Domain Information
WordPress Version: 6.9.4 VULNERABLE
Theme: twentytwentyfour (theme used by 50,395 domains)
Last Checked: 2026-07-30 12:58:00
HTTPS: Yes
Plugins (18)
| Plugin | Version | Used By |
|---|---|---|
| contact-form-7 | — | 1,694,402 |
| download-after-email | — | 1,704 |
| fluentform | — | 56,499 |
| html5-audio-player | — | 3,092 |
| jetpack | — | 402,304 |
| kliken-ads-pixel-for-meta | — | 335 |
| mp-timetable | — | 4,277 |
| profile-builder | — | 7,721 |
| simple-social-buttons | — | 2,754 |
| streamcast | — | 180 |
| translatepress-multilingual | — | 64,960 |
| ultimate-addons-for-contact-form-7 | — | 9,316 |
| ultimate-member | — | 26,644 |
| woocommerce | — | 781,569 |
| wp-whatsapp | — | 14,860 |
| yaycurrency | — | 712 |
| yayextra | — | 142 |
| yayswatches | — | 97 |
Security Headers
A
Grade A
All headers present
All security headers are present.
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (6.9.4) — wp2shell unauthenticated RCE (CVE-2026-63030). Update to 6.9.5 immediately.
Need help securing your WordPress infrastructure? Contact us for a professional security audit.