Show filters
224 Total Results
Displaying 31-40 of 224
Sort by:
Attacker Value
Unknown
CVE-2024-34806
Disclosure Date: May 17, 2024 (last updated May 17, 2024)
Cross-Site Request Forgery (CSRF) vulnerability in Creative Motion Clearfy Cache.This issue affects Clearfy Cache: from n/a through 2.2.1.
0
Attacker Value
Unknown
CVE-2023-45000
Disclosure Date: April 16, 2024 (last updated April 17, 2024)
Missing Authorization vulnerability in LiteSpeed Technologies LiteSpeed Cache.This issue affects LiteSpeed Cache: from n/a through 5.7.
0
Attacker Value
Unknown
CVE-2023-40000
Disclosure Date: April 16, 2024 (last updated April 17, 2024)
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LiteSpeed Technologies LiteSpeed Cache allows Stored XSS.This issue affects LiteSpeed Cache: from n/a through 5.7.
0
Attacker Value
Unknown
CVE-2024-27968
Disclosure Date: March 21, 2024 (last updated February 13, 2025)
Cross-Site Request Forgery (CSRF) vulnerability in Optimole Super Page Cache for Cloudflare allows Stored XSS.This issue affects Super Page Cache for Cloudflare: from n/a through 4.7.5.
0
Attacker Value
Unknown
CVE-2021-24870
Disclosure Date: January 16, 2024 (last updated January 20, 2024)
The WP Fastest Cache WordPress plugin before 0.9.5 is lacking a CSRF check in its wpfc_save_cdn_integration AJAX action, and does not sanitise and escape some the options available via the action, which could allow attackers to make logged in high privilege users call it and set a Cross-Site Scripting payload
0
Attacker Value
Unknown
CVE-2021-24869
Disclosure Date: January 16, 2024 (last updated January 20, 2024)
The WP Fastest Cache WordPress plugin before 0.9.5 does not escape user input in the set_urls_with_terms method before using it in a SQL statement, leading to an SQL injection exploitable by low privilege users such as subscriber
0
Attacker Value
Unknown
CVE-2023-6598
Disclosure Date: January 11, 2024 (last updated January 18, 2024)
The SpeedyCache plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the speedycache_save_varniship, speedycache_img_update_settings, speedycache_preloading_add_settings, and speedycache_preloading_delete_resource functions in all versions up to, and including, 1.1.3. This makes it possible for authenticated attackers, with subscriber-level access and above, to update plugin options.
0
Attacker Value
Unknown
CVE-2023-4372
Disclosure Date: January 11, 2024 (last updated January 18, 2024)
The LiteSpeed Cache plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'esi' shortcode in versions up to, and including, 5.6 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.
0
Attacker Value
Unknown
CVE-2023-44983
Disclosure Date: December 19, 2023 (last updated December 29, 2023)
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Aruba.It Aruba HiSpeed Cache.This issue affects Aruba HiSpeed Cache: from n/a through 2.0.6.
0
Attacker Value
Unknown
CVE-2023-49746
Disclosure Date: December 07, 2023 (last updated December 13, 2023)
Server-Side Request Forgery (SSRF) vulnerability in Softaculous Team SpeedyCache – Cache, Optimization, Performance.This issue affects SpeedyCache – Cache, Optimization, Performance: from n/a through 1.1.2.
0