Easy To Top Security & Risk Analysis

wordpress.org/plugins/easy-to-top

Easy To Top is a nice wordpress plugin. You can use this plugin any wordpress site for create back to top button. Easy To Top is one of the most user …

10 active installs v1.0.4 PHP + WP 4.5+ Updated Jun 15, 2023
back-to-topclick-to-topgo-to-topscroll-to-topto-top
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Easy To Top Safe to Use in 2026?

Generally Safe

Score 85/100

Easy To Top has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2yr ago
Risk Assessment

The "easy-to-top" v1.0.4 plugin exhibits an exceptionally strong security posture based on the provided static analysis and vulnerability history. The absence of any detected dangerous functions, unsanitized taint flows, raw SQL queries, external HTTP requests, or file operations is highly commendable. Furthermore, all detected outputs are properly escaped, and the plugin does not rely on bundled libraries. The complete lack of any recorded CVEs, both historical and current, across all severity levels, reinforces this positive assessment.

However, the static analysis reveals a complete absence of security checks such as nonce checks and capability checks across all entry points. While the current analysis indicates zero entry points, this lack of built-in security mechanisms is a significant concern. If any entry points were to be introduced in future versions or if the current analysis is incomplete and missed potential entry points, the plugin would be highly vulnerable to various attacks, including CSRF, unauthorized access, and privilege escalation, without any inherent safeguards. The current lack of attack surface is a strength, but the absence of security primitives is a critical weakness that could lead to severe vulnerabilities in the future.

In conclusion, the "easy-to-top" plugin currently presents a very low risk due to its minimal attack surface and clean code. The developer has demonstrated excellent practices in avoiding common pitfalls like SQL injection and XSS. Nevertheless, the complete absence of any authentication and authorization checks is a serious oversight. While not an immediate threat in its current state with zero entry points, this represents a latent vulnerability that must be addressed proactively to ensure long-term security.

Key Concerns

  • No nonce checks implemented
  • No capability checks implemented
Vulnerabilities
None known

Easy To Top Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Easy To Top Release Timeline

No version history available.
Code Analysis
Analyzed Apr 16, 2026

Easy To Top Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
3 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped3 total outputs
Attack Surface

Easy To Top Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actionwp_enqueue_scriptseasy-to-top.php:28
actionadmin_enqueue_scriptseasy-to-top.php:39
actioniniteasy-to-top.php:42
actionadmin_noticeseasy-to-top.php:62
Maintenance & Trust

Easy To Top Maintenance & Trust

Maintenance Signals

WordPress version tested5.8.13
Last updatedJun 15, 2023
PHP min version
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Easy To Top Developer Profile

ashathemes

52 plugins · 4K total installs

89
trust score
Avg Security Score
93/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Easy To Top

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/easy-to-top/assets/css/scrollup.css/wp-content/plugins/easy-to-top/assets/css/font-awesome.min.css/wp-content/plugins/easy-to-top/assets/js/jquery.scrollUp.min.js/wp-content/plugins/easy-to-top/assets/js/main.js/wp-content/plugins/easy-to-top/assets/css/bootstrap.min.css/wp-content/plugins/easy-to-top/assets/js/bootstrap.min.js
Script Paths
/wp-content/plugins/easy-to-top/assets/js/jquery.scrollUp.min.js/wp-content/plugins/easy-to-top/assets/js/main.js/wp-content/plugins/easy-to-top/assets/js/bootstrap.min.js
Version Parameters
easy-to-top/assets/css/scrollup.css?ver=easy-to-top/assets/css/font-awesome.min.css?ver=easy-to-top/assets/js/jquery.scrollUp.min.js?ver=easy-to-top/assets/js/main.js?ver=easy-to-top/assets/css/bootstrap.min.css?ver=easy-to-top/assets/js/bootstrap.min.js?ver=

HTML / DOM Fingerprints

CSS Classes
text-info
FAQ

Frequently Asked Questions about Easy To Top