A command line took to check the WPScan Vulnerability Database via API to identify the security issues of WordPress plugins installed.
-
Updated
Oct 22, 2023 - PHP
A command line took to check the WPScan Vulnerability Database via API to identify the security issues of WordPress plugins installed.
A wordpress security auditor! Audit your wordpress application for security issues with even 1 request.
Advanced use of WPScan (WordPress Security Scanner) with other tools like nmap, nikto, owasp-zap, ids for ethnical Hackers
Fast and stealth WordPress scanner, no api-key, no limitation. Use the top-notch free open-source API www.wpvulnerability.net I'm looking for contributors helping me to dev an auto-exploit module.
WordPress vulnerability scanner with public exploit/POC lookup, gambling spam (judol) detection, and AI-powered analysis. Scan plugins, themes & core for known CVEs — offline or remote.
WP Flak (Fliegerabwehrkanone) - Wordpress Security Scanner/Exploiter
AI-powered automated penetration testing agent. Finds and exploits vulnerabilities in web apps, WordPress, and REST APIs using Claude AI with Tor routing.
Wordpress Scanner https://secure.wphackedhelp.com/
CVE-2026-15748 - Unauthenticated RCE exploit for WordPress Forminator plugin (≤1.56.1). Automated detection, deep crawl, nonce extraction, and safe upload test. For authorized testing only.
A WordPress plugins analyzer which is still work in progress anyway
🦄 All-in-one website intelligence tool. Replaces whois, whatmydns, wpscan & who.is in one free web app. Built for authorized security recon.
CheckWP is a production-ready CLI tool for detecting malware, backdoors, adware, and security vulnerabilities in WordPress plugins. Works fully offline with 50+ built-in detection rules, with optional AI-enhanced analysis via any OpenAI-compatible API. CheckWP is the driving force behind the security scanner CheckWP.org
WordPress security audit & exploitation toolkit — fingerprinting, CVE database matching, 60+ active checks (hardening, misconfig, injection, plugin CVEs), exploitation simulation, and HTML/MD reporting.
WordPress wp2shell vulnerability-chain scanner for CVE-2026-63030 and CVE-2026-60137, with active detection, optional PoC, JSON export.
Simple Wordpress Enumeration Tool.
🔍 Enhance your security with this powerful scanner that integrates over 50 tools, including GVM, Nuclei, and OWASP WSTG for comprehensive testing.
Enables NinjaScanner integrity checks for plugins and themes distributed outside WordPress.org.
Add a description, image, and links to the wordpress-security-scanner topic page so that developers can more easily learn about it.
To associate your repository with the wordpress-security-scanner topic, visit your repo's landing page and select "manage topics."