plugin

Wpgraphql Smart Cache Vulnerabilities

1 known security issue reported for the Wpgraphql Smart Cache WordPress plugin. Most recent disclosed Dec 12, 2025.

1 medium

Running Wpgraphql Smart Cache on your site? Check whether your installed version is affected.

Scan your site free

WPGraphQL Smart Cache < 2.0.1 - Unauthenticated Private Content Disclosure

medium

The WPGraphQL Smart Cache plugin for WordPress is vulnerable to Information Exposure in all versions up to 2.0.1 (exclusive) via the query endpoint due to insufficient restrictions on which posts can be included. This makes it possible for unauthenticated attackers to extract data from password protected, private, or d...

CVSS:
5.3
Affected:
up to 2.0.1
Fixed in:
2.0.1
Disclosed:
Dec 12, 2025

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database