
Social Share Buttons & Analytics Plugin – GetSocial.io Security & Risk Analysis
wordpress.org/plugins/wp-share-buttons-analytics-by-getsocialFree share buttons for 30+ of your favorite social networks. Increase traffic through social sharing with GetSocial buttons.
Is Social Share Buttons & Analytics Plugin – GetSocial.io Safe to Use in 2026?
Use With Caution
Score 69/100Social Share Buttons & Analytics Plugin – GetSocial.io has 1 unpatched vulnerability. Evaluate alternatives or apply available mitigations.
The "wp-share-buttons-analytics-by-getsocial" plugin v4.5 exhibits a mixed security posture. While it demonstrates good practices such as using prepared statements for all SQL queries and a single nonce check, significant concerns arise from its attack surface and vulnerability history. Three AJAX handlers lack authentication checks, creating a considerable risk for unauthorized actions. The low percentage of properly escaped output (4%) is also a major red flag, suggesting a high likelihood of Cross-Site Scripting (XSS) vulnerabilities, which aligns with its past vulnerability types.
The plugin's history of two known CVEs, one of which remains unpatched, and both being of medium severity, further amplifies the risk. The prevalence of "Missing Authorization" and "Cross-site Scripting" in its vulnerability types directly correlates with the static analysis findings of unprotected AJAX handlers and poor output escaping. This suggests a recurring pattern of security weaknesses that have not been fully addressed.
In conclusion, while the plugin avoids certain common pitfalls like raw SQL queries and file operations, the unprotected AJAX endpoints and the high proportion of improperly escaped output, coupled with a history of medium-severity vulnerabilities including XSS, present a substantial security risk. The unpatched CVE is particularly concerning, leaving users exposed to known exploits.
Key Concerns
- Unprotected AJAX handlers
- Low percentage of properly escaped output
- 1 unpatched CVE (medium severity)
- History of XSS vulnerabilities
- History of Missing Authorization vulnerabilities
Social Share Buttons & Analytics Plugin – GetSocial.io Security Vulnerabilities
CVEs by Year
Severity Breakdown
2 total CVEs
Social Share Buttons & Analytics Plugin – GetSocial.io <= 4.5 - Missing Authorization
Social Share Buttons & Analytics Plugin – GetSocial.io <= 4.3.12 - Authenticated (Administrator+) Stored Cross-Site Scripting
Social Share Buttons & Analytics Plugin – GetSocial.io Code Analysis
Output Escaping
Social Share Buttons & Analytics Plugin – GetSocial.io Attack Surface
AJAX Handlers 3
Shortcodes 1
WordPress Hooks 9
Maintenance & Trust
Social Share Buttons & Analytics Plugin – GetSocial.io Maintenance & Trust
Maintenance Signals
Community Trust
Social Share Buttons & Analytics Plugin – GetSocial.io Alternatives
Social Icons Widget & Block – Social Media Icons & Share Buttons
social-icons-widget-by-wpzoom
Social media icons plugin for WordPress - Add 400+ social icons and share buttons. Gutenberg block, widget & Elementor support. GDPR compliant.
Simple Social Media Share Buttons – Social Sharing for Everyone
simple-social-buttons
This Social Share Plugin adds advanced social media sharing buttons to your WordPress sites, such as Facebook, WhatsApp, X, LinkedIn, & Pinterest.
Social Sharing Plugin – Social Warfare
social-warfare
The most beautiful, responsive, lightning fast social share buttons built to boost shares and drive more traffic without slowing down your site.
WP Socializer – Simple & Easy Social Media Share Icons
wp-socializer
Simple & easy plugin to add social media sharing icons, buttons like Facebook, Twitter, WhatsApp, Instagram & more
Easy Share Solution For WordPress
easy-share-solution
A powerful, easy-to-use WordPress social sharing plugin with modern share buttons, built-in analytics, and smooth dashboard integration.
Social Share Buttons & Analytics Plugin – GetSocial.io Developer Profile
1 plugin · 2K total installs
How We Detect Social Share Buttons & Analytics Plugin – GetSocial.io
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-share-buttons-analytics-by-getsocial/css/style.css/wp-content/plugins/wp-share-buttons-analytics-by-getsocial/css/social-share-buttons.css/wp-content/plugins/wp-share-buttons-analytics-by-getsocial/js/social-share-buttons.js/wp-content/plugins/wp-share-buttons-analytics-by-getsocial/lib/gs.js/wp-content/plugins/wp-share-buttons-analytics-by-getsocial/js/social-share-buttons.js/wp-content/plugins/wp-share-buttons-analytics-by-getsocial/lib/gs.js/wp-content/plugins/wp-share-buttons-analytics-by-getsocial/css/style.css?ver=/wp-content/plugins/wp-share-buttons-analytics-by-getsocial/css/social-share-buttons.css?ver=/wp-content/plugins/wp-share-buttons-analytics-by-getsocial/js/social-share-buttons.js?ver=/wp-content/plugins/wp-share-buttons-analytics-by-getsocial/lib/gs.js?ver=HTML / DOM Fingerprints
gs-social-sharegs-social-share-buttonsgs-social-icongs-btn-largegs-btn-mediumgs-btn-smallgs-btn-countergs-btn-icon+5 more<!-- GetSocial.io script --><!-- GetSocial.io share buttons -->data-getsocial-share-urldata-getsocial-share-titledata-getsocial-share-imagedata-getsocial-widget-iddata-getsocial-typedata-getsocial-theme+5 morewindow.GetSocialvar GS[getsocial]