WordPress maintenance or security needs? Reach out!
TLDWP

Domain Security Report for t*f*i*g*u*o*e.com

Domain Information

WordPress Version: 7.0.1 VULNERABLE

Theme: flatsome (theme used by 145,098 domains)

Last Checked: 2026-09-10 01:11:18

HTTPS: No

Server: cloudflare

CDN / WAF: Cloudflare

Response time (TTFB): 129 ms fast

Hosting: Cloudflare, Inc. (AS13335)

IP address: 162.159.135.xxx

Plugins (23)

Plugin Version Used By
advanced-coupons-for-woocommerce 1,691
advanced-coupons-for-woocommerce-free 4,972
b2bking 1,011
cart-for-woocommerce 3,392
duracelltomi-google-tag-manager 86,872
flexible-shipping 19,474
funnel-builder 2,720
host-google-fonts-pro 284
host-webfonts-local 374
ht-knowledge-base 437
independent-analytics-pro 5,595
klaviyo 9,025
metorik-helper 2,965
profitmetrics 127
reelium 0
sitepress-multilingual-cms 203,722
solid_affiliate 643
woocommerce 783,975
woocommerce-eu-vat-compliance-premium 267
woocommerce-multilingual 25,605
wp-marketing-automations 2,794
yith-woocommerce-dynamic-pricing-and-discounts-premium 1,502
yith-woocommerce-waiting-list-premium 446

Security Headers

Security headers have not been scanned yet.

Exposed Files & Configurations

This domain has publicly accessible security-sensitive files or configurations:

  • Vulnerable WordPress Version (7.0.1) — wp2shell unauthenticated RCE (CVE-2026-63030). Update to 7.0.2 immediately.
  • User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?

Need help securing your WordPress infrastructure? Contact us for a professional security audit.

Other WordPress domains on this IP (25+)

These WordPress domains are served from the same IP (162.159.135.xxx) — usually shared hosting or the same operator. Domains are obfuscated uniformly.