Impact
The AI Engine WordPress plugin fails to perform an authorization check on its admin‑only editor assistant feature. The plugin issues a token to any anonymous visitor and trusts that token when the editor assistant is invoked, allowing an attacker to send arbitrary AI queries to the site owner's configured provider account. This flaw can expose sensitive content or consume the owner’s provider quota, representing an unauthorized data access and service abuse risk.
Affected Systems
WordPress installations using the AI Engine plugin versions 3.4.0 through 3.7.1 are vulnerable. The vulnerability exists for any site that has the editor assistant feature enabled, regardless of user role. The CNA data identifies the plugin as Unknown:AI Engine.
Risk and Exploitability
The flaw can be exploited without authentication; the token is distributed to every visitor automatically. The EPSS score of < 1% indicates a low current probability of exploitation, but the large attack surface of anonymous access means exposure remains possible. The CVSS score of 5.3 places the issue in the medium severity range, and the vulnerability is not listed in the CISA KEV catalog. An attacker who crafts arbitrary AI queries may leak data or inflate provider costs, creating privacy, confidentiality, and financial risks.
OpenCVE Enrichment