WP Social Integration Security & Risk Analysis

wordpress.org/plugins/wp-social-integration

WP social integration brings login by facebook, adds basic & opengraph metadata, facebook social plugins anywhere in page

10 active installs v1.0 PHP + WP 3.5+ Updated Oct 20, 2019
facebook-loginmeta-tagsopen-graphpluginstwitter-cards
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is WP Social Integration Safe to Use in 2026?

Generally Safe

Score 85/100

WP Social Integration has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6yr ago
Risk Assessment

The wp-social-integration plugin v1.0 exhibits a mixed security posture. On the positive side, there are no known vulnerabilities (CVEs) associated with this plugin, and the code analysis reveals no critical or high-severity taint flows, nor does it use dangerous functions. The plugin also makes good use of prepared statements for its single SQL query. However, several areas raise significant concerns. A substantial percentage (61%) of output is not properly escaped, creating a risk of Cross-Site Scripting (XSS) vulnerabilities if user-controlled data is present in these outputs. The lack of nonce checks, especially given the presence of shortcodes which can be user-invoked, is a critical oversight. Furthermore, while the total attack surface is small, the presence of shortcodes without explicit capability checks or nonce validation means that an attacker could potentially trigger unintended actions or data leakage through these shortcodes. The single file operation and external HTTP request also warrant closer inspection to ensure they are handled securely.

Key Concerns

  • High percentage of unescaped output
  • Missing nonce checks
  • Shortcodes without capability checks
Vulnerabilities
None known

WP Social Integration Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

WP Social Integration Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
1 prepared
Unescaped Output
50
32 escaped
Nonce Checks
0
Capability Checks
2
File Operations
1
External Requests
1
Bundled Libraries
0

SQL Query Safety

100% prepared1 total queries

Output Escaping

39% escaped82 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
wp_social_integration_display_settings (admin\wp-social-integration_admin.php:15)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

WP Social Integration Attack Surface

Entry Points4
Unprotected0

Shortcodes 4

[wp_social_integration_feed_short_code] wp-social-integration.php:43
[wp_social_integration_like_button] wp-social-integration.php:44
[wp_social_integration_follow_button] wp-social-integration.php:45
[wp_social_integration_send_button] wp-social-integration.php:46
WordPress Hooks 5
actionadmin_print_styleswp-social-integration.php:33
actionadmin_menuwp-social-integration.php:34
filterwidget_textwp-social-integration.php:51
filterwidget_textwp-social-integration.php:52
actionwp_headwp-social-integration_meta.php:3
Maintenance & Trust

WP Social Integration Maintenance & Trust

Maintenance Signals

WordPress version tested5.2.24
Last updatedOct 20, 2019
PHP min version
Downloads2K

Community Trust

Rating20/100
Number of ratings2
Active installs10
Developer Profile

WP Social Integration Developer Profile

mitsol

3 plugins · 220 total installs

76
trust score
Avg Security Score
95/100
Avg Patch Time
741 days
View full developer profile
Detection Fingerprints

How We Detect WP Social Integration

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/wp-social-integration/css/bootstrap.css

HTML / DOM Fingerprints

CSS Classes
wp-social-integration_settings
HTML Comments
<!-- meta --><!-- admin functions --><!--home feed -->
Data Attributes
wp_scintg_active_tabwp_scintg_basic_metawp_scintg_basic_auto_descwp_scintg_basic_auto_keywordswp_scintg_frontpg_descwp_scintg_frontpg_keywords+18 more
Shortcode Output
[wp_social_integration_feed_short_code][wp_social_integration_like_button][wp_social_integration_follow_button][wp_social_integration_send_button]
FAQ

Frequently Asked Questions about WP Social Integration