CVE-2024-32532

WordPress Speed Optimizer plugin <= 7.4.6 - Broken Access Control vulnerability

Missing Authorization vulnerability in SiteGround Speed Optimizer.This issue affects Speed Optimizer: from n/a through 7.4.6.


We have discovered 1,174 live websites that are affected by CVE-2024-32532.

Run a Free Instant Scan




Affected Software

Product  SG Optimizer
Category Cache Tools
Vulnerable Domains1,174 live websites (100% of SG Optimizer install base)
Vulnerable Versions
  • from 0 through 7.4.6
Vulnerable Versions Count0 versions ( less than 0.1% of all versions)


Common Weakness Enumeration

CWE-862 Missing Authorization



Details

  • Published - Apr 17, 2024
  • Updated - Aug 2, 2024

Credits

  • Rafie Muhammad (Patchstack) (finder)

Website Distribution by Country

Number of websites using CVE-2024-32532
United States469 websites



Italy99 websites
GB96 websites
Germany78 websites
Spain41 websites
France37 websites
Australia35 websites
Cyprus35 websites
Canada27 websites
Netherlands25 websites

Website Distribution by TLD

Number of websites using CVE-2024-32532
.com655 websites
.it76 websites
.org68 websites
.co.uk53 websites
.com.au28 websites
.net23 websites
.es23 websites
.nl22 websites
.ca11 websites
.com.br11 websites

Websites affected by CVE-2024-32532

Top websites that are affected by CVE-2024-32532. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
****.********.com United States**,***
********.com United States**,***
****.org GB**,***
***************.com Belgium**,***
**************.com ***,***
**********.**.uk GB***,***
*******************.**.uk GB***,***
********.org GB***,***
*******************.com Spain***,***
***.***.do Dominican Republic***,***
See full domain list

FAQ

CVE-2024-32532 is Missing Authorization in SG Optimizer
A total of 1,174 websites have been identified as vulnerable to CVE-2024-32532, based on global website indexing conducted by WebTechSurvey.
The SG Optimizer is affected by the CVE-2024-32532 vulnerability.
SG Optimizer versions up to and including 7.4.6 are vulnerable to CVE-2024-32532.