Connections Business Directory Facilities Security & Risk Analysis

wordpress.org/plugins/connections-business-directory-facilities

An extension for the Connections Business Directory plugin which adds the ability to add and assign facilities to your business directory entries.

60 active installs v1.1.1 PHP 5.6.20+ WP 5.1+ Updated Apr 13, 2024
business-directorydirectoryfacilities
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Connections Business Directory Facilities Safe to Use in 2026?

Generally Safe

Score 92/100

Connections Business Directory Facilities has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The "connections-business-directory-facilities" v1.1.1 plugin exhibits a very strong security posture based on the provided static analysis. The complete absence of identified attack surface points like AJAX handlers, REST API routes, shortcodes, and cron events, especially without authentication checks, significantly reduces the potential for external exploitation. The code signals further reinforce this positive outlook, with no dangerous functions, all SQL queries using prepared statements, and a high percentage of properly escaped output. The presence of nonce and capability checks, even if minimal, suggests an awareness of fundamental security practices.

The taint analysis also reveals no identified vulnerabilities, with zero critical or high severity flows, and no unsanitized paths. This, combined with a clean vulnerability history devoid of any recorded CVEs, indicates a well-developed and secure plugin. The plugin's strengths lie in its minimal attack surface and robust coding practices demonstrated through SQL and output handling. The lack of any historical vulnerabilities is a significant positive indicator of ongoing security maintenance and diligence.

While the analysis doesn't reveal any immediate critical flaws, it's important to acknowledge that a complete absence of vulnerabilities can sometimes be due to the limited scope of analysis or the plugin's specific functionality. However, based on the provided data, the plugin is currently assessed as highly secure. The primary recommendation would be to continue this rigorous development approach, ensuring future updates maintain these high standards.

Key Concerns

  • Unescaped output detected
  • Limited entry points, but not zero
Vulnerabilities
None known

Connections Business Directory Facilities Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Connections Business Directory Facilities Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
7
31 escaped
Nonce Checks
1
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

82% escaped38 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
connectionsShowFacilitiesPage (includes\admin\pages\facilities.php:18)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Connections Business Directory Facilities Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 16
filtercn_submenuconnections-facilities.php:88
filtercn_facility_row_actionsconnections-facilities.php:91
actioncn_metaboxconnections-facilities.php:94
actioncn_process_taxonomy-categoryconnections-facilities.php:97
filtercncsv_map_import_fieldsconnections-facilities.php:100
actioncncsv_import_fieldsconnections-facilities.php:101
filtercn_csv_export_fields_configconnections-facilities.php:104
filtercn_csv_export_fieldsconnections-facilities.php:105
filtercn_export_header-facilitiesconnections-facilities.php:106
filtercn_export_field-facilitiesconnections-facilities.php:107
filtercn_content_blocksconnections-facilities.php:111
actioncn_entry_output_content-facilitiesconnections-facilities.php:114
actionwidgets_initconnections-facilities.php:117
actionadmin_noticesconnections-facilities.php:747
actionplugins_loadedconnections-facilities.php:762
filterConnections_Directory\Connector\Gravity_Forms\Register_Taxonomy_Fieldsconnections-facilities.php:766
Maintenance & Trust

Connections Business Directory Facilities Maintenance & Trust

Maintenance Signals

WordPress version tested6.5.8
Last updatedApr 13, 2024
PHP min version5.6.20
Downloads7K

Community Trust

Rating0/100
Number of ratings0
Active installs60
Developer Profile

Connections Business Directory Facilities Developer Profile

Steven

14 plugins · 1K total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Connections Business Directory Facilities

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/connections-business-directory-facilities/assets/css/connections-facilities.css/wp-content/plugins/connections-business-directory-facilities/assets/js/connections-facilities.js
Script Paths
/wp-content/plugins/connections-business-directory-facilities/assets/js/connections-facilities.js
Version Parameters
connections-business-directory-facilities/assets/css/connections-facilities.css?ver=connections-business-directory-facilities/assets/js/connections-facilities.js?ver=

HTML / DOM Fingerprints

CSS Classes
facilitydivfacilitychecklist
Data Attributes
data-cn-facilities
JS Globals
cn_facilities_admin_params
FAQ

Frequently Asked Questions about Connections Business Directory Facilities