The WP Server Health Stats plugin for WordPress has a security issue where it can be tricked by attackers who are not logged in to perform a certain action. This occurs in versions 1.7.3 and earlier and is caused by a missing or incorrect security check. If a site administrator clicks on a link, it is possible for the attacker to trigger a purge of the plugin’s cache.