Information leakage vulnerability in W3 Total Cache 0.9.4.1

The WordPress plugin W3 Total Cache is vulnerable to a security issue called Arbitrary File Download. This means that anyone with administrator access to the site can extract sensitive information from the wp-config.php file, such as passwords and other login information, which can be used to gain full control of the site. This vulnerability affects all versions of the W3 Total Cache plugin up to and including version 0.9.4.1.

Detected in:

W3 Total Cache fixed vulnerable versions: >= * <= 0.9.4.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.