BRB – Maintenance or Coming Soon Security & Risk Analysis

wordpress.org/plugins/k-brb-maintenance-or-coming-soon

BRB creates a very simple maintenance mode / coming soon page for your site.

100 active installs v1.0.2 PHP 5.2+ WP 4.5+ Updated Apr 24, 2022
coming-soonmaintenanceprivateunder-construction
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is BRB – Maintenance or Coming Soon Safe to Use in 2026?

Generally Safe

Score 85/100

BRB – Maintenance or Coming Soon has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The static analysis of "k-brb-maintenance-or-coming-soon" v1.0.2 reveals a plugin with a very limited attack surface, as indicated by zero AJAX handlers, REST API routes, shortcodes, and cron events. The absence of recorded vulnerabilities, including CVEs, suggests a history of responsible development or minimal exposure. The plugin also utilizes prepared statements for all SQL queries and includes at least one capability check, which are positive security practices.

However, a significant concern is the extremely low percentage of properly escaped output (3%). This indicates a high likelihood of cross-site scripting (XSS) vulnerabilities, where user-supplied data might be rendered directly in the browser without proper sanitization. While the taint analysis showed no flows with unsanitized paths, this is likely due to the analysis being performed on a limited set of flows (0 total). The lack of nonce checks on potential entry points, though currently non-existent in the attack surface, could become an issue if new features are added without proper security considerations.

In conclusion, while the plugin's current attack surface and vulnerability history are promising, the poor output escaping practices represent a substantial, inherent risk that needs immediate attention. This weakness could be exploited if any user-controlled data is displayed on the front-end or admin area without adequate sanitization.

Key Concerns

  • Poor output escaping (3% proper)
Vulnerabilities
None known

BRB – Maintenance or Coming Soon Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

BRB – Maintenance or Coming Soon Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
33
1 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

TinyMCE

Output Escaping

3% escaped34 total outputs
Attack Surface

BRB – Maintenance or Coming Soon Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
actionadmin_menuk-brb-maintenance-or-coming-soon.php:23
actionadmin_initk-brb-maintenance-or-coming-soon.php:24
actionplugins_loadedk-brb-maintenance-or-coming-soon.php:25
actionadmin_enqueue_scriptsk-brb-maintenance-or-coming-soon.php:26
actionwp_loadedk-brb-maintenance-or-coming-soon.php:320
Maintenance & Trust

BRB – Maintenance or Coming Soon Maintenance & Trust

Maintenance Signals

WordPress version tested5.9.13
Last updatedApr 24, 2022
PHP min version5.2
Downloads3K

Community Trust

Rating0/100
Number of ratings0
Active installs100
Developer Profile

BRB – Maintenance or Coming Soon Developer Profile

Fabio Lobo

2 plugins · 200 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect BRB – Maintenance or Coming Soon

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/k-brb-maintenance-or-coming-soon/css/style.css
Version Parameters
k-brb-maintenance-or-coming-soon/css/style.css?ver=

HTML / DOM Fingerprints

CSS Classes
brbmetabox-holder
Data Attributes
id="k-brb-field-on"name="k-brb-field-on"id="k-brb-field-who"name="k-brb-field-who"id="k-brb-field-logo"name="k-brb-field-logo"+34 more
FAQ

Frequently Asked Questions about BRB – Maintenance or Coming Soon