WP Fastest Cache, bd2c0889e81a092330d4eaa53459c9cf75ad0bff
- CVE, Research URL
- Home page URL
- Application
- Published on
- Jun 20, 2017
- Research Description
- WP Fastest Cache – WordPress Cache Plugin [wp-fastest-cache] < 0.5.5.9 WordPress WP Fastest Cache plugin <= 0.8.5.8 - Cross-Site Request Forgery (CSRF)/Cross-Site Scripting (XSS) Vulnerabilities Cross-Site Request Forgery (CSRF)/Cross-Site Scripting (XSS) Vulnerabilities were found in WordPress WP Fastest Cache plugin <= v0.8.5.8. The settings are not sanitized and escaped so the plugin is prone to a Cross-Site Scripting (XSS) vulnerability. It also missing a nonce for the settings form. Update the plugin.
- Affected versions
-
max 0.5.5.9.
- Status
-
vulnerable