
WP Like, Comment & Share Security & Risk Analysis
wordpress.org/plugins/wp-like-comment-shareUsing this plugin you can like, comment and share any post and page easily.
Is WP Like, Comment & Share Safe to Use in 2026?
Generally Safe
Score 85/100WP Like, Comment & Share has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "wp-like-comment-share" plugin version 1.0.0 exhibits a mixed security posture. On the positive side, it demonstrates good practices by utilizing prepared statements for all SQL queries and avoiding dangerous functions, file operations, and external HTTP requests. The absence of known vulnerabilities in its history is also a strong indicator of diligent security. However, a significant concern lies in its attack surface. With 6 out of 9 total entry points lacking authentication checks, there's a substantial risk of unauthorized access to plugin functionalities. While taint analysis and code signals suggest no immediate critical flaws like unsanitized paths or raw SQL, the lack of capability checks on these unprotected AJAX handlers means any user, regardless of their role or permissions, could potentially interact with these functions. This makes the plugin vulnerable to privilege escalation or denial-of-service attacks if those AJAX handlers can be manipulated maliciously.
In conclusion, the plugin's foundation regarding database operations and external interactions is solid. The main weakness is the significant number of unprotected AJAX handlers, which creates a considerable security gap. While the vulnerability history is clean, this doesn't mitigate the inherent risks introduced by the unprotected entry points. Developers should prioritize implementing proper authorization and capability checks on all AJAX handlers to address this significant weakness and improve the plugin's overall security.
Key Concerns
- Unprotected AJAX handlers
- Missing capability checks
- Unescaped output (2/77)
WP Like, Comment & Share Security Vulnerabilities
WP Like, Comment & Share Release Timeline
WP Like, Comment & Share Code Analysis
Output Escaping
Data Flow Analysis
WP Like, Comment & Share Attack Surface
AJAX Handlers 6
Shortcodes 3
WordPress Hooks 18
Maintenance & Trust
WP Like, Comment & Share Maintenance & Trust
Maintenance Signals
Community Trust
WP Like, Comment & Share Alternatives
Floating Social Media Popout Buttons
floatingsocialmediapopout
Floating Social Media popout allows your webpage to show a face book like box and Googleplus badge widget when a visitor mouse hovers the floating face book icon or Googleplus icon located on right side of webpage.
Social Sharing Plugin – Kiwi
kiwi-social-share
This is by far the best free WordPress share plugin. It is simple yet does exactly what it should with plenty of customisation options.
Super Simple Social Share Icons
super-simple-social-share-icons
A lightweight and powerful solution for adding beautiful social sharing buttons to your WordPress site.
Lightshare – Lightweight Social Sharing
lightshare-social-sharing
A lightweight, high-performance social media sharing plugin for WordPress that won't slow down your site.
Mehedi’s Social Share
mehedis-social-share
This plugin helps you to share your posts automatically at facebook and twitter.
WP Like, Comment & Share Developer Profile
2 plugins · 10 total installs
How We Detect WP Like, Comment & Share
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-like-comment-share/admin/css/fblcs-admin.css/wp-content/plugins/wp-like-comment-share/admin/js/fblcs-admin.js/wp-content/plugins/wp-like-comment-share/admin/js/fblcs-admin.jsfblcs-admin.css?ver=fblcs-admin.js?ver=HTML / DOM Fingerprints
<!-- admin-specific functionality of the plugin. --><!-- The ID of this plugn --><!-- The version of this plugn --><!-- load the display -->+8 moreid="fblcs_comment_settings"id="fblcs_like_settings"id="fblcs_share_settings"urls