Kento Scroll Jump Top Security & Risk Analysis

wordpress.org/plugins/kento-scroll-jump-top

Kento Scroll Jump Top

10 active installs v1.0 PHP + WP 3.8+ Updated Jun 9, 2015
back-to-topjumpscrolltopup
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Kento Scroll Jump Top Safe to Use in 2026?

Generally Safe

Score 85/100

Kento Scroll Jump Top has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 10yr ago
Risk Assessment

The 'kento-scroll-jump-top' plugin v1.0 presents a mixed security picture. On one hand, the absence of reported CVEs and a clean vulnerability history are positive indicators, suggesting the plugin has historically been maintained without significant security flaws. The static analysis also reveals a lack of dangerous functions, no direct SQL queries (all use prepared statements), no file operations, and no external HTTP requests, which are all strong security practices.

However, there are notable concerns. The primary issue is the complete lack of output escaping. With 4 total outputs analyzed and 0% properly escaped, this opens the door to Cross-Site Scripting (XSS) vulnerabilities. Any dynamic content generated by the plugin that is displayed to users could be manipulated by an attacker. Additionally, the taint analysis detected one flow with an unsanitized path, which, although not classified as critical or high severity, indicates a potential weakness in how the plugin handles data that could be exploited in conjunction with other issues.

While the plugin has a small attack surface and no known vulnerabilities, the critical flaw of unescaped output and the single unsanitized taint flow warrant attention. A balanced conclusion would be that while the plugin demonstrates good practices in some areas, the unescaped output represents a significant, albeit potentially manageable, risk that needs to be addressed.

Key Concerns

  • All outputs are unescaped
  • One flow with unsanitized path
Vulnerabilities
None known

Kento Scroll Jump Top Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Kento Scroll Jump Top Release Timeline

No version history available.
Code Analysis
Analyzed Apr 16, 2026

Kento Scroll Jump Top Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
4
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped4 total outputs
Data Flows · Security
1 unsanitized

Data Flow Analysis

1 flows1 with unsanitized paths
<kento-scroll-to-top-admin> (kento-scroll-to-top-admin.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Kento Scroll Jump Top Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
actioninitkento-scroll-to-top.php:26
actionwp_footerkento-scroll-to-top.php:42
actionwp_headkento-scroll-to-top.php:56
actionadmin_initkento-scroll-to-top.php:64
actionadmin_menukento-scroll-to-top.php:78
Maintenance & Trust

Kento Scroll Jump Top Maintenance & Trust

Maintenance Signals

WordPress version tested4.2.39
Last updatedJun 9, 2015
PHP min version
Downloads2K

Community Trust

Rating80/100
Number of ratings1
Active installs10
Developer Profile

Kento Scroll Jump Top Developer Profile

PluginsPoint

22 plugins · 640 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
8 days
View full developer profile
Detection Fingerprints

How We Detect Kento Scroll Jump Top

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/kento-scroll-jump-top/js/jquery-scrollToTop.js/wp-content/plugins/kento-scroll-jump-top/css/normalize.css/wp-content/plugins/kento-scroll-jump-top/css/scrollToTop.css
Script Paths
js/jquery-scrollToTop.js
Version Parameters
jquery-scrollToTop.js?ver=normalize.css?ver=scrollToTop.css?ver=

HTML / DOM Fingerprints

CSS Classes
scrollToTopscrollToTop_trianglescrollToTop_show
FAQ

Frequently Asked Questions about Kento Scroll Jump Top