Home/Product/wpfastestcache wp fastest cache
Product

wpfastestcache wp fastest cache

29 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2020-36836
< 0.9.0.3
The WP Fastest Cache plugin for WordPress is vulnerable to unauthorized arbitrary file deletion in versions up to, and including,
8.0HIGH
CVE-2021-24870
< 0.9.5
The WP Fastest Cache WordPress plugin before 0.9.5 is lacking a CSRF check in its wpfc_save_cdn_integration AJAX action, and does
6.1MEDIUM
CVE-2021-24869
< 0.9.5
The WP Fastest Cache WordPress plugin before 0.9.5 does not escape user input in the set_urls_with_terms method before using it in
8.8HIGH
CVE-2023-6063
< 1.2.2
The WP Fastest Cache WordPress plugin before 1.2.2 does not properly sanitise and escape a parameter before using it in a SQL stat
7.5HIGH
CVE-2023-1375
<= 1.1.2
The WP Fastest Cache plugin for WordPress is vulnerable to unauthorized cache deletion in versions up to, and including, 1.1.2 due
4.3MEDIUM
CVE-2023-1938
< 1.1.5
The WP Fastest Cache WordPress plugin before 1.1.5 does not have CSRF check in an AJAX action, and does not validate user input be
8.8HIGH
CVE-2023-1931
<= 1.1.2
The WP Fastest Cache plugin for WordPress is vulnerable to unauthorized data loss due to a missing capability check on the deleteC
4.3MEDIUM
CVE-2023-1930
<= 1.1.2
The WP Fastest Cache plugin for WordPress is vulnerable to unauthorized data deletion due to a missing capability check on the wpf
4.3MEDIUM
CVE-2023-1929
<= 1.1.2
The WP Fastest Cache plugin for WordPress is vulnerable to unauthorized data modification due to a missing capability check on the
4.3MEDIUM
CVE-2023-1928
<= 1.1.2
The WP Fastest Cache plugin for WordPress is vulnerable to unauthorized data modification due to a missing capability check on the
4.3MEDIUM
CVE-2023-1927
<= 1.1.2
The WP Fastest Cache plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1.2. Thi
4.3MEDIUM
CVE-2023-1926
<= 1.1.2
The WP Fastest Cache plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1.2. Thi
4.3MEDIUM
CVE-2023-1925
<= 1.1.2
The WP Fastest Cache plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1.2. Thi
4.3MEDIUM
CVE-2023-1924
<= 1.1.2
The WP Fastest Cache plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1.2. Thi
4.3MEDIUM
CVE-2023-1923
<= 1.1.2
The WP Fastest Cache plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1.2. Thi
4.3MEDIUM
CVE-2023-1922
<= 1.1.2
The WP Fastest Cache plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1.2. Thi
4.3MEDIUM
CVE-2023-1921
<= 1.1.2
The WP Fastest Cache plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1.2. Thi
4.3MEDIUM
CVE-2023-1920
<= 1.1.2
The WP Fastest Cache plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1.2. Thi
4.3MEDIUM
CVE-2023-1919
<= 1.1.2
The WP Fastest Cache plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1.2. Thi
4.3MEDIUM
CVE-2023-1918
<= 1.1.2
The WP Fastest Cache plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1.2. Thi
4.3MEDIUM
CVE-2021-20714
< 0.9.1.7
Directory traversal vulnerability in WP Fastest Cache versions prior to 0.9.1.7 allows a remote attacker with administrator privil
6.5MEDIUM
CVE-2015-9316
< 0.8.4.9
The wp-fastest-cache plugin before 0.8.4.9 for WordPress has SQL injection in wp-admin/admin-ajax.php?action=wpfc_wppolls_ajax_req
9.8CRITICAL
CVE-2019-13635
<= 0.8.9.5
The WP Fastest Cache plugin through 0.8.9.5 for WordPress allows wpFastestCache.php and inc/cache.php Directory Traversal.
9.1CRITICAL
CVE-2019-6726
<= 0.8.9.0
The WP Fastest Cache plugin through 0.8.9.0 for WordPress allows remote attackers to delete arbitrary files because wp_postratings
6.5MEDIUM
CVE-2018-17586
all versions
The WP Fastest Cache plugin 0.8.8.5 for WordPress has XSS via the rules[0][content] parameter in a wpfc_save_timeout_pages action.
6.1MEDIUM
CVE-2018-17585
all versions
The WP Fastest Cache plugin 0.8.8.5 for WordPress has XSS via the wpfastestcacheoptions wpFastestCachePreload_number or wpFastestC
6.1MEDIUM
CVE-2018-17584
all versions
The WP Fastest Cache plugin 0.8.8.5 for WordPress has CSRF via the wp-admin/admin.php wpfastestcacheoptions page.
8.8HIGH
CVE-2018-17583
all versions
The WP Fastest Cache plugin 0.8.8.5 for WordPress has XSS via the rules[0][content] parameter in a wpfc_save_exclude_pages action.
6.1MEDIUM
CVE-2015-4089
<= 0.8.3.4
Multiple cross-site request forgery (CSRF) vulnerabilities in the optionsPageRequest function in admin.php in WP Fastest Cache plu
8.8HIGH
threatengine.sh