
Scroll To Top Security & Risk Analysis
wordpress.org/plugins/wp-scroll-to-topScroll To Top plugin does the job with just one click a button appears when a person scrolls to the middle of the page to be clicked on.
Is Scroll To Top Safe to Use in 2026?
Generally Safe
Score 85/100Scroll To Top has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "wp-scroll-to-top" v2.0 plugin exhibits a generally positive security posture with no known vulnerabilities in its history and a clean taint analysis. The static analysis reveals no dangerous functions, no raw SQL queries (all use prepared statements), and no file operations or external HTTP requests, which are all strong indicators of secure coding practices. The absence of a significant attack surface, with zero entry points, further contributes to its secure design.
However, a notable concern is the low percentage of properly escaped output (15%). This suggests that a significant portion of user-generated or dynamically generated content being displayed by the plugin might be vulnerable to Cross-Site Scripting (XSS) attacks. While there are no specific XSS vulnerabilities flagged in the taint analysis, the sheer volume of unescaped output presents a tangible risk that could be exploited if user input is not handled with extreme care throughout the plugin's execution.
Overall, the plugin is built on a solid foundation with minimal direct attack vectors and no known exploit history. The primary area for improvement lies in ensuring all output is consistently and properly escaped to mitigate potential XSS risks. The developer should prioritize addressing the unescaped output to strengthen the plugin's security.
Key Concerns
- Low percentage of properly escaped output
Scroll To Top Security Vulnerabilities
Scroll To Top Code Analysis
Output Escaping
Scroll To Top Attack Surface
WordPress Hooks 7
Maintenance & Trust
Scroll To Top Maintenance & Trust
Maintenance Signals
Community Trust
Scroll To Top Alternatives
Tipu Scroll To Top
tipu-scroll-to-top
License: GPLv2 or later License URI: http://www.gnu.org/licenses/gpl-2.0.html This Plugin adds a scroll to top button in your site
wp scroll posts
wp-scroll-posts
wp scroll posts is posts scroller plugin
Marquee Block
marquee-block
Marquee block is CSS based animation block to display scrolling text, images and any kinds of blocks horizontally and vertically.
Vertical Image Slider
wp-vertical-image-slider
This is a beautiful responsive vertical image slider for wp blogs and sites. Admin can manage any number of images into the responsive vertical slider …
Simple Owl Carousel
simple-owl-carousel
Based on the Owl Carousel, an extremely powerful, robust & responsive customizable plugin.
Scroll To Top Developer Profile
11 plugins · 15K total installs
How We Detect Scroll To Top
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-scroll-to-top-premium/scr_style2.css/wp-content/plugins/wp-scroll-to-top-premium/js/scr_js.js/wp-content/plugins/wp-scroll-to-top-premium/js/color-picker.js/wp-content/plugins/wp-scroll-to-top-premium/js/scr_js.js/wp-content/plugins/wp-scroll-to-top-premium/js/color-picker.jsHTML / DOM Fingerprints
scr_wrapperpre_des_iconsscr_containerscr_iconid='scr_wrapper'id="pre_des_icons"id='scr_container'class='scr_icon'