
WP Awesome back to top Security & Risk Analysis
wordpress.org/plugins/wp-awesome-back-to-topAn awesome back to top plugin for wordpress.
Is WP Awesome back to top Safe to Use in 2026?
Generally Safe
Score 85/100WP Awesome back to top has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'wp-awesome-back-to-top' plugin version 1.2 exhibits a mixed security posture. On the positive side, it demonstrates good practices by utilizing prepared statements for all SQL queries, having no file operations, and making no external HTTP requests. The absence of known CVEs and a clean vulnerability history are also strong indicators of a secure development process for this plugin.
However, the static analysis reveals significant concerns. The presence of the `create_function` dangerous function is a red flag, as it can be a vector for code injection if used with untrusted input, though the lack of identified taint flows might mitigate this risk in this specific version. More critically, the output escaping is poor, with only 38% of outputs being properly escaped. This could lead to Cross-Site Scripting (XSS) vulnerabilities if user-controlled data is ever introduced into these unescaped outputs. The complete lack of nonce and capability checks, even with a zero attack surface reported, suggests a lack of robust security mechanisms that could become problematic if the plugin's functionality were to expand in the future.
In conclusion, while the plugin benefits from a clean vulnerability history and sound SQL practices, the insufficient output escaping and the use of `create_function` represent tangible security weaknesses that require attention. The absence of authentication checks on any potential entry points, though currently zero, also poses a potential future risk.
Key Concerns
- Poor output escaping (38% properly escaped)
- Dangerous function found: create_function
- No nonce checks implemented
- No capability checks implemented
WP Awesome back to top Security Vulnerabilities
WP Awesome back to top Code Analysis
Dangerous Functions Found
Output Escaping
WP Awesome back to top Attack Surface
WordPress Hooks 6
Maintenance & Trust
WP Awesome back to top Maintenance & Trust
Maintenance Signals
Community Trust
WP Awesome back to top Alternatives
WPFront Scroll Top
wpfront-scroll-top
Adds a lightweight and smooth "Scroll to Top" button to your WordPress site, improving navigation and user experience with customizable options.
Smooth Back To Top Button
smooth-back-to-top-button
Smooth Back To Top button with scroll progress indicator.
Scroll To Top
scroll-top
Automatically adds a flexible Back to Top button to your WordPress website that allows your visitor to scroll back to the top of your page with one cl …
jQuery Smooth Scroll
jquery-smooth-scroll
Activate the plugin for smooth scrolling and smooth "back to top" feature.
Scroll Back To Top
scroll-back-to-top
This plugin will add a button that allows users to scroll smoothly to the top of the page.
WP Awesome back to top Developer Profile
12 plugins · 1K total installs
How We Detect WP Awesome back to top
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-awesome-back-to-top/css/coolwp-b2t.css/wp-content/plugins/wp-awesome-back-to-top/js/bootstrap.js/wp-content/plugins/wp-awesome-back-to-top/js/bootstrap-tooltip.min.js/wp-content/plugins/wp-awesome-back-to-top/js/custom-b2t.jsHTML / DOM Fingerprints
back-to-topdata-placementdata-original-titleab2t_str