cleantalk
Vulnerabilities and Security Researches

SpeedyCache – Cache, Optimization, Performance, a4ef16792ad0d4324e229e95f7c2ea4019d4f925

Published on
Dec 01, 2023
Research Description
SpeedyCache &#8211; Cache, Optimization, Performance [speedycache] < 1.1.3 SpeedyCache <= 1.1.2 - Missing Authorization via speedycache_create_test_cache The SpeedyCache – Cache, Optimization, Performance plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the speedycache_create_test_cache function in all versions up to, and including, 1.1.2. This makes it possible for authenticated attackers with subscriber-level access or higher to create a sample cache.
Affected versions
max 1.1.3.
Status
vulnerable