Domain Information
WordPress Version: 4.9.26 VULNERABLE
Theme: exfa
Last Checked: 2026-07-25 19:28:12
HTTPS: Yes
Plugins (8)
| Plugin | Version | Used By |
|---|---|---|
| gk-nsp | — | 117 |
| gk-tabs | — | 132 |
| jetpack | — | 402,304 |
| mailpoet | — | 15,259 |
| responsive-lightbox | — | 32,820 |
| woocommerce | — | 781,569 |
| woocommerce-currency-switcher | — | 5,151 |
| woocommerce-gateway-paypal-express-checkout | — | 7,948 |
Security Headers
F
Grade F
5 missing headers
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (4.9.26) — outdated core with known vulnerabilities. Update to the latest release immediately.
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress infrastructure? Contact us for a professional security audit.