
WPSupervisor Client Security & Risk Analysis
wordpress.org/plugins/wpsupervisor-clientInstall this plugin on unlimited sites and manage them all from a central dashboard. This plugin communicates with your WPSupervisor Admin Panel.
Is WPSupervisor Client Safe to Use in 2026?
Generally Safe
Score 85/100WPSupervisor Client has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The WPSupervisor-Client plugin v1.1.10 presents a mixed security posture. While it exhibits strengths in its limited attack surface, with no identified AJAX handlers, REST API routes, or shortcodes that are unprotected, and a good percentage of SQL queries utilizing prepared statements, significant concerns arise from its code signals. The presence of five dangerous functions (exec, system, passthru, create_function, unserialize) is a red flag, as these can be exploited for remote code execution or deserialization vulnerabilities if used improperly with user-supplied input. The taint analysis further highlights this risk, revealing two flows with unsanitized paths, both classified as high severity. This indicates a potential for attackers to inject malicious code or data that is not properly validated or sanitized before being processed by these dangerous functions or other vulnerable code paths. The lack of any documented vulnerability history or CVEs is positive, suggesting that the plugin may have been developed with security in mind or has not yet been a target of widespread exploits. However, this absence of history should not overshadow the critical risks identified in the static and taint analysis.
Key Concerns
- Unsanitized taint flows found (High Severity)
- Dangerous functions detected (exec, system, passthru, create_function, unseriali
- Missing nonce checks
- Missing capability checks
- Low percentage of properly escaped output
WPSupervisor Client Security Vulnerabilities
WPSupervisor Client Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Data Flow Analysis
WPSupervisor Client Attack Surface
WordPress Hooks 16
Scheduled Events 2
Maintenance & Trust
WPSupervisor Client Maintenance & Trust
Maintenance Signals
Community Trust
WPSupervisor Client Alternatives
IthStatsWP Client
ithstatswp-client
Install this plugin on unlimited sites and manage them all from a central dashboard.
BugHerd
bugherd
BugHerd is the visual feedback tool for websites.
LatePoint Manager
latepoint-manager
LatePoint Manager is a new role for LatePoint - Appointment Booking & Reservation plugin. You can contronl pending Appointment Booking list and ma …
WP Site Monitor
wp-site-monitor
Extends official WP REST API to provide extra endpoints to help manage sites remotely.
User Role Blocker
user-role-blocker
A simple and nice plugin to block existing users from logging into the admin panel by assigning them to the 'Blocked' user role, as simple a …
WPSupervisor Client Developer Profile
1 plugin · 10 total installs
How We Detect WPSupervisor Client
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.