Where
-Infinity
0

LiteSpeed LiteSpeed cPanel PluginLiteSpeed cPanel Plugin UNIX Symbolic Link (Symlink) Following Vulnerability

Risk 91
Severity
8.5
First published (updated )

LiteSpeed LiteSpeed User-End cPanel PluginLiteSpeed cPanel Plugin Privilege Escalation Vulnerability

Risk 100
Severity
10
First published (updated )

Litespeed Technologies OpenLiteSpeedOS Command Injection, Command Injection

Risk 53
Severity
8.6
EPSS
0.16%
First published (updated )

LiteSpeed LSQUIC LibraryLiteSpeed QUIC (LSQUIC) Library before 4.3.1 has an lsquic_engine_packet_in memory leak.

Risk 43
Severity
7.5
First published (updated )

Litespeed Technologies LiteSpeed CacheWordPress LiteSpeed Cache plugin <= 6.5.1 - Privilege Escalation vulnerability

Risk 89
Severity
9.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Litespeedtech Litespeed Cache WordpressWordPress LiteSpeed Cache plugin < 6.5.0.1 - Unauthenticated Account Takeover via Cookie Leak vulnerability

Risk 99
Severity
9.8
First published (updated )

Litespeedtech Litespeed Cache WordpressWordPress LiteSpeed Cache plugin <= 6.4.1 - Path Traversal vulnerability

Risk 79
Severity
8.8
First published (updated )

Litespeed Technologies LiteSpeed CacheWordPress LiteSpeed Cache plugin <= 6.5.0.2 - Cross Site Scripting (XSS) vulnerability

Risk 34
Severity
6.5
First published (updated )

Litespeed Technologies LiteSpeed CacheWordPress LiteSpeed Cache plugin <= 6.5.0.2 - Cross Site Scripting (XSS) vulnerability

Risk 38
Severity
7.1
First published (updated )

LiteSpeed Cachelitespeed cache <= 6.4.1 - Authenticated (Administrator+) Stored Cross-Site Scripting

Risk 25
Severity
5.5
EPSS
0.04%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Litespeed Technologies LiteSpeed CacheWordPress LiteSpeed Cache plugin <= 6.3.0.1 - Unauthenticated Privilege Escalation vulnerability

Risk 99
Severity
9.8
First published (updated )

Litespeedtech Litespeed Cache WordpressLiteSpeed Cache <= 6.2.0.1 - Cross-Site Request Forgery to Stored Cross-Site Scripting

Risk 38
Severity
6.1
First published (updated )

Litespeedtech OpenlitespeedOpenLiteSpeed before 1.8.1 mishandles chunked encoding.

Risk 27
Severity
5.3
First published (updated )

Litespeed Technologies LiteSpeed CacheWordPress LiteSpeed Cache plugin <= 5.7 - Unauthenticated Broken Access Control on API vulnerability

Risk 54
Severity
8.2
First published (updated )

Litespeed Technologies LiteSpeed CacheWordPress LiteSpeed Cache plugin <= 5.7 - Unauthenticated Site Wide Stored XSS vulnerability

Risk 62
Severity
8.3
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Litespeedtech LsquicIn LiteSpeed QUIC (LSQUIC) Library before 4.0.4, DCID validation is mishandled.

Risk 61
Severity
9.8
EPSS
0.06%
First published (updated )

Litespeedtech Litespeed Cache WordpressLiteSpeed Cache <= 5.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode

Risk 39
Severity
6.4
First published (updated )

Litespeedtech OpenlitespeedLiteSpeed OpenLiteSpeed before 1.7.18 does not strictly validate HTTP request headers.

Risk 43
Severity
7.5
First published (updated )

Litespeedtech Litespeed Cache WordpressWordPress LiteSpeed Cache Plugin <= 5.3 is vulnerable to Cross Site Request Forgery (CSRF)

Risk 77
Severity
8.8
First published (updated )

Litespeedtech OpenlitespeedPrivilege Escalation in OpenLiteSpeed Web Server

Risk 79
Severity
8.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Litespeedtech OpenlitespeedAuthenticated Remote Code Execution in OpenLiteSpeed Web Server

Risk 79
Severity
8.8
First published (updated )

Litespeedtech OpenlitespeedDirectory Traversal in OpenLiteSpeed Web Server

Risk 30
Severity
5.8
First published (updated )

Litespeedtech LsquicNull Pointer Dereference

Risk 86
Severity
9.8
First published (updated )

Litespeedtech Litespeed Cache WordpressLiteSpeed Cache < 4.4.4 - IP Check Bypass to Unauthenticated Stored XSS

Risk 38
Severity
6.1
First published (updated )

Litespeedtech Litespeed Cache WordpressLiteSpeed Cache < 4.4.4 - Admin+ Reflected Cross-Site Scripting

Risk 29
Severity
4.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Litespeedtech OpenlitespeedPrivilege Escalation in LiteSpeed Technologies OpenLiteSpeed web server version 1.7.8 allows attacke…

Risk 78
Severity
9
First published (updated )

Litespeedtech Litespeed Cache WordpressXSS

Risk 38
Severity
6.1
First published (updated )

Litespeedtech OpenlitespeedInput Validation

Risk 86
Severity
9.8
First published (updated )

Litespeedtech OpenlitespeedInput Validation

Risk 38
Severity
6.5
First published (updated )

Litespeedtech OpenlitespeedBuffer Overflow

Risk 60
Severity
6.7
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203