Incorrect Privilege Assignment vulnerability in LiteSpeed Technologies LiteSpeed Cache litespeed-cache.This issue affects LiteSpeed Cache: from n/a through <= 6.3.0.1.
https://thehackernews.com/2024/10/litespeed-cache-plugin-vulnerability.html
https://thehackernews.com/2024/08/critical-flaw-in-wordpress-litespeed.html
https://github.com/shawnng078-ops/CVE-2024-28000-Exploit-Lab
https://github.com/freyesperales/wpaudit
https://github.com/AliHzSec/cve-poc-collection
https://www.exploit-db.com/exploits/52328
https://github.com/SSSSuperX/CVE-2024-28000
https://thehackernews.com/2024/08/critical-flaw-in-wordpress-litespeed.html?m=1
Published: 2024-08-21
Updated: 2026-04-29
Base Score: 10
Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C
Severity: Critical
Base Score: 9.8
Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Severity: Critical
EPSS: 0.68266
Tenable Research has classified this CVE under the following Vulnerability Watch classification, which includes active and historical (inactive) classifications. You can learn more about these classifications on our blog.
Vulnerability of Interest