
eHive Account Details Security & Risk Analysis
wordpress.org/plugins/ehive-account-detailsA plugin that allows you to display a public profile page for an eHive account.
Is eHive Account Details Safe to Use in 2026?
Generally Safe
Score 100/100eHive Account Details has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "ehive-account-details" plugin v2.4.2 presents a mixed security posture. On the positive side, the plugin demonstrates good practices by having no known CVEs, no dangerous functions, and exclusively using prepared statements for SQL queries. It also avoids file operations and external HTTP requests, which often introduce vulnerabilities. However, significant concerns arise from the static analysis. The plugin exhibits a very low rate of proper output escaping, with only 2% of 41 outputs being correctly handled. This is a substantial risk, as it leaves the plugin vulnerable to cross-site scripting (XSS) attacks. Furthermore, the complete absence of nonce checks and capability checks across all entry points is a critical oversight, potentially allowing unauthorized actions or data manipulation if any of the entry points are ever exposed without proper authentication. The lack of taint analysis results is noted, but the existing signals point to potential weaknesses rather than confirmed exploits. The vulnerability history being clean is reassuring, but it doesn't negate the risks identified in the static code analysis.
Key Concerns
- Low percentage of properly escaped output
- Missing nonce checks on entry points
- Missing capability checks on entry points
eHive Account Details Security Vulnerabilities
eHive Account Details Release Timeline
eHive Account Details Code Analysis
Output Escaping
eHive Account Details Attack Surface
Shortcodes 1
WordPress Hooks 10
Maintenance & Trust
eHive Account Details Maintenance & Trust
Maintenance Signals
Community Trust
eHive Account Details Alternatives
eHive Access
ehive-access
The base plugin for the eHive plugin suite.
eHive Object Details
ehive-object-details
A plugin to display a detail page for an eHive Object Record.
eHive Search
ehive-search
A plugin that give you the power to search eHive Objects from your WordPress website.
eHive Objects Image Grid
ehive-objects-image-grid
A plugin that enabled you to embed a grid of images from eHive on your site.
eHive Objects Gallery widget
ehive-objects-gallery-widget
A widget plugin that displays a gallery of objects arranged by category.
eHive Account Details Developer Profile
11 plugins · 360 total installs
How We Detect eHive Account Details
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/ehive-account-details/css/ehive_account_details.css/wp-content/plugins/ehive-account-details/js/ehive_account_details.js/wp-content/plugins/ehive-account-details/js/ehive_account_details.jsehive-account-details/css/ehive_account_details.css?ver=ehive-account-details/js/ehive_account_details.js?ver=HTML / DOM Fingerprints
ehive-options-demo-imageaccount-detail-itemehive_account_details_options[google_map_enabled]ehive_account_details_options[google_map_api_key]ehive_account_details_options[plugin_css_enabled]ehive_account_details_options[css_class]ehive_account_details_options[gallery_background_colour]ehive_account_details_options[gallery_background_colour_enabled]+12 moreEHiveAccountDetails