
WPJAM Social Share Security & Risk Analysis
wordpress.org/plugins/wpjam-social-share社会化分享这个 WordPress 插件主要功能,就是在博客上集成当前国内主要社会化分享按钮,并且和 Google Analytics 深度整合。
Is WPJAM Social Share Safe to Use in 2026?
Generally Safe
Score 85/100WPJAM Social Share has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
Based on the static analysis, the wpjam-social-share plugin version 1.0 appears to have a strong security posture with zero identified entry points, dangerous functions, SQL queries without prepared statements, or file operations. The absence of identified taint flows further suggests a lack of exploitable vulnerabilities within the analyzed code.
However, a significant concern arises from the output escaping. With 100% of its 11 identified outputs not properly escaped, this presents a considerable risk of Cross-Site Scripting (XSS) vulnerabilities. Any user-supplied data that is directly rendered on the frontend without proper sanitization could be manipulated to inject malicious scripts, potentially leading to session hijacking or other client-side attacks. The lack of nonce checks and capability checks also means that even if entry points were discovered in the future, their security might be compromised.
The plugin's vulnerability history is clean, with no recorded CVEs. This is a positive indicator of past security diligence or a limited attack surface that hasn't been targeted. Despite the clean history, the critical weakness in output escaping cannot be overlooked and requires immediate attention. The plugin shows good practices in avoiding dangerous functions and secure SQL queries, but the unescaped output is a major blind spot.
Key Concerns
- 100% of outputs are not properly escaped
- 0 nonces checked on entry points
- 0 capability checks on entry points
WPJAM Social Share Security Vulnerabilities
WPJAM Social Share Code Analysis
Output Escaping
WPJAM Social Share Attack Surface
WordPress Hooks 3
Maintenance & Trust
WPJAM Social Share Maintenance & Trust
Maintenance Signals
Community Trust
WPJAM Social Share Alternatives
AddToAny Share Buttons
add-to-any
Share buttons for WordPress including the AddToAny button, Facebook, Bluesky, Mastodon, WhatsApp, Pinterest, Reddit, many more, and follow icons too.
Social Sharing Plugin – Sassy Social Share
sassy-social-share
The Simplest and Optimized Social Share buttons. Facebook, X, Reddit, Pinterest, Whatsapp, Grok, ChatGPT, Gab, Gettr and over 100 more.
Social Icons Widget & Block – Social Media Icons & Share Buttons
social-icons-widget-by-wpzoom
Social media icons plugin for WordPress - Add 400+ social icons and share buttons. Gutenberg block, widget & Elementor support. GDPR compliant.
Orbit Fox: Duplicate Page, Menu Icons, SVG Support, Cookie Notice, Custom Fonts & More
themeisle-companion
Add modules like share buttons, header & footer scripts, disable comments, reading progress bar, custom fonts, custom login page & more in one plugin.
Social Media Share Buttons & Social Sharing Icons
ultimate-social-media-icons
Share buttons and pop up share icons for social media sharing
WPJAM Social Share Developer Profile
8 plugins · 4K total installs
How We Detect WPJAM Social Share
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wpjam-social-share/s.png/wp-content/plugins/wpjam-social-share/s32.png/wp-content/plugins/wpjam-social-share/shadow-center.png/wp-content/plugins/wpjam-social-share/shadow-side.pngHTML / DOM Fingerprints
social-sharesocial-share-leftsocial-share-rightsocial-share-centershare-icon-wrappershare-shadow-wrappershare-iconshare-shadow+7 moredata-sharedata-post-idsocial_share<div id="social-share"><p>分享到:</p><div class="social-share-left"></div><div class="social-share-center">