Site Information
WordPress Version: 6.8.1 VULNERABLE
Theme: unicla
Last Checked: 2026-08-19 05:30:40
HTTPS: Yes
Plugins (11)
| Plugin | Used By |
|---|---|
| complianz-gdpr | 254,601 |
| contact-form-7 | 1,741,190 |
| google-site-kit | 233,733 |
| js_composer | 415,814 |
| revslider | 603,405 |
| sitepress-multilingual-cms | 208,641 |
| total-theme-core | 5,299 |
| woo-variation-swatches | 31,778 |
| woocommerce | 812,184 |
| woocommerce-multilingual | 26,187 |
| wpml-cms-nav | 20,290 |
Security Headers
D
Grade D
3 missing headers
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (6.8.1) — unauthenticated SQL injection (CVE-2026-60137). Update to 6.8.6 immediately.
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress site? Contact us for a professional security audit.