CVE · Medium

CVE-2023-1930 — WP Fastest Cache – WordPress Cache Plugin [wp-fastest-cache] < 1.1.3

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2023-1930 WP Fastest Cache – WordPress Cache Plugin [wp-fastest-cache] < 1.1.3 Missing Authorization Medium 4.3 < 1.1.3 1.1.3 2023-04-06

CVE-2023-1930

The WP Fastest Cache plugin through version 1.1.2 contains a flaw where the wpfc_clear_cache_of_allsites_callback function fails to verify user permissions before executing cache deletion operations. This vulnerability allows users with minimal authenticated access, such as those with subscriber-level privileges, to remove cached data without proper authorization. The issue was remedied in version 1.1.3.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.