
Corona Awareness Popup Security & Risk Analysis
wordpress.org/plugins/corona-awareness-popupCorona Awareness Popup is a very simple plugin used to raise awareness against the deadly Corona (COVID-19) virus spreading throughout the world.
Is Corona Awareness Popup Safe to Use in 2026?
Generally Safe
Score 85/100Corona Awareness Popup has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin 'corona-awareness-popup' v1.0.0 exhibits a generally good security posture based on the provided static analysis. The absence of an attack surface (AJAX handlers, REST API routes, shortcodes, cron events) significantly reduces the potential for external exploitation. The code also demonstrates positive practices with 100% of SQL queries using prepared statements and at least one capability check in place.
However, there are areas of concern. A significant portion of output (65%) is not properly escaped, which could lead to cross-site scripting (XSS) vulnerabilities if user-supplied data is incorporated into these outputs without sanitization. The lack of nonces on any potential entry points (though none were detected, this is a general concern for any interactive plugin) and the absence of taint analysis flows could mask potential vulnerabilities. The plugin's vulnerability history is clean, which is a positive indicator, but this must be considered alongside the static analysis findings which point to potential weaknesses.
In conclusion, while the plugin avoids common attack vectors and handles database interactions securely, the high rate of unescaped output presents a notable risk. The lack of taint analysis results and the absence of nonces on potential entry points are minor concerns. The clean vulnerability history is a strength, but the static analysis suggests that the plugin is not entirely without risk.
Key Concerns
- High percentage of unescaped output
- No taint analysis data available
- No nonce checks found
Corona Awareness Popup Security Vulnerabilities
Corona Awareness Popup Code Analysis
Output Escaping
Corona Awareness Popup Attack Surface
WordPress Hooks 4
Maintenance & Trust
Corona Awareness Popup Maintenance & Trust
Maintenance Signals
Community Trust
Corona Awareness Popup Alternatives
Corona Virus Data
corona-virus-data
This plugin displays the Coronavirus case data through shortcodes [cov2019] [cov2019all] or [cov2019map] in your WordPress post or page.
Simple Website Banner
corona-virus-covid-19-banner
This is a very simple plugin with a sole purpose of allowing you to inform your visitors of an upcoming event, updated store hours, or other important …
South African COVID19 Banner
corona-virus-covid19-banner
Comply with new South African Covid-19 regulations requiring all websites ending in .ZA to show a link to the official government page.
COVID-19 Float Button
covid-19-float-button
Creates a floating button with a link to a read more page.
VirusWeather Covid-19 Coronavirus
virusweather
Personalized by IP address PNG banner shows local covid-19 A.I. calculated threat level and live coronavirus stats for 10000+ local areas world-wide
Corona Awareness Popup Developer Profile
3 plugins · 30K total installs
How We Detect Corona Awareness Popup
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/corona-awareness-popup/assets/css/edscv.css/wp-content/plugins/corona-awareness-popup/assets/js/edscv.site.js/wp-content/plugins/corona-awareness-popup/assets/js/edscv.site.jsHTML / DOM Fingerprints
eds-corona-image-icon-wrappereds-corona-popup-imageeds-corona-popup-contenteds-corona-popup-readmore-linkeds-corona-popup-close<!-- Popup Body --><!-- CLOSE POPUP -->data-custom_cssedscv_obj<div class="eds-corona-popup-wrapper"><div class="eds-corona-popup-body"><img class="eds-corona-popup-image" src="<div class="eds-corona-popup-content">