WP Fastest Cache WordPress 插件在 1.5.1 版本之前,其页面缓存键中未包含一组与追踪相关的查询参数,但仍在存在这些参数时缓存页面。这使得未认证的 attackers 能够令页面在其自身的请求上下文中渲染,并将其存储于干净 URL 的缓存条目下,从而向后续所有访客提供该页面。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Unknown | WP Fastest Cache | 0.8.7.7 ~ 1.5.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-13611 | 5.3 MEDIUM | KiviCare – Clinic & Patient Management System (EHR) < 4.5.5 - Unauthenticated Patient Data |
| CVE-2026-78363 | 4.8 MEDIUM | MW WP Form < 5.1.5 - Unauthenticated Arbitrary Shortcode Execution via Completion Message |
No comments yet