Title: Bang Vulnerability Scanner
Author: Marcus Downing
Published: <strong>April 18, 2018</strong>
Last modified: April 19, 2018

---

Search plugins

![](https://ps.w.org/bang-vulnerability-scanner/assets/banner-772x250.png?rev=1860236)

This plugin **hasn’t been tested with the latest 3 major releases of WordPress**.
It may no longer be maintained or supported and may have compatibility issues when
used with more recent versions of WordPress.

![](https://ps.w.org/bang-vulnerability-scanner/assets/icon-256x256.png?rev=1860236)

# Bang Vulnerability Scanner

 By [Marcus Downing](https://profiles.wordpress.org/marcusdowning/)

[Download](https://downloads.wordpress.org/plugin/bang-vulnerability-scanner.1.0.zip)

 * [Details](https://wordpress.org/plugins/bang-vulnerability-scanner/#description)
 * [Reviews](https://wordpress.org/plugins/bang-vulnerability-scanner/#reviews)
 *  [Installation](https://wordpress.org/plugins/bang-vulnerability-scanner/#installation)
 * [Development](https://wordpress.org/plugins/bang-vulnerability-scanner/#developers)

 [Support](https://wordpress.org/support/plugin/bang-vulnerability-scanner/)

## Description

This plugin adds an admin page under the Tools section that reports on any known
vulnerabilities in your version of WordPress and any installed themes or plugins.

This information is only visible to administrators (or more precisely, those with
the `manage_options` capability). Subscribers, authors and editors cannot see the
data.

### Source

The information this plugin uses comes from the WPScan Vulnerability Database: https://
wpvulndb.com/. It uses a cache and internal throttling to ensure its use of the 
API is not excessive or abusive.

### Note

Using this plugin does not guarantee that your site has no vulnerabilities. It also
does not absolve you from responsibilities as a site owner to secure your site in
other ways, such as SSL or host security. This plugin is only a tool; using it responsibly
is up to you.

### WP-CLI

This plugin registers a WP-CLI command, that allows you to scan from the command
line. The response codes are compatible with Nagios (1 for critical error, 2 for
warning, 3 for unknown).

 * `wp vuln scan`, to report all known vulnerabilities.
 * `wp vuln plugins`, to report only vulnerabilities in plugins.
 * `wp vuln themes`, to report only vulnerabilities in themes.
 * `wp vuln wp`, to report only vulnerabilities in WordPress core.
 * `wp vuln details`, to show a more detailed output on known vulnerabilities.
 * `wp vuln clear`, to clear the internal cache of vulnerability data. This will
   result in making extra requests to the API, and is probably not needed.

## Screenshots

 * [[
 * The vulnerability scanner shows known vulnerabilities in WordPress, themes and
   plugins.

## Installation

 1. Upload the whole `bang-vulnerability-scanner` directory to the `/wp-content/plugins/`
    directory
 2. Activate the plugin through the ‘Plugins’ menu in WordPress
 3. Find the vulnerability scanner in the ‘Tools’ menu in WordPress

## FAQ

  Installation Instructions

 1. Upload the whole `bang-vulnerability-scanner` directory to the `/wp-content/plugins/`
    directory
 2. Activate the plugin through the ‘Plugins’ menu in WordPress
 3. Find the vulnerability scanner in the ‘Tools’ menu in WordPress

## Reviews

There are no reviews for this plugin.

## Contributors & Developers

“Bang Vulnerability Scanner” is open source software. The following people have 
contributed to this plugin.

Contributors

 *   [ Marcus Downing ](https://profiles.wordpress.org/marcusdowning/)

[Translate “Bang Vulnerability Scanner” into your language.](https://translate.wordpress.org/projects/wp-plugins/bang-vulnerability-scanner)

### Interested in development?

[Browse the code](https://plugins.trac.wordpress.org/browser/bang-vulnerability-scanner/),
check out the [SVN repository](https://plugins.svn.wordpress.org/bang-vulnerability-scanner/),
or subscribe to the [development log](https://plugins.trac.wordpress.org/log/bang-vulnerability-scanner/)
by [RSS](https://plugins.trac.wordpress.org/log/bang-vulnerability-scanner/?limit=100&mode=stop_on_copy&format=rss).

## Changelog

#### 1.0

 * Initial release

## Meta

 *  Version **1.0**
 *  Last updated **8 years ago**
 *  Active installations **20+**
 *  WordPress version ** 3.0.0 or higher **
 *  Tested up to **4.9.29**
 *  PHP version ** 5.2 or higher **
 * Tags
 * [scanner](https://wordpress.org/plugins/tags/scanner/)[security](https://wordpress.org/plugins/tags/security/)
   [vulnerabilities](https://wordpress.org/plugins/tags/vulnerabilities/)
 *  [Advanced View](https://wordpress.org/plugins/bang-vulnerability-scanner/advanced/)

## Ratings

No reviews have been submitted yet.

[Your review](https://wordpress.org/support/plugin/bang-vulnerability-scanner/reviews/#new-post)

[See all reviews](https://wordpress.org/support/plugin/bang-vulnerability-scanner/reviews/)

## Contributors

 *   [ Marcus Downing ](https://profiles.wordpress.org/marcusdowning/)

## Support

Got something to say? Need help?

 [View support forum](https://wordpress.org/support/plugin/bang-vulnerability-scanner/)