
Supervisor Security & Risk Analysis
wordpress.org/plugins/supervisorSupervisor is a powerful plugin designed to enhance both the performance and security of your WordPress installation.
Is Supervisor Safe to Use in 2026?
Generally Safe
Score 99/100Supervisor has a strong security track record. Known vulnerabilities have been patched promptly.
The "supervisor" v1.3.3 plugin exhibits a generally good security posture based on the provided static analysis. It demonstrates strong adherence to best practices by implementing prepared statements for the majority of its SQL queries, ensuring proper output escaping, and incorporating nonce and capability checks. The absence of dangerous functions, critical taint flows, and a large attack surface without authentication further strengthens its security. The plugin also appears to be well-maintained, with no currently unpatched vulnerabilities, despite a past medium severity vulnerability. The static analysis did not reveal any immediate critical risks within the current codebase, suggesting a robust development process.
However, the presence of one historical medium severity vulnerability, specifically related to missing authorization, warrants attention. While currently patched, this pattern suggests a potential area of weakness that may require ongoing vigilance. The single file operation and external HTTP request, while not inherently risky without further context, are potential entry points for vulnerabilities if not carefully handled. The overall security is good, but the historical context of a missing authorization vulnerability prevents it from being perfect.
Key Concerns
- Past medium severity vulnerability (Missing Authorization)
- 1 SQL query without prepared statements
- 1 file operation
- 1 external HTTP request
Supervisor Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Supervisor <= 1.3.2 - Missing Authorization to Authenticated (Subscriber+) Settings Update
Supervisor Code Analysis
SQL Query Safety
Output Escaping
Supervisor Attack Surface
WordPress Hooks 16
Maintenance & Trust
Supervisor Maintenance & Trust
Maintenance Signals
Community Trust
Supervisor Alternatives
WP Healthcheck
wp-healthcheck
WP Healthcheck is a plugin to check the health of your WordPress install.
Flush Transients
flush-transients
This plugin allows you to flush WordPress transients, plain and simple.
0 Day Analytics
0-day-analytics
0 Day Analytics is a comprehensive WordPress debugging and operational
Fand Transient and Action Cleaner
fand-transient-action-cleaner
Clean up your database by removing expired transients and cumbersome Action Scheduler logs. Optimize your performance with one click.
EVE Dynamic Prerender
eve-dynamic-prerender
An easy and powerful plugin to implement a real dynamic Prerender Meta Tag inside the head section of the HTML document. This version use AJAX so it w …
Supervisor Developer Profile
2 plugins · 1K total installs
How We Detect Supervisor
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/supervisor/js/supervisor.js/wp-content/plugins/supervisor/css/supervisor.css/wp-content/plugins/supervisor/js/supervisor.jssupervisor/style.css?ver=supervisor/supervisor.js?ver=HTML / DOM Fingerprints
supv-admin-dashboard-wrapperdata-supv-loadingsupv