Site Information
WordPress Version: 6.8.3 VULNERABLE
Theme: heim (used by 44 domains)
Last Checked: 2026-08-19 14:41:48
HTTPS: Yes
Plugins (19)
| Plugin | Used By |
|---|---|
| amplitude | 307 |
| click-to-chat-for-whatsapp | 59,545 |
| custom-awl-d2c-integration | 0 |
| custom-buy-x-get-y-auto-add-variant | 0 |
| custom-in-app-browser-blocker | 0 |
| d2c-ui | 0 |
| hot-deals-manager | 0 |
| login-with-google | 499 |
| miniorange-otp-verification-onprem | 0 |
| nextend-smart-slider3-pro | 21,711 |
| product-gallery-swiper-for-woocommerce | 11 |
| woo-discount-rules-pro | 8,437 |
| woo-variation-swatches | 31,563 |
| woo-variation-swatches-pro | 2,033 |
| woocommerce | 807,861 |
| wordpress-popup | 7,301 |
| wp-sentry-integration | 1,507 |
| wt-smart-coupons-for-woocommerce | 4,843 |
| yith-infinite-scrolling | 1,848 |
Security Headers
F
Grade F
5 missing headers
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (6.8.3) — unauthenticated SQL injection (CVE-2026-60137). Update to 6.8.6 immediately.
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress site? Contact us for a professional security audit.