Site Information
WordPress Version: 6.3 ⚠️ VULNERABLE
Theme: hello-elementor (used by 624,491 domains)
Last Checked: 2026-07-04 21:54:54
HTTPS: ✅ Yes
Plugins (28)
| Plugin | Used By |
|---|---|
| ajax-search-for-woocommerce | 21,092 |
| banner-management-for-woocommerce | 344 |
| bwd-awesome-step | 39 |
| contact-form-7 | 1,769,647 |
| contact-form-7-datepicker | 5,359 |
| contact-form-7-star-rating-with-font-awersome | 122 |
| custom-shortcode-plugin | 9 |
| elementor | 1,785,034 |
| elementor-pro | 1,058,181 |
| elementskit-lite | 182,870 |
| megamenu | 81,061 |
| menu-image | 23,452 |
| pdf-print | 2,114 |
| popup-message-contact-form-7 | 291 |
| side-cart-woocommerce | 9,174 |
| skyboot-custom-icons-for-elementor | 15,219 |
| ultimate-member | 28,393 |
| wc-product-bundles | 21 |
| widgetize-pages-light | 914 |
| woo-custom-add-to-cart-button | 1,401 |
| woo-product-slider-and-carousel-with-category | 1,071 |
| woocommerce | 819,753 |
| woocommerce-ajax-filters | 6,635 |
| wp-datepicker | 1,354 |
| wp-slick-slider-and-image-carousel | 3,110 |
| wp-statistics | 56,488 |
| wp-visual-slidebox-builder | 249 |
| wpcf7-redirect | 56,381 |
Security Headers
F
Grade F
5 missing headers
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (6.3) — CVE-2024-4439: Unauthenticated Stored XSS. Update to 6.5.2 or later immediately.
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress site? Contact us for a professional security audit.