
Earthquake Monitor Security & Risk Analysis
wordpress.org/plugins/earthquakemonitorEarthquake Monitor is a customizable widget that shows an overview of earthquakes around the world from the U.S. Geological Surveys data.
Is Earthquake Monitor Safe to Use in 2026?
Generally Safe
Score 85/100Earthquake Monitor has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The earthquakemonitor v2.0.4 plugin exhibits a generally good security posture based on the provided static analysis and vulnerability history. The absence of any known CVEs, unpatched vulnerabilities, or critical taint flows is a significant strength. The code analysis reveals a limited attack surface with only one shortcode and no unprotected AJAX handlers or REST API routes. Furthermore, the plugin shows a commendable effort in using prepared statements for SQL queries (88%).
However, there are areas for improvement. A notable concern is the low percentage of properly escaped output (21%). This indicates a potential risk of cross-site scripting (XSS) vulnerabilities if user-supplied data is displayed without sufficient sanitization. The lack of nonce checks and capability checks on any entry points, although currently not presenting an immediate threat due to the limited attack surface, represents a missed opportunity to harden the plugin against potential future exploitation. The presence of file operations without further context also warrants caution. Overall, while the plugin is not actively known to be vulnerable, the inadequate output escaping is the primary area of concern that requires attention to ensure a more robust security profile.
Key Concerns
- Low percentage of properly escaped output
- No capability checks on entry points
- No nonce checks on entry points
Earthquake Monitor Security Vulnerabilities
Earthquake Monitor Code Analysis
SQL Query Safety
Output Escaping
Earthquake Monitor Attack Surface
Shortcodes 1
WordPress Hooks 8
Maintenance & Trust
Earthquake Monitor Maintenance & Trust
Maintenance Signals
Community Trust
Earthquake Monitor Alternatives
Campaign Monitor Forms by Optin Cat
campaign-monitor-wp
Campaign Monitor Forms by Optin Cat For WordPress Helps You Get More Email Subscribers. Create Beautiful Campaign Monitor Forms In 2 Minutes.
Uptime Robot Widget
uptime-robot-widget
A simple widget that shows the status of the monitored services in the Uptime Robot service.
Uptime Robot
uptime-robot-by-utopian-themes
A simple WordPress dashboard widget that shows you the current uptime stats of your Uptime Robot monitored websites.
Air Quality Plugin
air-quality
This plugin was made mainly to display air quality from closest air pollution detector
Admin's Debug Tool
admins-debug-tool
Admin-only tool for checking execution times and error output of current theme/plugins
Earthquake Monitor Developer Profile
2 plugins · 50 total installs
How We Detect Earthquake Monitor
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/earthquakemonitor/css/style.cssHTML / DOM Fingerprints
widget_earthquakemonitorid="earthquakemonitor"name="earthquakemonitor"id="earthquake_db_version"window.earthquake_widget_version[earthquakemonitor]