
System Report Security & Risk Analysis
wordpress.org/plugins/system-reportQuickly identify important aspects of your server, PHP, WordPress installation, theme and plugins
Is System Report Safe to Use in 2026?
Generally Safe
Score 85/100System Report has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The system-report plugin v2.1.0 exhibits a mixed security posture. While it has no reported vulnerabilities (CVEs) and a seemingly small attack surface based on the provided metrics, the static analysis reveals significant concerns. The presence of the `exec` function is a critical warning sign, as it can be exploited for arbitrary code execution if improperly handled. Furthermore, two identified taint flows with unsanitized paths suggest potential vulnerabilities where user-supplied data could be used to manipulate file paths or other sensitive operations without proper validation. The low percentage of properly escaped output (26%) also indicates a risk of cross-site scripting (XSS) vulnerabilities.
Key Concerns
- Dangerous function 'exec' found
- Taint flows with unsanitized paths (2)
- Low percentage of properly escaped output
- No capability checks found
- No nonce checks found
System Report Security Vulnerabilities
System Report Release Timeline
System Report Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Data Flow Analysis
System Report Attack Surface
WordPress Hooks 1
Maintenance & Trust
System Report Maintenance & Trust
Maintenance Signals
Community Trust
System Report Alternatives
Site Status Reporter
site-status-reporter
Easily generate and share detailed WordPress site reports with Site Status Reporter, including plugins, themes, PHP, server info, and more—fully custo …
atec System Info
atec-system-info
atec System Info (Operating system, server, memory, PHP and database details)
Happy Ordering
happy-ordering
Check Happy Ordering system status and report bugs to improve your ordering experience.
Ni WooCommerce Custom Order Status
ni-woocommerce-custom-order-status
WC requires at least: 4.0 WC tested up to: 9.7 Last Updated Date: 10-March-2026 WooCommerce Custom Order Status plug-in allows you to create and manag …
WP System Information
wp-system-info
Show WordPress Site, Current Theme, active plugin and server related information, php info, file & folder persmission at a glance.
System Report Developer Profile
4 plugins · 40 total installs
How We Detect System Report
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/system-report/assets/css/bootstrap.min.css/wp-content/plugins/system-report/assets/css/system-report.css/wp-content/plugins/system-report/assets/js/bootstrap.min.js/wp-content/plugins/system-report/assets/js/system-report.js/wp-content/plugins/system-report/assets/js/system-report.js/wp-content/plugins/system-report/assets/js/bootstrap.min.jssystem-report/assets/css/bootstrap.min.css?ver=system-report/assets/css/system-report.css?ver=system-report/assets/js/bootstrap.min.js?ver=system-report/assets/js/system-report.js?ver=HTML / DOM Fingerprints
system-report-wrappersystem-report-content<!-- System Report by Aaron Holbrook -->data-bs-toggledata-bs-targetwindow.sr_data