
Quick Disabler Security & Risk Analysis
wordpress.org/plugins/quick-disablerEasily disable all active plugins—except this one—with one click. Re-enable them anytime using AJAX. Perfect for debugging and troubleshooting.
Is Quick Disabler Safe to Use in 2026?
Generally Safe
Score 92/100Quick Disabler has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
Based on the static analysis and vulnerability history, the "quick-disabler" plugin version 1.0.2 demonstrates a generally strong security posture. The code adheres to good practices by not using dangerous functions, all SQL queries are prepared, and output is properly escaped. Furthermore, there are no file operations or external HTTP requests, which significantly reduces potential attack vectors. The presence of capability checks on its two AJAX handlers indicates a basic level of access control.
However, the absence of nonce checks on the AJAX handlers presents a potential risk of Cross-Site Request Forgery (CSRF) attacks. While the capability checks would prevent unauthorized users from accessing functionality, an authenticated user could still be tricked into triggering these actions without their explicit consent. The lack of any recorded vulnerabilities in its history is a positive sign, suggesting a well-developed and secure plugin to date.
In conclusion, the plugin is well-built with secure coding practices in place for SQL and output handling. The primary area for improvement is the implementation of nonce checks for its AJAX endpoints to mitigate CSRF risks. Its clean vulnerability history is a testament to its current security, but the identified potential CSRF vector should be addressed.
Key Concerns
- Missing nonce checks on AJAX handlers
Quick Disabler Security Vulnerabilities
Quick Disabler Code Analysis
Quick Disabler Attack Surface
AJAX Handlers 2
WordPress Hooks 1
Maintenance & Trust
Quick Disabler Maintenance & Trust
Maintenance Signals
Community Trust
Quick Disabler Alternatives
Plugin Detective – Troubleshooting Conflicts
plugin-detective
Plugin Detective helps you troubleshoot issues on your site quickly and easily to find the cause of a problem. Once the culprit is found, the problem …
WP Safe Mode
wp-safe-mode
Disable plugins or switch themes for just you or the whole site for debugging, troubleshooting or accessing and restoring a broken website.
WP Mail Debugger
wp-mail-debugger
WP Mail Debugger captures and displays all emails sent through wp_mail() for debugging and troubleshooting.
Conflict Finder
conflict-finder-wp-fix-it
Conflict Finder is a WordPress troubleshooting toolkit that helps diagnose plugin conflicts, theme issues, debugging errors, and email delivery proble …
Phpinfo
phpinfo
Prints out your webservers php settings as well as other information about your WordPress installation.
Quick Disabler Developer Profile
1 plugin · 0 total installs
How We Detect Quick Disabler
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/quick-disabler/css/style.css/wp-content/plugins/quick-disabler/js/script.js/wp-content/plugins/quick-disabler/js/sweetalert2.min.js/wp-content/plugins/quick-disabler/js/script.js/wp-content/plugins/quick-disabler/js/sweetalert2.min.jsquick-disabler/css/style.css?ver=1.0quick-disabler/js/script.js?ver=1.0quick-disabler/js/sweetalert2.min.js?ver=11.4.8HTML / DOM Fingerprints
ocpt_ajax