WordPress Version Checker
Check WordPress core version just with a URL
Features
Detect from URL without login
Detect core version externally just by entering the URL
Display status in 3 official categories
Distinguish between latest, outdated, and security vulnerabilities
Check up to 10 sites at once
Check multiple sites in parallel with line-separated entries
Show the source of detection
Display detection source and distinguish from plugin version numbers
How to Use
Enter URLs one per line
Enter the URLs of sites you want to check, one per line, up to 10 (https:// can be omitted)
Check with the Check button
Click "Check" and the server will read each site to determine if it is WordPress and identify the version
Read the results list
Check judgment, version, latest status, official classification, and source for each URL, one line at a time
Copy results
Copy a single row using the copy button on the right of each row, or copy all rows with item names using "Copy All" at the bottom of the list
Use Cases
Initial investigation of inherited sites
Check core version and update necessity before entering the admin panel
Pre-estimate research for production companies
Check multiple prospective client sites together and reflect update work scope in estimates
Check your site's exposure
Verify if your site's version number can be read externally
Survey reference site configuration
Check if a reference site is built with WordPress
Knowledge
How version information becomes externally visible
- Generator tag:The generator tag is software name and version number like "WordPress 6.4.2" written in a page's HTML or RSS.
- readme.html:readme.html is a documentation file included with the core. If left on the server, it may reveal version numbers like "Version 6.4.2".
- ver= parameter:The ver= parameter is a value like "?ver=6.4.2" appended to URLs of CSS and JavaScript files in the wp-includes directory.
Meaning of 3 official classifications
WordPress officially classifies released versions into three categories: latest (current), outdated (not latest), and insecure (security vulnerabilities). Insecure versions are those with known issues for which the official team recommends updates.
Methods to hide version numbers and their limitations
Even if you hide version numbers, vulnerabilities in old versions remain. Keeping WordPress updated to the latest version is more important than hiding version numbers.
- Remove generator tag:You can remove the generator tag from both HTML and RSS by returning an empty string in the the_generator filter.
- Delete readme.html:readme.html is not used for display, but it is replaced again when the core is updated, so it needs to be checked after each update.
- Remove ver= parameter:You can remove the ver= parameter from script URLs, but this may make browser cache updates less frequent.
Safety and Privacy
Server-side processing
Input is processed on the server; only information necessary for the inquiry is sent.
Temporary processing only
For Check WordPress version, temporary processing occurs on the server, then data is discarded after results are returned.
Communications encrypted with HTTPS
All sent and received data is encrypted by TLS and cannot be read by third parties.
No transmission to third parties
Input content is not sent to external services such as ad networks or trackers.
Only target site and WordPress official
Read pages from input URLs. Fetch latest version information from WordPress official API without sending input URLs
Follow RAKKOTOOLS on Google Search
179 useful tools become easier to find from Google Search and AI Search!
- Found in search
- Also shown in AI Search
- Discover new tools
Updates
- update #295
New tool added to check WordPress core version from URL
