BH Scroll Top Security & Risk Analysis

wordpress.org/plugins/bh-scroll-top

This plugin will add a scroll top feature in your site.

0 active installs v1.4 PHP 7.4+ WP 5.0+ Updated Jul 15, 2024
back-to-topscroll-to-topscrollscroll-toptopscrollwordpress-scroll-up
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is BH Scroll Top Safe to Use in 2026?

Generally Safe

Score 92/100

BH Scroll Top has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The "bh-scroll-top" v1.4 plugin exhibits a very strong security posture based on the provided static analysis. The absence of any identified entry points such as AJAX handlers, REST API routes, shortcodes, or cron events significantly limits its attack surface. Furthermore, the code analysis reveals excellent security practices with 100% of SQL queries using prepared statements and 100% of output being properly escaped, indicating a lack of common vulnerabilities like SQL injection and cross-site scripting. The lack of file operations and external HTTP requests further reduces potential security risks.

The vulnerability history is equally positive, with no known CVEs recorded for this plugin. This, combined with the clean static analysis, suggests a well-developed and secure plugin. The zero taint flows with unsanitized paths reinforce this assessment, indicating no apparent risks from user-supplied data being processed insecurely.

While the plugin demonstrates a high level of security, the analysis does not cover all potential security aspects. For example, the absence of nonce checks and capability checks is noted, but given the zero attack surface, this is not a direct risk in the current version. The overall conclusion is that "bh-scroll-top" v1.4 is a very secure plugin with no immediate security concerns based on the provided data. Its strengths lie in its minimal attack surface and robust coding practices for the aspects analyzed.

Key Concerns

  • No nonce checks
  • No capability checks
Vulnerabilities
None known

BH Scroll Top Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

BH Scroll Top Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
26 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped26 total outputs
Attack Surface

BH Scroll Top Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 8
actionadmin_menuadmin\admin.php:10
actionadmin_initadmin\admin.php:11
actionadmin_initadmin\admin.php:12
actionwp_enqueue_scriptsbh-scroll-top.php:22
actionadmin_enqueue_scriptsbh-scroll-top.php:23
actioninitbh-scroll-top.php:24
actionwp_headbh-scroll-top.php:25
actionwp_footerbh-scroll-top.php:26
Maintenance & Trust

BH Scroll Top Maintenance & Trust

Maintenance Signals

WordPress version tested6.5.8
Last updatedJul 15, 2024
PHP min version7.4
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

BH Scroll Top Developer Profile

ThemesVila

14 plugins · 2K total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect BH Scroll Top

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/bh-scroll-top/assets/css/scroll-top.css/wp-content/plugins/bh-scroll-top/assets/js/scroll-top.js
Script Paths
/wp-content/plugins/bh-scroll-top/assets/js/scroll-top.js

HTML / DOM Fingerprints

Data Attributes
id="go-top"
JS Globals
jQuery
FAQ

Frequently Asked Questions about BH Scroll Top