Site Information
WordPress Version: 5.4.2 ⚠️ VULNERABLE
Theme: eduma (used by 2,262 domains)
Last Checked: 2026-07-22 01:07:08
HTTPS: ✅ Yes
Plugins (19)
| Plugin | Used By |
|---|---|
| add-to-cart-direct-checkout-for-woocommerce | 836 |
| autoptimize | 56,348 |
| contact-form-7 | 1,769,647 |
| dflip | 5,341 |
| fwdevp | 238 |
| learnpress | 7,170 |
| learnpress-woo-payment | 150 |
| pmpro-register-helper | 56 |
| real-time-auto-find-and-replace | 9,894 |
| show-hidecollapse-expand | 2,922 |
| siteorigin-panels | 57,547 |
| team-members-pro | 611 |
| testimonial-rotator | 4,937 |
| ungrabber | 135 |
| wc-ukr-shipping | 9 |
| woo-checkout-for-digital-goods | 655 |
| woo-retailcrm | 98 |
| woocommerce | 819,753 |
| woocommerce-checkout-field-editor | 231 |
Security Headers
D
Grade D
4 missing headers
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (5.4.2) — CVE-2024-4439: Unauthenticated Stored XSS. Update to 6.5.2 or later immediately.
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress site? Contact us for a professional security audit.