cleantalk
Vulnerabilities and Security Researches

W3 Total Cache, d10065940b7560bcc2c3fde42548d084ae67f076

Application

W3 Total Cache

Published on
May 07, 2019
Research Description
W3 Total Cache [w3-total-cache] < 0.9.7.4 W3 Total Cache plugin <= 0.9.7.3 - Reflected Cross-Site Scripting The W3 Total Cache plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to insufficient input validation on the $command variable, which makes it possible for attackers to inject arbitrary web sites in victims browsers in versions up to, and including, 0.9.7.3.
Affected versions
max 0.9.7.4.
Status
vulnerable