Domain Information
WordPress Version: 7.0.1 VULNERABLE
Theme: hello-elementor (theme used by 597,939 domains)
Last Checked: 2026-07-23 14:59:16
HTTPS: Yes
Plugins (13)
| Plugin | Version | Used By |
|---|---|---|
| activitypub | — | 481 |
| elementor | — | 1,695,155 |
| elementor-pro | — | 1,009,656 |
| fifu-premium | — | 633 |
| give | — | 17,173 |
| give-2checkout | — | 47 |
| give-form-field-manager | — | 2,482 |
| give-recurring | — | 3,791 |
| give-stripe | — | 784 |
| give-tributes | — | 1,106 |
| google-site-kit | — | 258,765 |
| sitepress-multilingual-cms | — | 203,722 |
| wp-consent-api | — | 51,994 |
Security Headers
D
Grade D
3 missing headers
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (7.0.1) — wp2shell unauthenticated RCE (CVE-2026-63030). Update to 7.0.2 immediately.
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress infrastructure? Contact us for a professional security audit.