CVE · Medium

CVE-2023-1922 — WP Fastest Cache – WordPress Cache Plugin [wp-fastest-cache] < 1.1.3

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2023-1922 WP Fastest Cache – WordPress Cache Plugin [wp-fastest-cache] < 1.1.3 Cross-Site Request Forgery (CSRF) Medium 4.3 < 1.1.3 1.1.3 2023-04-06

CVE-2023-1922

The WP Fastest Cache plugin contains a cross-site request forgery vulnerability in versions 1.1.2 and earlier affecting the wpfc_pause_cdn_integration_ajax_request_callback function, which lacks proper nonce verification. An attacker could exploit this flaw to modify CDN configuration settings by deceiving an administrator into clicking a malicious link, without requiring authentication. The vulnerability was fixed in version 1.1.3.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.