Check your website vulnerabilities
Enter an address and we detect the system (CMS), WordPress version and plugins visible in the page code, then match them against our database of known vulnerabilities (CVE). You will see exactly what to watch out for.
We only analyse the publicly visible homepage code, like a browser. We do not log in or scan private resources. We do not log addresses.
How it works and why?
Most break-ins on business websites are not sophisticated attacks, just the exploitation of a known, already patched flaw in an outdated plugin or old core. Criminals scan the internet with bots and get in wherever something is outdated.
This tool looks at your site the way such a bot does: it recognises the system, WordPress version and plugins visible in the code, then checks whether they appear in our database of known vulnerabilities. Enter an address above to see what to watch out for.
- We do not log in to your site or modify it.
- We only analyse the public homepage code, like a browser.
- The result is a signal to check the version, not a verdict; the specific version determines the vulnerability.