Extension WordPress
Vulnérabilités Aruba HiSpeed Cache
Cette page rassemble les failles publiées pour Aruba HiSpeed Cache, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Aruba HiSpeed Cache
7 fiches
Aruba HiSpeed Cache <= 3.0.4 – Cross-Site Request Forgery to Plugin Settings Reset
The Aruba HiSpeed Cache plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.0.4. This is due to missing nonce verification on the `ahsc_ajax_reset_options()` function. This makes it possible for unauthenticated…
*-3.0.4
3.0.5
09/04/2026
Aruba HiSpeed Cache <= 3.0.2 – Missing Authorization to Unauthenticated Plugin's Settings Modification
The Aruba HiSpeed Cache plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability checks on the multiple functions in all versions up to, and including, 3.0.2. This makes it possible for unauthenticated…
*-3.0.2
3.0.3
18/02/2026
Aruba HiSpeed Cache <= 3.0.2 – Reflected Cross-Site Scripting
The Aruba HiSpeed Cache plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the dbstatus parameter in all versions up to, and including, 3.0.2 due to insufficient input sanitization and output escaping. This makes it possible for…
*-3.0.2
3.0.3
18/02/2026
Aruba HiSpeed Cache <= 3.0.4 – Missing Authorization
The Aruba HiSpeed Cache plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in versions up to, and including, 3.0.4. This makes it possible for unauthenticated attackers to perform an…
*-3.0.4
3.0.5
18/02/2026
Aruba HiSpeed Cache < 3.0.3 – Missing Authorization
The Aruba HiSpeed Cache plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in all versions up to 3.0.3 (exclusive). This makes it possible for unauthenticated attackers to perform an…
[*, 3.0.3)
3.0.3
01/01/2026
Aruba HiSpeed Cache <= 2.0.12 – Missing Authorization
The Aruba HiSpeed Cache plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the ahsc_tool_bar_purge() function in versions up to, and including, 2.0.12. This makes it possible for authenticated attackers,…
*-2.0.12
2.0.13
07/08/2024
Aruba HiSpeed Cache <= 2.0.6 – Sensitive Information Exposure via Log File
The Aruba HiSpeed Cache plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.0.6 via the plugin's log file. This makes it possible for unauthenticated attackers to extract sensitive data including…
*-2.0.6
2.0.7
28/11/2023
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.