Directory Traversal Vulnerability in WP Fastest Cache Plugin for WordPress
CVE-2019-13635
9.1CRITICAL
What is CVE-2019-13635?
The WP Fastest Cache plugin for WordPress, through version 0.8.9.5, contains a directory traversal vulnerability that could allow unauthorized access to sensitive files on the server. This occurs via improper validation of user input in wpFastestCache.php and inc/cache.php, which could be exploited by attackers to traverse directories and access files outside of the intended directory structure. Recommended actions include updating to the latest version of the plugin and reviewing web application security practices.