Domain Information
WordPress Version: 6.9.1 VULNERABLE
Theme: astra (used by 398,094 domains)
Last Checked: 2026-09-08 03:50:05
HTTPS: Yes
Server: Apache
Response time (TTFB): 2,854 ms slow
Hosting: Oracle Corporation (AS31898)
IP address: 162.241.194.xxx
Plugins (7)
| Plugin | Used By |
|---|---|
| astra-sites | 107,145 |
| beaver-builder-lite-version | 7,760 |
| creative-mail-by-constant-contact | 65,828 |
| powerpack-addon-for-beaver-builder | 1,065 |
| presto-player | 8,801 |
| rocket-lazy-load | 19,404 |
| wpzoom-addons-for-beaver-builder | 551 |
Security Headers
5 missing headers
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (6.9.1) — wp2shell unauthenticated RCE (CVE-2026-63030). Update to 6.9.5 immediately.
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress infrastructure? Contact us for a professional security audit.
Other WordPress domains on this IP (2)
These WordPress domains are served from the same IP (162.241.194.xxx) — usually shared hosting or the same operator. Domains are obfuscated uniformly.