CVE-2023-5359

LOW

W3 Total Cache <= 2.7.5 - Unauthenticated Sensitive Information Exposure via Google OAuth API Secrets

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-2023-5359. PoCs published by enzocipher, spyata123.

AI-analyzed exploit summary This repository contains a scanner for CVE-2023-5359, a cleartext storage vulnerability in W3 Total Cache WordPress plugin versions ≤ 2.7.5. The scanner checks for the presence of the plugin and attempts to extract sensitive credentials from publicly accessible PHP files.

Description

The W3 Total Cache plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 2.7.5 via Google OAuth API secrets stored in plaintext in the publicly visible plugin source. This can allow unauthenticated attackers to impersonate W3 Total Cache and gain access to user account information in successful conditions. This would not impact the WordPress users site in any way.

Exploits (2)

nomisec SCANNER
by enzocipher · poc
https://github.com/enzocipher/CVE-2023-5359

This repository contains a scanner for CVE-2023-5359, a cleartext storage vulnerability in W3 Total Cache WordPress plugin versions ≤ 2.7.5. The scanner checks for the presence of the plugin and attempts to extract sensitive credentials from publicly accessible PHP files.

Classification
Scanner 95%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Reliable
Target: W3 Total Cache WordPress plugin ≤ 2.7.5
No auth needed
Prerequisites: Target must have W3 Total Cache plugin installed and vulnerable version ≤ 2.7.5 · PHP files in the plugin directory must be publicly accessible
devstral-2 · analyzed Feb 16, 2026 Full analysis →
nomisec WORKING POC
by spyata123 · poc
https://github.com/spyata123/Cleartext-Storage-vulnerability-CVE-2023-5359-in-W3-Total-Cache

This PoC exploits CVE-2023-5359, a cleartext storage vulnerability in W3 Total Cache, by scanning for and extracting hardcoded credentials from known plugin files. It uses regex to identify sensitive data like API keys and secrets.

Classification
Working Poc 90%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Reliable
Target: W3 Total Cache ≤2.7.5
No auth needed
Prerequisites: Target running vulnerable W3 Total Cache plugin · Access to plugin files via HTTP
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Scores

CVSS v3 3.7
EPSS 0.0080
EPSS Percentile 51.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-200 CWE-312
Status published
Products (2)
boldgrid/W3 Total Cache < 2.7.5
boldgrid/w3_total_cache < 2.7.6
Published Sep 25, 2024
Tracked Since Feb 18, 2026