Easy Smooth Scroll Links Security & Risk Analysis

wordpress.org/plugins/scrolling-anchors

Create anchors and add up to to 30 scrolling animation effects to links that link to page anchors. You can set scroll speed and offset value.

600 active installs v1.0 PHP + WP 2.6.5+ Updated Apr 26, 2017
jquery-smooth-scroll-divsmooth-scrollsmooth-scroll-chromesmooth-scroll-firefoxsmooth-scroll-jquery
64
C · Use Caution
CVEs total1
Unpatched1
Last CVEApr 22, 2022
Download
Safety Verdict

Is Easy Smooth Scroll Links Safe to Use in 2026?

Use With Caution

Score 64/100

Easy Smooth Scroll Links has 1 unpatched vulnerability. Evaluate alternatives or apply available mitigations.

1 known CVE 1 unpatched Last CVE: Apr 22, 2022Updated 8yr ago
Risk Assessment

The 'scrolling-anchors' plugin v1.0 presents a mixed security posture. On one hand, it demonstrates good practices by avoiding dangerous functions, using prepared statements for all SQL queries, and having a relatively small attack surface with no unprotected entry points. The absence of file operations and external HTTP requests further reduces potential avenues for attack. However, significant concerns arise from the complete lack of output escaping, meaning all 24 outputs are potentially vulnerable to cross-site scripting (XSS) attacks. Furthermore, the plugin has a known medium-severity vulnerability for Cross-Site Scripting (XSS) that remains unpatched.

Key Concerns

  • Unescaped output found
  • Unpatched medium severity CVE
  • Lack of nonce checks
  • No permission callbacks on REST API routes
Vulnerabilities
1

Easy Smooth Scroll Links Security Vulnerabilities

CVEs by Year

1 CVE in 2022 · unpatched
2022
Patched Has unpatched

Severity Breakdown

Medium
1

1 total CVE

CVE-2022-0728medium · 5.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Easy Smooth Scroll Links <= 2.23.1 - Authenticated (Admin+) Stored Cross-Site Scripting

Apr 22, 2022Unpatched
Code Analysis
Analyzed Mar 16, 2026

Easy Smooth Scroll Links Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
24
0 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped24 total outputs
Attack Surface

Easy Smooth Scroll Links Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[anchor] index.php:41
WordPress Hooks 8
filtermce_buttons_2index.php:19
actioninitindex.php:21
filtermce_external_pluginsindex.php:23
filtermce_buttons_2index.php:24
actionadmin_initindex.php:131
actionadmin_menuindex.php:132
actionwp_enqueue_scriptsindex.php:139
actionwp_footerindex.php:140
Maintenance & Trust

Easy Smooth Scroll Links Maintenance & Trust

Maintenance Signals

WordPress version tested4.5.33
Last updatedApr 26, 2017
PHP min version
Downloads7K

Community Trust

Rating100/100
Number of ratings2
Active installs600
Developer Profile

Easy Smooth Scroll Links Developer Profile

andrewmatt

1 plugin · 600 total installs

69
trust score
Avg Security Score
64/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Easy Smooth Scroll Links

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/scrolling-anchors/js/jquery.easing.1.3.js
Script Paths
/wp-content/plugins/scrolling-anchors/anchor/plugin.min.js

HTML / DOM Fingerprints

HTML Comments
<!-- Anchor Button to TinyMCE Editor --><!--Shortcode-->/* Registering Options Page */// DEFINE PLUGIN ID+1 more
Data Attributes
id
JS Globals
jQuery$
Shortcode Output
<a id="
FAQ

Frequently Asked Questions about Easy Smooth Scroll Links