Extension WordPress

Vulnérabilités WP Fastest Cache – WordPress Cache Plugin, page 2

Cette page rassemble les failles publiées pour WP Fastest Cache – WordPress Cache Plugin, leurs plages de versions affectées et les correctifs signalés dans la base locale.

35Vulnérabilités
3Critiques
35Avec correctif
9,8CVSS maximal

Historique de sécurité

CVE et vulnérabilités de WP Fastest Cache – WordPress Cache Plugin

35 fiches

CVE-2021-24870 Élevée · 8,8
WP Fastest Cache – WordPress Cache Plugin

WP Fastest Cache < 0.9.5 – Cross-Site Request Forgery to Stored Cross-Site Scripting

The WP Fastest Cache plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions before 0.9.5. This is due to missing or incorrect nonce validation on the wpfc_save_cdn_integration function. This makes it possible for unauthenticated attackers to…

Versions affectées

[*, 0.9.5)

Correctif

0.9.5

Publication

14/10/2021

CVE-2020-36836 Élevée · 8,0
WP Fastest Cache – WordPress Cache Plugin

WP Fastest Cache <= 0.9.0.2 – Authenticated (Subscriber+) Arbitrary File Deletion

The WP Fastest Cache plugin for WordPress is vulnerable to unauthorized arbitrary file deletion in versions up to, and including, 0.9.0.2 due to a lack of capability checking and insufficient path validation. This makes it possible for authenticated…

Versions affectées

[*, 0.9.0.3)

Correctif

0.9.0.3

Publication

05/02/2020

Vulnérabilité Moyenne · 4,9
WP Fastest Cache – WordPress Cache Plugin

WP Fastest Cache <= 0.8.5.7 – Missing Authorization

The WP Fastest Cache plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the wpfc_save_cdn_integration_ajax_request_callback() function in versions up to, and including, 0.8.5.7. This makes it possible for unauthorized attackers to redirect…

Versions affectées

*-0.8.5.7

Correctif

0.8.5.8

Publication

23/05/2016

CVE-2015-4089 Élevée · 8,8
WP Fastest Cache – WordPress Cache Plugin

WP Fastest Cache < 0.8.3.5 – Multiple Cross-Site Request Forgery

Multiple cross-site request forgery (CSRF) vulnerabilities in the optionsPageRequest function in admin.php in WP Fastest Cache plugin before 0.8.3.5 for WordPress allow remote attackers to hijack the authentication of unspecified victims for requests that call the (1) saveOption,…

Versions affectées

[*, 0.8.3.5)

Correctif

0.8.3.5

Publication

26/05/2015

WP Commander

Rechercher dans toute la base WordPress

Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.

Ouvrir le tableau des vulnérabilités