
Super Blocks CSS – Custom CSS for Gutenberg Blocks Security & Risk Analysis
wordpress.org/plugins/super-custom-cssAdd custom CSS to your Gutenberg blocks directly from the block editor.
Is Super Blocks CSS – Custom CSS for Gutenberg Blocks Safe to Use in 2026?
Generally Safe
Score 92/100Super Blocks CSS – Custom CSS for Gutenberg Blocks has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "super-custom-css" v2.0.0 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of known vulnerabilities in its history and the lack of critical signals in the code analysis are positive indicators. The plugin demonstrates good practices by not utilizing dangerous functions, performing SQL queries exclusively with prepared statements, and having no file operations or external HTTP requests, all of which significantly reduce potential attack vectors.
However, a notable concern arises from the complete lack of nonce checks and capability checks. While the current attack surface appears minimal, the absence of these fundamental WordPress security mechanisms means that any future expansion of its functionality or the discovery of new entry points could expose the plugin to Cross-Site Request Forgery (CSRF) and privilege escalation vulnerabilities. The output escaping, while not entirely perfect at 71%, is also a minor area of potential concern if the unescaped outputs contain user-controlled data.
Overall, "super-custom-css" v2.0.0 is currently low risk due to its limited functionality and lack of documented vulnerabilities. The primary weakness lies in the foundational security controls it omits. If the plugin's functionality remains static and no new entry points are introduced, the risk will remain low. However, developers should prioritize implementing nonce and capability checks to fortify the plugin against future threats and to adhere to WordPress security best practices.
Key Concerns
- Missing Nonce Checks
- Missing Capability Checks
- Improper Output Escaping (29% unescaped)
Super Blocks CSS – Custom CSS for Gutenberg Blocks Security Vulnerabilities
Super Blocks CSS – Custom CSS for Gutenberg Blocks Release Timeline
Super Blocks CSS – Custom CSS for Gutenberg Blocks Code Analysis
Output Escaping
Super Blocks CSS – Custom CSS for Gutenberg Blocks Attack Surface
WordPress Hooks 7
Maintenance & Trust
Super Blocks CSS – Custom CSS for Gutenberg Blocks Maintenance & Trust
Maintenance Signals
Community Trust
Super Blocks CSS – Custom CSS for Gutenberg Blocks Alternatives
Blocks CSS: CSS Editor for Gutenberg Blocks
blocks-css
Blocks CSS allows you add custom CSS to your Blocks straight from the Block Editor (Gutenberg).
BlockGlow — Per-block Custom CSS
blockglow
Adds a "Custom CSS" inspector panel to every Gutenberg block and saves per-block CSS files to uploads for front-end enqueuing.
Spectra Gutenberg Blocks – Website Builder for the Block Editor
ultimate-addons-for-gutenberg
Power-up Gutenberg with advanced blocks for faster website creation. Build your WordPress website effortlessly using powerful building blocks!
Kadence Blocks — Page Builder Toolkit for Gutenberg Editor
kadence-blocks
20+ AI-powered Gutenberg Blocks with endless options, enabling top-notch efficiency for high-performance dynamic website creation.
Page Builder: Pagelayer – Drag and Drop website builder
pagelayer
The most advanced frontend drag & drop page builder. Pagelayer is a light weight but extremely powerful Website Builder.
Super Blocks CSS – Custom CSS for Gutenberg Blocks Developer Profile
2 plugins · 140 total installs
How We Detect Super Blocks CSS – Custom CSS for Gutenberg Blocks
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/super-custom-css/js/editor.js/wp-content/plugins/super-custom-css/css/editor-style.css/wp-content/plugins/super-custom-css/js/settings.jssuper-custom-css/js/editor.js?ver=super-custom-css/css/editor-style.css?ver=super-custom-css/js/settings.js?ver=HTML / DOM Fingerprints
super-block-css-globalsuper-block-css-customdata-super-block-css-id