Domain Information
WordPress Version: 6.8.3 VULNERABLE
Theme: flatsome (theme used by 144,726 domains)
Last Checked: 2026-09-06 13:58:41
HTTPS: Yes
Server: cloudflare
CDN / WAF: Cloudflare
Response time (TTFB): 871 ms
Hosting: Cloudflare, Inc. (AS13335)
IP address: 188.114.97.xxx
Plugins (11)
| Plugin | Version | Used By |
|---|---|---|
| checkout-countdown-for-woocommerce | — | 95 |
| duracelltomi-google-tag-manager | — | 86,474 |
| seo-woo-custom-pro | — | 150 |
| show-link-image | — | 129 |
| tabwoo | — | 17 |
| woo-variation-swatches | — | 30,528 |
| woocommerce | — | 781,569 |
| woocommerce-boost-sales | — | 122 |
| woocommerce-gateway-paypal-express-checkout | — | 7,948 |
| woocommerce-google-dynamic-retargeting-tag | — | 362 |
| woocommerce-product-feeds | — | 732 |
Security Headers
5 missing headers
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (6.8.3) — unauthenticated SQL injection (CVE-2026-60137). Update to 6.8.6 immediately.
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress infrastructure? Contact us for a professional security audit.
Other WordPress domains on this IP (25+)
These WordPress domains are served from the same IP (188.114.97.xxx) — usually shared hosting or the same operator. Domains are obfuscated uniformly.
- 0*1*9*2*3.xyz
- 0*1*5*5*5.xyz
- 0*9*a*e.link
- 0*5*3*2*7.xyz
- 0*b*a*m*v*e*.in
- 0*m*i.com
- 0*9*o*1.net
- 0*2*8*2*0*.com
- 0*3*.org
- 0*b*t*l*.com
- 0*b*t*u*.com
- 1*x*e*-*e.com
- 1*0*0*.uno
- 1*0*n*t*i*.com
- 1*0*i*d*n*s*a.net
- 1*0*l*.org
- 1*0*e*d*r*h*p*n*t*t*t*.org
- 1*0*i*.bio
- 1*0*i*e*u.com
- 1*1*o*a*.c*m.au
- 1*6*j*b*.net
- 1*7*r*v*m.com
- 1*b*s*c*s*n*d*a*s.c*.uk
- 1*b*a*k.gr
- 1*c*i*-*a*i*o.org