Site Information
WordPress Version: 6.4.3 ⚠️ VULNERABLE
Theme: isfa-neve
Last Checked: 2026-06-11 22:53:39
HTTPS: ✅ Yes
Plugins (13)
| Plugin | Used By |
|---|---|
| 3d-flipbook-dflip-lite | 44,473 |
| accessibility-font-resizer | 214 |
| cookie-law-info | 231,971 |
| hide-admin-bar-based-on-user-roles | 4,451 |
| js_composer | 433,319 |
| mobile-menu | 12,701 |
| mystickymenu | 17,875 |
| post-category-image-with-grid-and-slider | 387 |
| post-slider-and-carousel | 2,781 |
| qtranslate-x | 6,407 |
| url-shortify | 5,064 |
| video-background-pro | 765 |
| wp-content-copy-protector | 26,520 |
Security Headers
D
Grade D
4 missing headers
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (6.4.3) — CVE-2024-4439: Unauthenticated Stored XSS. Update to 6.5.2 or later immediately.
- User enumeration exposed — Usernames are publicly discoverable via the REST API or author archives, aiding brute-force attacks ?
Need help securing your WordPress site? Contact us for a professional security audit.