Description
The WP Fastest Cache WordPress plugin before 0.9.5 does not escape user input in the set_urls_with_terms method before using it in a SQL statement, leading to an SQL injection exploitable by low privilege users such as subscriber
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-11781 | The WP Fastest Cache WordPress plugin before 0.9.5 does not escape user input in the set_urls_with_terms method before using it in a SQL statement, leading to an SQL injection exploitable by low privilege users such as subscriber |
References
History
Mon, 02 Jun 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2025-06-02T15:10:51.510Z
Reserved: 2021-01-14T15:03:46.806Z
Link: CVE-2021-24869
Updated: 2024-08-03T19:49:13.416Z
Status : Modified
Published: 2024-01-16T16:15:09.103
Modified: 2025-06-02T16:15:23.000
Link: CVE-2021-24869
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD