← WordPress Vulnerabilities
WordPress security by component

RapidLoad – Optimize Web Vitals Automatically

RapidLoad – Optimize Web Vitals Automatically is a WordPress component with 15 published CVE records in this archive. The latest tracked vulnerability was published Feb 01, 2025; the highest CVE/CNA score is 4.3.

Plugin slug: rapidload-power-up-for-autoptimize

CVE-2024-13651: RapidLoad – Optimize Web Vitals Automatically: A security weakness

RapidLoad – Optimize Web Vitals Automatically is affected by a security weakness. Exploitation requires at least subscriber-level access. The resulting impact depends on how the affected component exposes the vulnerable operation.

PublishedFeb 01, 2025
Safe version guidanceSee mitigation notes
Safe version
Feb 01, 2025 CVE-2024-13651
RapidLoad – Optimize Web Vitals Automatically: A security weakness
RapidLoad – Optimize Web Vitals Automatically is affected by a security weakness. Exploitation requires at least subscriber-level access. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE4.3
NVDPending
Mar 10, 2023 CVE-2023-1346
RapidLoad Power-Up for Autoptimize: Cross-site request forgery
RapidLoad Power-Up for Autoptimize is affected by cross-site request forgery. The vulnerable path is reachable without authentication. Exploitation relies on a signed-in privileged user submitting an attacker-controlled request.
See mitigation notes
CVE4.3
NVD4.3
Mar 10, 2023 CVE-2023-1345
RapidLoad Power-Up for Autoptimize: Cross-site request forgery
RapidLoad Power-Up for Autoptimize is affected by cross-site request forgery. The vulnerable path is reachable without authentication. Exploitation relies on a signed-in privileged user submitting an attacker-controlled request.
See mitigation notes
CVE4.3
NVD4.3
Mar 10, 2023 CVE-2023-1344
RapidLoad Power-Up for Autoptimize: Cross-site request forgery
RapidLoad Power-Up for Autoptimize is affected by cross-site request forgery. The vulnerable path is reachable without authentication. Exploitation relies on a signed-in privileged user submitting an attacker-controlled request.
See mitigation notes
CVE4.3
NVD4.3
Mar 10, 2023 CVE-2023-1343
RapidLoad Power-Up for Autoptimize: Cross-site request forgery
RapidLoad Power-Up for Autoptimize is affected by cross-site request forgery. The vulnerable path is reachable without authentication. Exploitation relies on a signed-in privileged user submitting an attacker-controlled request.
See mitigation notes
CVE4.3
NVD4.3
Mar 10, 2023 CVE-2023-1342
RapidLoad Power-Up for Autoptimize: Cross-site request forgery
RapidLoad Power-Up for Autoptimize is affected by cross-site request forgery. The vulnerable path is reachable without authentication. Exploitation relies on a signed-in privileged user submitting an attacker-controlled request.
See mitigation notes
CVE4.3
NVD4.3
Mar 10, 2023 CVE-2023-1341
RapidLoad Power-Up for Autoptimize: Cross-site request forgery
RapidLoad Power-Up for Autoptimize is affected by cross-site request forgery. The vulnerable path is reachable without authentication. Exploitation relies on a signed-in privileged user submitting an attacker-controlled request.
See mitigation notes
CVE4.3
NVD4.3
Mar 10, 2023 CVE-2023-1340
RapidLoad Power-Up for Autoptimize: Cross-site request forgery
RapidLoad Power-Up for Autoptimize is affected by cross-site request forgery. The vulnerable path is reachable without authentication. Exploitation relies on a signed-in privileged user submitting an attacker-controlled request.
See mitigation notes
CVE4.3
NVD4.3
Mar 10, 2023 CVE-2023-1339
RapidLoad Power-Up for Autoptimize: A security weakness
RapidLoad Power-Up for Autoptimize is affected by a security weakness. Exploitation requires at least subscriber-level access. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE4.3
NVD4.3
Mar 10, 2023 CVE-2023-1338
RapidLoad Power-Up for Autoptimize: A security weakness
RapidLoad Power-Up for Autoptimize is affected by a security weakness. Exploitation requires at least subscriber-level access. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE4.3
NVD4.3
Mar 10, 2023 CVE-2023-1337
RapidLoad Power-Up for Autoptimize: A security weakness
RapidLoad Power-Up for Autoptimize is affected by a security weakness. Exploitation requires at least subscriber-level access. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE4.3
NVD4.3
Mar 10, 2023 CVE-2023-1336
RapidLoad Power-Up for Autoptimize: A security weakness
RapidLoad Power-Up for Autoptimize is affected by a security weakness. Exploitation requires at least subscriber-level access. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE4.3
NVD4.3
Mar 10, 2023 CVE-2023-1335
RapidLoad Power-Up for Autoptimize: A security weakness
RapidLoad Power-Up for Autoptimize is affected by a security weakness. Exploitation requires at least subscriber-level access. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE4.3
NVD4.3
Mar 10, 2023 CVE-2023-1334
RapidLoad Power-Up for Autoptimize: A security weakness
RapidLoad Power-Up for Autoptimize is affected by a security weakness. Exploitation requires at least subscriber-level access. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE4.3
NVD4.3
Mar 10, 2023 CVE-2023-1333
RapidLoad Power-Up for Autoptimize: A security weakness
RapidLoad Power-Up for Autoptimize is affected by a security weakness. Exploitation requires at least subscriber-level access. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE4.3
NVD4.3