
Cacheability Security & Risk Analysis
wordpress.org/plugins/cacheabilityHTTP optimization for WordPress. Fixes soft 404 errors and adds smart cache headers.
Is Cacheability Safe to Use in 2026?
Generally Safe
Score 100/100Cacheability has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "cacheability" v2.0.1 plugin presents a mixed security posture. On the positive side, the code analysis indicates good practices with regards to SQL queries and output escaping, all of which are properly handled. There are no known vulnerabilities in its history, and it doesn't appear to make external HTTP requests or perform file operations, which are common sources of risk.
However, a significant concern is the presence of one AJAX handler that lacks authentication checks. This creates an unprotected entry point into the plugin, which could potentially be exploited by attackers. While the taint analysis shows no critical or high severity flows, the absence of capability checks and nonce checks on this AJAX endpoint, coupled with its direct exposure, warrants careful consideration.
Overall, the plugin demonstrates a commitment to secure coding in several areas, but the unprotected AJAX handler is a critical flaw that significantly elevates the risk. The lack of past vulnerabilities is a positive sign, but it does not negate the immediate risk posed by the current code. Addressing the unprotected AJAX handler should be the highest priority to improve the plugin's security.
Key Concerns
- Unprotected AJAX handler
- Missing nonce check on AJAX
- Missing capability check on AJAX
Cacheability Security Vulnerabilities
Cacheability Release Timeline
Cacheability Code Analysis
Output Escaping
Cacheability Attack Surface
AJAX Handlers 1
WordPress Hooks 5
Maintenance & Trust
Cacheability Maintenance & Trust
Maintenance Signals
Community Trust
Cacheability Alternatives
JCH Optimize
jch-optimize
This plugin automatically performs several front end optimizations to your site to boost performance and increase PageSpeed scores.
WPSpeed – WordPress Speed, Cache & Performance Optimization (Core Web Vitals, PageSpeed 100)
wpspeed
WordPress speed optimization plugin to boost PageSpeed, improve Core Web Vitals, reduce TTFB and enable static HTML caching for 100/100 performance.
Fastcache by Host.it
fastcache-by-host-it
FastCache è un plugin WordPress per caching avanzato, CDN e ottimizzazione delle prestazioni, sviluppato e supportato interamente in Italia.
WP Performance
wp-performance
WP Performance is a cache & performance plugin which makes optimizing your site really easy.
Varnish WordPress
varnish-wp
This plugin enables you to use the Varnish cache with WordPress, designed for high performance websites.
Cacheability Developer Profile
4 plugins · 40K total installs
How We Detect Cacheability
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
wrap