Pricing
Case studies
Login
Start trial
W3 Total Cache
BoldGrid
Developer
2.9.4
Latest version
900,000
Installations
No date
Last updated
WordPress Plugin
Active VDP
Report vulnerability
Vulnerabilities
Security Policy
Security Contributors
Vulnerability history
0 present
19 patched
5 Mitigation rules
Arbitrary Code Execution vulnerability
<= 2.9.1
24/02/2026
Unauthenticated Command Injection vulnerability
< 2.8.13
20/11/2025
WordPress W3 Total Cache plugin <= 2.8.1 Information Exposure via Log Files vulnerability
<= 2.8.1
13/01/2025
WordPress W3 Total Cache plugin <= 2.8.1 Missing Authorization to Unauthenticated Plugin Deactivation and Extensions Activation/Deactivation vulnerability
<= 2.8.1
13/01/2025
Authenticated (Subscriber+) Missing Authorization to Server-Side Request Forgery vulnerability
<= 2.8.1
13/01/2025
Sensitive Credentials Stored in Plaintext vulnerability
<= 2.7.5
24/09/2024
Reflected Cross-Site Scripting (XSS) vulnerability
<= 2.1.3
28/06/2021
Reflected Cross-Site Scripting (XSS) vulnerability
<= 2.1.4
28/06/2021
Authenticated Stored Cross-Site Scripting (XSS) vulnerability
<= 2.1.2
25/04/2021
Reflected Cross-Site Scripting (XSS) vulnerability
<= 0.9.7.3
07/05/2019
Bypass
<= 0.9.4.1
27/09/2016
Arbitrary File Upload
<= 0.9.4.1
27/09/2016
Arbitrary File Download
<= 0.9.4.1
27/09/2016
Arbitrary PHP Code Execution
<= 0.9.4.1
27/09/2016
Reflected Cross Site Scripting
<= 0.9.4.1
26/09/2016
Cross Site Request Forgery
<= 0.9.4
15/05/2015
XSS
<= 0.9.4
10/11/2014
Cross-Site Request Forgery (CSRF) vulnerability
<= 0.9.4
08/09/2014
PHP Code Execution vulnerability
<= 0.9.2.8
01/05/2013