
Drastic Table Manager Security & Risk Analysis
wordpress.org/plugins/drastic-table-managerAJAX-based table manager for WordPress. It is built using the excellent data grid from DrasticTools.
Is Drastic Table Manager Safe to Use in 2026?
Generally Safe
Score 85/100Drastic Table Manager has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The Drastic Table Manager plugin v0.4 exhibits a concerning security posture despite having no recorded vulnerabilities or a large attack surface. The static analysis reveals critical issues with output escaping, with 100% of outputs not being properly escaped. This is a significant risk, as it opens the door to Cross-Site Scripting (XSS) vulnerabilities where malicious scripts could be injected into the user interface. Furthermore, the taint analysis identified two high-severity flows with unsanitized paths, indicating potential for sensitive data leakage or unauthorized actions if these paths are exploited. While the plugin utilizes prepared statements for most SQL queries and has a nonce check, the lack of capability checks on its entry points (though none were found in this analysis) and the severe output escaping issues present a substantial risk. The absence of a vulnerability history is positive but does not negate the present dangers identified in the code analysis.
Key Concerns
- 0% output escaping
- 2 high severity taint flows with unsanitized paths
- 0 capability checks on entry points
Drastic Table Manager Security Vulnerabilities
Drastic Table Manager Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Drastic Table Manager Attack Surface
WordPress Hooks 2
Maintenance & Trust
Drastic Table Manager Maintenance & Trust
Maintenance Signals
Community Trust
Drastic Table Manager Alternatives
DB Table Viewer
db-table-viewer
A WordPress plugin to display database table data with pagination in a user-friendly format.
DB Viewer
db-viewer
View your WordPress database directly inside your Dashboard. No need for phpMyAdmin or hosting panels.
Admin Columns
codepress-admin-columns
Customise columns on the administration screens for post(types), pages, media, comments, links and users with an easy to use drag-and-drop interface.
Heartbeat Control
heartbeat-control
Allows you to easily manage the frequency of the WordPress heartbeat API.
WP-DBManager
wp-dbmanager
Manages your WordPress database.
Drastic Table Manager Developer Profile
2 plugins · 40 total installs
How We Detect Drastic Table Manager
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/drastic-table-manager/css/grid_default.css/wp-content/plugins/drastic-table-manager/drastic-table-view.php/wp-content/plugins/drastic-table-manager/drastic-table-view.phpdrastic-table-manager/drastic-table-manager.php?ver=drastic-table-manager/css/grid_default.css?ver=HTML / DOM Fingerprints
drasticmgrdrasticgridid="drasticmgr"id="drasticgrid"minColWidthcolWidthoptionsthegrid