Description
The AI Puffer – Chat. Create. Automate. (formerly AI Power) plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 2.4.89. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible for authenticated attackers, with subscriber-level access and above, to modify global site-wide semantic search settings, including vector provider, embedding provider, embedding model, target ID, number of results, and no-results text stored in aipkit_options, that are otherwise restricted to administrators. Exploitation requires that an administrator has previously granted the Knowledge Base ('sources') module to the attacker's role via the Role Manager, as this access is not available to lower-privileged users by default.
Published: 2026-10-10
Score: 3.1 Low
EPSS: n/a
KEV: No
Impact: Unauthorized modification of global semantic search settings by authenticated users with subscriber-level access
Action: Apply Patch
AI Analysis

Impact

The AI Puffer plugin for WordPress lacks proper verification that an authenticated user is authorized to modify semantic search settings via the ajax_save_semantic_search_settings action, allowing subscribers and higher roles to change site‑wide configuration such as vector provider, embedding model, and result count. This weakness is a violation of the authority control (CWE‑862) and can alter how content is generated or displayed, potentially harming the user experience and compromising site integrity.

Affected Systems

The vulnerability affects the AI Puffer – Chat. Create. Automate. (formerly AI Power) plugin from senols, in all versions up to and including 2.4.89. WordPress sites running this plugin and having any subscriber‑level role that has been granted the Knowledge Base module capability are susceptible, as the role manager configuration can give non‑admin users the ability to change these settings.

Risk and Exploitability

The CVSS score of 3.1 indicates a low severity impact; EPSS data is not available and the issue is not listed in CISA KEV. The exploit requires an attacker to first obtain an account that has the Knowledge Base module enabled via the Role Manager, but no code execution or network‑wide compromise is possible. Consequently, the risk is confined to configuration tampering within the affected WordPress instance.

Generated by OpenCVE AI on October 10, 2026 at 06:53 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Upgrade AI Puffer to the latest available version to restore proper authorization checks.
  • Revoke or restrict the Knowledge Base ('sources') module permission for any non‑administrator roles via the Role Manager to prevent unauthorized setting changes.
  • If an immediate update is not possible, disable the ajax_save_semantic_search_settings endpoint or use a role‑based security plugin to block subscriber and lower roles from accessing this action until a patch is applied.

Generated by OpenCVE AI on October 10, 2026 at 06:53 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sat, 10 Oct 2026 05:45:00 +0000

Type Values Removed Values Added
Description The AI Puffer – Chat. Create. Automate. (formerly AI Power) plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 2.4.89. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible for authenticated attackers, with subscriber-level access and above, to modify global site-wide semantic search settings, including vector provider, embedding provider, embedding model, target ID, number of results, and no-results text stored in aipkit_options, that are otherwise restricted to administrators. Exploitation requires that an administrator has previously granted the Knowledge Base ('sources') module to the attacker's role via the Role Manager, as this access is not available to lower-privileged users by default.
Title AI Puffer <= 2.4.89 - Missing Authorization to Authenticated (Subscriber+) Semantic Search Settings Modification via ajax_save_semantic_search_settings AJAX action
Weaknesses CWE-862
References
Metrics cvssV3_1

{'score': 3.1, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:N'}


Subscriptions

No data.

cve-icon MITRE

Status: PUBLISHED

Assigner: Wordfence

Published:

Updated: 2026-10-10T05:30:57.680Z

Reserved: 2026-10-02T11:55:04.789Z

Link: CVE-2026-104742

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-10-10T06:16:39.240

Modified: 2026-10-10T06:16:39.240

Link: CVE-2026-104742

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-10-10T07:00:13Z

Weaknesses