What is CVE-2026-5114?
A critical vulnerability has been discovered in the SpeedyCache plugin for WordPress. Versions up to 1.3.8 are susceptible to Arbitrary File Read via Path Traversal due to a mismatch between CSS URL validation and path resolution. It is strongly recommended to update the plugin to the latest version immediately.
Azərbaycanca: WordPress üçün SpeedyCache plaginində kritik boşluq aşkar edilib. 1.3.8 və daha əvvəlki versiyalar Path Traversal zəifliyinə görə Arbitrary File Read hücumlarına məruz qala bilər — bu, CSS validasiyası ilə path rezolyusiyası arasındakı uyğunsuzluqdan qaynaqlanır. Dərhal plaginin ən son versiyasına yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-22
FAQ2
What type of vulnerability affects the SpeedyCache plugin?
The SpeedyCache plugin is susceptible to Arbitrary File Read attacks due to a Path Traversal vulnerability.
What action is recommended to address this security flaw?
Users are strongly recommended to update the SpeedyCache plugin to the latest version immediately.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.