cleantalk
Vulnerabilities and Security Researches

WP Fastest Cache, CVE-2023-1938

CVE, Research URL

CVE-2023-1938

Application

WP Fastest Cache

Published on
May 30, 2023
Research Description
The WP Fastest Cache WordPress plugin before 1.1.5 does not have CSRF check in an AJAX action, and does not validate user input before using it in the wp_remote_get() function, leading to a Blind SSRF issue
Affected versions
max 1.1.5.
Status
vulnerable