Version-aware WordPress security check
Check your plugins, themes, and WordPress version.
Compare a small software inventory with synchronized affected-version ranges. Nothing is installed, uploaded, or scanned on your website.
Production data last synchronized: 2026-08-03 00:31:25 UTC
Your inventory
Use exact installed versions.
You can find plugin and theme versions under WordPress Admin → Updates or Plugins. WordPress Core appears under Dashboard → Updates.
Keep watching
Create a private software watchlist.
Receive one weekly email when selected software has a newly created or changed Critical/High record that is still marked unpatched. Confirmation is required.
What the checker can—and cannot—tell you
It checks documented ranges. A result is based on the version you enter and affected ranges in the latest successful Production Feed synchronization.
It is not a malware scanner. An affected version does not prove exploitation, and an apparently unaffected version does not prove a website is clean.
Unknown means review is needed. Non-standard versions or incomplete source ranges may prevent a reliable comparison.
Vulnerability data: Wordfence Intelligence. Read the methodology.