Site Information
WordPress Version: 4.9.26 ⚠️ VULNERABLE
Theme: veda (used by 199 domains)
Last Checked: 2026-07-22 21:36:48
HTTPS: ✅ Yes
Plugins (19)
| Plugin | Used By |
|---|---|
| column-shortcodes | 15,392 |
| contact-form-7 | 1,761,095 |
| contact-form-7-datepicker | 5,318 |
| content-cards | 261 |
| designthemes-core-features | 3,022 |
| designthemes-rooms-addon | 62 |
| js_composer | 422,848 |
| layerslider | 89,961 |
| menu-image | 23,382 |
| mobile-menu | 12,381 |
| motopress-hotel-booking-lite | 1,123 |
| newsletter | 47,469 |
| pj-news-ticker | 573 |
| responsive-maps-plugin | 1,358 |
| revslider | 612,261 |
| rocket-lazy-load | 18,384 |
| translatepress-multilingual | 67,578 |
| unite-gallery-lite | 344 |
| wp-content-copy-protector | 26,642 |
Security Headers
F
Grade F
5 missing headers
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (4.9.26) — CVE-2024-4439: Unauthenticated Stored XSS. Update to 6.5.2 or later immediately.
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress site? Contact us for a professional security audit.