
WD3K Go Top Down Security & Risk Analysis
wordpress.org/plugins/wd3k-go-top-downCreates animated Go Top/Go Down buttons in the right bottom corner of your blog. After click, scrolls to top or bottom of the page.
Is WD3K Go Top Down Safe to Use in 2026?
Generally Safe
Score 100/100WD3K Go Top Down has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "wd3k-go-top-down" v0.92 plugin exhibits a seemingly secure static analysis profile at first glance, with no identified entry points (AJAX, REST API, shortcodes, cron) that are unprotected by authentication or capability checks. Furthermore, the code reports no dangerous functions, SQL queries are exclusively parameterized, and there are no file operations or external HTTP requests. The absence of taint flows and a clean vulnerability history further suggest a low risk profile. However, a critical concern emerges from the static analysis regarding output escaping: 100% of the identified outputs are not properly escaped. This indicates a significant risk of Cross-Site Scripting (XSS) vulnerabilities, where malicious scripts could be injected and executed within the WordPress admin area or on the frontend, depending on where these outputs are rendered. While the plugin's attack surface is minimal and its historical security record is spotless, the lack of output escaping is a serious oversight that directly exposes users to potential XSS attacks. This single weakness overshadows the otherwise positive aspects of the plugin's code.
Key Concerns
- 0% output escaping
WD3K Go Top Down Security Vulnerabilities
WD3K Go Top Down Code Analysis
Output Escaping
WD3K Go Top Down Attack Surface
WordPress Hooks 2
Maintenance & Trust
WD3K Go Top Down Maintenance & Trust
Maintenance Signals
Community Trust
WD3K Go Top Down Alternatives
WD3K Go Top Down Developer Profile
11 plugins · 2K total installs
How We Detect WD3K Go Top Down
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wd3k-go-top-down//wp-content/plugins/wd3k-go-top-down/wd3k-go-top-down.jswd3k-go-top-down.js?ver=HTML / DOM Fingerprints
<div id="nav_up" style="position: fixed; bottom: 5px; right: 5px; cursor: pointer; opacity: 1; " title="Scroll Back to Top"><img src=""><div id="nav_down" style="position: fixed; bottom: 5px; right: 40px; cursor: pointer; opacity: 1; " title="Scroll Down"><img src="