CVE Tools

Litespeed-technologies

8 CVEs tracked since 2022. Since Oct 2022, none of them reached CISA KEV.

Litespeed-technologies CVEs per month

Oct 2022 to Oct 2024. Point at a month, or focus the strip and use the arrow keys.
Litespeed-technologies CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2022-1030
2022-11null or fewer
2022-12null or fewer
2023-01null or fewer
2023-02null or fewer
2023-03null or fewer
2023-04null or fewer
2023-05null or fewer
2023-06null or fewer
2023-07null or fewer
2023-08null or fewer
2023-09null or fewer
2023-10null or fewer
2023-11null or fewer
2023-12null or fewer
2024-01null or fewer
2024-02null or fewer
2024-03null or fewer
2024-04null or fewer
2024-05null or fewer
2024-06null or fewer
2024-07null or fewer
2024-08null or fewer
2024-09null or fewer
2024-1050

Products

The products that kept showing up in Litespeed-technologies's monthly top three, with their CVEs summed over those months.

  1. Litespeed Cache51 month
  2. Litespeed Web Server31 month
  3. Openlitespeed Web Server31 month
  4. Openlitespeed21 month
  5. Litespeed Cache For WordPress (Lscwp)11 month

Latest CVEs

The 15 most recently published vulnerabilities affecting Litespeed-technologies.

  1. CVE-2026-84761WordPress LiteSpeed Cache plugin <= 7.9 - Server Side Request Forgery (SSRF) vulnerability7.2
  2. CVE-2026-54420LiteSpeed cPanel plugin before 2.4.8 (as distributed in LiteSpeed WHM PlugIn before 5.3.2.0) mishandles symlinks provided by a user with FTP or web shell access on a shared hosting server running C...8.5
  3. CVE-2026-48172LiteSpeed User-End cPanel Plugin before 2.4.5 allows privilege escalation (possibly to root), as exploited in the wild in May 2026. Detection is best done via a command line of grep -rE "cpanel_jso...9.8
  4. CVE-2026-31386OpenLiteSpeed and LSWS Enterprise provided by LiteSpeed Technologies contain an OS command injection vulnerability. An arbitrary OS command may be executed by an attacker with the administrative pr...7.2
  5. CVE-2024-51915WordPress LiteSpeed Cache plugin <= 6.5.2 - Cross Site Scripting (XSS) vulnerability6.5
  6. CVE-2021-47855Openlitespeed 1.7.9 - 'Notes' Stored Cross-Site Scripting7.2
  7. CVE-2025-47437WordPress LiteSpeed Cache plugin <= 7.0.1 - Server Side Request Forgery (SSRF) vulnerability6.4
  8. CVE-2024-50550WordPress LiteSpeed Cache plugin <= 6.5.1 - Privilege Escalation vulnerability8.1
  9. CVE-2024-44000WordPress LiteSpeed Cache plugin < 6.5.0.1 - Unauthenticated Account Takeover via Cookie Leak vulnerability9.8
  10. CVE-2024-47637WordPress LiteSpeed Cache plugin <= 6.4.1 - Path Traversal vulnerability8.8
  11. CVE-2024-47373WordPress LiteSpeed Cache plugin <= 6.5.0.2 - Cross Site Scripting (XSS) vulnerability6.5
  12. CVE-2024-47374WordPress LiteSpeed Cache plugin <= 6.5.0.2 - Cross Site Scripting (XSS) vulnerability7.1
  13. CVE-2024-28000WordPress LiteSpeed Cache plugin <= 6.3.0.1 - Unauthenticated Privilege Escalation vulnerability9.8
  14. CVE-2023-45000WordPress LiteSpeed Cache plugin <= 5.7 - Unauthenticated Broken Access Control on API vulnerability8.2
  15. CVE-2023-40000WordPress LiteSpeed Cache plugin <= 5.7 - Unauthenticated Site Wide Stored XSS vulnerability8.3

The record

Peak rank
#145 in Oct 2024
Busiest month shown
Oct 2024, 5 CVEs
Months with a KEV entry
0 since Oct 2022
Monthly snapshots
2 since 2022
Litespeed-technologies's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store