CVE-2026-23694
- EPSS 0.04%
- Veröffentlicht 23.02.2026 20:29:20
- Zuletzt bearbeitet 24.02.2026 14:13:49
Aruba HiSpeed Cache (aruba-hispeed-cache) WordPress plugin versions prior to 3.0.5 contain a cross-site request forgery (CSRF) vulnerability affecting multiple administrative AJAX actions. The handlers for ahsc_reset_options, ahsc_debug_status, and a...
CVE-2025-11706
- EPSS 0.07%
- Veröffentlicht 19.02.2026 03:25:12
- Zuletzt bearbeitet 19.02.2026 15:53:02
The Aruba HiSpeed Cache plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the dbstatus parameter in all versions up to, and including, 3.0.2 due to insufficient input sanitization and output escaping. This makes it possible for...
CVE-2024-43119
- EPSS 0.12%
- Veröffentlicht 01.11.2024 15:15:38
- Zuletzt bearbeitet 01.11.2024 20:24:53
Missing Authorization vulnerability in Aruba.It Aruba HiSpeed Cache allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Aruba HiSpeed Cache: from n/a through 2.0.12.
CVE-2023-44983
- EPSS 0.33%
- Veröffentlicht 19.12.2023 16:15:08
- Zuletzt bearbeitet 21.11.2024 08:26:10
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Aruba.It Aruba HiSpeed Cache.This issue affects Aruba HiSpeed Cache: from n/a through 2.0.6.