Skip to main content

Vendor/product archive

automattic / wp_super_cache CVEs

Beta · best-effort

6 CVEs tagged to automattic / wp_super_cache1 Critical, 3 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2021-24329

Published Jun 1, 2021

The WP Super Cache WordPress plugin before 1.7.3 did not properly sanitise its wp_cache_location parameter in its settings, which could lead to a Stored Cross-Site Scripting issue.

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-24312

Published Jun 1, 2021

The parameters $cache_path, $wp_cache_debug_ip, $wp_super_cache_front_page_text, $cache_scheduled_time, $cached_direct_pages used in the settings of WP Super Cache WordPress plugi…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2021-24209

Published Apr 5, 2021

The WP Super Cache WordPress plugin before 1.7.2 was affected by an authenticated (admin+) RCE in the settings page due to input validation failure and weak $cache_path check in t…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort
Showing 1-6 of 6 CVEsPage 1 of 1