
Open Graph Tags Security & Risk Analysis
wordpress.org/plugins/wp-ogDefine and optimize what the Facebook crawler should pick up and show when people share your content.
Is Open Graph Tags Safe to Use in 2026?
Generally Safe
Score 85/100Open Graph Tags has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "wp-og" plugin v0.1.2 demonstrates a generally strong security posture based on the provided static analysis. The absence of known vulnerabilities in its history and the robust handling of SQL queries with prepared statements are significant positive indicators. Furthermore, the presence of nonce and capability checks suggests an awareness of fundamental WordPress security practices. The plugin also has no external dependencies or file operations, which reduces the potential attack surface.
However, the static analysis does reveal areas for improvement. A notable concern is the moderate rate of unescaped output (58% properly escaped), which could leave the plugin susceptible to cross-site scripting (XSS) vulnerabilities if sensitive data is not handled carefully. The current taint analysis shows no identified flows, which is a positive sign, but the limited scope of analysis (0 flows analyzed) might not capture all potential issues. Given the lack of identified vulnerabilities in its history and the small attack surface, the overall risk is currently assessed as low, but the unescaped output warrants attention.
In conclusion, "wp-og" v0.1.2 exhibits good foundational security practices, particularly in its SQL handling and authentication checks. The absence of historical vulnerabilities is a strong point. The primary weakness lies in the incomplete output escaping, which, while not leading to immediate critical risks based on the provided data, represents a potential attack vector that should be addressed to further strengthen the plugin's security.
Key Concerns
- Unescaped output detected
Open Graph Tags Security Vulnerabilities
Open Graph Tags Code Analysis
Output Escaping
Open Graph Tags Attack Surface
WordPress Hooks 8
Maintenance & Trust
Open Graph Tags Maintenance & Trust
Maintenance Signals
Community Trust
Open Graph Tags Alternatives
Meta Tags Generator
meta-tags-generator
Automatic generate meta tags. Let your WordPress site optimize with Search engine & Social sharing.
Open Graph and Twitter Card Tags
wonderm00ns-simple-facebook-open-graph-tags
Improve social media sharing by inserting Facebook Open Graph, Twitter Card, and SEO Meta Tags on your WordPress website pages, posts, WooCommerce pro …
OG — Better Share on Social Media
og
The simple method to add Open Graph metadata to your entries so that they look great when shared on sites.
Open Graph
opengraph
Adds Open Graph metadata to your posts and pages so that they look great when shared on sites like Facebook and Twitter.
Spice Social Share
spice-social-share
Effortlessly add social share buttons to your posts.
Open Graph Tags Developer Profile
1 plugin · 200 total installs
How We Detect Open Graph Tags
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-og/css/wp-og-admin.css/wp-content/plugins/wp-og/js/wp-og-admin.js/wp-content/plugins/wp-og/js/wp-og-admin.jswp-og-admin.css?ver=wp-og-admin.js?ver=HTML / DOM Fingerprints
wp_og_inner_meta_box_nonce