
WPB Social Master Security & Risk Analysis
wordpress.org/plugins/wpb-social-masterThis plugin will add responsive social share & follow icons. Very easy to use, just put a shortcode.
Is WPB Social Master Safe to Use in 2026?
Generally Safe
Score 85/100WPB Social Master has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'wpb-social-master' plugin version 1.0 exhibits a mixed security posture. On the positive side, it has no known vulnerabilities (CVEs) and its SQL queries are all properly prepared, which is a significant strength. Additionally, it avoids external HTTP requests and file operations, reducing common attack vectors. However, the static analysis reveals several critical areas of concern. The presence of the `create_function` is a known security risk as it can lead to arbitrary code execution if not handled with extreme caution, especially if user input can influence its execution. Furthermore, a significant portion of output (50%) is not properly escaped, presenting a clear risk of Cross-Site Scripting (XSS) vulnerabilities. The absence of nonce checks and capability checks across all entry points (shortcodes in this case) makes these functionalities vulnerable to CSRF attacks and privilege escalation, respectively, as they lack essential authorization and verification mechanisms.
Key Concerns
- Dangerous function 'create_function' used
- 50% of output not properly escaped (XSS risk)
- 0 Nonce checks found
- 0 Capability checks found
WPB Social Master Security Vulnerabilities
WPB Social Master Code Analysis
Dangerous Functions Found
Output Escaping
WPB Social Master Attack Surface
Shortcodes 2
WordPress Hooks 10
Maintenance & Trust
WPB Social Master Maintenance & Trust
Maintenance Signals
Community Trust
WPB Social Master Alternatives
Catch Social Share
catch-social-share
Catch Social Share - Catch Social Share is a simple yet feature-rich social sharing WordPress plugin that adds social share buttons on your site.
Hubbub Lite – Fast, free social sharing and follow buttons
social-pug
Your content is worth sharing. Let's makes it easier!
WP-Socialight
wp-socialight
WP-Socialight is a simple, lightweight social share plugin that will increase the interaction on your website.
Rigororus Social Share
rigorous-social-share
Add differnet social share to your website including social share count.
Social Media Sharing by FVP
social-media-sharing-by-fvp
Add buttons to share your posts and pages in most popular social media, you can choose between various styles.
WPB Social Master Developer Profile
25 plugins · 40K total installs
How We Detect WPB Social Master
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wpb-social-master/js/socialProfiles.min.js/wp-content/plugins/wpb-social-master/js/socialShare.min.js/wp-content/plugins/wpb-social-master/css/arthref.min.css/wp-content/plugins/wpb-social-master/css/main.css/wp-content/plugins/wpb-social-master/js/socialProfiles.min.js/wp-content/plugins/wpb-social-master/js/socialShare.min.jswpb-social-master/css/main.css?ver=wpb-social-master/js/socialShare.min.js?ver=wpb-social-master/js/socialProfiles.min.js?ver=wpb-social-master/css/arthref.min.css?ver=HTML / DOM Fingerprints
wpbshareSelectorwpbfollowSelectorsocialSharesocialProfiles<div class="wpbshareSelector"></div><div class="wpbfollowSelector"></div>