I’ve been disabling UPnP on my routers for a while, because I heard it was a security risk, but I never knew why.

I just saw this article which says the risk with UPnP is that you’re assuming all applications running on the LAN are trustworthy. Any of them are allowed to temporarily open ports on the router. So if you’re sure you don’t have any malware, UPnP might not be that unsafe.

I haven’t needed to manually open any ports and haven’t noticed any problems. I think it’s usually fine because most firewalls / routers are setup to allow incoming packets for related / established TCP connections.