Site Information
WordPress Version: 6.9.4 VULNERABLE
Theme: stockholm (used by 3,123 domains)
Last Checked: 2026-07-11 20:42:09
HTTPS: Yes
Plugins (18)
| Plugin | Used By |
|---|---|
| activecampaign-subscription-forms | 13,469 |
| creative-mail-by-constant-contact | 67,073 |
| elementor | 1,743,180 |
| elementor-pro | 1,037,794 |
| gift-up | 698 |
| kliken-marketing-for-google | 5,149 |
| mailchimp-for-woocommerce | 44,514 |
| page-links-to | 57,346 |
| popup-maker | 107,610 |
| revslider | 596,312 |
| safe-svg | 45,049 |
| widget-google-reviews | 35,229 |
| woo-gift-cards-lite | 396 |
| woocommerce | 805,161 |
| woocommerce-gateway-stripe | 69,909 |
| woocommerce-menu-bar-cart | 13,425 |
| wp-whatsapp | 15,377 |
| wt-gift-cards-woocommerce | 181 |
Security Headers
C
Grade C
2 missing headers
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (6.9.4) — wp2shell unauthenticated RCE (CVE-2026-63030). Update to 6.9.5 immediately.
- info.php exposed — Server configuration publicly visible ?
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress site? Contact us for a professional security audit.