The WP Fastest Cache WordPress plugin before 1.1.5 does not have CSRF check in an AJAX action, and does not validate user input before using it in the wp_remote_get() function, leading to a Blind SSRF issueCreditsErwan LR (WPScan)WPScanReferenceshttps://wpscan.com/vulnerability/92b1c6d8-51db-46aa-bde6-abdfb091aab5