WP Security-Vulnerabilities
System Online
Last refresh: --:--:--
Vulnerability Database
0 results
Loading 30 most recent WordPress vulnerabilities...
Analytics
Total CVEs (loaded)
0
Run a search to populate.
Critical
0
CVSS ≥ 9.0
High
0
CVSS 7.0–8.9
Medium + Low
0
CVSS < 7.0
Severity Distribution (loaded page)
CVEs by Month (published)
Top Keywords (simple tag extraction)
Resolve IP
URL → IP → Country + Hosting org
This tool resolves DNS (A/AAAA) and then attempts IP geolocation + ASN/Org info. If a site is behind a CDN/WAF (Cloudflare, etc.), the IP shown will be an edge IP, not origin.
Resolve
Enter a URL or hostname and press "RESOLVE IP".
External checks
Resolve a hostname first, then open tools.
More useful "scan ideas" (safe, no intrusive scanning)
Practical additions that don't require scanning your WP installation:
• DNS + ASN + hosting org (this tab)
• HTTP headers report (HSTS, CSP, X-Frame-Options) via SecurityHeaders
• TLS grading (protocol/ciphers) via SSL Labs
• Malware blacklist checks via SiteCheck
• Passive URL intel via urlscan.io
NoteAnything deeper than this (plugins/versions) needs backend scanning.
Safe principleUse passive lookups, not intrusive probing.
WP Vulnerability Scanner
WordPress Site Vulnerability Scanner
This scanner performs passive detection of WordPress, plugins, and themes, then searches the NVD database for known vulnerabilities in detected components. No login or server access is required.
Target URL
Passive scan — detects WordPress version, plugins, themes, then checks NVD for known vulnerabilities.
No intrusive probing, no brute-force, no exploitation.
No intrusive probing, no brute-force, no exploitation.
Scan Results
Enter a URL above and click "SCAN SITE" to begin.