← Back to CVE List

CVE-2023-1938

Published: 2023-05-30T08:15Z
Last Modified: 2025-01-10T21:15Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
The WP Fastest Cache WordPress plugin before 1.1.5 does not have CSRF check in an AJAX action, and does not validate user input before using it in the wp_remote_get() function, leading to a Blind SSRF issue > MITRE Terms of Use apply – see LICENSE‑MITRE.txt