Simple Sticky Footer
Simple Sticky Footer has 2 disclosed vulnerabilities in the WordSec catalog, reported between 2014 and 2025; 1 is fixed and 1 remains unpatched as of September 2026. Their average CVSS score is 7.6, and the most serious one scores 8.8 out of 10. Severity breakdown: 0 critical and 1 high.
The most common weakness is Cross-Site Request Forgery (CSRF), behind 1 of the records (50%). Other recurring categories include Cross-Site Scripting.
1 of the records (50%) have a vendor fix, while 1 remain unpatched. The oldest unresolved one dates back to 2025.
2 independent researchers contributed these findings, one record each. Simple Sticky Footer is installed on roughly 600 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 4.7.35.
CVE-2025-50019Simple Sticky Footer <= 1.3.5 - Authenticated (Contributor+) Stored Cross-Site Scripting
Read the full analysisVulnerability Records

Simple Sticky Footer
Author
Sandor Kovacs
Instructions: First of all activate the plugin. Step1: Create a new page. I suggest to add as title “Sticky Footer” Step2: Go to the configuration page APPEARANCE -> SIMPLE STICKY FOOTER. Step3: Select the page which will be shown on your website. Step4(optional): Define a width, in most cases the width of your page. Step5(optional): Define an animation effect. Step6(optional): Define a delay. Sometimes you want to show the sticky footer after 10-15 seconds. Now you can do this. Step7(optional): Define additional CSS rules like: rounded borders, gradient background, shadows, etc … Do not use { }, just enter the css properties ex: background:gray;border-top:1px; Have fun! PS: If you have useful feature tip related to this plugin please write in the plugins support section.
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C