
Coming Soon, Under Construction & Maintenance Mode By Dazzler Security & Risk Analysis
wordpress.org/plugins/coming-soon-wpAn awesome wordpress coming soon plugin to manage your under construction website, under maintenance mode website and offline website
Is Coming Soon, Under Construction & Maintenance Mode By Dazzler Safe to Use in 2026?
Mostly Safe
Score 84/100Coming Soon, Under Construction & Maintenance Mode By Dazzler is generally safe to use though it hasn't been updated recently. 2 past CVEs were resolved. Keep it updated.
The plugin "coming-soon-wp" v2.1.3 presents a mixed security posture. On the positive side, it demonstrates good practices in several areas, including the exclusive use of prepared statements for SQL queries and a high percentage of properly escaped outputs. It also performs a significant number of nonce checks, indicating an awareness of common WordPress security measures. However, several concerning indicators are present.
The static analysis reveals a single unprotected AJAX handler, which represents a direct entry point for potential attacks without proper authorization. The presence of 12 dangerous function calls, specifically "unserialize," is a notable concern as it can be exploited for Remote Code Execution if the serialized data originates from an untrusted source. While taint analysis shows no identified issues, the presence of "unserialize" without further context raises a red flag.
The vulnerability history shows two past medium severity CVEs, with common types including Missing Authorization and Cross-site Scripting. The most recent vulnerability was identified in March 2024. The absence of currently unpatched vulnerabilities is a positive sign, but the recurring types suggest potential architectural weaknesses that could manifest in new vulnerabilities. Overall, while the plugin has strengths in areas like SQL handling and output escaping, the unprotected AJAX endpoint and the use of "unserialize" warrant careful consideration and mitigation.
Key Concerns
- Unprotected AJAX handler
- Dangerous function: unserialize
- Past medium severity CVEs (x2)
- Vulnerability history indicates patterns (Missing Auth, XSS)
Coming Soon, Under Construction & Maintenance Mode By Dazzler Security Vulnerabilities
CVEs by Year
Severity Breakdown
2 total CVEs
Coming Soon, Under Construction & Maintenance Mode By Dazzler <= 2.1.2 - Maintenance Mode Bypass
Coming Soon, Under Construction & Maintenance Mode By Dazzler <= 1.6.3 - Admin+ Stored Cross-Site Scripting
Coming Soon, Under Construction & Maintenance Mode By Dazzler Code Analysis
Dangerous Functions Found
Output Escaping
Coming Soon, Under Construction & Maintenance Mode By Dazzler Attack Surface
AJAX Handlers 1
WordPress Hooks 5
Maintenance & Trust
Coming Soon, Under Construction & Maintenance Mode By Dazzler Maintenance & Trust
Maintenance Signals
Community Trust
Coming Soon, Under Construction & Maintenance Mode By Dazzler Alternatives
Site Offline Or Coming Soon Or Maintenance Mode
site-offline
Site Offline plugin manage your WordPress website in under construction or maintenance mode or coming soon or landing page.
Coming Soon – Under Construction
coming-soons
Coming Soon is advanced solution for WordPress construction users. Your website with our efforts will be perfectly.
Yuga Login Form
yuga-login-form
Custom login/registration with tabs, reCAPTCHA, redirects, styling, WP login replacement, Coming Soon mode, and user export.
Maintenance
maintenance
Great looking maintenance, coming soon & under construction pages. Put your site under maintenance in minutes.
Website Builder by SeedProd — Theme Builder, Landing Page Builder, Coming Soon Page, Maintenance Mode
coming-soon
Easy Drag & Drop Page Builder. A complete solution to create a WordPress Website, Custom Themes, Landing Pages, Coming Soon & Maintenance Mode Pages.
Coming Soon, Under Construction & Maintenance Mode By Dazzler Developer Profile
1 plugin · 7K total installs
How We Detect Coming Soon, Under Construction & Maintenance Mode By Dazzler
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/coming-soon-wp/assets/css/bootstrap.css/wp-content/plugins/coming-soon-wp/assets/css/font-awesome/css/font-awesome.min.css/wp-content/plugins/coming-soon-wp/assets/css/rcsp_jquery-ui.css/wp-content/plugins/coming-soon-wp/assets/css/backend.css/wp-content/plugins/coming-soon-wp/assets/css/dialog/dialog.css/wp-content/plugins/coming-soon-wp/assets/css/dialog/dialog-box-style.css/wp-content/plugins/coming-soon-wp/assets/css/dialog/dialog-jamie.css/wp-content/plugins/coming-soon-wp/assets/js/media-upload-script.js+7 moreassets/js/media-upload-script.jsassets/js/jquery-ui-timepicker.jsassets/js/my-color-picker-script.jsassets/js/bootstrap.min.jsassets/js/dialog/snap.svg-min.jsassets/js/dialog/modernizr.custom.js+2 moreHTML / DOM Fingerprints
dazz_cs_admin_bar_button_cswpsm-dazz-cs-review-noticewpsm-dazz-cs-dismiss-review-noticewpsm-dazz-cs-review-outwpsm-dazz-cs-review-laterwpsm-ratedComing Soon WP Menu add plugin menu name for coming soon pluginadd hook to add styles and scripts for coming soon panelLive Preview code+6 moredazz_cs_previewDAZZ_CSW_TEXT_DOMAINDAZZ_CSW_PLUGIN_URLdazz_cs_dashboarddazz_cs_statusdazz_cs_previewwpsm_dazz_cs_review