Description
WordPress Plugin WP Super Cache is prone to a cache poisoning vulnerability. Exploiting this issue may allow a remote attacker to place invalid entries into a cache, which are then assumed to be valid when later used. WordPress Plugin WP Super Cache version 1.8 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.9 or latest
References
https://sploitus.com/exploit?id=WPEX-ID:F9DDDB51-60FF-4FED-8C89-749D92C4AF94
https://github.com/Automattic/jetpack/blob/trunk/projects/plugins/super-cache/CHANGELOG.md#changelog
Related Vulnerabilities
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-4295)
XWiki Improper Authentication Vulnerability (CVE-2022-36092)
WordPress Plugin Gravity Forms Directory Cross-Site Scripting (3.7.1)
Internet Information Services Other Vulnerability (CVE-2002-0074)
WordPress Plugin Conditional Payments for WooCommerce Cross-Site Request Forgery (2.3.1)