🔍

WordPress Vulnerability Scanner

Enter your WordPress site URL to detect installed plugins, themes and known vulnerabilities.

The scanner makes read-only HTTP requests to publicly accessible files. No credentials needed.

🔌

More accurate? Use the WP Plugin

Install our free WordPress plugin for 100% accurate detection of all plugins, themes and the exact WP version — including inactive ones.

Create account to use plugin →

How the scanner works

🌐
Detect WordPress
Confirms the site runs WordPress via public signals.
🧩
Find Components
Detects plugins & themes from HTML source and public paths.
🛡️
Check Vulnerabilities
Cross-references against WPVulnerability, NVD and Wordfence databases.