CVE · Medium

CVE-2023-1918 — WP Fastest Cache – WordPress Cache Plugin [wp-fastest-cache] < 1.1.3

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2023-1918 WP Fastest Cache – WordPress Cache Plugin [wp-fastest-cache] < 1.1.3 Cross-Site Request Forgery (CSRF) Medium 4.3 < 1.1.3 1.1.3 2023-04-06

CVE-2023-1918

The WP Fastest Cache plugin through version 1.1.2 contains a Cross-Site Request Forgery vulnerability in the wpfc_preload_single_callback function due to inadequate nonce verification. An unauthenticated attacker could exploit this flaw by crafting a malicious request that, if clicked by an administrator, would trigger cache building operations on the site. The vulnerability was resolved in version 1.1.3.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.