Disk Usage Sunburst Security & Risk Analysis

wordpress.org/plugins/disk-usage-sunburst

Visualize and drill down the disk usage of your whole WordPress installation. Find and identify big files immediately!

9K active installs v1.1.8 PHP + WP 4.0+ Updated Jan 13, 2026
big-filesdisk-consumptiondisk-spacedisk-usagefile-consumption
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Disk Usage Sunburst Safe to Use in 2026?

Generally Safe

Score 100/100

Disk Usage Sunburst has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The disk-usage-sunburst plugin exhibits a mixed security posture. On the positive side, it demonstrates good practices by avoiding dangerous functions, using prepared statements for all SQL queries, and having no recorded vulnerabilities in its history. The absence of file operations, external HTTP requests, and bundled libraries also contributes to a cleaner codebase. However, significant concerns arise from the static analysis. The plugin has a single AJAX handler that lacks any authentication checks, creating a direct attack vector for unauthenticated users. Furthermore, none of the outputs are properly escaped, indicating a high risk of Cross-Site Scripting (XSS) vulnerabilities where user-supplied data could be injected into the page's output. The lack of taint analysis results is neutral; it suggests no obvious flaws were found in the limited scope of analysis, but it doesn't definitively rule out issues.

Despite the clean vulnerability history, the presence of an unprotected AJAX endpoint and the universal lack of output escaping present immediate and significant security risks. The vulnerability history indicates the plugin has historically been well-maintained or has not been a target, but this does not negate the current, observable code flaws. The plugin's strength lies in its basic code hygiene regarding SQL and function usage, but its weakness is critical in input validation and output sanitization for its entry points, making it susceptible to common web attacks.

Key Concerns

  • Unprotected AJAX handler
  • Output escaping missing
Vulnerabilities
None known

Disk Usage Sunburst Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Disk Usage Sunburst Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
0 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped1 total outputs
Attack Surface
1 unprotected

Disk Usage Sunburst Attack Surface

Entry Points1
Unprotected1

AJAX Handlers 1

authwp_ajax_rbdusb_datarbdusb-disk-usage-sunburst.php:74
WordPress Hooks 4
actionadmin_menurbdusb-disk-usage-sunburst.php:63
actioncurrent_screenrbdusb-disk-usage-sunburst.php:68
actioncurrent_screenrbdusb-disk-usage-sunburst.php:71
actioninitrbdusb-disk-usage-sunburst.php:90
Maintenance & Trust

Disk Usage Sunburst Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 13, 2026
PHP min version
Downloads114K

Community Trust

Rating96/100
Number of ratings36
Active installs9K
Developer Profile

Disk Usage Sunburst Developer Profile

RAIDBOXES

2 plugins · 9K total installs

89
trust score
Avg Security Score
93/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Disk Usage Sunburst

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/disk-usage-sunburst/js/d3.v3.min.js/wp-content/plugins/disk-usage-sunburst/js/rbdusb.js/wp-content/plugins/disk-usage-sunburst/css/rbdusb.css
Script Paths
/wp-content/plugins/disk-usage-sunburst/js/d3.v3.min.js/wp-content/plugins/disk-usage-sunburst/js/rbdusb.js
Version Parameters
disk-usage-sunburst/js/d3.v3.min.js?ver=1.1disk-usage-sunburst/js/rbdusb.js?ver=1.1

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Disk Usage Sunburst