Site Information
WordPress Version: 6.8.5 VULNERABLE
Theme: hello-child-com (used by 12 domains)
Last Checked: 2026-08-18 12:40:24
HTTPS: Yes
Plugins (23)
| Plugin | Used By |
|---|---|
| conditional-fields-for-elementor-form | 3,263 |
| connect-polylang-elementor | 14,470 |
| copy-the-code | 2,275 |
| elementor | 1,760,169 |
| elementor-pro | 1,047,201 |
| elementskit-lite | 178,469 |
| essential-addons-for-elementor-lite | 262,839 |
| events-tracker-for-elementor | 1,790 |
| jet-elements | 64,823 |
| jet-engine | 77,522 |
| jet-forms-popup-notification-master | 145 |
| jet-search | 16,311 |
| jet-tabs | 32,920 |
| jet-tricks | 22,140 |
| jetformbuilder | 6,125 |
| postaffiliatepro | 62 |
| premium-addons-for-elementor | 83,376 |
| profile-builder | 7,916 |
| simple-tags | 8,396 |
| skyboot-custom-icons-for-elementor | 14,864 |
| sumtics | 25 |
| svg-support | 28,492 |
| wp-live-chat-software-for-wordpress | 4,099 |
Security Headers
D
Grade D
3 missing headers
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (6.8.5) — unauthenticated SQL injection (CVE-2026-60137). Update to 6.8.6 immediately.
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress site? Contact us for a professional security audit.