Domain Information
WordPress Version: 5.4.13 VULNERABLE
Theme: travelwp (used by 190 domains)
Last Checked: 2026-09-06 18:16:03
HTTPS: Yes
Server: nginx
Response time (TTFB): 1,953 ms slow
Hosting: Unified Layer (AS46606)
IP address: 50.87.230.xxx
Plugins (9)
| Plugin | Used By |
|---|---|
| booking | 7,416 |
| click-to-chat-for-whatsapp | 57,581 |
| fb-reviews-widget | 2,131 |
| js_composer1 | 132 |
| photo-gallery | 34,168 |
| revslider | 588,279 |
| schema-and-structured-data-for-wp | 3,992 |
| travel-booking | 191 |
| woocommerce | 791,879 |
Security Headers
6 missing headers
Missing headers:
- Strict-Transport-Security (HSTS) — Forces HTTPS connections ?
- Content-Security-Policy (CSP) — Prevents XSS attacks ?
- X-Content-Type-Options — Prevents MIME sniffing ?
- X-Frame-Options — Prevents clickjacking ?
- Referrer-Policy — Controls referrer information ?
- Permissions-Policy — Limits browser features ?
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (5.4.13) — outdated core with known vulnerabilities. Update to the latest release immediately.
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress infrastructure? Contact us for a professional security audit.
Other WordPress domains on this IP (19)
These WordPress domains are served from the same IP (50.87.230.xxx) — usually shared hosting or the same operator. Domains are obfuscated uniformly.
- a*d*e*a*p*i*n*e*e*a*r.com
- d*r*i*g*i*e*s.com
- d*v*m*l*c*.com
- e*r*c*n*i*i*n.com
- e*k*t*a*e*.com
- k*m*k*r*t*o*s.com
- m*i*c*r.eu
- m*c*n*e*l*l*w*r*o*p*n*.com
- m*q*e*n*v*n*.com
- o*s*s*i*p*a*s.com
- r*p.com
- r*p*o*u*t*v*c*y*g*n*c*.com
- r*v*r*e*i.com
- r*g*o*a*g*o*p.com
- t*e*r*c*a*d*o*.com
- t*i*o*n*y*e*d*i*l.com
- v*s*o*s*m*l*.com
- v*s*t*i*e*o*c*.com
- w*a*e*r*s*e*y.com