Maintenance & Coming Soon Redirect Animation Security & Risk Analysis

wordpress.org/plugins/maintenance-coming-soon-redirect-animation

Enable maintenance mode in one click with stunning animations and customizable access for specific users.

3K active installs v2.3.3 PHP 7.4+ WP 4.6+ Updated Jan 25, 2026
animationcoming-soonmaintenanceredirectunder-construction
78
B · Generally Safe
CVEs total2
Unpatched1
Last CVEDec 19, 2024
Safety Verdict

Is Maintenance & Coming Soon Redirect Animation Safe to Use in 2026?

Mostly Safe

Score 78/100

Maintenance & Coming Soon Redirect Animation is generally safe to use. 2 past CVEs were resolved. Keep it updated.

2 known CVEs 1 unpatched Last CVE: Dec 19, 2024Updated 2mo ago
Risk Assessment

This plugin exhibits a generally strong security posture based on the static analysis. The complete absence of unsanitized taint flows and raw SQL queries, coupled with 100% output escaping and the presence of nonce and capability checks on all identified AJAX entry points, suggests good development practices in these areas. The plugin also appears to have no file operations or external HTTP requests, further limiting potential attack vectors.

However, the vulnerability history presents a significant concern. With two known CVEs, one of which remains unpatched, and both being medium severity, it indicates recurring security weaknesses. The nature of these past vulnerabilities (Improper Access Control and Use of Less Trusted Source) combined with the fact that an unpatched vulnerability exists, raises a red flag regarding the maintainer's ability to address security issues promptly and effectively. While the current code analysis doesn't reveal immediate flaws, the historical pattern suggests a latent risk that could be exploited, especially if the unpatched vulnerability is related to access control or data handling.

In conclusion, while the static analysis highlights good coding hygiene for the current version, the unpatched vulnerability and the historical precedent of security issues cannot be ignored. Users should be aware of the potential for future vulnerabilities and the lack of prompt patching, making this a plugin that requires careful consideration and monitoring.

Key Concerns

  • Unpatched Medium Severity CVE
  • 2 Known CVEs (1 unpatched)
  • History of Improper Access Control vulnerabilities
  • History of Use of Less Trusted Source vulnerabilities
Vulnerabilities
2

Maintenance & Coming Soon Redirect Animation Security Vulnerabilities

CVEs by Year

2 CVEs in 2024 · unpatched
2024
Patched Has unpatched

Severity Breakdown

Medium
2

2 total CVEs

CVE-2024-9503medium · 4.3Improper Access Control

Maintenance & Coming Soon Redirect Animation <= 2.1.3 - Missing Authorization to Settings Update

Dec 19, 2024 Patched in 2.3.0 (83d)
CVE-2024-43944medium · 5.3Use of Less Trusted Source

Maintenance & Coming Soon Redirect Animation <= 2.3.0 - IP Spoofing to Bypass

Aug 26, 2024Unpatched
Code Analysis
Analyzed Mar 16, 2026

Maintenance & Coming Soon Redirect Animation Code Analysis

Dangerous Functions
0
Raw SQL Queries
2
34 prepared
Unescaped Output
1
224 escaped
Nonce Checks
20
Capability Checks
17
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

Select2

SQL Query Safety

94% prepared36 total queries

Output Escaping

100% escaped225 total outputs
Data Flows
All sanitized

Data Flow Analysis

12 flows
wploti_ajax_message (wploti_maintenance_redirect.php:241)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Maintenance & Coming Soon Redirect Animation Attack Surface

Entry Points20
Unprotected0

AJAX Handlers 20

authwp_ajax_wploti_ajax_dismiss_activation_noticewploti_maintenance_redirect.php:2879
authwp_ajax_wploti_ajax_dismiss_notes_noticewploti_maintenance_redirect.php:2880
authwp_ajax_wploti_animation_selectwploti_maintenance_redirect.php:2882
authwp_ajax_wploti_animation_ajax_loadwploti_maintenance_redirect.php:2883
authwp_ajax_wploti_toggle_activationwploti_maintenance_redirect.php:2907
authwp_ajax_wploti_header_typewploti_maintenance_redirect.php:2908
authwp_ajax_wploti_mr_add_ipwploti_maintenance_redirect.php:2909
authwp_ajax_wploti_mr_toggle_ipwploti_maintenance_redirect.php:2910
authwp_ajax_wploti_mr_delete_ipwploti_maintenance_redirect.php:2911
authwp_ajax_wploti_mr_add_akwploti_maintenance_redirect.php:2912
authwp_ajax_wploti_mr_toggle_akwploti_maintenance_redirect.php:2913
authwp_ajax_wploti_mr_delete_akwploti_maintenance_redirect.php:2914
authwp_ajax_wploti_mr_resend_akwploti_maintenance_redirect.php:2915
authwp_ajax_wploti_ajax_messagewploti_maintenance_redirect.php:2916
authwp_ajax_wploti_uploaded_animation_savewploti_maintenance_redirect.php:2917
authwp_ajax_wploti_add_whitelisted_roleswploti_maintenance_redirect.php:2918
authwp_ajax_wploti_remove_whitelisted_roleswploti_maintenance_redirect.php:2919
authwp_ajax_wploti_add_whitelisted_userswploti_maintenance_redirect.php:2920
authwp_ajax_wploti_remove_whitelisted_userswploti_maintenance_redirect.php:2921
authwp_ajax_wploti_reset_settingswploti_maintenance_redirect.php:2928
WordPress Hooks 17
actionadmin_menuwploti_maintenance_redirect.php:2885
actionadmin_menuwploti_maintenance_redirect.php:2886
actionsend_headerswploti_maintenance_redirect.php:2887
actionadmin_noticeswploti_maintenance_redirect.php:2888
actionwp_before_admin_bar_renderwploti_maintenance_redirect.php:2890
actionadmin_enqueue_scriptswploti_maintenance_redirect.php:2892
actionwp_enqueue_scriptswploti_maintenance_redirect.php:2893
actionadmin_enqueue_scriptswploti_maintenance_redirect.php:2895
filtersite_status_testswploti_maintenance_redirect.php:2898
filteradmin_body_classwploti_maintenance_redirect.php:2899
filterlogin_messagewploti_maintenance_redirect.php:2900
filterupload_mimeswploti_maintenance_redirect.php:2901
filterplugin_row_metawploti_maintenance_redirect.php:2903
actionplugins_loadedwploti_maintenance_redirect.php:2931
actioninitwploti_maintenance_redirect.php:2932
actionadmin_headwploti_maintenance_redirect.php:2934
actionwp_default_scriptswploti_maintenance_redirect.php:2935
Maintenance & Trust

Maintenance & Coming Soon Redirect Animation Maintenance & Trust

Maintenance Signals

WordPress version tested7.0
Last updatedJan 25, 2026
PHP min version7.4
Downloads38K

Community Trust

Rating100/100
Number of ratings31
Active installs3K
Developer Profile

Maintenance & Coming Soon Redirect Animation Developer Profile

ilyasine

1 plugin · 3K total installs

73
trust score
Avg Security Score
78/100
Avg Patch Time
83 days
View full developer profile
Detection Fingerprints

How We Detect Maintenance & Coming Soon Redirect Animation

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/maintenance-coming-soon-redirect-animation/admin/css/style.css/wp-content/plugins/maintenance-coming-soon-redirect-animation/admin/js/script.js/wp-content/plugins/maintenance-coming-soon-redirect-animation/public/css/style.css/wp-content/plugins/maintenance-coming-soon-redirect-animation/public/js/script.js
Version Parameters
maintenance-coming-soon-redirect-animation/admin/css/style.css?ver=maintenance-coming-soon-redirect-animation/admin/js/script.js?ver=maintenance-coming-soon-redirect-animation/public/css/style.css?ver=maintenance-coming-soon-redirect-animation/public/js/script.js?ver=

HTML / DOM Fingerprints

CSS Classes
wploti-container
Data Attributes
data-animation-typedata-animation-speeddata-animation-durationdata-animation-delaydata-animation-loopdata-animation-direction+2 more
JS Globals
wploti_animation_dir
FAQ

Frequently Asked Questions about Maintenance & Coming Soon Redirect Animation