TW Disable Revisions Security & Risk Analysis

wordpress.org/plugins/tw-disable-revisions

Disable revision function in WordPress and delete all entries of revisions in database.

70 active installs v1.0 PHP + WP 2.6+ Updated Nov 22, 2012
delete-revisiondisable-revisionno-revisionrevision-removalrevisions
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is TW Disable Revisions Safe to Use in 2026?

Generally Safe

Score 85/100

TW Disable Revisions has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 13yr ago
Risk Assessment

The "tw-disable-revisions" v1.0 plugin exhibits a strong security posture based on the static analysis provided. The absence of any identified dangerous functions, SQL injection vulnerabilities (as 50% of queries use prepared statements), unescaped output, file operations, or external HTTP requests is commendable. The plugin also appears to have a minimal attack surface with no entry points identified in the static analysis, and there are no recorded vulnerabilities in its history, which suggests good development practices and thorough testing.

However, the complete lack of nonce and capability checks across all analyzed entry points (even though there are zero listed) represents a significant blind spot. While the current attack surface is reported as zero, this absence of security checks indicates a potential weakness if any entry points were to be introduced or discovered in future versions. The fact that 50% of SQL queries are not using prepared statements also indicates an area of potential risk for SQL injection, even if the current number of queries is low.

In conclusion, the plugin's current state appears very secure with no known vulnerabilities and a clean static analysis report for most metrics. The primary concern lies in the absence of authentication and authorization checks, and the partial reliance on prepared statements for SQL queries. These are critical elements for robust security and should be addressed proactively to maintain a secure plugin, especially as the plugin evolves.

Key Concerns

  • Capability checks missing
  • Nonce checks missing
  • SQL queries not fully prepared
Vulnerabilities
None known

TW Disable Revisions Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

TW Disable Revisions Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
1 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

50% prepared2 total queries
Attack Surface

TW Disable Revisions Attack Surface

Entry Points0
Unprotected0
Maintenance & Trust

TW Disable Revisions Maintenance & Trust

Maintenance Signals

WordPress version tested3.4.2
Last updatedNov 22, 2012
PHP min version
Downloads4K

Community Trust

Rating100/100
Number of ratings5
Active installs70
Developer Profile

TW Disable Revisions Developer Profile

tweetysha

3 plugins · 2K total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect TW Disable Revisions

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about TW Disable Revisions