AI Copilot – Content Generator
ai-copilot-content-generator · plugin
Known security vulnerabilities for AI Copilot – Content Generator. Find out in seconds which version runs on your site with WP Lens.
10 known vulnerabilities
4 critical · 1 with public exploit code · latest Aug 8, 2026
Vulnerabilities
- Critical 9.8
AI Copilot – Content Generator <= 1.5.6 - Unauthenticated Privilege Escalation via Custom Workflow Route
- Critical 9.8
WordPress AIWU plugin <= 1.5.6 - Privilege Escalation vulnerability
- Critical 9.8
WordPress AIWU plugin <= 1.4.17 - Privilege Escalation vulnerability
- Critical 9.3
WordPress AIWU plugin <= 1.5.4 - SQL Injection vulnerability
- High 7.5
AI Chatbot & Workflow Automation by AIWU <= 1.4.6 - Missing Authorization to Unauthenticated Sensitive Information Exposure
- High 7.5
AI Chatbot & Workflow Automation by AIWU <= 1.4.17 - Unauthenticated SQL Injection in getListForTbl()
- Medium 6.5
AI Copilot <= 1.5.4 - Authenticated (Subscriber+) SQL Injection via 'order[0][dir]' Parameter
- Medium 6.4
AI Chatbot & Workflow Automation by AIWU <= 1.4.14 - Unauthenticated Stored Cross-Site Scripting via 'X-Forwarded-For' Header
- Medium 5.3
AI Chatbot & Workflow Automation by AIWU <= 1.4.12 - Missing Authorization to Unauthenticated Arbitrary Modification via 'publishTasks' and 'unpublishTasks' AJA
- Medium 5.3
AI Chatbot & Workflow Automation by AIWU <= 1.4.12 - Missing Authorization to Unauthenticated Arbitrary Data Deletion via AJAX Actions 'removeGroup' and 'clear'