Ax ScrollTo Top Security & Risk Analysis

wordpress.org/plugins/ax-scrollto-top

Add a Scroll to top button in the website footer.

300 active installs v1.0.0 PHP + WP 3.0+ Updated Dec 21, 2012
go-to-tophranjanscrollscroll-to-toptop-of-page
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Ax ScrollTo Top Safe to Use in 2026?

Generally Safe

Score 85/100

Ax ScrollTo Top has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 13yr ago
Risk Assessment

The 'ax-scrollto-top' plugin v1.0.0 exhibits a generally good security posture based on the provided static analysis and vulnerability history. The complete absence of entry points like AJAX handlers, REST API routes, shortcodes, and cron events significantly reduces the potential attack surface. Furthermore, the plugin utilizes prepared statements for all SQL queries, which is a strong defense against SQL injection vulnerabilities. The lack of file operations and external HTTP requests also mitigates common attack vectors.

However, a significant concern arises from the static analysis indicating that 0% of the 34 total outputs are properly escaped. This suggests a high risk of Cross-Site Scripting (XSS) vulnerabilities, where malicious scripts could be injected and executed within the WordPress site, potentially impacting users and administrators. While the plugin has no recorded CVEs or historical vulnerabilities, this positive track record cannot compensate for the identified output escaping deficiency, which is a critical weakness. The absence of nonce checks on potential entry points (though there are none listed) and the limited capability checks (only 1) could also become issues if new entry points were to be added without proper security measures.

In conclusion, while the plugin has a low attack surface and good practices regarding SQL and external requests, the lack of output escaping presents a critical security flaw that requires immediate attention. The absence of historical vulnerabilities is positive but does not negate the risk posed by the identified XSS vulnerability. The plugin's strength lies in its limited functionality and attack surface, but its weakness is a direct and significant risk to site security.

Key Concerns

  • 0% of outputs properly escaped
Vulnerabilities
None known

Ax ScrollTo Top Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Ax ScrollTo Top Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
34
0 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped34 total outputs
Attack Surface

Ax ScrollTo Top Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
actionwp_enqueue_scriptsax-scrollto-top.php:33
actionwp_enqueue_scriptsax-scrollto-top.php:46
actionwp_footerax-scrollto-top.php:74
actionadmin_menuax-scrollto-top.php:76
actionadmin_initax-scrollto-top.php:77
Maintenance & Trust

Ax ScrollTo Top Maintenance & Trust

Maintenance Signals

WordPress version tested3.5.2
Last updatedDec 21, 2012
PHP min version
Downloads8K

Community Trust

Rating100/100
Number of ratings5
Active installs300
Developer Profile

Ax ScrollTo Top Developer Profile

HRanjan

2 plugins · 400 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Ax ScrollTo Top

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/ax-scrollto-top/ax-scrollto-top-css.php/wp-content/plugins/ax-scrollto-top/ax-scrollto-top.css
Script Paths
/wp-content/plugins/ax-scrollto-top/js/ax-scrollto-top.js
Version Parameters
ax-scrollto-top/js/ax-scrollto-top.js?ver=ax-scrollto-top-css.php?ver=ax-scrollto-top.css?ver=

HTML / DOM Fingerprints

CSS Classes
axScrollToTop
Data Attributes
id="axScrollTo"
FAQ

Frequently Asked Questions about Ax ScrollTo Top