WordPress maintenance or security needs? Reach out!
TLDWP

Domain Security Report for h*a*i*g*e*r*s.org

Domain Information

WordPress Version: 7.0 VULNERABLE

Theme: storefront (used by 15,531 domains)

Last Checked: 2026-07-18 15:12:42

HTTPS: Yes

Plugins (26)

Plugin Used By
agp-font-awesome-collection 582
apmvp 61
easy-fancybox 45,421
font-awesome-4-menus 3,395
form-maker 4,941
give 17,400
give-bitpay 35
give-donation-upsells-woocommerce 190
give-fee-recovery 1,771
give-form-field-manager 2,509
give-recurring 3,824
give-tributes 1,117
google-analytics-for-wordpress 197,258
jetpack 416,614
meet-my-team 60
mp3-jplayer 1,553
shiftnav-pro 2,912
show-single-variations-premium 141
storefront-footer-bar 424
storefront-powerpack 1,009
storefront-top-bar 240
woocommerce 791,879
woocommerce-embed-videos-to-product-image-gallery 83
woocommerce-gateway-stripe 60,700
woocommerce-google-analytics-integration 27,566
wp-menu-cart 1,505

Security Headers

C
Grade C

2 missing headers

Missing headers:

  • Content-Security-Policy (CSP) — Prevents XSS attacks ?
  • Permissions-Policy — Limits browser features ?

Exposed Files & Configurations

This domain has publicly accessible security-sensitive files or configurations:

  • Vulnerable WordPress Version (7.0) — wp2shell unauthenticated RCE (CVE-2026-63030). Update to 7.0.2 immediately.

Need help securing your WordPress infrastructure? Contact us for a professional security audit.