Domain Information
WordPress Version: 5.2.1 VULNERABLE
Theme: dt-the7 7.6.1· 100% conf. (theme used by 43,497 domains)
Last Checked: 2026-09-10 12:18:18
HTTPS: Yes
Server: cloudflare
CDN / WAF: Cloudflare
Response time (TTFB): 2,686 ms slow
Hosting: Cloudflare, Inc. (AS13335)
IP address: 104.21.18.xxx
PHP version: 7.3.33 — end-of-life, no security updates
Plugins (10)
| Plugin | Version | Used By |
|---|---|---|
| contact-form-7 | 5.1.4· 85% conf. | 1,685,958 |
| dt-the7-core | 7.6.1· 85% conf. | 25,486 |
| js_composer | 5.7· 85% conf. | 398,232 |
| layerslider | 6.8.4· 85% conf. | 84,549 |
| product-tabs-manager-for-woocommerce | — | 205 |
| recent-tweets-widget | 1.0· 60% conf. | 5,833 |
| revslider | 5.4.8.3· 85% conf. | 576,849 |
| ultimate_vc_addons | 3.18.0· 85% conf. | 52,635 |
| woocommerce | 3.6.7· 85% conf. | 776,792 |
| yith-woocommerce-request-a-quote | 1.0· 60% conf. | 1,535 |
Security Headers
4 missing headers
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (5.2.1) — outdated core with known vulnerabilities. Update to the latest release immediately.
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress infrastructure? Contact us for a professional security audit.