CVE Alert: CVE-2024-44000 - RedPacket Security

Insufficiently Protected Credentials vulnerability in LiteSpeed Technologies LiteSpeed Cache allows Authentication Bypass.This issue affects LiteSpeed Cache:

RedPacket Security

encore et encore...

๐Ÿฉน LiteSpeed Release v6.5.0.1 ( chagelog https://plugins.trac.wordpress.org/changeset/3146657/litespeed-cache/trunk )

"Critical Account Takeover Vulnerability Patched in LiteSpeed Cache Plugin"
๐Ÿ‘‡
https://patchstack.com/articles/critical-account-takeover-vulnerability-patched-in-litespeed-cache-plugin/
โฌ‡๏ธ
"LiteSpeed Cache bug exposes 6 million WordPress sites to takeover attacks

Yet, another critical severity vulnerability has been discovered in LiteSpeed Cache, a caching plugin for speeding up user browsing in over 6 million WordPress sites.

The flaw, tracked as CVE-2024-44000 and categorized as an unauthenticated account takeover issue, was discovered by Patchstack's Rafie Muhammad on August 22, 2024. A fix was made available yesterday with the release of LiteSpeed Cache version 6.5.0.1."
๐Ÿ‘‡
https://www.bleepingcomputer.com/news/security/litespeed-cache-bug-exposes-6-million-wordpress-sites-to-takeover-attacks/

#CyberVeille #WordPress #LiteSpeedCache #CVE_2024_44000