CVE Database /
CVE-2026-27384
CVE · Critical
CVE-2026-27384 — W3 Total Cache [w3-total-cache] < 2.9.2
| CVE |
Vulnerability |
Type |
Severity |
Affected |
Fixed in |
Published |
Status |
|
CVE-2026-27384
|
W3 Total Cache [w3-total-cache] < 2.9.2 |
Improper Validation of Specified Quantity in Input |
Critical
9.0
|
< 2.9.2
|
2.9.2 |
2026-02-24 |
—
|
CVE-2026-27384
A flaw exists in the input validation mechanism of BoldGrid's W3 Total Cache plugin, specifically concerning the handling of specified quantities. This oversight enables unauthorized access to certain functionalities that should be restricted by the plugin's Access Control List (ACL). The affected versions span from an unspecified start point up to and including 2.9.1.
Based on public CVE data (MITRE/NVD).
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.
See the full security page for this plugin
Browse the CVE database
Browse all security findings