
Media Sweep – WordPress Media Cleaner Security & Risk Analysis
wordpress.org/plugins/media-sweepClean up your WordPress Media Library by finding and removing unused files. Safely scan, preview, and sweep away orphaned media to keep your site fast …
Is Media Sweep – WordPress Media Cleaner Safe to Use in 2026?
Generally Safe
Score 100/100Media Sweep – WordPress Media Cleaner has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The media-sweep v1.0.4 plugin exhibits a strong security posture based on the provided static analysis and vulnerability history. The plugin has a very small attack surface, with only one AJAX handler, and importantly, it appears to have proper authentication checks in place for this entry point. The code demonstrates good development practices, with all identified output being properly escaped and a high percentage of SQL queries utilizing prepared statements. There are no critical or high severity taint analysis findings, and the plugin has no known historical vulnerabilities, suggesting a history of secure development.
While the plugin shows many positive security indicators, there are minor areas to note. The presence of file operations without further context could potentially be a concern if not handled with extreme care, although no specific vulnerabilities are indicated here. The single nonce check and capability check, while present, could be more robust if there were multiple complex operations. Overall, the plugin is currently assessed as highly secure, with its strengths in properly managed entry points, robust output escaping, and a clean vulnerability history significantly outweighing any potential minor concerns.
Media Sweep – WordPress Media Cleaner Security Vulnerabilities
Media Sweep – WordPress Media Cleaner Code Analysis
SQL Query Safety
Output Escaping
Media Sweep – WordPress Media Cleaner Attack Surface
AJAX Handlers 1
WordPress Hooks 13
Maintenance & Trust
Media Sweep – WordPress Media Cleaner Maintenance & Trust
Maintenance Signals
Community Trust
Media Sweep – WordPress Media Cleaner Alternatives
Media Cleaner: Clean your WordPress!
media-cleaner
Clean your WordPress! Eliminate unused and broken media files. For a faster, and better website.
Cleanup Orphan Images
cleanup-orphan-images
Finds and deletes orphan media files from the uploads directory that are not registered in WordPress.
OverWrite It
overwrite-it
When you upload files, OverWrite It jumps into the scene to replace old file with uploading one.
qCleanup
q-cleanup
This plugin allows you to delete unused and leftover files from upload dir. In one click you can rid of all unwanted files and reduce space usage.
Media Sifter
media-sifter
Find and remove unused/orphan media files safely. Dry-run scan, preview, and bulk-delete to reclaim storage.
Media Sweep – WordPress Media Cleaner Developer Profile
2 plugins · 900 total installs
How We Detect Media Sweep – WordPress Media Cleaner
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/media-sweep/build/index.js/wp-content/plugins/media-sweep/build/index.css/wp-content/plugins/media-sweep/build/index.jsmedia-sweep/build/index.js?ver=media-sweep/build/index.css?ver=HTML / DOM Fingerprints
mswp-adminmswp-page<!-- Capture all notices and hide them. WordPress Core looks for --><!-- .wp-header-end and appends notices after it if found. --><!-- https://github.com/WordPress/WordPress/blob/f6a37e7d39e2534d05b9e542045174498edfe536/wp-admin/js/common.js#L737 . -->id="mswp-admin"id="wp__notice-list"id="mswp-layout__notice-catcher"mswpAdmin