
LB Back To Top Security & Risk Analysis
wordpress.org/plugins/backtopIncluding button that takes the user to the top of the page.
Is LB Back To Top Safe to Use in 2026?
Generally Safe
Score 85/100LB Back To Top has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'backtop' plugin version 2.0 exhibits a strong security posture based on the provided static analysis data. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events significantly limits the plugin's attack surface. Furthermore, the code analysis reveals no dangerous functions, file operations, external HTTP requests, or bundled libraries, which are common sources of vulnerabilities. The fact that all SQL queries utilize prepared statements is a significant strength.
However, a notable concern arises from the output escaping. With 100% of outputs not properly escaped, this presents a clear risk of Cross-Site Scripting (XSS) vulnerabilities. Any dynamic data displayed to users that originates from user input or other untrusted sources could be exploited. The complete lack of nonce and capability checks, while not immediately exploitable due to the limited attack surface, means that if new entry points are introduced in future versions, they would be inherently insecure.
The plugin's vulnerability history is entirely clear, with no recorded CVEs. This, combined with the clean taint analysis, suggests a well-written codebase for the existing functionality. In conclusion, while 'backtop' v2.0 demonstrates good practices in most areas and has a clean history, the unescaped output is a critical weakness that requires immediate attention to prevent potential XSS attacks.
Key Concerns
- 100% of outputs are not properly escaped
- No nonce checks implemented
- No capability checks implemented
LB Back To Top Security Vulnerabilities
LB Back To Top Code Analysis
Output Escaping
LB Back To Top Attack Surface
WordPress Hooks 2
Maintenance & Trust
LB Back To Top Maintenance & Trust
Maintenance Signals
Community Trust
LB Back To Top Alternatives
WPFront Scroll Top
wpfront-scroll-top
Adds a lightweight and smooth "Scroll to Top" button to your WordPress site, improving navigation and user experience with customizable options.
Smooth Back To Top Button
smooth-back-to-top-button
Smooth Back To Top button with scroll progress indicator.
Scroll To Top
scroll-top
Automatically adds a flexible Back to Top button to your WordPress website that allows your visitor to scroll back to the top of your page with one cl …
jQuery Smooth Scroll
jquery-smooth-scroll
Activate the plugin for smooth scrolling and smooth "back to top" feature.
Scroll Back To Top
scroll-back-to-top
This plugin will add a button that allows users to scroll smoothly to the top of the page.
LB Back To Top Developer Profile
7 plugins · 840 total installs
How We Detect LB Back To Top
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/backtop/css/main.css/wp-content/plugins/backtop/js/main.js/wp-content/plugins/backtop/js/main.jsbacktop/css/main.css?ver=backtop/js/main.js?ver=HTML / DOM Fingerprints
lb-back-to-top