Domain Information
WordPress Version: 6.8.3 VULNERABLE
Theme: tutorstarter (used by 548 domains)
Last Checked: 2026-09-07 10:35:46
HTTPS: Yes
Server: nginx
Response time (TTFB): 2,170 ms slow
Hosting: Groupe LWS SARL (AS210403)
IP address: 180.149.197.xxx
PHP version: 8.2.33
Plugins (24)
| Plugin | Used By |
|---|---|
| 3d-flipbook-dflip-lite | 43,095 |
| bbpress | 13,321 |
| contact-form-7 | 1,715,130 |
| cookie-notice | 143,896 |
| country-phone-field-contact-form-7 | 7,506 |
| elementor | 1,718,917 |
| elementor-pro | 1,024,573 |
| ht-newsletter-for-elementor | 114 |
| jetsticky-for-elementor | 3,527 |
| kkiapay-woocommerce | 8 |
| lesson-bookmark-tutor-lms | 14 |
| mailchimp-for-wp | 78,322 |
| mailpoet | 15,541 |
| miniorange-otp-verification | 558 |
| paid-memberships-pro | 9,782 |
| subscriptions-for-woocommerce | 406 |
| the-events-calendar | 119,701 |
| tutor | 7,376 |
| tutor-pro | 3,380 |
| video-conferencing-with-zoom-api | 2,027 |
| woo-gateway-fedapay | 42 |
| woocommerce | 794,091 |
| woocommerce-multilingual | 25,816 |
| wpforms | 52,972 |
Security Headers
4 missing headers
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (6.8.3) — unauthenticated SQL injection (CVE-2026-60137). Update to 6.8.6 immediately.
Need help securing your WordPress infrastructure? Contact us for a professional security audit.