Extension WordPress

Vulnérabilités WP Fastest Cache – WordPress Cache Plugin

Cette page rassemble les failles publiées pour WP Fastest Cache – WordPress Cache Plugin, leurs plages de versions affectées et les correctifs signalés dans la base locale.

35Vulnérabilités
3Critiques
35Avec correctif
9,8CVSS maximal

Historique de sécurité

CVE et vulnérabilités de WP Fastest Cache – WordPress Cache Plugin

35 fiches

CVE-2025-10476 Moyenne · 4,3
WP Fastest Cache – WordPress Cache Plugin

WP Fastest Cache <= 1.4.0 – Missing Authorization to Authenticated (Subscriber+) DB Cleanup Actions

The WP Fastest Cache plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the wpfc_db_fix_callback() function in all versions up to, and including, 1.4.0. This makes it possible for authenticated…

Versions affectées

*-1.4.0

Correctif

1.4.1

Publication

26/11/2025

CVE-2024-4347 Élevée · 7,2
WP Fastest Cache – WordPress Cache Plugin

WP Fastest Cache <= 1.2.6 – Authenticated (Administrator+) Arbitrary File Deletion

The WP Fastest Cache plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 1.2.6 via the specificDeleteCache function. This makes it possible for authenticated attackers to delete arbitrary files on the server,…

Versions affectées

*-1.2.6

Correctif

1.2.7

Publication

10/05/2024

CVE-2023-1938 Moyenne · 6,5
WP Fastest Cache – WordPress Cache Plugin

WP Fastest Cache <= 1.1.4 – Authenticated(Administrator+) Blind Server Side Request Forgery via check_url

The WP Fastest Cache plugin for WordPress is vulnerable to Server-Side Request Forgery in versions up to, and including, 1.1.4 via the 'check_url' function. This can allow Authenticated attackers with Administrator-level permissions to make web requests to arbitrary…

Versions affectées

*-1.1.4

Correctif

1.1.5

Publication

02/05/2023

CVE-2023-1920 Moyenne · 4,3
WP Fastest Cache – WordPress Cache Plugin

WP Fastest Cache <= 1.1.2 – Cross-Site Request Forgery via 'wpfc_purgecache_varnish_callback'

The WP Fastest Cache plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1.2. This is due to missing or incorrect nonce validation on the wpfc_purgecache_varnish_callback function. This makes it possible for…

Versions affectées

*-1.1.2

Correctif

1.1.3

Publication

06/04/2023

CVE-2023-1930 Moyenne · 4,3
WP Fastest Cache – WordPress Cache Plugin

WP Fastest Cache <= 1.1.2 – Missing Authorization in 'wpfc_clear_cache_of_allsites_callback'

The WP Fastest Cache plugin for WordPress is vulnerable to unauthorized data deletion due to a missing capability check on the wpfc_clear_cache_of_allsites_callback function in versions up to, and including, 1.1.2. This makes it possible for authenticated attackers with…

Versions affectées

*-1.1.2

Correctif

1.1.3

Publication

06/04/2023

CVE-2023-1931 Moyenne · 4,3
WP Fastest Cache – WordPress Cache Plugin

WP Fastest Cache <= 1.1.2 – Missing Authorization in 'deleteCssAndJsCacheToolbar'

The WP Fastest Cache plugin for WordPress is vulnerable to unauthorized data loss due to a missing capability check on the deleteCssAndJsCacheToolbar function in versions up to, and including, 1.1.2. This makes it possible for authenticated attackers with…

Versions affectées

*-1.1.2

Correctif

1.1.3

Publication

06/04/2023

CVE-2023-1924 Moyenne · 4,3
WP Fastest Cache – WordPress Cache Plugin

WP Fastest Cache <= 1.1.2 – Cross-Site Request Forgery via 'wpfc_toolbar_save_settings_callback'

The WP Fastest Cache plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1.2. This is due to missing or incorrect nonce validation on the wpfc_toolbar_save_settings_callback function. This makes it possible for…

Versions affectées

*-1.1.2

Correctif

1.1.3

Publication

06/04/2023

CVE-2023-1922 Moyenne · 4,3
WP Fastest Cache – WordPress Cache Plugin

WP Fastest Cache <= 1.1.2 – Cross-Site Request Forgery via 'wpfc_pause_cdn_integration_ajax_request_callback'

The WP Fastest Cache plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1.2. This is due to missing or incorrect nonce validation on the wpfc_pause_cdn_integration_ajax_request_callback function. This makes it possible for…

Versions affectées

*-1.1.2

Correctif

1.1.3

Publication

06/04/2023

CVE-2023-1928 Moyenne · 4,3
WP Fastest Cache – WordPress Cache Plugin

WP Fastest Cache <= 1.1.2 – Missing Authorization in 'wpfc_preload_single_callback'

The WP Fastest Cache plugin for WordPress is vulnerable to unauthorized data modification due to a missing capability check on the wpfc_preload_single_callback function in versions up to, and including, 1.1.2. This makes it possible for authenticated attackers with…

Versions affectées

*-1.1.2

Correctif

1.1.3

Publication

06/04/2023

CVE-2023-1927 Moyenne · 4,3
WP Fastest Cache – WordPress Cache Plugin

WP Fastest Cache <= 1.1.2 – Cross-Site Request Forgery via 'deleteCssAndJsCacheToolbar'

The WP Fastest Cache plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1.2. This is due to missing or incorrect nonce validation on the deleteCssAndJsCacheToolbar function. This makes it possible for…

Versions affectées

*-1.1.2

Correctif

1.1.3

Publication

06/04/2023

CVE-2023-1923 Moyenne · 4,3
WP Fastest Cache – WordPress Cache Plugin

WP Fastest Cache <= 1.1.2 – Cross-Site Request Forgery via 'wpfc_remove_cdn_integration_ajax_request_callback'

The WP Fastest Cache plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1.2. This is due to missing or incorrect nonce validation on the wpfc_remove_cdn_integration_ajax_request_callback function. This makes it possible for…

Versions affectées

*-1.1.2

Correctif

1.1.3

Publication

06/04/2023

CVE-2023-1929 Moyenne · 4,3
WP Fastest Cache – WordPress Cache Plugin

WP Fastest Cache <= 1.1.2 – Missing Authorization in 'wpfc_purgecache_varnish_callback'

The WP Fastest Cache plugin for WordPress is vulnerable to unauthorized data modification due to a missing capability check on the wpfc_purgecache_varnish_callback function in versions up to, and including, 1.1.2. This makes it possible for authenticated attackers with…

Versions affectées

*-1.1.2

Correctif

1.1.3

Publication

06/04/2023

CVE-2023-1918 Moyenne · 4,3
WP Fastest Cache – WordPress Cache Plugin

WP Fastest Cache <= 1.1.2 – Cross-Site Request Forgery via 'wpfc_preload_single_callback'

The WP Fastest Cache plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1.2. This is due to missing or incorrect nonce validation on the wpfc_preload_single_callback function. This makes it possible for…

Versions affectées

*-1.1.2

Correctif

1.1.3

Publication

06/04/2023

CVE-2023-1921 Moyenne · 4,3
WP Fastest Cache – WordPress Cache Plugin

WP Fastest Cache <= 1.1.2 – Cross-Site Request Forgery via 'wpfc_start_cdn_integration_ajax_request_callback'

The WP Fastest Cache plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1.2. This is due to missing or incorrect nonce validation on the wpfc_start_cdn_integration_ajax_request_callback function. This makes it possible for…

Versions affectées

*-1.1.2

Correctif

1.1.3

Publication

06/04/2023

CVE-2023-1925 Moyenne · 4,3
WP Fastest Cache – WordPress Cache Plugin

WP Fastest Cache <= 1.1.2 – Cross-Site Request Forgery via 'wpfc_clear_cache_of_allsites_callback'

The WP Fastest Cache plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1.2. This is due to missing or incorrect nonce validation on the wpfc_clear_cache_of_allsites_callback function. This makes it possible for…

Versions affectées

*-1.1.2

Correctif

1.1.3

Publication

06/04/2023

CVE-2023-1919 Moyenne · 4,3
WP Fastest Cache – WordPress Cache Plugin

WP Fastest Cache <= 1.1.2 – Cross-Site Request Forgery via 'wpfc_preload_single_save_settings_callback'

The WP Fastest Cache plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1.2. This is due to missing or incorrect nonce validation on the wpfc_preload_single_save_settings_callback function. This makes it possible for…

Versions affectées

*-1.1.2

Correctif

1.1.3

Publication

06/04/2023

WP Commander

Rechercher dans toute la base WordPress

Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.

Ouvrir le tableau des vulnérabilités