CVE-2023-1930
06.04.2023, 21:15
The WP Fastest Cache plugin for WordPress is vulnerable to unauthorized data deletion due to a missing capability check on the wpfc_clear_cache_of_allsites_callback function in versions up to, and including, 1.1.2. This makes it possible for authenticated attackers with subscriber-level access to delete caches.Enginsight
Vendor | Product | Version |
---|---|---|
wpfastestcache | wp_fastest_cache | 𝑥 ≤ 1.1.2 |
𝑥
= Vulnerable software versions
References