PatchSiren cyber security CVE debrief
CVE-2026-104742 senols CVE debrief
The AI Puffer plugin for WordPress has a vulnerability that allows authenticated attackers with subscriber-level access to modify global site-wide semantic search settings. This is due to a missing authorization check in the plugin. The vulnerability can impact site functionality and user experience. Defenders should assess exposure and prioritize verification of the plugin version and access controls. The AI Puffer plugin is used by WordPress installations to provide chat and automation features. The vulnerability is caused by a missing authorization check in the plugin, which allows authenticated attackers with subscriber-level access to modify global site-wide semantic search,
- Vendor
- senols
- Product
- AI Puffer – AI Chatbot, AI Writer & Automation
- CVSS
- LOW 3.1
- CISA KEV
- Not listed in stored evidence
- Original CVE published
- 2026-10-10
- Original CVE updated
- 2026-10-10
- Advisory published
- 2026-10-10
- Advisory updated
- 2026-10-10
Who should care
Defenders who manage WordPress installations with the AI Puffer plugin should assess exposure and prioritize verification of the plugin version and access controls. They should also review compensating controls for exposed systems and monitor for suspicious activity related to semantic search settings modifications. Additionally, defenders should track exceptions, retest remediated assets, and close the item only after evidence is documented.
Why it matters
The AI Puffer plugin vulnerability allows authenticated attackers to modify semantic search settings, potentially impacting site functionality and user experience. Defenders should prioritize verification of the plugin version and access controls.
- Authenticated attackers with subscriber-level access can modify global site-wide semantic search settings
- Modification of semantic search settings can impact site functionality and user experience
- Verification of plugin version and access controls is necessary to prevent exploitation
Technical summary
The AI Puffer plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 2.4.89. This is due to the plugin not properly verifying that a user is authorized to perform an action. The vulnerability allows authenticated attackers with subscriber-level access to modify global site-wide semantic search settings, including vector provider, embedding provider, embedding model, target ID, number of results, and no-results text stored in aipkit_options, that are otherwise restricted to administrators. Exploitation requires that an administrator has previously granted the Knowledge Base ('sources') module to the attacker's role via the Role Manager, as this access is not available to
Defensive priority
Defenders should prioritize verifying the version of the AI Puffer plugin and ensuring that only authorized users can access and modify semantic search settings.
Recommended defensive actions
- Verify the version of the AI Puffer plugin and ensure it is up-to-date
- Ensure that only authorized users can access and modify semantic search settings
- Monitor for suspicious activity related to semantic search settings modifications
- Review compensating controls for exposed systems while remediation is scheduled and verified
- Check relevant monitoring, detection, and logs for exposed assets that need extra review
- Track exceptions, retest remediated assets, and close the item only after evidence is documented
- Confirm whether affected product deployments exist in managed environments and assign an owner for follow-up
Evidence notes
The vulnerability is caused by a missing authorization check in the AI Puffer plugin, which allows authenticated attackers with subscriber-level access to modify global site-wide semantic search settings.
Sources and references
Verified primary and authoritative sources
-
CVE-2026-104742 CVE Program record
Publisher, destination, and source semantics verified
URL: https://www.cve.org/CVERecord?id=CVE-2026-104742
CVE Program - Official CVE Program record with source-provided CVE metadata.
-
CVE-2026-104742 NVD vulnerability detail
Publisher, destination, and source semantics verified
URL: https://nvd.nist.gov/vuln/detail/CVE-2026-104742
NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.
Supplemental references
-
AI Puffer <= 2.4.89 - Missing Authorization to Authenticated (Subscriber+) Semantic Search Setti
Unverified legacy reference
URL: https://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2026/104xxx/CVE-2026-104742.json
cve_program_cvelist_v5
-
Source reference
Unverified legacy reference
URL: https://plugins.trac.wordpress.org/browser/gpt3-ai-content-generator/tags/2.4.88/classes/dashboard/ajax/class-aipkit-settings-ajax-handler.php
Supplemental source
-
Source reference
Unverified legacy reference
URL: https://plugins.trac.wordpress.org/browser/gpt3-ai-content-generator/tags/2.4.88/classes/dashboard/ajax/class-aipkit-base-dashboard-ajax-handler.php
Supplemental source
-
Source reference
Unverified legacy reference
URL: https://plugins.trac.wordpress.org/browser/gpt3-ai-content-generator/tags/2.4.88/classes/dashboard/class-aipkit_role_manager.php
Supplemental source
Methodology and review provenance
AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.