CSH Multiscroll Security & Risk Analysis

wordpress.org/plugins/csh-multiscroll

Add a multiscroll slide to wordpress site

10 active installs v1.0.0 PHP + WP 3.0.1+ Updated Oct 12, 2018
admin-interfaceoptionsscrollslidetheme-options
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is CSH Multiscroll Safe to Use in 2026?

Generally Safe

Score 85/100

CSH Multiscroll has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7yr ago
Risk Assessment

The "csh-multiscroll" plugin v1.0.0 exhibits a generally strong security posture based on the provided static analysis. The absence of detected dangerous functions, raw SQL queries, file operations, external HTTP requests, and any identified taint flows is highly positive. Furthermore, the plugin demonstrates good output escaping practices, with 85% of outputs properly escaped, and uses prepared statements for all SQL queries, mitigating common injection risks. The lack of any recorded vulnerabilities (CVEs) in its history further bolsters this assessment, suggesting a well-maintained and secure codebase to date.

However, a significant concern arises from the complete absence of nonce checks and capability checks. While the static analysis reports zero AJAX handlers, REST API routes, and shortcodes, the lack of these fundamental security measures means that if any such entry points were to be introduced in future versions or through developer customization without proper authentication and authorization, they would be entirely unprotected. This represents a potential latent risk. The bundling of libraries like Select2 and jQuery, while common, could also pose a risk if these libraries are outdated and contain known vulnerabilities, though this is not explicitly stated in the provided data. Overall, the plugin is currently secure but has a foundational weakness in its authentication and authorization mechanisms.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

CSH Multiscroll Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

CSH Multiscroll Release Timeline

No version history available.
Code Analysis
Analyzed Mar 16, 2026

CSH Multiscroll Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
20
111 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
2

Bundled Libraries

Select2jQuery

Output Escaping

85% escaped131 total outputs
Attack Surface

CSH Multiscroll Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 10
actionadmin_enqueue_scriptsadmin\class-csh-multiscroll-admin.php:37
actionadmin_enqueue_scriptsadmin\class-csh-multiscroll-admin.php:38
filtersafe_style_cssadmin\class-csh-multiscroll-admin.php:42
actioninitadmin\class-csh-multiscroll-admin.php:199
actionadd_meta_boxesadmin\class-csh-multiscroll-admin.php:241
actionsave_postadmin\class-csh-multiscroll-admin.php:428
actionplugins_loadedcsh-multiscroll.php:59
actionwp_enqueue_scriptspublic\class-csh-multiscroll-public.php:36
actionwp_enqueue_scriptspublic\class-csh-multiscroll-public.php:37
filtertemplate_includepublic\class-csh-multiscroll-public.php:39
Maintenance & Trust

CSH Multiscroll Maintenance & Trust

Maintenance Signals

WordPress version tested4.9.29
Last updatedOct 12, 2018
PHP min version
Downloads2K

Community Trust

Rating100/100
Number of ratings1
Active installs10
Developer Profile

CSH Multiscroll Developer Profile

cmssuperheroes

4 plugins · 630 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect CSH Multiscroll

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/csh-multiscroll/assets/css/select2.min.css/wp-content/plugins/csh-multiscroll/assets/css/jquery-ui.min.css/wp-content/plugins/csh-multiscroll/assets/css/csh-multiscroll-admin.css/wp-content/plugins/csh-multiscroll/assets/js/jquery-ui.min.js/wp-content/plugins/csh-multiscroll/assets/js/select2.min.js/wp-content/plugins/csh-multiscroll/assets/js/csh-multiscroll-admin.js
Script Paths
/wp-content/plugins/csh-multiscroll/assets/js/jquery-ui.min.js/wp-content/plugins/csh-multiscroll/assets/js/select2.min.js/wp-content/plugins/csh-multiscroll/assets/js/csh-multiscroll-admin.js
Version Parameters
csh-multiscroll/style.css?ver=cshms_admin_style?ver=cshms_select2?ver=cshms_jquery_ui?ver=wp-color-picker?ver=cshms_admin_script?ver=

HTML / DOM Fingerprints

CSS Classes
cshms-metacshms-headingcshms-bar-titlecshms-section-namecshms-closecshms-toggle-actioncshms-contentleft-content-wrap+9 more
HTML Comments
<!-- Left content --><!-- Right content -->
Data Attributes
cshms_left_image_cshms_left_text_cshms_right_image_cshms_right_text_
JS Globals
cshms_new_section
FAQ

Frequently Asked Questions about CSH Multiscroll