
Trashify – Exclusão de Imagens Security & Risk Analysis
wordpress.org/plugins/trashify-image-deletionFacilita a exclusão de mídias diretamente da biblioteca do WordPress, de forma segura, organizada e seletiva.
Is Trashify – Exclusão de Imagens Safe to Use in 2026?
Generally Safe
Score 100/100Trashify – Exclusão de Imagens has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "trashify-image-deletion" v1.0.2 plugin exhibits a concerning security posture, primarily due to a significant attack surface with unprotected entry points. While the code shows good practices in avoiding dangerous functions, using prepared statements for SQL, and having some nonce and capability checks, the absence of authentication checks on all three AJAX handlers presents a serious risk. This allows any user, even unauthenticated ones, to potentially trigger these handlers, leading to unintended consequences or exploitation. The limited output escaping also raises concerns, as it could lead to cross-site scripting (XSS) vulnerabilities if user-supplied data is not properly sanitized before being displayed. The complete lack of known vulnerabilities in its history is a positive sign, suggesting diligent development or a lack of past exploitation. However, this does not mitigate the immediate risks identified in the static analysis. Overall, the plugin has potential strengths in its SQL handling but is severely weakened by its unprotected AJAX endpoints and insufficient output escaping, making it a moderate to high risk without immediate remediation.
Key Concerns
- AJAX handlers without authentication checks
- Low percentage of properly escaped output
Trashify – Exclusão de Imagens Security Vulnerabilities
Trashify – Exclusão de Imagens Code Analysis
Output Escaping
Trashify – Exclusão de Imagens Attack Surface
AJAX Handlers 3
WordPress Hooks 4
Maintenance & Trust
Trashify – Exclusão de Imagens Maintenance & Trust
Maintenance Signals
Community Trust
Trashify – Exclusão de Imagens Alternatives
Remove Broken Images
remove-broken-images
Very simply, uses JavaScript to remove broken images from page display.
Pro Uploads Cleaner
pro-uploads-cleaner
Scan and clean unused images from your WordPress uploads folder safely.
Instant Images – One-click Image Uploads from Unsplash, Openverse, Pixabay, Pexels, and Giphy
instant-images
One-click uploads from Unsplash, Openverse, Pixabay, Pexels, and Giphy directly to your WordPress media library.
Media Library Assistant
media-library-assistant
Enhances the Media Library; powerful gallery and list shortcodes, full taxonomy support, IPTC/EXIF/XMP/PDF processing, bulk/quick edit.
Crop-Thumbnails
crop-thumbnails
"Crop Thumbnails" made it easy to get exacly that specific image-detail you want to show in your featured image or gallery image.
Trashify – Exclusão de Imagens Developer Profile
1 plugin · 0 total installs
How We Detect Trashify – Exclusão de Imagens
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/trashify-image-deletion/admin/css/trashify-admin.css/wp-content/plugins/trashify-image-deletion/admin/js/trashify-admin.js/wp-content/plugins/trashify-image-deletion/admin/js/trashify-admin.jstrashify-image-deletion/admin/css/trashify-admin.css?ver=trashify-image-deletion/admin/js/trashify-admin.js?ver=HTML / DOM Fingerprints
trashify_ajax