Domain Information
WordPress Version: 4.9.26 VULNERABLE
Theme: twentytwelve (theme used by 11,005 domains)
Last Checked: 2026-09-02 06:36:32
HTTPS: Yes
Plugins (9)
| Plugin | Version | Used By |
|---|---|---|
| contact-form-7 | — | 1,685,958 |
| easy-table-of-contents | — | 17,863 |
| ml-slider | — | 81,111 |
| related-posts | — | 442 |
| scroll-back-to-top | — | 2,000 |
| standard-widget-extensions | — | 305 |
| wordpress-popular-posts | — | 34,310 |
| wp-customer-reviews | — | 5,305 |
| wp-responsive-menu | — | 6,676 |
Security Headers
F
Grade F
5 missing headers
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (4.9.26) — outdated core with known vulnerabilities. Update to the latest release immediately.
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress infrastructure? Contact us for a professional security audit.