Site Information
WordPress Version: 6.2.9 ⚠️ VULNERABLE
Theme: Custom-Community-2 (used by 1 domains)
Last Checked: 2026-07-13 05:32:17
HTTPS: ✅ Yes
Plugins (17)
| Plugin | Used By |
|---|---|
| bbpress | 13,869 |
| buddypress-media | 998 |
| columns | 836 |
| easy-video-player | 6,455 |
| gd-bbpress-attachments | 870 |
| google-maps-bank-pro-edition | 0 |
| jquery-collapse-o-matic | 8,833 |
| my-calendar | 5,883 |
| photo-gallery | 35,615 |
| social-media-icons-widget | 551 |
| tablepress | 102,706 |
| tt-sidebar-login-widget | 93 |
| ultimate-social-media-icons | 27,027 |
| wp-photonav | 73 |
| wp-private-content-plus | 592 |
| wp-responsive-photo-gallery | 36 |
| wp-user-avatar | 25,848 |
Security Headers
D
Grade D
3 missing headers
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (6.2.9) — CVE-2024-4439: Unauthenticated Stored XSS. Update to 6.5.2 or later immediately.
- phpinfo.php exposed — Server configuration publicly visible ?
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress site? Contact us for a professional security audit.