Domain Information
WordPress Version: 7.0 VULNERABLE
Theme: signify-pro (theme used by 81 domains)
Last Checked: 2026-07-19 13:23:04
HTTPS: Yes
Plugins (8)
| Plugin | Version | Used By |
|---|---|---|
| accesspress-social-icons | — | 1,865 |
| custom-facebook-feed | — | 39,942 |
| easy-video-player | — | 6,227 |
| essential-widgets | — | 2,366 |
| player | — | 351 |
| rise-blocks | — | 271 |
| simple-exit-notifier | — | 103 |
| video-popup | — | 5,067 |
Security Headers
D
Grade D
4 missing headers
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (7.0) — wp2shell unauthenticated RCE (CVE-2026-63030). Update to 7.0.2 immediately.
- info.php exposed — Server configuration publicly visible ?
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress infrastructure? Contact us for a professional security audit.