Domain Information
WordPress Version: 6.8.3 VULNERABLE
Theme: jet-one (theme used by 78 domains)
Last Checked: 2026-08-16 06:48:24
HTTPS: Yes
Plugins (11)
| Plugin | Version | Used By |
|---|---|---|
| dsgvo-tools-cookie-hinweis-datenschutz | — | 755 |
| elementor | — | 1,707,286 |
| header-footer-elementor | — | 197,317 |
| html5-video-player | — | 2,119 |
| jetpack | — | 411,832 |
| js_composer | — | 404,320 |
| revslider | — | 586,216 |
| voice-search | — | 102 |
| weekly-class | — | 1,508 |
| weglot | — | 15,374 |
| xtender | — | 676 |
Security Headers
F
Grade F
5 missing headers
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (6.8.3) — unauthenticated SQL injection (CVE-2026-60137). Update to 6.8.6 immediately.
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress infrastructure? Contact us for a professional security audit.