Site Information
WordPress Version: 7.0.1 VULNERABLE
Theme: hello-elementor1 (used by 12 domains)
Last Checked: 2026-07-11 22:50:19
HTTPS: Yes
Plugins (12)
| Plugin | Used By |
|---|---|
| copy-the-code | 2,296 |
| elementor | 1,770,377 |
| elementor-pro | 1,052,659 |
| jet-blocks | 23,441 |
| jet-blog | 15,598 |
| jet-elements | 65,479 |
| jet-engine | 78,031 |
| jet-form-builder-drag-and-drop-file-upload | 111 |
| jet-tricks | 22,363 |
| jet-woo-product-gallery | 7,497 |
| jetflow-uploader | 0 |
| wp-support-all-in-one | 77 |
Security Headers
C
Grade C
2 missing headers
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (7.0.1) — wp2shell unauthenticated RCE (CVE-2026-63030). Update to 7.0.2 immediately.
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress site? Contact us for a professional security audit.