
Aviation Weather Briefing Security & Risk Analysis
wordpress.org/plugins/aviation-weather-briefingDisplay the most important Aviation Weather information such as METAR,TAF,Significant Weather and Upper Winds and Temperature.
Is Aviation Weather Briefing Safe to Use in 2026?
Generally Safe
Score 85/100Aviation Weather Briefing has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "aviation-weather-briefing" v1.0 plugin exhibits a mixed security posture. While it boasts a small attack surface with no known CVEs and no direct dangerous functions, several concerning code signals and taint analysis results raise flags. The lack of output escaping on all identified outputs is a significant weakness, potentially leading to cross-site scripting (XSS) vulnerabilities if user-supplied data is displayed without proper sanitization.
Furthermore, the taint analysis reveals three flows with unsanitized paths, all categorized as high severity. This suggests that data originating from untrusted sources might be processed in a way that could be exploited. The vulnerability history being clean is a positive indicator, but it doesn't negate the risks identified in the static analysis. The plugin's strengths lie in its limited external dependencies and lack of historical vulnerabilities, but the identified unescaped outputs and high-severity taint flows represent concrete areas for improvement and potential exploitation.
Key Concerns
- Unescaped output on all outputs
- High severity unsanitized taint flow (3 instances)
- 50% of SQL queries not using prepared statements
- No nonce checks on entry points
- No capability checks on entry points
Aviation Weather Briefing Security Vulnerabilities
Aviation Weather Briefing Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Aviation Weather Briefing Attack Surface
Shortcodes 3
WordPress Hooks 1
Maintenance & Trust
Aviation Weather Briefing Maintenance & Trust
Maintenance Signals
Community Trust
Aviation Weather Briefing Alternatives
AviationWeather Plugin
aviationweather-widget
A simple widget to display current METAR and TAF for the chosen ICAO Station.
taf-metar-widget
wp-taf-metar-widget
This Widget allows you to show the TAF or METAR (aviation weather) information for any airport directly to your WordPress WebSite.
TAF plugin
taf-widget
A simple widget to display the current TAF (Terminal aerodrome forecast) code for a chosen ICAO station.
WP All Import – Drag & Drop Import for CSV, XML, Excel & Google Sheets
wp-all-import
Easily import any file of any size into any plugin, post type, custom field, or taxonomy. Supports WooCommerce, ACF, images, galleries, users, real es …
Zapier for WordPress
zapier
Zapier saves you time on tedious tasks by moving info between WordPress and your other favorite apps, so you can focus on your most important work.
Aviation Weather Briefing Developer Profile
1 plugin · 30 total installs
How We Detect Aviation Weather Briefing
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/aviation-weather-briefing/aviation-weather-briefing.php/wp-content/plugins/aviation-weather-briefing/functions_wx.phpHTML / DOM Fingerprints
containerid="avwx"id="airport"id="upper"id="region"jQuery<h4 style="font-weight:bold;">METAR/TAF GENERATOR</h4><p>Insert up to 3 valid ICAO identifiers to get METAR and TAF Reports</p><h4 style="font-weight:bold;">UPPER WINDS AND TEMPERATURE</h4><h4 style="font-weight:bold;">SIGNIFICANT WEATHER</h4>