Site Information
WordPress Version: 5.9.13 ⚠️ VULNERABLE
Theme: astra (used by 417,371 domains)
Last Checked: 2026-07-09 01:27:13
HTTPS: ✅ Yes
Plugins (23)
| Plugin | Used By |
|---|---|
| acurax-social-media-widget | 1,684 |
| addon-elements-for-elementor-page-builder | 16,980 |
| beautiful-and-responsive-cookie-consent | 6,398 |
| blossomthemes-toolkit | 5,292 |
| content-views-query-and-display-post-page | 27,586 |
| effect-maker | 13 |
| elementor | 1,779,373 |
| floating-contact-buttons | 241 |
| gtranslate | 126,064 |
| happy-elementor-addons | 50,082 |
| header-footer-elementor | 208,556 |
| jetpack | 458,910 |
| jquery-vertical-scroller | 86 |
| master-slider | 12,958 |
| menu-icons | 29,898 |
| raratheme-companion | 2,767 |
| slider-images | 649 |
| smart-slider-3 | 76,684 |
| social-media-widget | 9,759 |
| spoontalk-social-media-icons-widget | 338 |
| sticky-menu-or-anything-on-scroll | 19,033 |
| superb-social-share-and-follow-buttons | 1,233 |
| wp-menu-icons | 2,691 |
Security Headers
F
Grade F
5 missing headers
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (5.9.13) — CVE-2024-4439: Unauthenticated Stored XSS. Update to 6.5.2 or later immediately.
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress site? Contact us for a professional security audit.