WordPress security by component
WP Fastest Cache
Plugin description
WP Fastest Cache is a WordPress component with 31 published CVE records in this archive. The latest tracked vulnerability was published Nov 27, 2025; the highest CVE/CNA score is 9.8.
Plugin slug:
wp-fastest-cacheLatest vulnerability
CVE-2025-10476: WP Fastest Cache: A security weakness
WP Fastest Cache is affected by a security weakness. Exploitation requires at least subscriber-level access. The resulting impact depends on how the affected component exposes the vulnerable operation.
| Safe version |
|
||
|---|---|---|---|
| Nov 27, 2025 |
CVE-2025-10476
WP Fastest Cache: A security weakness
WP Fastest Cache is affected by a security weakness. Exploitation requires at least subscriber-level access. The resulting impact depends on how the affected component exposes the vulnerable operation.
|
See mitigation notes |
CVE4.3
NVDPending
|
| Oct 16, 2024 |
CVE-2020-36836
WP Fastest Cache: Arbitrary file deletion
WP Fastest Cache is affected by arbitrary file deletion. Exposure depends on how the affected operation is made reachable by the site. A successful request can remove files outside the intended scope and may make the site unavailable.
|
See mitigation notes |
CVE8.0
NVD8.1
|
| May 23, 2024 |
CVE-2024-4347
WP Fastest Cache: Filesystem traversal
WP Fastest Cache is affected by filesystem traversal. Exploitation requires an authenticated WordPress account. A crafted path can escape the intended directory and reach files or directories elsewhere on the server.
|
See mitigation notes |
CVE7.2
NVDPending
|
| Jan 16, 2024 |
CVE-2021-24870
WP Fastest Cache: Cross-site scripting
WP Fastest Cache is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
|
See mitigation notes |
CVE6.1
NVD6.1
|
| Jan 16, 2024 |
CVE-2021-24869
WP Fastest Cache: SQL injection
WP Fastest Cache is affected by SQL injection. Exposure depends on how the affected operation is made reachable by the site. A successful request can alter database queries and expose or modify WordPress data.
|
See mitigation notes |
CVE8.8
NVD8.8
|
| Dec 04, 2023 |
CVE-2023-6063
WP Fastest Cache: SQL injection
WP Fastest Cache is affected by SQL injection. The vulnerable path is reachable without authentication. A successful request can alter database queries and expose or modify WordPress data.
|
See mitigation notes |
CVE7.5
NVD7.5
|
| Jun 09, 2023 |
CVE-2023-1375
WP Fastest Cache: A security weakness
WP Fastest Cache is affected by a security weakness. Exploitation requires an authenticated WordPress account. The resulting impact depends on how the affected component exposes the vulnerable operation.
|
See mitigation notes |
CVE4.3
NVD4.3
|
| May 30, 2023 |
CVE-2023-1938
WP Fastest Cache: Cross-site request forgery
WP Fastest Cache is affected by cross-site request forgery. Exposure depends on how the affected operation is made reachable by the site. Exploitation relies on a signed-in privileged user submitting an attacker-controlled request.
|
See mitigation notes |
CVE8.8
NVD8.8
|
| Apr 06, 2023 |
CVE-2023-1931
WP Fastest Cache: A security weakness
WP Fastest Cache is affected by a security weakness. Exploitation requires at least subscriber-level access. The resulting impact depends on how the affected component exposes the vulnerable operation.
|
See mitigation notes |
CVE4.3
NVD4.3
|
| Apr 06, 2023 |
CVE-2023-1930
WP Fastest Cache: A security weakness
WP Fastest Cache is affected by a security weakness. Exploitation requires at least subscriber-level access. The resulting impact depends on how the affected component exposes the vulnerable operation.
|
See mitigation notes |
CVE4.3
NVD4.3
|
| Apr 06, 2023 |
CVE-2023-1929
WP Fastest Cache: A security weakness
WP Fastest Cache is affected by a security weakness. Exploitation requires at least subscriber-level access. The resulting impact depends on how the affected component exposes the vulnerable operation.
|
See mitigation notes |
CVE4.3
NVD4.3
|
| Apr 06, 2023 |
CVE-2023-1928
WP Fastest Cache: A security weakness
WP Fastest Cache is affected by a security weakness. Exploitation requires at least subscriber-level access. The resulting impact depends on how the affected component exposes the vulnerable operation.
|
See mitigation notes |
CVE4.3
NVD4.3
|
| Apr 06, 2023 |
CVE-2023-1927
WP Fastest Cache: Cross-site request forgery
WP Fastest Cache is affected by cross-site request forgery. The vulnerable path is reachable without authentication. Exploitation relies on a signed-in privileged user submitting an attacker-controlled request.
|
See mitigation notes |
CVE4.3
NVD4.3
|
| Apr 06, 2023 |
CVE-2023-1926
WP Fastest Cache: Cross-site request forgery
WP Fastest Cache is affected by cross-site request forgery. The vulnerable path is reachable without authentication. Exploitation relies on a signed-in privileged user submitting an attacker-controlled request.
|
See mitigation notes |
CVE4.3
NVD4.3
|
| Apr 06, 2023 |
CVE-2023-1925
WP Fastest Cache: Cross-site request forgery
WP Fastest Cache is affected by cross-site request forgery. The vulnerable path is reachable without authentication. Exploitation relies on a signed-in privileged user submitting an attacker-controlled request.
|
See mitigation notes |
CVE4.3
NVD4.3
|
| Apr 06, 2023 |
CVE-2023-1924
WP Fastest Cache: Cross-site request forgery
WP Fastest Cache is affected by cross-site request forgery. The vulnerable path is reachable without authentication. Exploitation relies on a signed-in privileged user submitting an attacker-controlled request.
|
See mitigation notes |
CVE4.3
NVD4.3
|
| Apr 06, 2023 |
CVE-2023-1923
WP Fastest Cache: Cross-site request forgery
WP Fastest Cache is affected by cross-site request forgery. The vulnerable path is reachable without authentication. Exploitation relies on a signed-in privileged user submitting an attacker-controlled request.
|
See mitigation notes |
CVE4.3
NVD4.3
|
| Apr 06, 2023 |
CVE-2023-1922
WP Fastest Cache: Cross-site request forgery
WP Fastest Cache is affected by cross-site request forgery. The vulnerable path is reachable without authentication. Exploitation relies on a signed-in privileged user submitting an attacker-controlled request.
|
See mitigation notes |
CVE4.3
NVD4.3
|
| Apr 06, 2023 |
CVE-2023-1921
WP Fastest Cache: Cross-site request forgery
WP Fastest Cache is affected by cross-site request forgery. The vulnerable path is reachable without authentication. Exploitation relies on a signed-in privileged user submitting an attacker-controlled request.
|
See mitigation notes |
CVE4.3
NVD4.3
|
| Apr 06, 2023 |
CVE-2023-1920
WP Fastest Cache: Cross-site request forgery
WP Fastest Cache is affected by cross-site request forgery. The vulnerable path is reachable without authentication. Exploitation relies on a signed-in privileged user submitting an attacker-controlled request.
|
See mitigation notes |
CVE4.3
NVD4.3
|
| Apr 06, 2023 |
CVE-2023-1919
WP Fastest Cache: Cross-site request forgery
WP Fastest Cache is affected by cross-site request forgery. The vulnerable path is reachable without authentication. Exploitation relies on a signed-in privileged user submitting an attacker-controlled request.
|
See mitigation notes |
CVE4.3
NVD4.3
|
| Apr 06, 2023 |
CVE-2023-1918
WP Fastest Cache: Cross-site request forgery
WP Fastest Cache is affected by cross-site request forgery. The vulnerable path is reachable without authentication. Exploitation relies on a signed-in privileged user submitting an attacker-controlled request.
|
See mitigation notes |
CVE4.3
NVD4.3
|
| Apr 27, 2021 |
CVE-2021-20714
Wp Fastest Cache: Filesystem traversal
Wp Fastest Cache is affected by filesystem traversal. Exposure depends on how the affected operation is made reachable by the site. A crafted path can escape the intended directory and reach files or directories elsewhere on the server.
|
See mitigation notes |
CVE6.5
NVD6.5
|
| Aug 14, 2019 |
CVE-2015-9316
Wp Fastest Cache: SQL injection
Wp Fastest Cache is affected by SQL injection. Exposure depends on how the affected operation is made reachable by the site. A successful request can alter database queries and expose or modify WordPress data.
|
See mitigation notes |
CVE9.8
NVD9.8
|
| Jul 30, 2019 |
CVE-2019-13635
Wp Fastest Cache: Filesystem traversal
Wp Fastest Cache is affected by filesystem traversal. Exposure depends on how the affected operation is made reachable by the site. A crafted path can escape the intended directory and reach files or directories elsewhere on the server.
|
See mitigation notes |
CVE9.1
NVD9.1
|
| Jul 29, 2019 |
CVE-2019-6726
Wp Fastest Cache: Arbitrary file deletion
Wp Fastest Cache is affected by arbitrary file deletion. Exposure depends on how the affected operation is made reachable by the site. A successful request can remove files outside the intended scope and may make the site unavailable.
|
See mitigation notes |
CVE6.5
NVD6.5
|
| Apr 15, 2019 |
CVE-2018-17586
Wp Fastest Cache: Cross-site scripting
Wp Fastest Cache is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
|
See mitigation notes |
CVE6.1
NVD6.1
|
| Apr 15, 2019 |
CVE-2018-17585
Wp Fastest Cache: Cross-site scripting
Wp Fastest Cache is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
|
See mitigation notes |
CVE6.1
NVD6.1
|
| Apr 15, 2019 |
CVE-2018-17584
Wp Fastest Cache: Cross-site request forgery
Wp Fastest Cache is affected by cross-site request forgery. Exposure depends on how the affected operation is made reachable by the site. Exploitation relies on a signed-in privileged user submitting an attacker-controlled request.
|
See mitigation notes |
CVE8.8
NVD8.8
|
| Apr 15, 2019 |
CVE-2018-17583
Wp Fastest Cache: Cross-site scripting
Wp Fastest Cache is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
|
See mitigation notes |
CVE6.1
NVD6.1
|
| Sep 19, 2017 |
CVE-2015-4089
Wp Fastest Cache: Cross-site request forgery
Wp Fastest Cache is affected by cross-site request forgery. Exposure depends on how the affected operation is made reachable by the site. Exploitation relies on a signed-in privileged user submitting an attacker-controlled request.
|
See mitigation notes |
CVE8.8
NVD8.8
|