CVE-2023-1919, CVE-2023-1920, CVE-2023-1921, CVE-2023-1923, CVE-2023-1924, CVE-2023-1925, CVE-2023-1926, CVE-2023-1927
The WP Fastest Cache plugin contains a Cross-Site Request Forgery vulnerability in versions through 1.1.2, stemming from inadequate nonce verification in the wpfc_preload_single_save_settings_callback function. Attackers without authentication can modify cache settings by crafting malicious requests, provided they convince a site administrator to click a link or perform another action. The vulnerability was patched in version 1.1.3.
Based on public CVE data (MITRE/NVD).