WordPress maintenance or security needs? Reach out!
TLDWP

Domain Security Report for f*m*l*h*n*y*a*.com

Domain Information

WordPress Version: 6.8.2 VULNERABLE

Theme: bumblebee 30.0.12· 100% conf. (theme used by 33 domains)

Last Checked: 2026-09-10 04:36:24

HTTPS: Yes

Server: cloudflare

CDN / WAF: Cloudflare

Response time (TTFB): 145 ms fast

Hosting: Cloudflare, Inc. (AS13335)

IP address: 104.19.255.xxx

Plugins (18)

Plugin Version Used By
elasticpress 3,706
pup-bx 3.1.0· 60% conf. 11
pushly 1.0.4· 60% conf. 257
speedcurve-helper 1.0.2· 60% conf. 11
tmbi-ad-density 9.0.0· 85% conf. 11
tmbi-affiliate-product-pricing 2.3.4· 60% conf. 11
tmbi-amazon-affiliate 3.0.2· 60% conf. 11
tmbi-assertive-yield 3.0.2· 60% conf. 11
tmbi-brandmetrics 1.0.0· 60% conf. 11
tmbi-bytes 3.2.1· 85% conf. 11
tmbi-cookie-compliance-v2 1.2.0· 60% conf. 11
tmbi-cookie-compliance-v2-ketch-helper 1.3.3· 60% conf. 11
tmbi-data-analytics 8.4.9· 85% conf. 11
tmbi-generic-data-api 11
tmbi-marfeel-helper 1.0.0· 60% conf. 11
tmbi-permutive 6.0.0· 85% conf. 11
tmbi-zeta-helper 1.0.1· 60% conf. 11
widget-options 28,188

Security Headers

C
Grade C

2 missing headers

Missing headers:

  • Content-Security-Policy (CSP) — Prevents XSS attacks ?
  • Permissions-Policy — Limits browser features ?

Exposed Files & Configurations

This domain has publicly accessible security-sensitive files or configurations:

  • Vulnerable WordPress Version (6.8.2) — unauthenticated SQL injection (CVE-2026-60137). Update to 6.8.6 immediately.

Need help securing your WordPress infrastructure? Contact us for a professional security audit.