LiteSpeed Cache

25 known CVEs 7.0M+ active installs

Scan My Site Free

UNKNOWN: 25
Known Vulnerabilities 25
CVE-2025-12450 UNKNOWN EPSS 0.3%
Published 2025-10-29 · Affected: *
The LiteSpeed Cache plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via URLs in all versions up to, and including, 7.5.0.1 due to insufficient input sanitization and output escapi
CVE-2024-50550 UNKNOWN EPSS 0.6%
Published 2024-10-29 · Affected: *
Incorrect Privilege Assignment vulnerability in LiteSpeed Technologies LiteSpeed Cache litespeed-cache allows Privilege Escalation.This issue affects LiteSpeed Cache: from n/a through <= 6.5.1.
CVE-2024-50550 UNKNOWN EPSS 0.6%
Published 2024-10-29 · Affected: *
Incorrect Privilege Assignment vulnerability in LiteSpeed Technologies LiteSpeed Cache litespeed-cache allows Privilege Escalation.This issue affects LiteSpeed Cache: from n/a through <= 6.5.1.
CVE-2024-50550 UNKNOWN EPSS 0.6%
Published 2024-10-29 · Affected: *
Incorrect Privilege Assignment vulnerability in LiteSpeed Technologies LiteSpeed Cache litespeed-cache allows Privilege Escalation.This issue affects LiteSpeed Cache: from n/a through <= 6.5.1.
CVE-2024-50550 UNKNOWN EPSS 0.6%
Published 2024-10-29 · Affected: *
Incorrect Privilege Assignment vulnerability in LiteSpeed Technologies LiteSpeed Cache litespeed-cache allows Privilege Escalation.This issue affects LiteSpeed Cache: from n/a through <= 6.5.1.
CVE-2024-44000 UNKNOWN EPSS 1.0%
Published 2024-10-20 · Affected: *
Insufficiently Protected Credentials vulnerability in LiteSpeed Technologies LiteSpeed Cache litespeed-cache allows Authentication Bypass.This issue affects LiteSpeed Cache: from n/a through < 6.5.0.1
CVE-2024-44000 UNKNOWN EPSS 1.0%
Published 2024-10-20 · Affected: *
Insufficiently Protected Credentials vulnerability in LiteSpeed Technologies LiteSpeed Cache litespeed-cache allows Authentication Bypass.This issue affects LiteSpeed Cache: from n/a through < 6.5.0.1
CVE-2024-44000 UNKNOWN EPSS 1.0%
Published 2024-10-20 · Affected: *
Insufficiently Protected Credentials vulnerability in LiteSpeed Technologies LiteSpeed Cache litespeed-cache allows Authentication Bypass.This issue affects LiteSpeed Cache: from n/a through < 6.5.0.1
CVE-2024-44000 UNKNOWN EPSS 1.0%
Published 2024-10-20 · Affected: *
Insufficiently Protected Credentials vulnerability in LiteSpeed Technologies LiteSpeed Cache litespeed-cache allows Authentication Bypass.This issue affects LiteSpeed Cache: from n/a through < 6.5.0.1
CVE-2024-47637 UNKNOWN EPSS 0.5%
Published 2024-10-16 · Affected: *
Relative Path Traversal vulnerability in LiteSpeed Technologies LiteSpeed Cache litespeed-cache allows Path Traversal.This issue affects LiteSpeed Cache: from n/a through <= 6.4.1.
CVE-2024-47637 UNKNOWN EPSS 0.5%
Published 2024-10-16 · Affected: *
Relative Path Traversal vulnerability in LiteSpeed Technologies LiteSpeed Cache litespeed-cache allows Path Traversal.This issue affects LiteSpeed Cache: from n/a through <= 6.4.1.
CVE-2024-47637 UNKNOWN EPSS 0.5%
Published 2024-10-16 · Affected: *
Relative Path Traversal vulnerability in LiteSpeed Technologies LiteSpeed Cache litespeed-cache allows Path Traversal.This issue affects LiteSpeed Cache: from n/a through <= 6.4.1.
CVE-2024-47637 UNKNOWN EPSS 0.5%
Published 2024-10-16 · Affected: *
Relative Path Traversal vulnerability in LiteSpeed Technologies LiteSpeed Cache litespeed-cache allows Path Traversal.This issue affects LiteSpeed Cache: from n/a through <= 6.4.1.
CVE-2024-47374 UNKNOWN EPSS 0.7%
Published 2024-10-05 · Affected: *
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LiteSpeed Technologies LiteSpeed Cache litespeed-cache allows Stored XSS.This issue affects LiteSp
CVE-2024-47374 UNKNOWN EPSS 0.7%
Published 2024-10-05 · Affected: *
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LiteSpeed Technologies LiteSpeed Cache litespeed-cache allows Stored XSS.This issue affects LiteSp
CVE-2024-47374 UNKNOWN EPSS 0.7%
Published 2024-10-05 · Affected: *
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LiteSpeed Technologies LiteSpeed Cache litespeed-cache allows Stored XSS.This issue affects LiteSp
CVE-2024-47374 UNKNOWN EPSS 0.7%
Published 2024-10-05 · Affected: *
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LiteSpeed Technologies LiteSpeed Cache litespeed-cache allows Stored XSS.This issue affects LiteSp
CVE-2024-47373 UNKNOWN EPSS 0.2%
Published 2024-10-05 · Affected: *
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LiteSpeed Technologies LiteSpeed Cache litespeed-cache allows Stored XSS.This issue affects LiteSp
CVE-2024-47373 UNKNOWN EPSS 0.2%
Published 2024-10-05 · Affected: *
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LiteSpeed Technologies LiteSpeed Cache litespeed-cache allows Stored XSS.This issue affects LiteSp
CVE-2024-47373 UNKNOWN EPSS 0.2%
Published 2024-10-05 · Affected: *
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LiteSpeed Technologies LiteSpeed Cache litespeed-cache allows Stored XSS.This issue affects LiteSp
CVE-2024-47373 UNKNOWN EPSS 0.2%
Published 2024-10-05 · Affected: *
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LiteSpeed Technologies LiteSpeed Cache litespeed-cache allows Stored XSS.This issue affects LiteSp
CVE-2024-28000 UNKNOWN EPSS 1.0%
Published 2024-08-21 · Affected: *
Incorrect Privilege Assignment vulnerability in LiteSpeed Technologies LiteSpeed Cache litespeed-cache.This issue affects LiteSpeed Cache: from n/a through <= 6.3.0.1.
CVE-2024-28000 UNKNOWN EPSS 1.0%
Published 2024-08-21 · Affected: *
Incorrect Privilege Assignment vulnerability in LiteSpeed Technologies LiteSpeed Cache litespeed-cache.This issue affects LiteSpeed Cache: from n/a through <= 6.3.0.1.
CVE-2023-4372 UNKNOWN EPSS 1.0%
Published 2024-01-11 · Affected: *
The LiteSpeed Cache plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'esi' shortcode in versions up to, and including, 5.6 due to insufficient input sanitization and output es
CVE-2023-4372 UNKNOWN EPSS 1.0%
Published 2024-01-11 · Affected: *
The LiteSpeed Cache plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'esi' shortcode in versions up to, and including, 5.6 due to insufficient input sanitization and output es

Is LiteSpeed Cache running on your site?

A free scan detects your plugins and flags any that match these CVEs.

Scan My Site Free