cleantalk
Vulnerabilities and Security Researches

Vulnerabilities and security researches formaintenance maintenance

Direction: descending
Feb 26, 2025

Maintenance # PSC-2025-64558

PSC, Research URL

PSC-2025-64558

Application

Maintenance

Date
-
Research Description
Maintenance 4.17 is a powerful WordPress plugin designed to facilitate seamless maintenance mode activation. It allows website administrators to temporarily disable site access for visitors while displaying a custom maintenance page. The plugin supports the “503 Service Temporarily Unavailable” status, ensuring proper search engine handling during downtime. With a highly customizable design, the plugin enables users to upload logos, set background images, customize colors, and add personalized text. It also integrates with Bunny Fonts to ensure GDPR compliance, making it a privacy-conscious choice. Through rigorous security testing, Maintenance 4.17 has successfully obtained the Plugin Security Certification (PSC) from CleanTalk, confirming its adherence to best security practices and protection against potential threats.
Affected versions
Min -, max -.
Status
SAFE & CERTIFIED
Jun 07, 2024

Maintenance # CVE-2021-24533

CVE, Research URL

CVE-2021-24533

Application

Maintenance

Date
Aug 23, 2021
Research Description
The Maintenance WordPress plugin before 4.03 does not sanitise or escape some of its settings, allowing high privilege users such as admin to se Cross-Site Scripting payload in them (even when the unfiltered_html capability is disallowed), which will be triggered in the frontend
Affected versions
Min -, max -.
Status
vulnerable