Vulnerabilities (CVE)

Filtered by vendor Wpfastestcache Subscribe
Filtered by product Wp Fastest Cache
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-20714 1 Wpfastestcache 1 Wp Fastest Cache 2021-05-06 5.5 MEDIUM 6.5 MEDIUM
Directory traversal vulnerability in WP Fastest Cache versions prior to 0.9.1.7 allows a remote attacker with administrator privileges to delete arbitrary files on the server via unspecified vectors.
CVE-2019-6726 1 Wpfastestcache 1 Wp Fastest Cache 2020-08-24 5.8 MEDIUM 6.5 MEDIUM
The WP Fastest Cache plugin through 0.8.9.0 for WordPress allows remote attackers to delete arbitrary files because wp_postratings_clear_fastest_cache and rm_folder_recursively in wpFastestCache.php mishandle ../ in an HTTP Referer header.
CVE-2018-17583 1 Wpfastestcache 1 Wp Fastest Cache 2019-09-07 4.3 MEDIUM 6.1 MEDIUM
The WP Fastest Cache plugin 0.8.8.5 for WordPress has XSS via the rules[0][content] parameter in a wpfc_save_exclude_pages action.
CVE-2018-17585 1 Wpfastestcache 1 Wp Fastest Cache 2019-09-07 4.3 MEDIUM 6.1 MEDIUM
The WP Fastest Cache plugin 0.8.8.5 for WordPress has XSS via the wpfastestcacheoptions wpFastestCachePreload_number or wpFastestCacheLanguage parameter.
CVE-2018-17586 1 Wpfastestcache 1 Wp Fastest Cache 2019-09-07 4.3 MEDIUM 6.1 MEDIUM
The WP Fastest Cache plugin 0.8.8.5 for WordPress has XSS via the rules[0][content] parameter in a wpfc_save_timeout_pages action.