High severity8.8NVD Advisory· Published Jan 16, 2024· Updated Jun 17, 2026
CVE-2021-24869
CVE-2021-24869
Description
The WP Fastest Cache WordPress plugin before 0.9.5 does not escape user input in the set_urls_with_terms method before using it in a SQL statement, leading to an SQL injection exploitable by low privilege users such as subscriber
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2(expand)+ 1 more
- (no CPE)
- (no CPE)range: <0.9.5
Patches
Vulnerability mechanics
References
2- jetpack.com/2021/10/14/multiple-vulnerabilities-in-wp-fastest-cache-plugin/nvdExploitThird Party Advisory
- wpscan.com/vulnerability/b2233795-1a32-45fc-9d51-b6bd0a073f5b/nvdThird Party Advisory
News mentions
0No linked articles in our index yet.