Vendor
high
advisory
Unauthenticated Sensitive Information Exposure in WordPress AI Chatbot Plugin
1 rule 2 TTPs 1 CVEAn authentication bypass vulnerability in the AI Chatbot & Workflow Automation WordPress plugin allows unauthenticated attackers to exfiltrate API keys and task configurations via sequential ID enumeration.
AI Chatbot & Workflow Automation
1r
2t
1c
high
threat
AIWU WordPress Plugin Vulnerable to SQL Injection (CVE-2026-2993)
2 rules 1 TTP 1 CVEThe AI Chatbot & Workflow Automation by AIWU plugin for WordPress is vulnerable to SQL Injection (CVE-2026-2993) in versions up to 1.4.17, allowing unauthenticated attackers to extract sensitive information from the database.
AI Chatbot & Workflow Automation by AIWU plugin for WordPress
cve
sqli
wordpress
injection
2r
1t
1c