
Media Trim — Unused & Duplicate Media Cleaner Security & Risk Analysis
wordpress.org/plugins/media-trimClean up your WordPress media library by finding and removing unused, duplicate, and orphaned media files. Reclaim disk space instantly.
Is Media Trim — Unused & Duplicate Media Cleaner Safe to Use in 2026?
Generally Safe
Score 100/100Media Trim — Unused & Duplicate Media Cleaner has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The media-trim v1.0.2 plugin exhibits a generally strong security posture, with several key positive indicators. All identified AJAX handlers and potential entry points have implemented nonce and capability checks, suggesting a good understanding of WordPress security best practices for preventing unauthorized actions and cross-site request forgery. The code also demonstrates excellent output escaping, with 100% of identified outputs being properly escaped, which mitigates risks of cross-site scripting (XSS) vulnerabilities. Furthermore, the plugin has no recorded CVEs, which is a positive sign for its historical security. However, there are significant concerns arising from the taint analysis. The presence of 9 flows with unsanitized paths, including 7 of high severity, indicates a potential for vulnerabilities where user-supplied data might not be adequately validated or sanitized before being used in sensitive operations. While no critical severity flows were found, these high-severity unsanitized paths warrant further investigation as they could be exploited to manipulate data or gain unintended access. The SQL query analysis shows a high percentage of prepared statements, which is positive, but the total number of queries also means that any flaws in the remaining 20% could be impactful. The single external HTTP request should also be monitored for potential security implications.
Key Concerns
- High severity unsanitized paths in taint analysis
- Unsanitized paths in taint analysis
- External HTTP request present
Media Trim — Unused & Duplicate Media Cleaner Security Vulnerabilities
Media Trim — Unused & Duplicate Media Cleaner Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Media Trim — Unused & Duplicate Media Cleaner Attack Surface
AJAX Handlers 32
WordPress Hooks 9
Maintenance & Trust
Media Trim — Unused & Duplicate Media Cleaner Maintenance & Trust
Maintenance Signals
Community Trust
Media Trim — Unused & Duplicate Media Cleaner Alternatives
Delete Duplicate Posts
delete-duplicate-posts
Get rid of duplicate posts and pages (any post type) on your blog with manual or automatic modes.
Unattached Media Manager
unattached-media-manager
Fix the WordPress Unattached media filter. Automatically attach used media files to their posts so you can safely clean up your library.
Freesoul Deactivate Plugins – Disable plugins on individual WordPress pages
freesoul-deactivate-plugins
Load plugins only where you need them. No bloat, no conflicts, more speed. Deactivate plugins where they don't add anything useful.
Editor Cleanup For Elementor: clean up and solve plugin conflicts with the Elementor editor
editor-cleanup-for-elementor
FDP add-on to clean up the editor of Elementor. The Elementor editor will be faster and without conflicts with other plugins.
Easy Actions Scheduler Cleaner
easy-actions-scheduler-cleaner-ayudawp
Clean up your Actions Scheduler database with manual or scheduled cleanup. Remove old actions and logs automatically.
Media Trim — Unused & Duplicate Media Cleaner Developer Profile
1 plugin · 0 total installs
How We Detect Media Trim — Unused & Duplicate Media Cleaner
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/media-trim/assets/admin/dashboard.css/wp-content/plugins/media-trim/assets/admin/dashboard.jsmedia-trim/assets/admin/dashboard.css?ver=media-trim/assets/admin/dashboard.js?ver=HTML / DOM Fingerprints
media-trim-adminmtrimAdminData