Skip to content
Noroxi

AI Copilot – Content Generator

ai-copilot-content-generator · plugin

Known security vulnerabilities for AI Copilot – Content Generator. Find out in seconds which version runs on your site with WP Lens.

10 known vulnerabilities

4 critical · 1 with public exploit code · latest Aug 8, 2026

Vulnerabilities

  • CVE-2026-14526

    AI Copilot – Content Generator <= 1.5.6 - Unauthenticated Privilege Escalation via Custom Workflow Route

    Critical 9.8
  • CVE-2026-65507

    WordPress AIWU plugin <= 1.5.6 - Privilege Escalation vulnerability

    Critical 9.8
  • CVE-2026-48879

    WordPress AIWU plugin <= 1.4.17 - Privilege Escalation vulnerability

    Critical 9.8
  • CVE-2026-59515

    WordPress AIWU plugin <= 1.5.4 - SQL Injection vulnerability

    Critical 9.3
  • CVE-2026-6639

    AI Chatbot & Workflow Automation by AIWU <= 1.4.6 - Missing Authorization to Unauthenticated Sensitive Information Exposure

    High 7.5
  • CVE-2026-2993

    AI Chatbot & Workflow Automation by AIWU <= 1.4.17 - Unauthenticated SQL Injection in getListForTbl()

    High 7.5
  • CVE-2026-13009

    AI Copilot <= 1.5.4 - Authenticated (Subscriber+) SQL Injection via 'order[0][dir]' Parameter

    Medium 6.5
  • CVE-2026-2955

    AI Chatbot & Workflow Automation by AIWU <= 1.4.14 - Unauthenticated Stored Cross-Site Scripting via 'X-Forwarded-For' Header

    Medium 6.4
  • CVE-2026-6804

    AI Chatbot & Workflow Automation by AIWU <= 1.4.12 - Missing Authorization to Unauthenticated Arbitrary Modification via 'publishTasks' and 'unpublishTasks' AJA

    Medium 5.3
  • CVE-2026-6803

    AI Chatbot & Workflow Automation by AIWU <= 1.4.12 - Missing Authorization to Unauthenticated Arbitrary Data Deletion via AJAX Actions 'removeGroup' and 'clear'

    Medium 5.3

← Back to directory