Social Share For WooCommerce Security & Risk Analysis

wordpress.org/plugins/wp-woo-product-social-share

Add your valualble products on social sharing platform using Social Share For WooCommerce plugin with responsive design.

500 active installs v1.0.4 PHP + WP 4.0+ Updated Jul 21, 2022
buttonssocialsocial-buttonssocial-sharewoocommerce
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Social Share For WooCommerce Safe to Use in 2026?

Generally Safe

Score 85/100

Social Share For WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The static analysis of wp-woo-product-social-share v1.0.4 indicates a generally good security posture concerning common entry points and sensitive operations. There are no identified AJAX handlers, REST API routes, shortcodes, or cron events, which significantly limits the potential attack surface. Furthermore, the absence of dangerous functions, file operations, and external HTTP requests is a positive sign. The plugin also exclusively uses prepared statements for SQL queries and has no recorded vulnerability history, suggesting a commitment to secure development practices.

However, the analysis reveals a significant concern regarding output escaping, with only 17% of outputs being properly escaped. This could lead to cross-site scripting (XSS) vulnerabilities if user-supplied data is incorporated into the output without adequate sanitization. Additionally, the lack of nonce and capability checks, although not directly tied to identified entry points in this analysis, represents a missed opportunity to implement robust authorization and integrity checks, leaving potential future attack vectors less protected.

In conclusion, while the plugin exhibits strengths in its limited attack surface and secure SQL handling, the low rate of proper output escaping presents a notable risk. The absence of explicit authorization and integrity checks further contributes to a less robust security profile. Developers should prioritize addressing the output escaping issues to mitigate potential XSS vulnerabilities.

Key Concerns

  • Low output escaping rate
  • Missing capability checks
  • Missing nonce checks
Vulnerabilities
None known

Social Share For WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Social Share For WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
34
7 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

Select2

Output Escaping

17% escaped41 total outputs
Attack Surface

Social Share For WooCommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 10
actionwp_enqueue_scriptsincludes\wpsi_enqueue.php:33
actionwp_enqueue_scriptsincludes\wpsi_render_front_icons.php:2
actionwoocommerce_single_product_summaryincludes\wpsi_render_front_icons.php:80
actionwoocommerce_after_single_product_summaryincludes\wpsi_render_front_icons.php:82
actionplugins_loadedwpsi-social-share-for-woocommerce.php:85
actionadmin_initwpsi-social-share-for-woocommerce.php:132
actionadmin_noticeswpsi-social-share-for-woocommerce.php:149
actionadmin_menuwpsi-social-share-for-woocommerce.php:153
actionadmin_enqueue_scriptswpsi-social-share-for-woocommerce.php:171
actionadmin_initwpsi-social-share-for-woocommerce.php:175
Maintenance & Trust

Social Share For WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.0.11
Last updatedJul 21, 2022
PHP min version
Downloads41K

Community Trust

Rating68/100
Number of ratings5
Active installs500
Developer Profile

Social Share For WooCommerce Developer Profile

Kuldip Makadiya

2 plugins · 510 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Social Share For WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/wp-woo-product-social-share/images/css/wpsi-style.css/wp-content/plugins/wp-woo-product-social-share/images/css/wpsi-css-for-icons.css/wp-content/plugins/wp-woo-product-social-share/images/css/icons.26.svg.css/wp-content/plugins/wp-woo-product-social-share/images/css/select2.min.css/wp-content/plugins/wp-woo-product-social-share/images/js/select2.min.js/wp-content/plugins/wp-woo-product-social-share/images/js/popper.min.js
Script Paths
/wp-content/plugins/wp-woo-product-social-share/images/js/select2.min.js/wp-content/plugins/wp-woo-product-social-share/images/js/popper.min.js

HTML / DOM Fingerprints

CSS Classes
wpsi-social-share
Data Attributes
wpsi_active_pluginswpsi_register_settings_fields
JS Globals
wpsi_active_pluginswpsi_register_settings_fields
FAQ

Frequently Asked Questions about Social Share For WooCommerce