W3 Total Cache, d10065940b7560bcc2c3fde42548d084ae67f076
- CVE, Research URL
- Home page URL
- Application
- Published on
- May 07, 2019
- Research Description
- W3 Total Cache [w3-total-cache] < 0.9.7.4 W3 Total Cache plugin <= 0.9.7.3 - Reflected Cross-Site Scripting The W3 Total Cache plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to insufficient input validation on the $command variable, which makes it possible for attackers to inject arbitrary web sites in victims browsers in versions up to, and including, 0.9.7.3.
- Affected versions
-
max 0.9.7.4.
- Status
-
vulnerable