Read-only forensic scanner for the WordPress core exploit chain CVE-2026-63030 / CVE-2026-60137 (wp2shell). Reports a scored verdict; changes nothing.
Prioritized issue groups from the latest Plugin Check scan
Maintainability
3
1 issue group
Sample message
The plugin name includes a restricted term. Your chosen plugin name - "Compromise Scanner for wp2shell" - contains the restricted term "wp" which cannot be used at all in your plugin name.
Potential connections found in static code analysis.
Outbound calls
3
External assets
0
Incoming endpoints
3
No external asset domains detected.
No public endpoints detected.
admin_post
admin_post
admin_post
First score snapshot
v1.1.0
100
Latest
| Scan | Score | Findings | Errors | Warnings | Plugin | Check |
|---|---|---|---|---|---|---|
| Latest | 100 | 3 | 0 | 3 | v1.1.0 | 2.0.0 |
Author, categories, issues, domains, and nearby plugins.