Connections Business Directory Income Level Security & Risk Analysis

wordpress.org/plugins/connections-business-directory-income-levels

Extension for the Connections Business Directory that adds the ability to add an income level to an entry.

10 active installs v2.0.1 PHP 5.6.20+ WP 5.1+ Updated Apr 13, 2024
address-bookaddressbookaddressesbiobios
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Connections Business Directory Income Level Safe to Use in 2026?

Generally Safe

Score 92/100

Connections Business Directory Income Level has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The static analysis of 'connections-business-directory-income-levels' v2.0.1 indicates a strong security posture based on the provided data. The absence of AJAX handlers, REST API routes, shortcodes, and cron events significantly limits the potential attack surface. Furthermore, the plugin demonstrates good coding practices by not using dangerous functions, performing all SQL queries using prepared statements, and not making external HTTP requests or file operations. The lack of any recorded vulnerabilities or CVEs, past or present, suggests a history of secure development and maintenance. However, a notable concern is the low percentage of properly escaped output (40%). This could leave the plugin susceptible to cross-site scripting (XSS) vulnerabilities if user-supplied data is not consistently and correctly sanitized before being displayed. The absence of nonce checks and capability checks, while potentially acceptable given the limited attack surface, could become a concern if new entry points are introduced in future versions without proper security controls. Overall, the plugin appears to be developed with security in mind, but the unescaped output warrants attention.

Key Concerns

  • Low output escaping coverage
Vulnerabilities
None known

Connections Business Directory Income Level Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Connections Business Directory Income Level Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
3
2 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

40% escaped5 total outputs
Attack Surface

Connections Business Directory Income Level Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 11
actioncn_metaboxconnections_income_levels.php:163
filtercn_csv_export_fields_configconnections_income_levels.php:166
filtercn_export_header-income_levelconnections_income_levels.php:167
filtercn_export_field-income_levelconnections_income_levels.php:168
filtercncsv_map_import_fieldsconnections_income_levels.php:171
actioncncsv_import_fieldsconnections_income_levels.php:172
filtercn_content_blocksconnections_income_levels.php:176
actioncn_output_meta_field-income_levelconnections_income_levels.php:179
actionwidgets_initconnections_income_levels.php:182
actionadmin_noticesconnections_income_levels.php:496
actionplugins_loadedconnections_income_levels.php:511
Maintenance & Trust

Connections Business Directory Income Level Maintenance & Trust

Maintenance Signals

WordPress version tested6.5.8
Last updatedApr 13, 2024
PHP min version5.6.20
Downloads7K

Community Trust

Rating100/100
Number of ratings1
Active installs10
Developer Profile

Connections Business Directory Income Level Developer Profile

Steven

14 plugins · 1K total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Connections Business Directory Income Level

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/connections-business-directory-income-levels/includes/class.widgets.php/wp-content/plugins/connections-business-directory-income-levels/connections_income_levels.php
Version Parameters
connections-business-directory-income-levels/connections_income_levels.php?ver=connections-business-directory-income-levels/includes/class.widgets.php?ver=

HTML / DOM Fingerprints

CSS Classes
cnil-income-level
HTML Comments
<!-- Income Level Options -->
Data Attributes
data-income-level-field
Shortcode Output
<span class="cnil-income-level"></span>
FAQ

Frequently Asked Questions about Connections Business Directory Income Level