What problem does it solve?
This Skill eliminates the tedious, error-prone process of manually identifying WordPress-specific vulnerabilities during reconnaissance and penetration testing, where WordPress powers a huge share of web targets and has well-documented, high-impact flaw patterns that are often missed by generic security scanners.
Core Features & Use Cases
- WordPress Fingerprinting: Detects WordPress installs (including cross-subdirectory instances) via X-Powered-By headers, /wp-content paths, and REST API root responses, plus identifies active plugins and themes.
- High-Impact Vuln Detection: Tests for the most common critical WordPress flaws including CORS credential reflection on the REST API, XMLRPC-enabled brute force/SSRF/file upload, open registration, exposed debug logs and wp-config backups, and known plugin CVEs.
- Use Case: A pentester targeting a retail company with 10+ web properties can use this Skill to quickly identify all WordPress instances, test for critical flaws like CORS data exfiltration or XMLRPC RCE, and prioritize exploitation chains without building custom checks from scratch.
Quick Start
Use the hunt-wordpress skill to scan target.com for all critical WordPress vulnerabilities including CORS credential reflection, XMLRPC exploitation, and exposed sensitive files.