W3 Total Cache
w3-total-cache · eklenti
W3 Total Cache için bilinen güvenlik açıkları. Sitenizde bu bileşenin hangi sürümünün çalıştığını WP Lens ile saniyede öğrenin.
14 bilinen açık
2 kritik · 6 kayıt için istismar kodu yayımlanmış · son kayıt 5 Eyl 2026
Güvenlik açıkları
- Kritik 9.0
WordPress W3 Total Cache plugin <= 2.9.4 - Arbitrary Code Execution vulnerability
- Kritik 9.0
WordPress W3 Total Cache plugin <= 2.9.1 - Arbitrary Code Execution vulnerability
- Yüksek 8.5
W3 Total Cache <= 2.8.1 - Authenticated (Subscriber+) Missing Authorization to Server-Side Request Forgery
- Yüksek 7.5
W3 Total Cache <= 2.9.4 - Unauthenticated Arbitrary File Read via 'f_array[]' Parameter
- Yüksek 7.5
W3 Total Cache <= 2.9.3 - Unauthenticated Security Token Exposure via User-Agent Header
- Yüksek 7.5
W3 Total Cache <= 2.8.1 Information Exposure via Log Files
- Yüksek 7.5
W3 Total Cache <= 2.7.5 - Sensitive Credentials Stored in Plaintext
- Yüksek 7.2
W3 Total Cache <= 2.10.5 - Unauthenticated Stored Cross-Site Scripting via LazyLoad Background Mutator
- Yüksek 7.2
W3 Total Cache <= 2.10.3 - Unauthenticated Stored Cross-Site Scripting via Comment Author Name
- Orta 6.8
The W3 Total Cache plugin before 0.9.4.1 for WordPress does not properly handle empty nonces, which allows remote attackers to conduct cross
- Orta 6.5
WordPress W3 Total Cache plugin <= 2.10.2 - Path Traversal vulnerability
- Orta 5.3
W3 Total Cache <= 2.8.1 Missing Authorization to Unauthenticated Plugin Deactivation and Extensions Activation/Deactivation
- Orta 4.7
WordPress W3 Total Cache plugin <= 2.9.1 - Broken Access Control vulnerability
- Orta 4.3
Cross-site scripting (XSS) vulnerability in the W3 Total Cache plugin before 0.9.4.1 for WordPress, when debug mode is enabled, allows remot