
Easy Weather Widget Security & Risk Analysis
wordpress.org/plugins/easy-weather-widgetEasy Weather Widget provides you with an easy to use widget which outputs weather information. When creating the widget just enter in your U.S.
Is Easy Weather Widget Safe to Use in 2026?
Generally Safe
Score 85/100Easy Weather Widget has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The static analysis of easy-weather-widget v3.2.5 indicates a generally positive security posture, with no identified CVEs and a strong adherence to secure SQL practices. The plugin also demonstrates good practices by not exposing numerous direct entry points through AJAX, REST API, or shortcodes, and it does not appear to utilize cron events. However, there are notable concerns. The presence of the `create_function` is a critical red flag due to its historical association with severe vulnerabilities, especially when inputs are not strictly controlled. Furthermore, only 35% of output escaping is properly implemented, leaving a significant portion of dynamic output potentially vulnerable to cross-site scripting (XSS) attacks. The complete absence of nonce checks and capability checks on potential entry points, combined with the lack of taint analysis data, suggests that any vulnerabilities introduced by the insecure `create_function` or unescaped output could be easily exploited without prior authentication or authorization.
Key Concerns
- Use of dangerous function: create_function
- Low percentage of properly escaped output
- Missing nonce checks
- Missing capability checks
Easy Weather Widget Security Vulnerabilities
Easy Weather Widget Release Timeline
Easy Weather Widget Code Analysis
Dangerous Functions Found
Output Escaping
Easy Weather Widget Attack Surface
WordPress Hooks 5
Maintenance & Trust
Easy Weather Widget Maintenance & Trust
Maintenance Signals
Community Trust
Easy Weather Widget Alternatives
Weather Atlas Widget
weather-atlas
The Weather Widget with the Most Active Installations. Highly customizable, simple & beautiful. Detailed current weather, hourly & daily forecasts
wp-forecast
wp-forecast
wp-forecast is a highly customizable plugin for wordpress, showing weather-data from open-meteo.com and/or openweathermap.com.
Meteo
meteoart
Add an accurate French weather forecast to your site. Choose any city and country, then embed the customizable MeteoArt widget.
ICIT Weather Widget
interconnect-it-weather-widget
The ICIT Weather Widget provides a simple way to show a weather forecast on your website.
m1.MiniWeather
m1miniweather
This plugin easily displays a weather widget (icon + temperature) with a destination of your choice.
Easy Weather Widget Developer Profile
4 plugins · 150 total installs
How We Detect Easy Weather Widget
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/easy-weather-widget/css/style.min.csseasy-weather-widget/css/style.min.css?ver=