Site Information
WordPress Version: 6.8.5 VULNERABLE
Theme: thevoux-wp (used by 461 domains)
Last Checked: 2026-09-05 23:16:35
HTTPS: Yes
Server: nginx
Response time (TTFB): 183 ms fast
Hosting: IONOS SE (AS8560)
IP address: 77.68.64.20
Other WordPress sites on this IP (15)
These WordPress sites are served from the same IP (77.68.64.20) — usually shared hosting or the same owner. Domains are obfuscated, as everywhere on the site.
- a*c*o*m*t*a*i*g.com
- a*d*e*a*p*r*s*h*r*p*.com
- b*r*e*c*r*.c*.uk
- b*q*e*i*t*p*s.com
- e*a*i*v*s*m*n*.com
- e*e*t*a*i*e.com
- k*l*l*r*d*c*i*n*.com
- n*v*y*l*v*n*.com
- p*t.o*g.uk
- r*f*e*t*o*s*m*g*z*n*.com
- r*s*a*c*n*t.work
- s*f*n*e*u*a*i*n.com
- t*e*a*l*c*c*l*e*t*o*.world
- y*l*j*e.com
- y*o*d*.com
Plugins (7)
| Plugin | Used By |
|---|---|
| 3d-flipbook-dflip-lite | 43,167 |
| download-after-email | 1,755 |
| facebook-for-woocommerce | 26,057 |
| jetpack | 425,938 |
| js_composer | 407,503 |
| woocommerce | 796,664 |
| woocommerce-google-analytics-integration | 27,688 |
Security Headers
6 missing headers
Missing headers:
- Strict-Transport-Security (HSTS) — Forces HTTPS connections ?
- Content-Security-Policy (CSP) — Prevents XSS attacks ?
- X-Content-Type-Options — Prevents MIME sniffing ?
- X-Frame-Options — Prevents clickjacking ?
- Referrer-Policy — Controls referrer information ?
- Permissions-Policy — Limits browser features ?
Exposed Files & Configurations
This domain has publicly accessible security-sensitive files or configurations:
- Vulnerable WordPress Version (6.8.5) — unauthenticated SQL injection (CVE-2026-60137). Update to 6.8.6 immediately.
Need help securing your WordPress site? Contact us for a professional security audit.