HivePress – Business Directory & Classified Ads Plugin Security & Risk Analysis

wordpress.org/plugins/hivepress

A simple yet powerful plugin to create a business directory, job board, real estate, classified ads, or basically any type of directory website.

10K active installs v1.7.22 PHP 7.4+ WP 5.0+ Updated Feb 16, 2026
business-directoryclassifiedsdirectory-pluginjob-boardlisting
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is HivePress – Business Directory & Classified Ads Plugin Safe to Use in 2026?

Generally Safe

Score 100/100

HivePress – Business Directory & Classified Ads Plugin has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The plugin "hivepress" v1.7.22 exhibits a generally strong security posture, with a good emphasis on secure coding practices. The static analysis reveals a low attack surface, with no unprotected entry points identified. The high percentage of properly escaped output and the presence of capability checks for most interactions are positive indicators. However, there are areas for improvement. A significant portion of SQL queries are not using prepared statements, which could expose the plugin to SQL injection vulnerabilities if not handled meticulously by the database layer. Furthermore, the taint analysis, while not yielding critical issues, identified flows with unsanitized paths, suggesting a potential for unexpected behavior or vulnerabilities if these paths are exploited. The complete absence of recorded vulnerabilities in its history is a notable strength, indicating a mature and likely well-maintained codebase. Despite the minor concerns identified in the static analysis, the plugin appears to be relatively secure, though the non-prepared SQL queries warrant attention.

Key Concerns

  • SQL queries not using prepared statements
  • Taint analysis found unsanitized paths
Vulnerabilities
None known

HivePress – Business Directory & Classified Ads Plugin Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

HivePress – Business Directory & Classified Ads Plugin Code Analysis

Dangerous Functions
0
Raw SQL Queries
25
11 prepared
Unescaped Output
25
420 escaped
Nonce Checks
2
Capability Checks
31
File Operations
0
External Requests
7
Bundled Libraries
1

Bundled Libraries

Guzzle

SQL Query Safety

31% prepared36 total queries

Output Escaping

94% escaped445 total outputs
Data Flows
2 unsanitized

Data Flow Analysis

2 flows2 with unsanitized paths
grant_access (includes\controllers\class-google.php:62)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

HivePress – Business Directory & Classified Ads Plugin Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[hivepress_menu] includes\components\class-template.php:33
WordPress Hooks 247
actioninitincludes\class-core.php:84
actionplugins_loadedincludes\class-core.php:87
actioninitincludes\components\class-admin.php:44
actioninitincludes\components\class-admin.php:47
actionhivepress/v1/events/weeklyincludes\components\class-admin.php:50
actionadmin_menuincludes\components\class-admin.php:55
filtercustom_menu_orderincludes\components\class-admin.php:58
filtermenu_orderincludes\components\class-admin.php:59
actionhivepress/v1/activateincludes\components\class-admin.php:62
actionhivepress/v1/updateincludes\components\class-admin.php:63
actionadmin_initincludes\components\class-admin.php:66
actionupdate_option_hp_hivepress_license_keyincludes\components\class-admin.php:69
actionswitch_themeincludes\components\class-admin.php:70
actionhivepress/v1/activateincludes\components\class-admin.php:71
actioninitincludes\components\class-admin.php:74
filterdisplay_post_statesincludes\components\class-admin.php:75
actionadd_meta_boxesincludes\components\class-admin.php:78
actiondo_meta_boxesincludes\components\class-admin.php:79
actionsave_postincludes\components\class-admin.php:80
actionadmin_initincludes\components\class-admin.php:83
actionshow_user_profileincludes\components\class-admin.php:86
actionedit_user_profileincludes\components\class-admin.php:87
actionpersonal_options_updateincludes\components\class-admin.php:89
actionedit_user_profile_updateincludes\components\class-admin.php:90
actionadmin_initincludes\components\class-admin.php:93
actionadmin_enqueue_scriptsincludes\components\class-admin.php:96
filterplugin_action_links_hivepress/hivepress.phpincludes\components\class-admin.php:99
actionadmin_noticesincludes\components\class-admin.php:102
actionadmin_footerincludes\components\class-admin.php:105
filterhivepress/v1/image_sizesincludes\components\class-asset.php:28
actionafter_setup_themeincludes\components\class-asset.php:29
actionadmin_enqueue_scriptsincludes\components\class-asset.php:32
actionwp_enqueue_scriptsincludes\components\class-asset.php:33
actionadmin_enqueue_scriptsincludes\components\class-asset.php:36
actionwp_enqueue_scriptsincludes\components\class-asset.php:37
filterscript_loader_tagincludes\components\class-asset.php:40
filterhivepress/v1/scriptsincludes\components\class-asset.php:43
filterwp_insert_attachment_dataincludes\components\class-attachment.php:29
actionhivepress/v1/models/attachment/deleteincludes\components\class-attachment.php:32
actionhivepress/v1/models/user/deleteincludes\components\class-attachment.php:35
actionhivepress/v1/models/post/deleteincludes\components\class-attachment.php:36
actionhivepress/v1/models/term/deleteincludes\components\class-attachment.php:37
actionhivepress/v1/models/comment/deleteincludes\components\class-attachment.php:38
filterhivepress/v1/models/attachment/filenameincludes\components\class-attachment.php:41
actionhivepress/v1/setupincludes\components\class-attribute.php:60
filterhivepress/v1/post_typesincludes\components\class-attribute.php:63
filterhivepress/v1/taxonomiesincludes\components\class-attribute.php:66
actioninitincludes\components\class-attribute.php:69
filterwxr_importer.pre_process.termincludes\components\class-attribute.php:72
filterhivepress/v1/settingsincludes\components\class-attribute.php:75
filterhivepress/v1/meta_boxesincludes\components\class-attribute.php:78
actionadd_meta_boxesincludes\components\class-attribute.php:79
actiontemplate_redirectincludes\components\class-attribute.php:82
actionpre_get_postsincludes\components\class-attribute.php:87
filterjetpack_search_should_handle_queryincludes\components\class-attribute.php:90
filterhivepress/v1/forms/user_registerincludes\components\class-attribute.php:494
actionhivepress/v1/activateincludes\components\class-cache.php:28
actionhivepress/v1/updateincludes\components\class-cache.php:29
actionimport_endincludes\components\class-cache.php:32
actionhivepress/v1/components/cache/clearincludes\components\class-cache.php:35
actionhivepress/v1/models/user/createincludes\components\class-cache.php:38
actionhivepress/v1/models/user/updateincludes\components\class-cache.php:39
actionhivepress/v1/models/user/deleteincludes\components\class-cache.php:40
actionhivepress/v1/models/post/createincludes\components\class-cache.php:43
actionhivepress/v1/models/post/updateincludes\components\class-cache.php:44
actionhivepress/v1/models/post/deleteincludes\components\class-cache.php:45
actionhivepress/v1/models/post/update_termsincludes\components\class-cache.php:48
actionhivepress/v1/models/term/createincludes\components\class-cache.php:51
actionhivepress/v1/models/term/updateincludes\components\class-cache.php:52
actionhivepress/v1/models/term/deleteincludes\components\class-cache.php:53
actionhivepress/v1/models/comment/createincludes\components\class-cache.php:56
actionhivepress/v1/models/comment/updateincludes\components\class-cache.php:57
actionhivepress/v1/models/comment/deleteincludes\components\class-cache.php:58
actionhivepress/v1/components/cache/clearincludes\components\class-cache.php:473
actionpre_get_commentsincludes\components\class-comment.php:28
filtercomment_feed_whereincludes\components\class-comment.php:31
filterwp_count_commentsincludes\components\class-comment.php:34
actionwp_insert_commentincludes\components\class-comment.php:37
actionwp_set_comment_statusincludes\components\class-comment.php:38
filternotify_post_authorincludes\components\class-comment.php:41
filterhivepress/v1/stylesincludes\components\class-debug.php:33
filterhivetheme/v1/stylesincludes\components\class-debug.php:34
filterstyle_loader_tagincludes\components\class-debug.php:37
filterhivepress/v1/scriptsincludes\components\class-debug.php:40
filterhivetheme/v1/scriptsincludes\components\class-debug.php:41
actionrest_api_initincludes\components\class-editor.php:50
actionadmin_initincludes\components\class-editor.php:51
filterblock_categories_allincludes\components\class-editor.php:54
actioninitincludes\components\class-editor.php:57
actionadmin_initincludes\components\class-editor.php:62
actionelementor/elements/categories_registeredincludes\components\class-elementor.php:34
actionelementor/widgets/widgets_registeredincludes\components\class-elementor.php:38
actionelementor/widgets/registerincludes\components\class-elementor.php:40
filterhivepress/v1/components/editor/previewincludes\components\class-elementor.php:44
actionelementor/editor/after_enqueue_stylesincludes\components\class-elementor.php:47
filterhivepress/v1/emails/emailincludes\components\class-email.php:28
actionplugins_loadedincludes\components\class-email.php:31
filtermanage_hp_email_posts_columnsincludes\components\class-email.php:36
actionmanage_hp_email_posts_custom_columnincludes\components\class-email.php:37
filterwp_editor_settingsincludes\components\class-email.php:40
filterhivepress/v1/meta_boxes/email_detailsincludes\components\class-email.php:43
actionpost_updatedincludes\components\class-email.php:46
filterhivepress/v1/fields/fieldincludes\components\class-form.php:28
filterhivepress/v1/fields/field/optionsincludes\components\class-form.php:31
filterhivepress/v1/forms/form/metaincludes\components\class-form.php:35
filterhivepress/v1/forms/formincludes\components\class-form.php:36
filterhivepress/v1/forms/form/errorsincludes\components\class-form.php:37
actionadmin_enqueue_scriptsincludes\components\class-form.php:41
actionwp_enqueue_scriptsincludes\components\class-form.php:42
actionadmin_print_footer_scriptsincludes\components\class-form.php:45
actionwp_print_footer_scriptsincludes\components\class-form.php:46
actionimport_startincludes\components\class-hook.php:28
actionuser_registerincludes\components\class-hook.php:31
actionprofile_updateincludes\components\class-hook.php:32
actiondelete_userincludes\components\class-hook.php:33
actionadded_user_metaincludes\components\class-hook.php:36
actionupdated_user_metaincludes\components\class-hook.php:37
actiondeleted_user_metaincludes\components\class-hook.php:38
actionsave_postincludes\components\class-hook.php:41
actionbefore_delete_postincludes\components\class-hook.php:42
actionadd_attachmentincludes\components\class-hook.php:44
actionedit_attachmentincludes\components\class-hook.php:45
actiondelete_attachmentincludes\components\class-hook.php:46
actiontransition_post_statusincludes\components\class-hook.php:49
actionadded_post_metaincludes\components\class-hook.php:52
actionupdated_post_metaincludes\components\class-hook.php:53
actiondeleted_post_metaincludes\components\class-hook.php:54
actionset_object_termsincludes\components\class-hook.php:57
actioncreate_termincludes\components\class-hook.php:60
actionedit_termincludes\components\class-hook.php:61
actionpre_delete_termincludes\components\class-hook.php:62
actionadded_term_metaincludes\components\class-hook.php:65
actionupdated_term_metaincludes\components\class-hook.php:66
actiondeleted_term_metaincludes\components\class-hook.php:67
actionwp_insert_commentincludes\components\class-hook.php:70
actionedit_commentincludes\components\class-hook.php:71
actiondelete_commentincludes\components\class-hook.php:72
actionwp_set_comment_statusincludes\components\class-hook.php:75
actionadded_comment_metaincludes\components\class-hook.php:78
actionupdated_comment_metaincludes\components\class-hook.php:79
actiondeleted_comment_metaincludes\components\class-hook.php:80
actionhivepress/v1/models/listing/createincludes\components\class-listing.php:30
actionhivepress/v1/models/listing/updateincludes\components\class-listing.php:31
actionhivepress/v1/models/listing/update_imagesincludes\components\class-listing.php:34
actionhivepress/v1/models/listing/update_statusincludes\components\class-listing.php:37
actionhivepress/v1/events/hourlyincludes\components\class-listing.php:40
filterhivepress/v1/taxonomiesincludes\components\class-listing.php:43
filterhivepress/v1/models/listingincludes\components\class-listing.php:46
filterhivepress/v1/forms/listing_submitincludes\components\class-listing.php:49
filterhivepress/v1/forms/listing_updateincludes\components\class-listing.php:50
filtermanage_hp_listing_posts_columnsincludes\components\class-listing.php:55
actionmanage_hp_listing_posts_custom_columnincludes\components\class-listing.php:56
filterdisplay_post_statesincludes\components\class-listing.php:59
filterhivepress/v1/meta_boxes/listing_settingsincludes\components\class-listing.php:62
filterhivepress/v1/meta_boxes/listing_imagesincludes\components\class-listing.php:63
filterhivepress/v1/components/request/contextincludes\components\class-listing.php:67
filterhivepress/v1/menus/user_accountincludes\components\class-listing.php:70
filterhivepress/v1/menus/listing_manage/itemsincludes\components\class-listing.php:71
filterhivepress/v1/templates/listing_view_block/blocksincludes\components\class-listing.php:74
filterhivepress/v1/templates/listing_edit_block/blocksincludes\components\class-listing.php:75
actionactivate_litespeed-cache/litespeed-cache.phpincludes\components\class-litespeed.php:28
actionhivepress/v1/activateincludes\components\class-litespeed.php:36
actionhivepress/v1/models/user/loginincludes\components\class-litespeed.php:39
filterlitespeed_can_change_varyincludes\components\class-litespeed.php:55
actioninitincludes\components\class-request.php:31
actionrest_api_initincludes\components\class-router.php:42
actioninitincludes\components\class-router.php:45
filterregister_post_type_argsincludes\components\class-router.php:48
filterregister_taxonomy_argsincludes\components\class-router.php:49
actionhivepress/v1/activateincludes\components\class-router.php:52
actionhivepress/v1/updateincludes\components\class-router.php:53
actionhivepress/v1/deactivateincludes\components\class-router.php:54
filterdocument_title_partsincludes\components\class-router.php:59
filterrank_math/frontend/titleincludes\components\class-router.php:62
filterhivepress/v1/templates/pageincludes\components\class-router.php:65
filtertemplate_includeincludes\components\class-router.php:68
filterredirect_canonicalincludes\components\class-router.php:71
actionpre_get_postsincludes\components\class-router.php:74
actionhivepress/v1/activateincludes\components\class-scheduler.php:28
actionhivepress/v1/updateincludes\components\class-scheduler.php:29
actionhivepress/v1/deactivateincludes\components\class-scheduler.php:32
actionhivepress/v1/activateincludes\components\class-scheduler.php:33
actionhivepress/v1/updateincludes\components\class-scheduler.php:34
actionhivepress/v1/models/post/updateincludes\components\class-template.php:30
filtermanage_hp_template_posts_columnsincludes\components\class-template.php:38
filterbody_classincludes\components\class-template.php:42
filterwp_nav_menu_itemsincludes\components\class-template.php:45
filterwp_page_menuincludes\components\class-template.php:46
actionstorefront_headerincludes\components\class-template.php:49
actionhivetheme/v1/render/site_headerincludes\components\class-template.php:52
actionwp_footerincludes\components\class-template.php:55
filtertwentynineteen_can_show_post_thumbnailincludes\components\class-template.php:58
filterocean_display_page_headerincludes\components\class-template.php:59
filteralloptionsincludes\components\class-translator.php:29
actionhivepress/v1/models/post/createincludes\components\class-translator.php:32
actionhivepress/v1/updateincludes\components\class-upgrade.php:28
actionhivepress/v1/updateincludes\components\class-upgrade.php:31
actionhivepress/v1/updateincludes\components\class-upgrade.php:34
actionhivepress/v1/updateincludes\components\class-upgrade.php:37
actionhivepress/v1/updateincludes\components\class-upgrade.php:40
actionhivepress/v1/activateincludes\components\class-upgrade.php:43
actionhivepress/v1/models/user/registerincludes\components\class-user.php:31
filterauthenticateincludes\components\class-user.php:34
actionhivepress/v2/models/user/updateincludes\components\class-user.php:37
filterhivepress/v1/forms/user_registerincludes\components\class-user.php:40
filterhivepress/v1/models/userincludes\components\class-user.php:43
filterget_avatarincludes\components\class-user.php:46
filtermanage_users_columnsincludes\components\class-user.php:52
filtermanage_users_custom_columnincludes\components\class-user.php:53
filterhivepress/v1/meta_boxes/user_settingsincludes\components\class-user.php:57
actionpersonal_options_updateincludes\components\class-user.php:59
actionedit_user_profile_updateincludes\components\class-user.php:60
filterhivepress/v1/components/request/contextincludes\components\class-user.php:64
actiontemplate_redirectincludes\components\class-user.php:67
filterhivepress/v1/templates/user_view_block/blocksincludes\components\class-user.php:70
filterhivepress/v1/templates/user_view_page/blocksincludes\components\class-user.php:71
filterhivepress/v1/templates/vendor_view_block/blocksincludes\components\class-user.php:73
filterhivepress/v1/templates/vendor_view_page/blocksincludes\components\class-user.php:74
filterhivepress/v1/templates/site_footer_blockincludes\components\class-user.php:76
actionhivepress/v1/models/listing/createincludes\components\class-vendor.php:30
actionhivepress/v1/models/listing/update_categoriesincludes\components\class-vendor.php:31
actionhivepress/v2/models/user/updateincludes\components\class-vendor.php:34
actionhivepress/v1/models/vendor/updateincludes\components\class-vendor.php:37
filterhivepress/v1/forms/user_updateincludes\components\class-vendor.php:40
filterhivepress/v1/forms/user_update/errorsincludes\components\class-vendor.php:43
filterhivepress/v1/post_typesincludes\components\class-vendor.php:46
actioninitincludes\components\class-vendor.php:51
filterhivepress/v1/templates/listing_view_pageincludes\components\class-vendor.php:54
filterhivepress/v1/templates/user_edit_settings_page/blocksincludes\components\class-vendor.php:55
actionactivate_woocommerce/woocommerce.phpincludes\components\class-woocommerce.php:36
actionhivepress/v1/activateincludes\components\class-woocommerce.php:44
actionwoocommerce_custom_orders_table_background_syncincludes\components\class-woocommerce.php:47
actionwoocommerce_order_status_changedincludes\components\class-woocommerce.php:50
actionwoocommerce_checkout_create_order_line_itemincludes\components\class-woocommerce.php:53
filterwoocommerce_order_item_get_formatted_meta_dataincludes\components\class-woocommerce.php:56
filterwoocommerce_get_item_dataincludes\components\class-woocommerce.php:59
actionhivepress/v1/models/user/update_first_nameincludes\components\class-woocommerce.php:62
actionhivepress/v1/models/user/update_last_nameincludes\components\class-woocommerce.php:63
filterhivepress/v1/countriesincludes\components\class-woocommerce.php:66
filterhivepress/v1/components/request/contextincludes\components\class-woocommerce.php:71
actiontemplate_redirectincludes\components\class-woocommerce.php:74
filterwc_get_templateincludes\components\class-woocommerce.php:77
filterhivepress/v1/menus/user_accountincludes\components\class-woocommerce.php:80
filterhivepress/v1/templates/user_account_pageincludes\components\class-woocommerce.php:83
filterthe_titleincludes\components\class-woocommerce.php:460
filterhivepress/v1/forms/user_registerincludes\integrations\class-mailchimp.php:33
actionhivepress/v1/models/user/registerincludes\integrations\class-mailchimp.php:36
Maintenance & Trust

HivePress – Business Directory & Classified Ads Plugin Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 16, 2026
PHP min version7.4
Downloads483K

Community Trust

Rating98/100
Number of ratings214
Active installs10K
Developer Profile

HivePress – Business Directory & Classified Ads Plugin Developer Profile

HivePress

9 plugins · 60K total installs

77
trust score
Avg Security Score
97/100
Avg Patch Time
154 days
View full developer profile
Detection Fingerprints

How We Detect HivePress – Business Directory & Classified Ads Plugin

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/hivepress/assets/css/admin/blocks.css/wp-content/plugins/hivepress/assets/css/admin/blocks.min.css/wp-content/plugins/hivepress/assets/css/admin/common.css/wp-content/plugins/hivepress/assets/css/admin/common.min.css/wp-content/plugins/hivepress/assets/css/frontend/blocks.css/wp-content/plugins/hivepress/assets/css/frontend/blocks.min.css/wp-content/plugins/hivepress/assets/css/frontend/common.css/wp-content/plugins/hivepress/assets/css/frontend/common.min.css+26 more
Script Paths
/wp-content/plugins/hivepress/assets/js/frontend/common.js/wp-content/plugins/hivepress/assets/js/frontend/fields.js/wp-content/plugins/hivepress/assets/js/frontend/vendors.js
Version Parameters
ver=1.7.22

HTML / DOM Fingerprints

CSS Classes
hp-formhp-fieldhp-sectionhp-buttonhp-modalhp-tabhp-navigationhp-pagination+11 more
HTML Comments
<!-- HivePress --><!-- HivePress Core --><!-- HivePress Form --><!-- HivePress Fields -->+17 more
Data Attributes
data-hp-input-iddata-hp-field-typedata-hp-form-iddata-hp-section-iddata-hp-button-iddata-hp-modal-id+10 more
JS Globals
hivepressHivePress
REST Endpoints
/wp-json/hivepress/v1
Shortcode Output
[hivepress_form[hivepress_listings[hivepress_search[hivepress_user_profile
FAQ

Frequently Asked Questions about HivePress – Business Directory & Classified Ads Plugin