Site Information
WordPress Version: 6.9.4 VULNERABLE
Theme: bb-theme (used by 53,490 domains)
Last Checked: 2026-06-03 10:44:41
HTTPS: Yes
Plugins (21)
| Plugin | Used By |
|---|---|
| addy-autocomplete-woocommerce | 40 |
| bb-plugin | 87,061 |
| bbpowerpack | 40,122 |
| conditional-shipping-for-woocommerce | 2,942 |
| duracelltomi-google-tag-manager | 90,445 |
| event-tickets | 20,377 |
| event-tickets-plus | 3,654 |
| events-calendar-pro | 27,098 |
| facebook-for-woocommerce | 26,223 |
| gravityforms | 257,689 |
| gravityformsrecaptcha | 73,925 |
| instagram-feed | 225,268 |
| klaviyo | 9,499 |
| klaviyo-toolkit | 115 |
| the-events-calendar | 122,582 |
| wc-quantity-plus-minus-button | 2,101 |
| woocommerce | 816,880 |
| woocommerce-gateway-stripe | 79,705 |
| woocommerce-subscriptions | 11,621 |
| woopack | 1,510 |
| wp-seopress | 4,114 |
Security Headers
D
Grade D
4 missing headers
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (6.9.4) — CVE-2026-63030: Unauthenticated RCE (wp2shell). Update to 7.0.2 or later immediately.
- info.php exposed — Server configuration publicly visible ?
Need help securing your WordPress site? Contact us for a professional security audit.