
Under The Weather Security & Risk Analysis
wordpress.org/plugins/under-the-weatherA lightweight and customizable weather widget, powered by the OpenWeather API, that caches and presents weather data with multiple style options.
Is Under The Weather Safe to Use in 2026?
Generally Safe
Score 100/100Under The Weather has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "under-the-weather" plugin version 2.6.0 exhibits a generally strong security posture based on the provided static analysis and vulnerability history. The absence of known CVEs, critical taint flows, and dangerous function usage indicates a well-developed and relatively secure codebase. Furthermore, the plugin demonstrates good practices by utilizing prepared statements for all SQL queries and implementing nonce and capability checks on its entry points, which significantly mitigates common attack vectors.
Key Concerns
- High percentage of unescaped output
- External HTTP request without clear sanitization context
Under The Weather Security Vulnerabilities
Under The Weather Release Timeline
Under The Weather Code Analysis
SQL Query Safety
Output Escaping
Under The Weather Attack Surface
AJAX Handlers 2
REST API Routes 1
Shortcodes 1
WordPress Hooks 10
Maintenance & Trust
Under The Weather Maintenance & Trust
Maintenance Signals
Community Trust
Under The Weather Alternatives
Location Weather – WordPress Weather Forecast, AQI, Temperature and Weather Widget
location-weather
Customizable WordPress Weather Forecast plugin to display Current Temperature, Hourly & Daily Forecasts, up to 16-Day, Air Quality, & Live Weather Map
wp-forecast
wp-forecast
wp-forecast is a highly customizable plugin for wordpress, showing weather-data from open-meteo.com and/or openweathermap.com.
Weather Forecast Widget
weather-forecast-widget
"Weather Forecast Widget" displays current weather and hourly/daily forecasts in a widget using a shortcode.
Moody Weather
moody-weather
Displays a mood and icon based on the current weather conditions using data from OpenWeatherMap.
Spelhubben Weather
spelhubben-weather
Weather widget, Gutenberg block and shortcode with optional map and multi-provider forecasts.
Under The Weather Developer Profile
5 plugins · 20 total installs
How We Detect Under The Weather
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/under-the-weather/build/index.css/wp-content/plugins/under-the-weather/build/index.js/wp-content/plugins/under-the-weather/weather-widget.css/wp-content/plugins/under-the-weather/weather-widget.js/wp-content/plugins/under-the-weather/build/index.js/wp-content/plugins/under-the-weather/weather-widget.jsunder-the-weather/build/index.css?ver=under-the-weather/build/index.js?ver=under-the-weather/weather-widget.css?ver=under-the-weather/weather-widget.js?ver=HTML / DOM Fingerprints
under-the-weather-widgetutw-widgetutw-iconutw-temputw-descriptionutw-locationutw-humidityutw-wind+4 moredata-api-keydata-locationdata-unitsdata-styledata-theme-modedata-display-mode+5 moreunderTheWeather[under_the_weather