Scroll popup html content ads Security & Risk Analysis

wordpress.org/plugins/scroll-popup-html-content-ads

This plugin allows you to build and show a scrolling popup using HTML div. You can locate the scrolling popup in a corner of a web page.

10 active installs v8.1 PHP + WP 3.2+ Updated Oct 29, 2023
popupscrolling
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Scroll popup html content ads Safe to Use in 2026?

Generally Safe

Score 85/100

Scroll popup html content ads has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2yr ago
Risk Assessment

The 'scroll-popup-html-content-ads' plugin version 8.1 exhibits a generally positive security posture based on the provided static analysis and vulnerability history. The absence of known CVEs and the high percentage of SQL queries utilizing prepared statements are strong indicators of good development practices. Furthermore, the limited attack surface with only one shortcode entry point and no unprotected AJAX handlers or REST API routes is commendable. However, a significant concern lies in the output escaping. With only 54% of outputs being properly escaped, there is a considerable risk of Cross-Site Scripting (XSS) vulnerabilities. This means user-supplied data or plugin-generated content could potentially be injected and executed in the browser of other users, leading to session hijacking, defacement, or other malicious actions. While the plugin has no recorded vulnerability history, this does not guarantee future safety, especially with the identified output escaping deficiency.

Key Concerns

  • Low output escaping percentage (54%)
Vulnerabilities
None known

Scroll popup html content ads Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Scroll popup html content ads Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
24 prepared
Unescaped Output
21
25 escaped
Nonce Checks
4
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

96% prepared25 total queries

Output Escaping

54% escaped46 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
<content-setting> (pages\content-setting.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Scroll popup html content ads Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[scroll-popup-html] scroll-popup-html-content-ads.php:533
WordPress Hooks 5
actionplugins_loadedscroll-popup-html-content-ads.php:532
actionwp_enqueue_scriptsscroll-popup-html-content-ads.php:534
actionadmin_menuscroll-popup-html-content-ads.php:536
actionadmin_enqueue_scriptsscroll-popup-html-content-ads.php:538
actionwp_headscroll-popup-html-content-ads.php:539
Maintenance & Trust

Scroll popup html content ads Maintenance & Trust

Maintenance Signals

WordPress version tested6.4.8
Last updatedOct 29, 2023
PHP min version
Downloads12K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Scroll popup html content ads Developer Profile

gopi_plus

8 plugins · 1K total installs

69
trust score
Avg Security Score
85/100
Avg Patch Time
1046 days
View full developer profile
Detection Fingerprints

How We Detect Scroll popup html content ads

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/scroll-popup-html-content-ads/gopiplus.com-popup.png/wp-content/plugins/scroll-popup-html-content-ads/gopiplus.jpg
Version Parameters
scroll-popup-html-content-ads/style.css?ver=scroll-popup-html-content-ads/scripts/scroll-popup-html-content-ads.js?ver=

HTML / DOM Fingerprints

Data Attributes
sphca_idsphca_textsphca_titlesphca_widthsphca_heightsphca_pos1+3 more
JS Globals
html_codesphca_loadpopupShowTheBox
Shortcode Output
[scroll-popup-html id=
FAQ

Frequently Asked Questions about Scroll popup html content ads