The WP Fastest Cache WordPress plugin before 1.1.5 does not have CSRF check in an AJAX action, and does not validate user input before using it in the wp_remote_get() function, leading to a Blind SSRF issue
https://wpscan.com/vulnerability/92b1c6d8-51db-46aa-bde6-abdfb091aab5