn't negate the need for vigilance, especially given the incomplete output escaping.

In conclusion, vk-sharing-jetpack appears to be a well-secured plugin with a minimal attack surface and good coding practices in place. The primary concern is the incomplete output escaping, which should be addressed. The lack of comprehensive taint analysis is a limitation of the current assessment, but the absence of known vulnerabilities and other security red flags is a significant strength.

Key Concerns

  • Unescaped output detected
Vulnerabilities
None known

Vk.com sharing for Jetpack Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Vk.com sharing for Jetpack Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
3 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

60% escaped5 total outputs
Attack Surface

Vk.com sharing for Jetpack Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 3
actionplugins_loadedvk-sharing-jetpack.php:26
actionadmin_noticesvk-sharing-jetpack.php:28
filtersharing_servicesvk-sharing-jetpack.php:33
Maintenance & Trust

Vk.com sharing for Jetpack Maintenance & Trust

Maintenance Signals

WordPress version tested5.9.13
Last updatedFeb 14, 2022
PHP min version
Downloads8K

Community Trust

Rating80/100
Number of ratings7
Active installs70
Developer Profile

Vk.com sharing for Jetpack Developer Profile

Jeremy Herve

11 plugins · 2K total installs

90
trust score
Avg Security Score
94/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Vk.com sharing for Jetpack

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/vk-sharing-jetpack/class.vk-sharing-jetpack.php

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Vk.com sharing for Jetpack