
Quick Coming Soon Security & Risk Analysis
wordpress.org/plugins/quick-coming-soonQuick coming soon is an awesome coming soon plugin for wordpress website.
Is Quick Coming Soon Safe to Use in 2026?
Generally Safe
Score 85/100Quick Coming Soon has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "quick-coming-soon" v2.0.4 plugin exhibits a mixed security posture. On the positive side, the plugin demonstrates good practices by utilizing prepared statements for all SQL queries and has no recorded vulnerabilities or CVEs. The attack surface appears to be minimal, with no reported AJAX handlers, REST API routes, shortcodes, or cron events, which significantly reduces the potential entry points for attackers.
However, there are notable concerns. The presence of a dangerous function like `create_function` is a significant red flag, as it can be a vector for remote code execution if not handled with extreme care. Furthermore, the low percentage of properly escaped output (28%) suggests a high risk of Cross-Site Scripting (XSS) vulnerabilities. The absence of any nonce checks or capability checks on its entry points, combined with a lack of taint analysis data, means that even if the attack surface is currently small, any data processed by the plugin might be vulnerable to manipulation or unauthorized execution without proper validation.
The lack of historical vulnerabilities is a positive indicator, but it should not lead to complacency, especially given the identified code-level weaknesses. The plugin's strengths lie in its minimal attack surface and secure SQL handling. Its weaknesses are primarily the use of dangerous functions, inadequate output escaping, and a potential lack of robust input validation and authorization checks. Users should be aware of the XSS and potential code execution risks due to these identified issues.
Key Concerns
- Presence of dangerous function 'create_function'
- Low percentage of properly escaped output (28%)
- No nonce checks detected
- No capability checks detected
- No taint analysis data provided
Quick Coming Soon Security Vulnerabilities
Quick Coming Soon Code Analysis
Dangerous Functions Found
Output Escaping
Quick Coming Soon Attack Surface
WordPress Hooks 5
Maintenance & Trust
Quick Coming Soon Maintenance & Trust
Maintenance Signals
Community Trust
Quick Coming Soon Alternatives
Coming soon and Maintenance mode
coming-soon-page
Coming soon and Maintenance mode plugin is an awesome tool to show your website visitors that you are working on your website for making it better.
YITH Maintenance Mode
yith-maintenance-mode
YITH Maintenance Mode gives you the ability to have a simple Maintenance Mode page while your website is under construction or closed for maintenance.
Coming soon Page
bw-coming-soon-page
You can set an existing page as a coming soon/Maintenance page and you can build this page as you want with your editor or favorite page builder.
Simple Coming Soon
simple-coming-soon
The ultimate free Coming Soon plugin. Features Auto-Launch countdown, Secret Client Access, Pro Action Button, plus a modern Glassmorphism design UI.
Maintenance Work
maintenance-work
Add a maintenance page to your website that lets visitors know your page is down for maintenance while allowing you to work on the background.
Quick Coming Soon Developer Profile
2 plugins · 20 total installs
How We Detect Quick Coming Soon
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/quick-coming-soon/includes/css/style.css/wp-content/plugins/quick-coming-soon/includes/images/bg.jpgHTML / DOM Fingerprints
blackwrapperheadersep-onesep-twomiddlefootersocial+3 moredata-sectiondata-id