Property Hive Rental Yield Calculator Security & Risk Analysis

wordpress.org/plugins/property-hive-rental-yield-calculator

Quickly and easily add a rental yield calculator to your website

400 active installs v1.0.4 PHP + WP 3.8+ Updated May 22, 2024
property-hivepropertyhiverental-yieldrental-yield-calculatorrentalyield
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Property Hive Rental Yield Calculator Safe to Use in 2026?

Generally Safe

Score 92/100

Property Hive Rental Yield Calculator has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The plugin "property-hive-rental-yield-calculator" v1.0.4 exhibits a generally positive security posture based on the provided static analysis and vulnerability history. The absence of identified CVEs, critical taint flows, dangerous functions, and file operations suggests a well-maintained codebase. Furthermore, the use of prepared statements for all SQL queries is a strong indicator of good security practice, mitigating the risk of SQL injection vulnerabilities.

However, there are significant concerns regarding output escaping. The analysis indicates that 100% of the identified output operations are not properly escaped. This presents a high risk of Cross-Site Scripting (XSS) vulnerabilities, where malicious scripts could be injected into the site through the plugin's output, potentially leading to session hijacking, defacement, or other harmful actions. The lack of nonce checks and capability checks also means that the single shortcode entry point, while currently not unprotected, could become a vector for unauthorized actions if not carefully implemented within the surrounding theme or other plugins.

In conclusion, while the plugin has a clean vulnerability history and employs secure database practices, the complete lack of output escaping is a critical weakness that needs immediate attention. The absence of nonce and capability checks on its sole entry point also warrants further investigation to ensure robust security. Addressing the output escaping issue should be the top priority to significantly improve the plugin's security.

Key Concerns

  • 0% of outputs properly escaped
  • 0 Nonce checks
  • 0 Capability checks
Vulnerabilities
None known

Property Hive Rental Yield Calculator Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Property Hive Rental Yield Calculator Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
6
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped6 total outputs
Attack Surface

Property Hive Rental Yield Calculator Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[rental_yield_calculator] propertyhive-rental-yield-calculator.php:71
WordPress Hooks 2
actionwp_enqueue_scriptspropertyhive-rental-yield-calculator.php:68
actionwp_enqueue_scriptspropertyhive-rental-yield-calculator.php:69
Maintenance & Trust

Property Hive Rental Yield Calculator Maintenance & Trust

Maintenance Signals

WordPress version tested6.5.8
Last updatedMay 22, 2024
PHP min version
Downloads6K

Community Trust

Rating0/100
Number of ratings0
Active installs400
Developer Profile

Property Hive Rental Yield Calculator Developer Profile

Property Hive

8 plugins · 7K total installs

73
trust score
Avg Security Score
92/100
Avg Patch Time
218 days
View full developer profile
Detection Fingerprints

How We Detect Property Hive Rental Yield Calculator

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/property-hive-rental-yield-calculator/assets/js/propertyhive-rental-yield-calculator.js/wp-content/plugins/property-hive-rental-yield-calculator/assets/css/propertyhive-rental-yield-calculator.css
Script Paths
wp-content/plugins/property-hive-rental-yield-calculator/assets/js/propertyhive-rental-yield-calculator.js
Version Parameters
property-hive-rental-yield-calculator/assets/js/propertyhive-rental-yield-calculator.js?ver=property-hive-rental-yield-calculator/assets/css/propertyhive-rental-yield-calculator.css?ver=

HTML / DOM Fingerprints

Shortcode Output
[rental_yield_calculator]
FAQ

Frequently Asked Questions about Property Hive Rental Yield Calculator