[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f4fMJcvs7SolnCVy2eqnlhrDuFHaGNs2z9E6vbfCAbCo":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":25,"download_link":26,"security_score":27,"vuln_count":28,"unpatched_count":29,"last_vuln_date":30,"fetched_at":31,"vulnerabilities":32,"developer":78,"crawl_stats":38,"alternatives":84,"analysis":186,"fingerprints":564},"wpupper-share-buttons","WPUpper Share Buttons","3.52","Freitas Victor","https:\u002F\u002Fprofiles.wordpress.org\u002Fvictorfreitas\u002F","\u003Cp>Free social share buttons, share to Facebook, WhatsApp, Messenger, Twitter, Reddit and much more.\u003Cbr \u002F>\nFollow US buttons include with Widgets.\u003C\u002Fp>\n\u003Cblockquote>\n\u003Cp>If you like the plugin, feel free to rate it (on the right side of this page) or \u003Ca href=\"https:\u002F\u002Fwww.paypal.com\u002Fcgi-bin\u002Fwebscr?cmd=_s-xclick&hosted_button_id=KYRMWXEEQN58L\" rel=\"nofollow ugc\">donate\u003C\u002Fa>. I am very pleased to dedicate myself to this plugin. Thank you so much! 🙂\u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Cul>\n\u003Cli>\n\u003Cp>Adds before, after the contents post or both\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Create a new table to store the sharing number of posts\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Store some options with the data that will be used to show, hide, stylize and remove specific buttons.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>The networks support are: – Facebook; – Twitter; – Linkedin; – Pinterest; – Thumbler; – Whatsapp; – Mailto; – Print Friendly; Telegram; Skype; Viper; – Reddit; – Gmail\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Thanks\u003C\u002Fh3>\n\u003Cp>Translators who did a great job converting the text of the plugin to their native language. Thank you!\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fvictorfreitas\u002F\" rel=\"nofollow ugc\">Victor Freitas\u003C\u002Fa> (Brazilian)\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fvictorfreitas\u002F\" rel=\"nofollow ugc\">Victor Freitas\u003C\u002Fa> (Spanish)\u003C\u002Fli>\n\u003Cli>\n\u003Cp>\u003Ca href=\"http:\u002F\u002Fburzhu.net\u002F\" rel=\"nofollow ugc\">Lily Ousborne\u003C\u002Fa> (Russian)\u003C\u002Fp>\n\u003C\u002Fli>\n\u003Cli>\n\u003Cp>Note: This is very important for all users worldwide.\u003Cbr \u002F>\nSo please contribute your language to the plugin to make it even more useful.\u003Cbr \u002F>\nTranslating validating in \u003Ca href=\"http:\u002F\u002Fwww.poedit.net\u002F\" rel=\"nofollow ugc\">“Poedit Editor”\u003C\u002Fa>.\u003C\u002Fp>\n\u003C\u002Fli>\n\u003C\u002Ful>\n","Free social share buttons, share to Facebook, WhatsApp, Messenger, Twitter, Reddit and much more.",4000,239482,98,196,"2025-03-27T06:32:00.000Z","6.7.5","6.3","7.0.0",[20,21,22,23,24],"share","share-buttons","share-icons","social-media","social-share","https:\u002F\u002Fgithub.com\u002Fvictorfreitas\u002Fwpupper-share-buttons","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwpupper-share-buttons.3.52.zip",90,3,0,"2025-02-20 15:01:31","2026-03-15T15:16:48.613Z",[33,48,63],{"id":34,"url_slug":35,"title":36,"description":37,"plugin_slug":4,"theme_slug":38,"affected_versions":39,"patched_in_version":6,"severity":40,"cvss_score":41,"cvss_vector":42,"vuln_type":43,"published_date":30,"updated_date":44,"references":45,"days_to_patch":47},"CVE-2024-13883","wpupper-share-buttons-cross-site-request-forgery-to-custom-css-update","WPUpper Share Buttons \u003C= 3.51 - Cross-Site Request Forgery to Custom CSS Update","The WPUpper Share Buttons plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.51. This is due to missing or incorrect nonce validation on the 'save_custom_css_request' function. This makes it possible for unauthenticated attackers to inject custom CSS to modify a site via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.",null,"\u003C=3.51","medium",4.3,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:N\u002FUI:R\u002FS:U\u002FC:N\u002FI:L\u002FA:N","Cross-Site Request Forgery (CSRF)","2025-03-28 18:35:15",[46],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002F5ca55c87-6548-43b8-a23f-d31a51df9533?source=api-prod",36,{"id":49,"url_slug":50,"title":51,"description":52,"plugin_slug":4,"theme_slug":38,"affected_versions":53,"patched_in_version":54,"severity":40,"cvss_score":55,"cvss_vector":56,"vuln_type":57,"published_date":58,"updated_date":59,"references":60,"days_to_patch":62},"CVE-2024-4997","wpupper-share-buttons-missing-authorization","WPUpper Share Buttons \u003C= 3.43 - Missing Authorization","The WPUpper Share Buttons plugin for WordPress is vulnerable to unauthorized access of data when preparing sharing links for posts and pages in all versions up to, and including, 3.43. This makes it possible for unauthenticated attackers to obtain the contents of password protected posts and pages.","\u003C=3.43","3.50",5.3,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:N\u002FUI:N\u002FS:U\u002FC:L\u002FI:N\u002FA:N","Missing Authorization","2024-06-03 16:40:47","2024-07-08 20:41:55",[61],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002Fc68ec00c-20a5-461d-bf72-c3190d29c9cf?source=api-prod",35,{"id":64,"url_slug":65,"title":66,"description":67,"plugin_slug":4,"theme_slug":38,"affected_versions":68,"patched_in_version":69,"severity":40,"cvss_score":70,"cvss_vector":71,"vuln_type":72,"published_date":73,"updated_date":74,"references":75,"days_to_patch":77},"CVE-2022-3838","wpupper-share-buttons-authenticated-admin-stored-cross-site-scripting","WPUpper Share Buttons \u003C= 3.42 - Authenticated (Admin+) Stored Cross-Site Scripting","The WPUpper Share Buttons plugin for WordPress is vulnerable to Authenticated (Admin+) Stored Cross-Site Scripting via the plugin's settings in versions up to, and including, 3.42 due to insufficient input sanitization and output escaping. This makes it possible for adminitrator-level attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","\u003C=3.42","3.43",5.5,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:H\u002FUI:N\u002FS:C\u002FC:L\u002FI:L\u002FA:N","Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","2022-11-10 00:00:00","2024-01-22 19:56:02",[76],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002Feda18b47-1c23-4ef5-9628-d6b5842bca04?source=api-prod",439,{"slug":79,"display_name":7,"profile_url":8,"plugin_count":80,"total_installs":11,"avg_security_score":27,"avg_patch_time_days":81,"trust_score":82,"computed_at":83},"victorfreitas",1,170,72,"2026-04-03T21:30:28.874Z",[85,105,124,142,164],{"slug":86,"name":87,"version":88,"author":89,"author_profile":90,"description":91,"short_description":92,"active_installs":27,"downloaded":93,"rating":94,"num_ratings":95,"last_updated":96,"tested_up_to":97,"requires_at_least":98,"requires_php":99,"tags":100,"homepage":102,"download_link":103,"security_score":104,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"social-linkz","Social Linkz – Lightweight and fast social media sharing plugin","1.8.9","KaizenCoders","https:\u002F\u002Fprofiles.wordpress.org\u002Fkaizencoders\u002F","\u003Cp>Social Linkz is a simple, fast, and lightweight social sharing plugin.\u003C\u002Fp>\n\u003Ch3>Features\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Blazing fast. Scripts don’t run where they shouldn’t and it uses inline SVG icons without the overhead of third-party libraries.\u003C\u002Fli>\n\u003Cli>Easy UI with no admin menu clutter. Enable inline share buttons, floating, or both. Pick from 24+ different networks and match your site’s branding in seconds.\u003C\u002Fli>\n\u003Cli>Numerous social share platforms (see a list of them below)\u003C\u002Fli>\n\u003Cli>Many placement options before or after posts, floating over your website’s pages, via widget, via shortcode, (top right, bottom left etc.)\u003C\u002Fli>\n\u003Cli>The possibility to give several actions to one social share button (e.g. your Facebook icon can lead visitors to your Facebook page, and also show a Facebook button to share your page on social media)\u003C\u002Fli>\n\u003Cli>Share counts\u003C\u002Fli>\n\u003Cli>Rearrange Order of social share icons\u003C\u002Fli>\n\u003Cli>Lots of other customization options for your social share buttons\u003C\u002Fli>\n\u003Cli>Compatible with Gutenberg editor\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>List of platforms supported in the free plugin\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Facebook share icon\u003C\u002Fli>\n\u003Cli>Twitter share icon\u003C\u002Fli>\n\u003Cli>Email icon\u003C\u002Fli>\n\u003Cli>RSS icon\u003C\u002Fli>\n\u003Cli>Instagram share icon\u003C\u002Fli>\n\u003Cli>Youtube share icon\u003C\u002Fli>\n\u003Cli>Pinterest share icon\u003C\u002Fli>\n\u003Cli>LinkedIn share icon\u003C\u002Fli>\n\u003Cli>Houzz share icon\u003C\u002Fli>\n\u003Cli>OK icon\u003C\u002Fli>\n\u003Cli>Telegram icon\u003C\u002Fli>\n\u003Cli>VK icon\u003C\u002Fli>\n\u003Cli>WeChat icon\u003C\u002Fli>\n\u003Cli>Weibo icon\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>If there are any important social share networks not covered yet, please let us know!\u003C\u002Fp>\n\u003Cp>In case of issues or questions please ask in the \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fsupport\u002Fplugin\u002Fsocial-linkz\" rel=\"ugc\">Support forum\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch3>Premium Features\u003C\u002Fh3>\n\u003Cp>The free plugin already provides tons of options for social sharing (as outlined above). In our Premium Plugin, even more is possible. Some examples for additional features in the Premium Plugin:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>More social share buttons (the icon pack includes an Instagram button, Snapchat button, Yummly button, Print button, Whatsapp button, Yelp button, Soundcloud button, Skype button, Flickr button, Share button, Blogger button, Digg button, Reddit button, Vimeo button, Tumblr button, Xing button, vk button, Telegram button, Amazon button, Spotify button and many more badge, see list above)\u003C\u002Fli>\n\u003Cli>More (default) design styles for your social share icons\u003C\u002Fli>\n\u003Cli>Themed design styles for your social share buttons (e.g. if you have a site about cats, you can pick from cat-themed buttons etc.)\u003C\u002Fli>\n\u003Cli>Better sharing & following features (tailored tweet texts, allow people to follow you directly on your page etc.)\u003C\u002Fli>\n\u003Cli>Place the social share icons on specific pages\u003C\u002Fli>\n\u003Cli>Optimized for mobile sharing and buton display\u003C\u002Fli>\n\u003Cli>More functions for email icon to connect with you\u003C\u002Fli>\n\u003Cli>More lightbox \u002F popup options (e.g. limit how often the popup is shown to the same user)\u003C\u002Fli>\n\u003Cli>Premium support\u003C\u002Fli>\n\u003Cli>Many more settings & options\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Integrations\u003C\u002Fh3>\n\u003Cblockquote>\n\u003Cp>➡️ \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Furl-shortify\" rel=\"ugc\">URL Shortify\u003C\u002Fa>\u003Cbr \u002F>\n  Social Linkz integrates with URL Shortify to generate short links and share it on different social networks.\u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Cp>Do you want us to integrate your WordPress plugin with Social Linkz❓❓❓ \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fsupport\u002Fplugin\u002Fsocial-linkz\u002F\" rel=\"ugc\">Let us know\u003C\u002Fa>. We would love to integrate your WordPress plugins. We will check the possibility of integration and if it matches, we will integrate your plugins too.\u003C\u002Fp>\n\u003Ch3>Translations\u003C\u002Fh3>\n\u003Cp>Does Social Linkz speak your language? If not, \u003Ca href=\"https:\u002F\u002Ftranslate.wordpress.org\u002Fprojects\u002Fwp-plugins\u002Fsocial-linkz\u002F\" rel=\"nofollow ugc\">translate “Social Linkz” into your language\u003C\u002Fa>.\u003C\u002Fp>\n\u003Ch3>DO YOU HAVE ANY QUESTIONS\u002F FEEDBACK\u002F FEATURE REQUEST\u002F BUG REPORT❓\u003C\u002Fh3>\n\u003Cp>Feel free to create a ticket \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fsupport\u002Fplugin\u002Fsocial-linkz\u002F\" rel=\"ugc\">here\u003C\u002Fa>. We love to communicate with you and reply to all your queries.\u003C\u002Fp>\n\u003Ch3>Spread The Word ❤️\u003C\u002Fh3>\n\u003Cp>If you like Social Linkz, please leave us a \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fsupport\u002Fplugin\u002Fsocial-linkz\u002Freviews\u002F#new-post\" rel=\"ugc\">⭐⭐⭐⭐⭐\u003C\u002Fa> review and also spread the word about it via Facebook and Twitter. That helps fellow website owners assess Social Linkz easily and benefit from it!\u003C\u002Fp>\n\u003Ch3>What’s Next\u003C\u002Fh3>\n\u003Cp>If you like this plugin then consider checking out our other solutions:\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Furl-shortify\u002F\" rel=\"ugc\">URL Shortify\u003C\u002Fa> – Simple, Powerful and Easy URL Shortener Plugin For WordPress.\u003C\u002Fp>\n\u003Cblockquote>\n\u003Cp>URL Shortify helps you beautify, manage, and share any URL on or off of your WordPress website. Create links that look how you want using your domain name! It’s a Simple, Easy & Elegant self hosted alternative to Bitly, TinyURL, Cuttly, Pretty Links, URL Shortener By My Theme Shop, Rebrandly, BL.Link, Short.io, and many other SaaS URL Shortener services.\u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fmagic-link\u002F\" rel=\"ugc\">Magic Link\u003C\u002Fa>\u003C\u002Fp>\n\u003Cblockquote>\n\u003Cp>Simple, Easy and Secure one click login for WordPress. No more passwords, no more lost passwords, no more password resets. Just one click login.\u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fupdate-urls\u002F\" rel=\"ugc\">Update URLs\u003C\u002Fa> – Quick and Easy way to search old links and replace them with new links in WordPress.\u003C\u002Fp>\n\u003Cblockquote>\n\u003Cp>If you move your WordPress website to a new domain name, you will find that internal links to pages and references to images are not updated. Instead, these links and references will point to your old domain name. Update URLs fixes that problem by helping you change old urls and links in your website.\u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Futilitify\u002F\" rel=\"ugc\">Utilitify\u003C\u002Fa> – Supercharge Your WordPress Site With Power Pack WordPress Utilities\u003C\u002Fp>\n\u003Cblockquote>\n\u003Cp>It’s a simple & neat plugin which helps you to customize your WordPress setup in a very elegant way.\u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Flogify\u002F\" rel=\"ugc\">Logify\u003C\u002Fa>\u003C\u002Fp>\n\u003Cblockquote>\n\u003Cp>Simple & Easy to use activity log plugin for monitor & record system changes\u003C\u002Fp>\n\u003C\u002Fblockquote>\n","Social Linkz plugin helps you easily share your content to social media.",51554,70,2,"2025-09-16T18:20:00.000Z","6.8.5","5.0.0","5.6.4",[21,22,101,23,24],"sharing","https:\u002F\u002Fkaizencoders.com\u002Fsocial-linkz","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsocial-linkz.1.8.9.zip",100,{"slug":106,"name":107,"version":108,"author":109,"author_profile":110,"description":111,"short_description":112,"active_installs":113,"downloaded":114,"rating":104,"num_ratings":95,"last_updated":115,"tested_up_to":16,"requires_at_least":116,"requires_php":117,"tags":118,"homepage":122,"download_link":123,"security_score":104,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"super-simple-social-share-icons","Super Simple Social Share Icons","1.0.2","Volt Blocks","https:\u002F\u002Fprofiles.wordpress.org\u002Fjamesvolt87\u002F","\u003Cp>Super Simple Social Share Icons provides an elegant and efficient way to add social sharing functionality to your WordPress site. With a focus on performance and user experience, this plugin offers customizable sharing buttons for popular social networks.\u003C\u002Fp>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Clean, modern design with multiple style options\u003C\u002Fli>\n\u003Cli>Support for major social networks (Facebook, X\u002FTwitter, LinkedIn, Pinterest, WhatsApp, Bluesky)\u003C\u002Fli>\n\u003Cli>Customizable button styles (Brand colors, Light, Dark, Custom)\u003C\u002Fli>\n\u003Cli>Flexible positioning (Above content, Below content, or Both)\u003C\u002Fli>\n\u003Cli>Shortcode support for custom placement\u003C\u002Fli>\n\u003Cli>Adjustable icon sizes and spacing\u003C\u002Fli>\n\u003Cli>Mobile-friendly and responsive design\u003C\u002Fli>\n\u003Cli>No external dependencies or tracking scripts\u003C\u002Fli>\n\u003Cli>Lightweight and performance-focused\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Supported Networks\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Facebook\u003C\u002Fli>\n\u003Cli>X (formerly Twitter)\u003C\u002Fli>\n\u003Cli>LinkedIn\u003C\u002Fli>\n\u003Cli>Pinterest\u003C\u002Fli>\n\u003Cli>WhatsApp\u003C\u002Fli>\n\u003Cli>Bluesky\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Support\u003C\u002Fh3>\n\u003Cp>For support please visit:\u003Cbr \u002F>\n\u003Ca href=\"https:\u002F\u002Fvoltblocks.com\u002Fcontact\u002F\" rel=\"nofollow ugc\">https:\u002F\u002Fvoltblocks.com\u002Fcontact\u002F\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>For documentation visit:\u003Cbr \u002F>\n\u003Ca href=\"https:\u002F\u002Fvoltblocks.com\u002Fdocumentation\u002F\" rel=\"nofollow ugc\">https:\u002F\u002Fvoltblocks.com\u002Fdocumentation\u002F\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>Support the development:\u003Cbr \u002F>\n\u003Ca href=\"https:\u002F\u002Fwww.buymeacoffee.com\u002Fvoltblocks\" rel=\"nofollow ugc\">https:\u002F\u002Fwww.buymeacoffee.com\u002Fvoltblocks\u003C\u002Fa>\u003C\u002Fp>\n","A lightweight and powerful solution for adding beautiful social sharing buttons to your WordPress site.",60,1008,"2025-09-04T10:22:00.000Z","5.0","7.0",[119,21,120,23,121],"facebook-share","social-icons","social-share-icons","https:\u002F\u002Fvoltblocks.com\u002Fplugins\u002Fsuper-simple-social-share-icons","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsuper-simple-social-share-icons.1.0.2.zip",{"slug":125,"name":126,"version":127,"author":128,"author_profile":129,"description":130,"short_description":131,"active_installs":132,"downloaded":133,"rating":104,"num_ratings":95,"last_updated":134,"tested_up_to":135,"requires_at_least":136,"requires_php":137,"tags":138,"homepage":139,"download_link":140,"security_score":141,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"super-easy-social-share","Super Easy Social Share","1.0.0","studioexcel","https:\u002F\u002Fprofiles.wordpress.org\u002Fstudioexcel\u002F","\u003Cp>The plugin’s purpose is to quickly add the most popular social network share buttons to your website. It includes share links above or below the content as well as a floating bar for desktop\u002Ftablet and fixed footer links on mobile.\u003Cbr \u002F>\nIt doesn’t use any tracking and won’t show your share count but it’s lightweight, works right out the box and is very easy to configure.\u003Cbr \u002F>\nYou can also add in-content social share buttons to individual posts and pages.\u003C\u002Fp>\n\u003Ch3>Support\u003C\u002Fh3>\n\u003Cp>If you have any problems, questions or requests simply use the support forum.\u003C\u002Fp>\n","The plugin adds social share links to your website. Includes content buttons and desktop and mobile floating bar.",10,1159,"2018-12-08T20:41:00.000Z","5.0.25","4.6","5.2.4",[21,23,121],"","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsuper-easy-social-share.zip",85,{"slug":143,"name":144,"version":145,"author":146,"author_profile":147,"description":148,"short_description":149,"active_installs":150,"downloaded":151,"rating":152,"num_ratings":153,"last_updated":154,"tested_up_to":155,"requires_at_least":156,"requires_php":157,"tags":158,"homepage":160,"download_link":161,"security_score":162,"vuln_count":28,"unpatched_count":29,"last_vuln_date":163,"fetched_at":31},"add-to-any","AddToAny Share Buttons","1.8.16","micropat","https:\u002F\u002Fprofiles.wordpress.org\u002Fmicropat\u002F","\u003Cp>The AddToAny Share Buttons plugin for WordPress increases traffic & engagement by helping people share your posts and pages to any service. Services include Facebook, Bluesky, Mastodon, Pinterest, WhatsApp, LinkedIn, Threads, Tumblr, Reddit, X, WeChat, and many more sharing and social media sites & apps.\u003C\u002Fp>\n\u003Cp>AddToAny is the home of universal sharing, and the AddToAny plugin is the most popular share plugin for WordPress, making sites social media ready since 2006.\u003C\u002Fp>\n\u003Ch4>Share Buttons\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.addtoany.com\u002Fbuttons\u002Fcustomize\u002Fwordpress\u002Fstandalone_services\" rel=\"nofollow ugc\">\u003Cstrong>Standard\u003C\u002Fstrong>\u003C\u002Fa> share buttons — share each piece of content\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.addtoany.com\u002Fbuttons\u002Fcustomize\u002Fwordpress\u002Ffloating_share_buttons\" rel=\"nofollow ugc\">\u003Cstrong>Floating\u003C\u002Fstrong>\u003C\u002Fa> share buttons — responsive & customizable, vertical & horizontal\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Counters\u003C\u002Fstrong> — fast & official \u003Ca href=\"https:\u002F\u002Fwww.addtoany.com\u002Fbuttons\u002Fcustomize\u002Fwordpress\u002Fshare_counters\" rel=\"nofollow ugc\">share counts\u003C\u002Fa> in the same style\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Follow\u003C\u002Fstrong> buttons — \u003Ca href=\"https:\u002F\u002Fwww.addtoany.com\u002Fbuttons\u002Fcustomize\u002Fwordpress\u002Ffollow_buttons\" rel=\"nofollow ugc\">social media links\u003C\u002Fa> to your Instagram, YouTube, Discord, Snapchat\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Image\u003C\u002Fstrong> sharing buttons – share buttons for \u003Ca href=\"https:\u002F\u002Fwww.addtoany.com\u002Fbuttons\u002Fcustomize\u002Fwordpress\u002Fimage_sharing\" rel=\"nofollow ugc\">sharing images\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Vector\u003C\u002Fstrong> share buttons & follow buttons — \u003Ca href=\"https:\u002F\u002Fwww.addtoany.com\u002Fbuttons\u002Fcustomize\u002Fwordpress\u002Ficon_color\" rel=\"nofollow ugc\">custom color\u003C\u002Fa> SVG icons\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Custom\u003C\u002Fstrong> share icons — use your own if you prefer\u003C\u002Fli>\n\u003Cli>Official buttons including the Facebook Like Button, Pinterest Save Button, and LinkedIn Share Button\u003C\u002Fli>\n\u003Cli>Universal email sharing makes it easy to share via Gmail, Yahoo Mail, Outlook.com (Hotmail), AOL Mail, and any other web or native apps\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Custom Placement & Appearance\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Before content, after content, or before & after content\u003C\u002Fli>\n\u003Cli>Vertical Floating Share Bar, and Horizontal Floating Share Bar\u003C\u002Fli>\n\u003Cli>As a shortcode, or a widget within a theme’s layout\u003C\u002Fli>\n\u003Cli>Programmatically with template tags\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Analytics Integration\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Google Analytics integration (\u003Ca href=\"https:\u002F\u002Fwww.addtoany.com\u002Fext\u002Fgoogle_analytics\u002F\" rel=\"nofollow ugc\">access guide\u003C\u002Fa>) for sharing analytics\u003C\u002Fli>\n\u003Cli>Track shared links with Bitly and custom URL shorteners\u003C\u002Fli>\n\u003Cli>Display share counts on posts and pages\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>WordPress Optimized\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Loads asynchronously so your content always loads before or in parallel with AddToAny\u003C\u002Fli>\n\u003Cli>Supports theme features such as HTML5, widgets, infinite scroll, post formats\u003C\u002Fli>\n\u003Cli>Supports WooCommerce, multilingual sites, multisite networks, and accessibility standards\u003C\u002Fli>\n\u003Cli>AddToAny is free — no signup, no login, no accounts to manage\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Mobile Optimized & Retina Ready\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>AddToAny gives users the choice in sharing from a service’s native app or from a web app\u003C\u002Fli>\n\u003Cli>Responsive Floating Share Buttons are mobile ready by default, and configurable breakpoints make floating buttons work with any theme\u003C\u002Fli>\n\u003Cli>AddToAny’s SVG icons are super-lightweight and pixel-perfect at any size, and AddToAny’s responsive share menu fits on all displays\u003C\u002Fli>\n\u003Cli>Automatic \u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Famp\u002F\" rel=\"ugc\">AMP\u003C\u002Fa> (Accelerated Mobile Pages) support for social share buttons on AMP pages\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Customizable & Extensible\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Choose exactly where you want AddToAny to appear\u003C\u002Fli>\n\u003Cli>Easily \u003Ca href=\"https:\u002F\u002Fwww.addtoany.com\u002Fbuttons\u002Fcustomize\u002Fwordpress\" rel=\"nofollow ugc\">customize sharing\u003C\u002Fa> on your WordPress site\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fadd-to-any\u002F#faq\" rel=\"ugc\">Highly extensible\u003C\u002Fa> for developers and designers\u003C\u002Fli>\n\u003Cli>Custom icons let you use any icons from any location (media uploads directory, CDN, etc.)\u003C\u002Fli>\n\u003Cli>Many more publisher and user features\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Wide Support\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Over 10 years of development\u003C\u002Fli>\n\u003Cli>Over 18 million downloads\u003C\u002Fli>\n\u003Cli>Translated into dozens of languages\u003C\u002Fli>\n\u003Cli>Ongoing support from the community\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>This plugin always strives to be the best WordPress plugin for sharing. Development is fueled by your kind words and feedback.\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.addtoany.com\u002Fshare#url=https%3A%2F%2Fwordpress.org%2Fplugins%2Fadd-to-any%2F&title=AddToAny%20Sharing%20Plugin%20for%20WordPress\" title=\"Share\" rel=\"nofollow ugc\">Share\u003C\u002Fa> this plugin\u003C\u002Fp>\n\u003Cp>See also:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>The \u003Ca href=\"https:\u002F\u002Fwww.addtoany.com\u002Fbuttons\u002F\" rel=\"nofollow ugc\">share buttons\u003C\u002Fa> for all platforms\u003C\u002Fli>\n\u003Cli>The \u003Ca href=\"https:\u002F\u002Fwww.addtoany.com\u002Fbuttons\u002Ffor\u002Fwordpress_com\" rel=\"nofollow ugc\">share buttons for WordPress.com\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.addtoany.com\u002Fblog\u002F\" rel=\"nofollow ugc\">AddToAny Blog\u003C\u002Fa> | \u003Ca href=\"https:\u002F\u002Fwww.addtoany.com\u002Fprivacy\" rel=\"nofollow ugc\">Privacy Policy\u003C\u002Fa>\u003C\u002Fp>\n","Share buttons for WordPress including the AddToAny button, Facebook, Bluesky, Mastodon, WhatsApp, Pinterest, Reddit, many more, and follow icons too.",300000,18518979,94,1111,"2026-01-09T05:34:00.000Z","6.9.4","4.5","5.6",[20,21,22,159,23],"social","https:\u002F\u002Fwww.addtoany.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fadd-to-any.1.8.16.zip",99,"2021-08-10 00:00:00",{"slug":165,"name":166,"version":167,"author":168,"author_profile":169,"description":170,"short_description":171,"active_installs":172,"downloaded":173,"rating":174,"num_ratings":175,"last_updated":176,"tested_up_to":97,"requires_at_least":177,"requires_php":139,"tags":178,"homepage":182,"download_link":183,"security_score":152,"vuln_count":184,"unpatched_count":29,"last_vuln_date":185,"fetched_at":31},"sassy-social-share","Social Sharing Plugin – Sassy Social Share","3.3.79","Heateor Support","https:\u002F\u002Fprofiles.wordpress.org\u002Fheateor\u002F","\u003Cp>Allow the website visitors to share content over Facebook, Twitter, Google, Linkedin, Whatsapp, Tumblr, Pinterest, Reddit, Gab, Gettr and around 100 more social sharing and bookmarking services.\u003C\u002Fp>\n\u003Cp>This is the Simplest and Slickest Social Share plugin with optimized and great looking vector icons.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Note:\u003C\u002Fstrong> Plugin will not work on local server. You should have an online website for the plugin to function properly.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>This plugin does not save any cookies in the browsers of your website-visitors\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Ch4>Feature list\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fsupport.heateor.com\u002Fgdpr-and-our-plugins\u002F\" rel=\"nofollow ugc\">EU-GDPR Compliant\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>Compatible with Gutenberg editor\u003C\u002Fli>\n\u003Cli>Compatible with WPML and multilingual website\u003C\u002Fli>\n\u003Cli>Compatible with myCRED (append myCRED referral ID at the end of the URL being shared)\u003C\u002Fli>\n\u003Cli>Around \u003Cstrong>100 Social Sharing\u002FBookmarking\u003C\u002Fstrong> services\u003C\u002Fli>\n\u003Cli>Social Media follow icons (Redirect website visitors to your Social Media pages)\u003C\u002Fli>\n\u003Cli>Share counts are supported for Buffer, Reddit, Pinterest, Odnoklassniki, Fintel and Vkontakte\u003C\u002Fli>\n\u003Cli>FREE \u003Cstrong>Icon Customization\u003C\u002Fstrong> options\u003C\u002Fli>\n\u003Cli>Options to specify sharing icon shape – Square, Round and Rectangular\u003C\u002Fli>\n\u003Cli>Options to specify sharing icon size – minimum 16 pixels, no upper limit\u003C\u002Fli>\n\u003Cli>Options to specify sharing icon background-color and logo color\u003C\u002Fli>\n\u003Cli>Share counter customization options\u003C\u002Fli>\n\u003Cli>Enable share count cache with option to control cache refresh time-frame\u003C\u002Fli>\n\u003Cli>Enable\u002FDisable vertical\u002Ffloating social share bar on mobile device\u003C\u002Fli>\n\u003Cli>\u003Cstrong>URL Shortening Service\u003C\u002Fstrong> integration\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Standard and Floating\u003C\u002Fstrong> layout for Social Share icons\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Customizable Target URL\u003C\u002Fstrong> for Social Sharing\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Rearrange Order\u003C\u002Fstrong> of Social Share icons\u003C\u002Fli>\n\u003Cli>Specify \u003Cstrong>Position of Social Sharing Bar\u003C\u002Fstrong> with respect to content – Top and Bottom\u003C\u002Fli>\n\u003Cli>Enable\u002FDisable Social Sharing on default\u002Fcustom post types\u003C\u002Fli>\n\u003Cli>Enable\u002FDisable Social Sharing on individual pages\u002Fposts\u003C\u002Fli>\n\u003Cli>Enable\u002FDisable total\u002Findividual social share count(s)\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Mobile Responsiveness\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>Compatible with \u003Cstrong>AMP\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>Enable \u003Cstrong>Social Sharing at WooCommerce\u003C\u002Fstrong> products\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Official Like Buttons\u003C\u002Fstrong> (Facebook Like, Twitter Tweet, Pinterest Save etc.)\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Widgets and Shortcodes\u003C\u002Fstrong>\u003C\u002Fli>\n\u003Cli>Compatible with BuddyPress, BBPress, WooCommerce\u003C\u002Fli>\n\u003Cli>Multisite Compatible\u003C\u002Fli>\n\u003Cli>Supports HTTPS enabled websites\u003C\u002Fli>\n\u003Cli>24\u002F7 quickest support\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>What makes this plugin Stand Out from others?\u003C\u002Fh4>\n\u003Col>\n\u003Cli>\u003Cstrong>Free\u003C\u002Fstrong>: Yea, right. It is a free plugin. You need not pay single penny to use the features of this plugin.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>No Need to Register Anywhere\u003C\u002Fstrong>: You do not need to create account at our website to use this plugin.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>No Middle Layer\u003C\u002Fstrong>: Plugin runs totally on your website server without any communication to our servers.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Absolutely Simple\u003C\u002Fstrong>: Plugin configuration is kept dead simple. Screenshots are provided with options wherever required.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Free Icon Customization\u003C\u002Fstrong>: Icons can be customized in thousands of ways using the options available within the plugin, for FREE.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Mobile Responsiveness\u003C\u002Fstrong>: Icons can be adjusted according to the width of mobile device, using the plugin options.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Perfect Vector (SVG) Icons\u003C\u002Fstrong>: Social Share icons are Scalable Vector Graphics, meaning these load fast, scalable to any size, and are stunning on High-PPI screens (Retina and Retina HD displays).\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Optimal Loading time\u003C\u002Fstrong>: Loading time of Social Sharing icons is optimal and if you compare with other plugins, you will find it less than that of all those plugins.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Lightweight Code\u003C\u002Fstrong>: Our developers follow best coding practices to ensure efficient loading and performance.\u003C\u002Fli>\n\u003Cli>We promise to provide \u003Cstrong>best quality\u003C\u002Fstrong> among other similar plugins. If you find our plugin is lacking some feature, you can email us and we will do our best to include that feature in our plugin as soon as possible.\u003C\u002Fli>\n\u003Cli>Our \u003Cstrong>support team is working 24\u002F7\u003C\u002Fstrong> to answer your queries and assist you. You will find us the quickest to respond.\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch4>Important links\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.heateor.com\u002Fsassy-social-share-demo\" rel=\"nofollow ugc\">Plugin Demo\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"http:\u002F\u002Fsupport.heateor.com\u002Fcategory\u002Fsassy-social-share\" rel=\"nofollow ugc\">Customization\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.heateor.com\" rel=\"nofollow ugc\">About Us\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.facebook.com\u002FHeateor\" rel=\"nofollow ugc\">Our Facebook Page\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Ftwitter.com\u002FHeateor\" rel=\"nofollow ugc\">Our Twitter Page\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"http:\u002F\u002Fsupport.heateor.com\" rel=\"nofollow ugc\">Support Documentation\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.heateor.com\u002Fsocial-analytics-sharing\" rel=\"nofollow ugc\">Social Analytics\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.heateor.com\u002Fadd-ons\" rel=\"nofollow ugc\">Add-Ons\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>You can provide your feedback at hello[at]heateor[dot]com\u003C\u002Fp>\n","The Simplest and Optimized Social Share buttons. Facebook, X, Reddit, Pinterest, Whatsapp, Grok, ChatGPT, Gab, Gettr and over 100 more.",100000,6848298,96,519,"2025-09-15T10:28:00.000Z","2.5.0",[179,180,23,24,181],"chatgpt","grok","social-share-buttons","https:\u002F\u002Fwww.heateor.com","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsassy-social-share.3.3.79.zip",11,"2025-06-06 21:59:19",{"attackSurface":187,"codeSignals":282,"taintFlows":461,"riskAssessment":548,"analyzedAt":563},{"hooks":188,"ajaxHandlers":278,"restRoutes":279,"shortcodes":280,"cronEvents":281,"entryPointCount":29,"unprotectedCount":29},[189,195,198,202,206,211,215,219,223,227,229,233,237,241,244,250,254,257,261,265,266,268,273],{"type":190,"name":191,"callback":192,"file":193,"line":194},"action","widgets_init","add_widgets","Config\\core.php",75,{"type":190,"name":196,"callback":196,"file":193,"line":197},"admin_init",76,{"type":190,"name":199,"callback":200,"file":193,"line":201},"plugins_loaded","instance",516,{"type":190,"name":203,"callback":204,"file":193,"line":205},"init","load_textdomain",517,{"type":190,"name":207,"callback":208,"file":209,"line":210},"wp_enqueue_scripts","add_front_scripts","Config\\enqueue-scripts.php",24,{"type":190,"name":212,"callback":213,"file":209,"line":214},"admin_enqueue_scripts","admin_scripts",25,{"type":190,"name":216,"callback":217,"file":209,"line":218},"wp_footer","add_style_front",223,{"type":190,"name":196,"callback":220,"file":221,"line":222},"register_options_settings","Controller\\options.controller.php",23,{"type":190,"name":224,"callback":225,"file":226,"line":47},"admin_menu","menu_page","Controller\\settings.controller.php",{"type":190,"name":196,"callback":196,"file":226,"line":228},37,{"type":190,"name":230,"callback":231,"file":226,"line":232},"admin_body_class","body_class",39,{"type":190,"name":234,"callback":235,"file":226,"line":236},"in_admin_header","include_svg_symbols",40,{"type":190,"name":224,"callback":238,"file":239,"line":240},"menu","Controller\\share-reports.controller.php",80,{"type":190,"name":196,"callback":242,"file":239,"line":243},"export_csv",81,{"type":245,"name":246,"callback":247,"file":248,"line":249},"filter","the_content","content","Controller\\shares.controller.php",30,{"type":190,"name":251,"callback":252,"file":248,"line":253},"woocommerce_share","wc_render_share",31,{"type":190,"name":216,"callback":255,"file":248,"line":256},"buttons_fixed",32,{"type":190,"name":258,"callback":259,"file":248,"line":260},"add_meta_boxes","register_meta_boxes",33,{"type":190,"name":262,"callback":263,"file":248,"line":264},"save_post","save_meta",34,{"type":190,"name":231,"callback":231,"file":248,"line":62},{"type":190,"name":203,"callback":267,"file":248,"line":47},"svg_symbols",{"type":190,"name":269,"callback":270,"file":271,"line":272},"admin_footer","_js_vars","Vendor\\list-table.php",157,{"type":190,"name":274,"callback":275,"file":276,"line":277},"admin_notices","wpusb_not_supported_php_version","wpupper-share-buttons.php",74,[],[],[],[],{"dangerousFunctions":283,"sqlUsage":284,"outputEscaping":313,"fileOperations":80,"externalRequests":80,"nonceChecks":80,"capabilityChecks":80,"bundledLibraries":460},[],{"prepared":285,"raw":132,"locations":286},17,[287,290,292,294,296,299,301,304,306,310],{"file":193,"line":288,"context":289},257,"$wpdb->query() with variable interpolation",{"file":193,"line":291,"context":289},260,{"file":193,"line":293,"context":289},412,{"file":193,"line":295,"context":289},421,{"file":193,"line":297,"context":298},428,"$wpdb->get_results() with variable interpolation",{"file":193,"line":300,"context":289},461,{"file":239,"line":302,"context":303},171,"$wpdb->get_var() with variable interpolation",{"file":239,"line":305,"context":289},238,{"file":307,"line":308,"context":309},"Helper\\utils.php",1774,"$wpdb->get_col() with variable interpolation",{"file":311,"line":260,"context":312},"Model\\share-report.php","$wpdb->get_row() with variable interpolation",{"escaped":314,"rawEcho":94,"locations":315},410,[316,320,321,322,324,326,327,329,332,334,336,338,340,342,344,345,347,349,351,353,355,357,359,361,363,365,367,369,371,373,375,377,379,381,384,387,390,392,394,396,398,400,402,404,406,408,410,412,414,416,419,421,422,424,426,428,430,432,434,436,438,440,442,444,446,448,451,454,456,458],{"file":317,"line":318,"context":319},"Config\\social-elements.php",730,"raw output",{"file":239,"line":297,"context":319},{"file":248,"line":197,"context":319},{"file":248,"line":323,"context":319},168,{"file":325,"line":256,"context":319},"Controller\\widget-follow.controller.php",{"file":325,"line":62,"context":319},{"file":325,"line":328,"context":319},46,{"file":330,"line":331,"context":319},"Controller\\widgets.controller.php",44,{"file":330,"line":333,"context":319},47,{"file":330,"line":335,"context":319},62,{"file":330,"line":337,"context":319},73,{"file":307,"line":339,"context":319},894,{"file":271,"line":341,"context":319},362,{"file":271,"line":343,"context":319},411,{"file":271,"line":300,"context":319},{"file":271,"line":346,"context":319},462,{"file":271,"line":348,"context":319},463,{"file":271,"line":350,"context":319},468,{"file":271,"line":352,"context":319},859,{"file":271,"line":354,"context":319},1113,{"file":271,"line":356,"context":319},1130,{"file":271,"line":358,"context":319},1139,{"file":271,"line":360,"context":319},1215,{"file":271,"line":362,"context":319},1288,{"file":271,"line":364,"context":319},1291,{"file":271,"line":366,"context":319},1299,{"file":271,"line":368,"context":319},1300,{"file":271,"line":370,"context":319},1301,{"file":271,"line":372,"context":319},1304,{"file":271,"line":374,"context":319},1305,{"file":271,"line":376,"context":319},1306,{"file":378,"line":328,"context":319},"View\\settings-custom-css.view.php",{"file":378,"line":380,"context":319},57,{"file":382,"line":383,"context":319},"View\\settings-extra.view.php",28,{"file":385,"line":386,"context":319},"View\\settings-faq.view.php",50,{"file":388,"line":389,"context":319},"View\\settings.view.php",53,{"file":388,"line":391,"context":319},58,{"file":388,"line":393,"context":319},688,{"file":388,"line":395,"context":319},689,{"file":388,"line":397,"context":319},690,{"file":388,"line":399,"context":319},692,{"file":388,"line":401,"context":319},694,{"file":388,"line":403,"context":319},695,{"file":388,"line":405,"context":319},697,{"file":388,"line":407,"context":319},698,{"file":388,"line":409,"context":319},699,{"file":388,"line":411,"context":319},701,{"file":413,"line":383,"context":319},"View\\share-report.view.php",{"file":413,"line":415,"context":319},89,{"file":417,"line":418,"context":319},"View\\utils.view.php",130,{"file":417,"line":420,"context":319},167,{"file":417,"line":323,"context":319},{"file":417,"line":423,"context":319},169,{"file":417,"line":425,"context":319},181,{"file":417,"line":427,"context":319},188,{"file":417,"line":429,"context":319},213,{"file":417,"line":431,"context":319},226,{"file":417,"line":433,"context":319},227,{"file":417,"line":435,"context":319},228,{"file":417,"line":437,"context":319},264,{"file":417,"line":439,"context":319},278,{"file":417,"line":441,"context":319},280,{"file":417,"line":443,"context":319},298,{"file":417,"line":445,"context":319},312,{"file":417,"line":447,"context":319},453,{"file":449,"line":450,"context":319},"View\\widget-follow.view.php",64,{"file":452,"line":453,"context":319},"View\\widgets.view.php",52,{"file":452,"line":455,"context":319},61,{"file":452,"line":457,"context":319},67,{"file":452,"line":459,"context":319},325,[],[462,501,519],{"entryPoint":463,"graph":464,"unsanitizedCount":500,"severity":40},"search_box (Vendor\\list-table.php:346)",{"nodes":465,"edges":494},[466,471,476,480,482,486,488,492],{"id":467,"type":468,"label":469,"file":271,"line":470},"n0","source","$_REQUEST['orderby']",353,{"id":472,"type":473,"label":474,"file":271,"line":470,"wp_function":475},"n1","sink","echo() [XSS]","echo",{"id":477,"type":468,"label":478,"file":271,"line":479},"n2","$_REQUEST['order']",355,{"id":481,"type":473,"label":474,"file":271,"line":479,"wp_function":475},"n3",{"id":483,"type":468,"label":484,"file":271,"line":485},"n4","$_REQUEST['post_mime_type']",357,{"id":487,"type":473,"label":474,"file":271,"line":485,"wp_function":475},"n5",{"id":489,"type":468,"label":490,"file":271,"line":491},"n6","$_REQUEST['detached']",359,{"id":493,"type":473,"label":474,"file":271,"line":491,"wp_function":475},"n7",[495,497,498,499],{"from":467,"to":472,"sanitized":496},false,{"from":477,"to":481,"sanitized":496},{"from":483,"to":487,"sanitized":496},{"from":489,"to":493,"sanitized":496},4,{"entryPoint":502,"graph":503,"unsanitizedCount":95,"severity":518},"\u003Cutils> (Helper\\utils.php:0)",{"nodes":504,"edges":515},[505,507,510,511],{"id":467,"type":468,"label":506,"file":307,"line":174},"$_SERVER",{"id":472,"type":473,"label":508,"file":307,"line":418,"wp_function":509},"call_user_func() [RCE]","call_user_func",{"id":477,"type":468,"label":506,"file":307,"line":174},{"id":481,"type":473,"label":512,"file":307,"line":513,"wp_function":514},"update_option() [Settings Manipulation]",969,"update_option",[516,517],{"from":467,"to":472,"sanitized":496},{"from":477,"to":481,"sanitized":496},"high",{"entryPoint":520,"graph":521,"unsanitizedCount":547,"severity":518},"\u003Clist-table> (Vendor\\list-table.php:0)",{"nodes":522,"edges":540},[523,524,525,526,527,528,529,530,531,534,536,538],{"id":467,"type":468,"label":469,"file":271,"line":470},{"id":472,"type":473,"label":474,"file":271,"line":470,"wp_function":475},{"id":477,"type":468,"label":478,"file":271,"line":479},{"id":481,"type":473,"label":474,"file":271,"line":479,"wp_function":475},{"id":483,"type":468,"label":484,"file":271,"line":485},{"id":487,"type":473,"label":474,"file":271,"line":485,"wp_function":475},{"id":489,"type":468,"label":490,"file":271,"line":491},{"id":493,"type":473,"label":474,"file":271,"line":491,"wp_function":475},{"id":532,"type":468,"label":506,"file":271,"line":533},"n8",1052,{"id":535,"type":473,"label":474,"file":271,"line":364,"wp_function":475},"n9",{"id":537,"type":468,"label":506,"file":271,"line":533},"n10",{"id":539,"type":473,"label":508,"file":271,"line":364,"wp_function":509},"n11",[541,542,543,544,545,546],{"from":467,"to":472,"sanitized":496},{"from":477,"to":481,"sanitized":496},{"from":483,"to":487,"sanitized":496},{"from":489,"to":493,"sanitized":496},{"from":532,"to":535,"sanitized":496},{"from":537,"to":539,"sanitized":496},6,{"summary":549,"deductions":550},"The wpupper-share-buttons plugin, in version 3.52, exhibits a mixed security posture. While the static analysis shows a commendable lack of direct entry points like AJAX handlers, REST API routes, or shortcodes, and a good percentage of SQL queries using prepared statements and properly escaped output, there are underlying concerns.  The presence of 3 flows with unsanitized paths, two of which are flagged as high severity taint issues, is a significant red flag. This indicates potential vulnerabilities where user-supplied data could be manipulated to execute unintended actions or reveal sensitive information. Furthermore, the plugin's history of 3 medium severity CVEs, including Cross-Site Request Forgery, Missing Authorization, and Cross-Site Scripting, points to past weaknesses that, despite being patched, suggest a pattern of insecure coding practices.\n\nThe plugin's strengths lie in its minimal direct attack surface and good utilization of prepared statements and output escaping. However, the high-severity taint flows and historical vulnerability types suggest that vulnerabilities might be introduced through less obvious means, such as through the handling of file operations or external HTTP requests, or via logic flaws that are not directly exposed as entry points. The fact that all 3 identified flows have unsanitized paths, with 2 being high severity, is the most critical finding from the static analysis and should be prioritized for remediation. The plugin has a history of medium vulnerabilities, and while there are no currently unpatched CVEs, the past types are concerning and suggest potential underlying coding issues that could resurface.",[551,554,557,559,561],{"reason":552,"points":553},"High severity taint flows",15,{"reason":555,"points":556},"Unsanitized paths in taint flows",5,{"reason":558,"points":553},"Medium severity CVEs in history",{"reason":560,"points":28},"File operations found",{"reason":562,"points":28},"External HTTP requests found","2026-03-16T18:11:50.593Z",{"wat":565,"direct":580},{"assetPaths":566,"generatorPatterns":572,"scriptPaths":573,"versionParams":574},[567,568,569,570,571],"\u002Fwp-content\u002Fplugins\u002Fwpupper-share-buttons\u002Fassets\u002Fcss\u002Fadmin.css","\u002Fwp-content\u002Fplugins\u002Fwpupper-share-buttons\u002Fassets\u002Fcss\u002Ffront.css","\u002Fwp-content\u002Fplugins\u002Fwpupper-share-buttons\u002Fassets\u002Fjs\u002Fadmin.js","\u002Fwp-content\u002Fplugins\u002Fwpupper-share-buttons\u002Fassets\u002Fjs\u002Ffront.js","\u002Fwp-content\u002Fplugins\u002Fwpupper-share-buttons\u002Fassets\u002Fjs\u002Fhighlight.pack.js",[],[571,569,570],[575,576,577,578,579],"wpupper-share-buttons\u002Fassets\u002Fcss\u002Fadmin.css?ver=","wpupper-share-buttons\u002Fassets\u002Fcss\u002Ffront.css?ver=","wpupper-share-buttons\u002Fassets\u002Fjs\u002Fadmin.js?ver=","wpupper-share-buttons\u002Fassets\u002Fjs\u002Ffront.js?ver=","wpupper-share-buttons\u002Fassets\u002Fjs\u002Fhighlight.pack.js?ver=",{"cssClasses":581,"htmlComments":582,"htmlAttributes":583,"restEndpoints":585,"jsGlobals":586,"shortcodeOutput":588},[4],[],[584],"data-wpusb-id",[],[587],"WPUSBVars",[]]