Site Information
WordPress Version: 7.0 VULNERABLE
Theme: autixir (used by 41 domains)
Last Checked: 2026-08-28 07:21:37
HTTPS: Yes
Plugins (14)
| Plugin | Used By |
|---|---|
| autixir-core | 40 |
| contact-form-7 | 1,718,970 |
| diagnoseo | 33 |
| elementor | 1,724,510 |
| elementskit-lite | 173,407 |
| event-tickets | 18,959 |
| event-tickets-plus | 3,503 |
| google-site-kit | 253,816 |
| piotnet-addons-for-elementor | 3,957 |
| pro-elements | 61,421 |
| searchwp-live-ajax-search | 12,675 |
| the-events-calendar | 120,020 |
| wp-compress-image-optimizer | 2,306 |
| wp-smushit | 88,027 |
Security Headers
C
Grade C
2 missing headers
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (7.0) — wp2shell unauthenticated RCE (CVE-2026-63030). Update to 7.0.2 immediately.
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress site? Contact us for a professional security audit.