The WP Fastest Cache WordPress plugin before 1.1.5 does not have CSRF check in an AJAX action, and does not validate user input before using it in the wp_remote_get() function, leading to a Blind SSRF issue
Name | Vendor | Start Version | End Version |
---|---|---|---|
Wp_fastest_cache | Wpfastestcache | * | 1.1.5 (excluding) |