Site Information
WordPress Version: 6.4.8 VULNERABLE
Theme: astra (used by 403,551 domains)
Last Checked: 2026-07-14 20:52:42
HTTPS: Yes
Plugins (15)
| Plugin | Used By |
|---|---|
| astra-addon | 91,510 |
| badgeos | 126 |
| blogvault-real-time-backup | 95 |
| elementor | 1,730,866 |
| elementor-pro | 1,030,838 |
| happy-elementor-addons | 48,336 |
| profile-builder | 7,874 |
| sfwd-lms | 13,599 |
| ultimate-elementor | 69,222 |
| uncanny-learndash-toolkit | 3,840 |
| uncanny-toolkit-pro | 1,535 |
| woocommerce | 799,172 |
| woocommerce-subscriptions | 12,940 |
| wp-user-avatar | 24,968 |
| wpforms-lite | 118,655 |
Security Headers
F
Grade F
5 missing headers
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (6.4.8) — outdated core with known vulnerabilities. Update to the latest release immediately.
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress site? Contact us for a professional security audit.