Compromise Scanner for wp2shell
Read-only forensic scanner for the WordPress core exploit chain CVE-2026-63030 / CVE-2026-60137 (wp2shell). Reports a scored verdict; changes nothing.
Compromise Scanner for wp2shell ranks #4,139 among WordPress.org plugins with 3,000+ active installations, is #306 of 4,555 in the Security category, a 5/5 rating from 2 reviews, and was last updated Jul 20, 2026. Data from WordPress.org, refreshed twice daily — see methodology.
Next Milestone 4K
Unlock Exact Install Count
See the precise estimated active installs for this plugin, calculated from real-time ranking data.
- Exact install estimates within tiers
- Track install growth over time
- Milestone progress predictions
Rank Changes
Downloads Growth
Upgrade to Pro
Unlock 30-day, 90-day, and yearly download history charts with a Pro subscription.
Upgrade NowReviews & Ratings
Support Threads Overview
Security History
Source: WPVulnerabilityNo known vulnerabilities on record for Compromise Scanner for wp2shell. Checked 1 month ago.
Track This Plugin
Get detailed analytics, keyword tracking, and position alerts delivered to your inbox.
Start Tracking FreePlugin Details
- Version
- 1.1.0
- Last Updated
- Jul 20, 2026
- Requires WP
- 5.6+
- Tested Up To
- 7.0.5
- PHP Version
- 7.2 or higher
- Author
- eyesecurity
Support & Rating
- Rating
- ★ ★ ★ ★ ★ 5
- Reviews
- 2
- Support Threads
- 1
- Resolved
- 0%
Keywords
Upgrade to Pro
Unlock keyword rankings, search positions, and detailed analytics with a Pro subscription.
Upgrade NowSimilar Plugins
TL;DR
AI summary of the plugin's readmeThis plugin is for WordPress site owners and administrators who want to check whether their site has been compromised by the wp2shell exploit chain (CVE-2026-63030 / CVE-2026-60137). It performs a read-only forensic scan of the database and plugin directory for artifacts left by the exploit and produces a scored verdict without modifying the site or patching the vulnerability.
- Read-only forensic scanning
- Scored compromise verdict
- Checks oembed_cache artifacts
- Detects suspicious post/changeset artifacts
- Flags exploit-pattern admin accounts
- Finds deleted-admin traces
- Detects wp2shell webshell files
- Exports report as zip/JSON
Frequently Asked Questions
Common questions about Compromise Scanner for wp2shell