Sploitus

CVE-2026-27384

1 known exploit for CVE-2026-27384

Improper Validation of Specified Quantity in Input vulnerability in BoldGrid W3 Total Cache w3-total-cache allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects W3 Total Cache: from n/a through <= 2.9.1.

Affected products
Boldgrid W3 Total Cache
CVSS 3.1
9.0 CRITICAL
EPSS
0.3% (23th percentile)
Weakness
CWE-1284
NVD status
Deferred
Published
2026-03-05
Attack patterns
CAPEC-1
Entry point
comment request body
Path
wp-json/wp/v2/comments
CVE-2026-27384 at NVD
Authoritative description, scoring and affected products

1 known exploit for CVE-2026-27384

Proof-of-concept code and exploit modules indexed by Sploitus