CVE · Medium

CVE-2025-10476 — WP Fastest Cache – WordPress Cache Plugin [wp-fastest-cache] < 1.4.1

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2025-10476 WP Fastest Cache – WordPress Cache Plugin [wp-fastest-cache] < 1.4.1 Missing Authorization Medium 4.3 < 1.4.1 1.4.1 2025-11-26

CVE-2025-10476

The WP Fastest Cache plugin is susceptible to unauthorized data modification because it lacks proper capability checks in the wpfc_db_fix_callback() function across all versions up to 1.4.0. Authenticated users with at least Subscriber-level access can trigger database fix actions, but this vulnerability impacts only sites that have the premium version activated.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.