GoCache
GoCache has one disclosed vulnerability in the WordSec catalog, all reported in 2025; it is fixed as of September 2026. Their average CVSS score is 4.3, and the most serious one scores 4.3 out of 10.
The most common weakness is Missing Authorization, behind 1 of the records (100%).
The one issue recorded for GoCache has a vendor fix available, so running the current release closes it.
All of these findings were reported by Legion Hunter. GoCache is installed on roughly 800 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 7.0.4.
CVE-2025-62966GoCache <= 1.3.6 - Missing Authorization
Read the full analysisVulnerability Records

GoCache
Author
Apiki
Conecta seu WordPress com a GoCache, que acelera de forma inteligente as páginas e arquivos estáticos do site, reduzindo o consumo de recursos no servidor web e banco de dados. A GoCache possui tecnologia CDN de última geração, que ajuda na otimização de sua infraestrutura web e oferece uma melhor experiência para os visitantes. Requisitos PHP versão 5.6 ou superior. Conta ativa na GoCache.
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C