Description
WordPress Plugin WP Super Cache is prone to a cache poisoning vulnerability. Exploiting this issue may allow a remote attacker to place invalid entries into a cache, which are then assumed to be valid when later used. WordPress Plugin WP Super Cache version 1.8 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.9 or latest
References
https://sploitus.com/exploit?id=WPEX-ID:F9DDDB51-60FF-4FED-8C89-749D92C4AF94
https://github.com/Automattic/jetpack/blob/trunk/projects/plugins/super-cache/CHANGELOG.md#changelog
Related Vulnerabilities
WordPress Plugin CYSTEME Finder, the admin files explorer Cross-Site Request Forgery (1.4)
WordPress Plugin Direct Download for Woocommerce Arbitrary File Download (1.15)
WebLogic CVE-2023-21837 Vulnerability (CVE-2023-21837)
WordPress Plugin WooCommerce Conversion Tracking Cross-Site Request Forgery (2.0.4)