Domain Information
WordPress Version: 7.0.1 VULNERABLE
Theme: hello-elementor 3.4.9· 100% conf. (theme used by 597,939 domains)
Last Checked: 2026-09-10 00:14:53
HTTPS: Yes
Server: cloudflare
CDN / WAF: Cloudflare
Response time (TTFB): 985 ms
Hosting: Cloudflare, Inc. (AS13335)
IP address: 172.67.70.xxx
Plugins (13)
| Plugin | Version | Used By |
|---|---|---|
| ajax-search-lite | 4.14.5· 85% conf. | 15,336 |
| beam-me-up-scotty | 1.0.24· 85% conf. | 246 |
| custom-gravity-functions | 1.0.0· 60% conf. | 0 |
| elementor | 4.2.1· 85% conf. | 1,695,155 |
| elementor-pro | 4.2.1· 85% conf. | 1,009,656 |
| essential-addons-for-elementor-lite | 6.7.2· 85% conf. | 251,601 |
| filter-everything | — | 1,901 |
| gravityforms | 3.0.1· 85% conf. | 246,917 |
| handl-utm-grabber | — | 4,974 |
| seo-by-rank-math-pro | — | 29,505 |
| the-post-grid | 7.9.3· 60% conf. | 13,939 |
| the-post-grid-pro | 7.8.1· 85% conf. | 612 |
| ymc-smart-filter | 3.12.14· 85% conf. | 1,197 |
Security Headers
1 missing header
Missing headers:
- Content-Security-Policy (CSP) — Prevents XSS attacks ?
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (7.0.1) — wp2shell unauthenticated RCE (CVE-2026-63030). Update to 7.0.2 immediately.
Need help securing your WordPress infrastructure? Contact us for a professional security audit.