Impact
The AI Engine plugin for WordPress has an insecure REST API endpoint at /mcp/v1/ that, when the No-Auth URL option is enabled, returns a bearer token to anyone who can access the endpoint. An unauthenticated attacker can retrieve this token, which can be used to impersonate an authenticated session and perform privileged actions such as creating an administrator account. This vulnerability is a Sensitive Data Exposure (CWE‑200) that leads directly to privilege escalation.
Affected Systems
The vulnerability affects the AI Engine – The Chatbot, AI Framework & MCP for WordPress plugin from the vendors tigroumeow, for all releases up to and including version 3.1.3.
Risk and Exploitability
The CVSS score of 9.8 indicates a critical severity, and the EPSS score of 75% suggests a high likelihood of exploitation. The description indicates an unauthenticated REST API endpoint; attacker access could exploit it remotely to retrieve the bearer token immediately. The vulnerability is not yet listed in the CISA KEV catalog.
OpenCVE Enrichment