Site Information
WordPress Version: 7.0 VULNERABLE
Theme: generatepress (used by 112,680 domains)
Last Checked: 2026-07-15 10:40:49
HTTPS: Yes
Plugins (21)
| Plugin | Used By |
|---|---|
| add-search-to-menu | 23,869 |
| gp-premium | 53,392 |
| gutenverse | 3,342 |
| mailchimp-for-wp | 79,286 |
| megamenu | 78,863 |
| megamenu-pro | 18,052 |
| omnisend-connect | 2,312 |
| perfect-woocommerce-brands | 5,855 |
| quick-buy-now-button-for-woocommerce | 524 |
| woo-refund-and-exchange-lite | 336 |
| woocommerce | 802,542 |
| woocommerce-customer-history | 111 |
| woocommerce-fast-cart | 157 |
| woocommerce-gateway-amazon-payments-advanced | 1,225 |
| woocommerce-memberships | 7,437 |
| woocommerce-msrp-pricing | 96 |
| woocommerce-pdf-invoice | 765 |
| woocommerce-product-finder | 43 |
| woocommerce-smart-coupons | 4,590 |
| woocommerce-table-rate-shipping | 5,118 |
| wooslider | 975 |
Security Headers
F
Grade F
5 missing headers
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (7.0) — wp2shell unauthenticated RCE (CVE-2026-63030). Update to 7.0.2 immediately.
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress site? Contact us for a professional security audit.