Domain Information
WordPress Version: 6.9.4 VULNERABLE
Theme: endurance (theme used by 75 domains)
Last Checked: 2026-07-22 11:58:12
HTTPS: Yes
Plugins (19)
| Plugin | Version | Used By |
|---|---|---|
| advanced-iframe | — | 8,338 |
| astra-sites | — | 105,680 |
| contact-form-7 | — | 1,694,402 |
| elementor | — | 1,689,719 |
| embed-any-document | — | 10,174 |
| give | — | 17,104 |
| nextgen-gallery | — | 16,440 |
| pagination | — | 1,127 |
| pdf-embedder | — | 14,006 |
| popup-maker | — | 104,204 |
| stripe-payments | — | 4,323 |
| testimonials-widget | — | 2,774 |
| ultimate-addons-for-gutenberg | — | 46,578 |
| ultimate-blocks | — | 10,274 |
| ultimate-social-media-icons | — | 25,220 |
| woocommerce | — | 781,569 |
| woocommerce-gateway-stripe | — | 57,111 |
| wp-simple-pay-pro-for-stripe | — | 66 |
| wp-simple-pay-pro-for-stripe-subscriptions-add-on | — | 20 |
Security Headers
D
Grade D
4 missing headers
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (6.9.4) — wp2shell unauthenticated RCE (CVE-2026-63030). Update to 6.9.5 immediately.
Need help securing your WordPress infrastructure? Contact us for a professional security audit.