
WP Digg This Security & Risk Analysis
wordpress.org/plugins/wp-digg-thisProvides an easy way to selectively add Digg button to your posts. Use 'digg' = '1' custom field in the post to promote it.
Is WP Digg This Safe to Use in 2026?
Generally Safe
Score 85/100WP Digg This has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "wp-digg-this" v0.7.1 plugin presents a generally good security posture, with no known vulnerabilities or critical code signals identified. The absence of AJAX handlers, REST API routes, shortcodes, and cron events significantly limits its attack surface. The plugin also correctly utilizes prepared statements for all SQL queries and includes a nonce check, which are excellent security practices. However, a significant concern is the complete lack of output escaping, meaning all 15 identified outputs are potentially vulnerable to cross-site scripting (XSS) attacks. This is a serious oversight that could allow attackers to inject malicious scripts into pages where this plugin is active.
The plugin's history is clean, with no recorded CVEs, which suggests a good track record. The static analysis shows no dangerous functions, file operations, or external HTTP requests, further contributing to a seemingly secure profile. Despite the positive aspects like a limited attack surface and proper SQL handling, the critical deficiency in output escaping poses a substantial risk. The plugin needs immediate attention to address the unescaped outputs to mitigate potential XSS vulnerabilities.
Key Concerns
- 100% of outputs are unescaped
WP Digg This Security Vulnerabilities
WP Digg This Code Analysis
Output Escaping
WP Digg This Attack Surface
WordPress Hooks 4
Maintenance & Trust
WP Digg This Maintenance & Trust
Maintenance Signals
Community Trust
WP Digg This Alternatives
WP Admin UI Customize
wp-admin-ui-customize
Customize the management screen UI.
LH Archived Post Status
lh-archived-post-status
Allows posts and pages to be archived so you can remove content from the main loop and feed without having to trash it.
HiFi (Head Injection, Foot Injection)
hifi
HiFi is a head and foot injection plugin. It allows you to inject code into the head and foot areas of your posts and pages on a per-page basis.
Sortable Word Count Reloaded
sortable-word-count-reloaded
Adds a sortable column to the posts and pages admin list with the word count of each page/post.
Post Lists View Custom
post-lists-view-custom
Customize the list of the post and page and the custom post type.
WP Digg This Developer Profile
20 plugins · 1.0M total installs
How We Detect WP Digg This
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-digg-this/i/fb.jpg/wp-content/plugins/wp-digg-this/xtra/delicious-icon.gif/wp-content/plugins/wp-digg-this/i/fb.jpg/wp-content/plugins/wp-digg-this/xtra/delicious-icon.gifHTML / DOM Fingerprints
bookmark-thismd5hashrankwdt_buttonname="submitted"tweetmeme_urlmixx_urlmixx_bgcolormixx_thememixx_typedigg_url+2 more