Site Information
WordPress Version: 6.9.4 VULNERABLE
Theme: hestia (used by 12,350 domains)
Last Checked: 2026-07-14 22:05:08
HTTPS: Yes
Plugins (12)
| Plugin | Used By |
|---|---|
| captcha | 9,208 |
| embedpress | 18,545 |
| google-drive-embedder | 821 |
| j-shortcodes | 323 |
| jetpack | 445,014 |
| mailpoet | 15,760 |
| meet-my-team | 59 |
| mystickyelements | 4,753 |
| notes-widget-wrapper | 40 |
| q2w3-fixed-widget | 16,676 |
| themeisle-companion | 10,349 |
| wordpress-simple-paypal-shopping-cart | 3,780 |
Security Headers
D
Grade D
4 missing headers
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (6.9.4) — wp2shell unauthenticated RCE (CVE-2026-63030). Update to 6.9.5 immediately.
Need help securing your WordPress site? Contact us for a professional security audit.