CVE · High

CVE-2024-47637 — LiteSpeed Cache [litespeed-cache] < 6.5.1

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2024-47637 LiteSpeed Cache [litespeed-cache] < 6.5.1 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') High 8.8 < 6.5.1 6.5.1 2024-09-30

CVE-2024-47637

The LiteSpeed Cache plugin for WordPress through version 6.4.1 contains a path traversal vulnerability that allows authenticated users with author-level permissions or higher to access and manipulate files located outside the intended directory structure.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.