
Dropdown and scrollable Text Security & Risk Analysis
wordpress.org/plugins/dropdown-and-scrollable-textCreate shortcode for dropdown text or scrollable text
Is Dropdown and scrollable Text Safe to Use in 2026?
Mostly Safe
Score 84/100Dropdown and scrollable Text is generally safe to use though it hasn't been updated recently. 2 past CVEs were resolved. Keep it updated.
The 'dropdown-and-scrollable-text' plugin v2.1 exhibits a mixed security posture. While it demonstrates good practices in handling SQL queries with prepared statements and avoids file operations and external HTTP requests, several areas raise concern. The lack of nonce checks and capability checks on its two entry points (shortcodes) is a significant weakness, potentially exposing the plugin to various attacks if user-supplied data is not meticulously sanitized. Furthermore, only 40% of output is properly escaped, indicating a notable risk of Cross-Site Scripting (XSS) vulnerabilities, a pattern consistent with its past vulnerability history. Although there are no currently unpatched CVEs, the history of two medium-severity XSS vulnerabilities in the past suggests a recurring tendency for input validation and output escaping issues. The plugin has a small attack surface with no apparent critical taint flows, but the lack of protective measures on its entry points and the insufficient output escaping are significant red flags.
Key Concerns
- Missing Nonce Checks on Entry Points
- Missing Capability Checks on Entry Points
- Insufficient Output Escaping
- Past Medium Severity Vulnerabilities (XSS)
Dropdown and scrollable Text Security Vulnerabilities
CVEs by Year
Severity Breakdown
2 total CVEs
Dropdown and scrollable Text <= 2.0 - Cross-Site Scripting
Dropdown and scrollable Text <= 2.0 Reflected Cross-Site Scripting
Dropdown and scrollable Text Code Analysis
Output Escaping
Data Flow Analysis
Dropdown and scrollable Text Attack Surface
Shortcodes 2
WordPress Hooks 3
Maintenance & Trust
Dropdown and scrollable Text Maintenance & Trust
Maintenance Signals
Community Trust
Dropdown and scrollable Text Alternatives
Text Scroll Widget
text-scrolling-widget
Text Scroll Widget is a plugin to automatically scroll up the content inserted in the description area of the widget.
Scroll Text Widget
scroll-text-widget
Scroll Text Widget is a plugin to automically scroll up the content inserted in the description area of the widget.
Floating News Headline – Scrolling Text
floating-news-headline
Floating News Headline is easy and powerful scrolling text plugin for wordpress. scrolling text, news headline, scrolling headline
Scrolling Text Module for Beaver Builder
scrolling-text-module-for-beaver-builder
Adds a module to Beaver Builder to create scrolling text boxes.
Announceo – Scrolling Notification Bar
announceo-scrolling-notification-bar
Announceo – Scrolling Notification Bar lets you display important announcements, offers, or messages at the top of your website in a clean and distrac …
Dropdown and scrollable Text Developer Profile
3 plugins · 110 total installs
How We Detect Dropdown and scrollable Text
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/dropdown-and-scrollable-text/assets/dropdowncss.css/wp-content/plugins/dropdown-and-scrollable-text/assets/jquery.mCustomScrollbar.min.css/wp-content/plugins/dropdown-and-scrollable-text/assets/dropdownjs.js/wp-content/plugins/dropdown-and-scrollable-text/assets/jquery.mCustomScrollbar.concat.min.js/wp-content/plugins/dropdown-and-scrollable-text/assets/clipboard.min.jsassets/dropdownjs.jsassets/jquery.mCustomScrollbar.concat.min.jsassets/clipboard.min.jsHTML / DOM Fingerprints
dst-adminover-xltr-dcopybtnshortcode-generatedtheme-demodata-clipboard-text[scrollabletext[/scrollabletext][dropdowntext[/dropdowntext]