PatchSiren

PatchSiren cyber security CVE debrief

CVE-2026-104742 senols CVE debrief

The AI Puffer plugin for WordPress has a vulnerability that allows authenticated attackers with subscriber-level access to modify global site-wide semantic search settings. This is due to a missing authorization check in the plugin. The vulnerability can impact site functionality and user experience. Defenders should assess exposure and prioritize verification of the plugin version and access controls. The AI Puffer plugin is used by WordPress installations to provide chat and automation features. The vulnerability is caused by a missing authorization check in the plugin, which allows authenticated attackers with subscriber-level access to modify global site-wide semantic search,

Vendor
senols
Product
AI Puffer – AI Chatbot, AI Writer & Automation
CVSS
LOW 3.1
CISA KEV
Not listed in stored evidence
Original CVE published
2026-10-10
Original CVE updated
2026-10-10
Advisory published
2026-10-10
Advisory updated
2026-10-10

Who should care

Defenders who manage WordPress installations with the AI Puffer plugin should assess exposure and prioritize verification of the plugin version and access controls. They should also review compensating controls for exposed systems and monitor for suspicious activity related to semantic search settings modifications. Additionally, defenders should track exceptions, retest remediated assets, and close the item only after evidence is documented.

Why it matters

The AI Puffer plugin vulnerability allows authenticated attackers to modify semantic search settings, potentially impacting site functionality and user experience. Defenders should prioritize verification of the plugin version and access controls.

  • Authenticated attackers with subscriber-level access can modify global site-wide semantic search settings
  • Modification of semantic search settings can impact site functionality and user experience
  • Verification of plugin version and access controls is necessary to prevent exploitation

Technical summary

The AI Puffer plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 2.4.89. This is due to the plugin not properly verifying that a user is authorized to perform an action. The vulnerability allows authenticated attackers with subscriber-level access to modify global site-wide semantic search settings, including vector provider, embedding provider, embedding model, target ID, number of results, and no-results text stored in aipkit_options, that are otherwise restricted to administrators. Exploitation requires that an administrator has previously granted the Knowledge Base ('sources') module to the attacker's role via the Role Manager, as this access is not available to

Defensive priority

Defenders should prioritize verifying the version of the AI Puffer plugin and ensuring that only authorized users can access and modify semantic search settings.

Recommended defensive actions

  • Verify the version of the AI Puffer plugin and ensure it is up-to-date
  • Ensure that only authorized users can access and modify semantic search settings
  • Monitor for suspicious activity related to semantic search settings modifications
  • Review compensating controls for exposed systems while remediation is scheduled and verified
  • Check relevant monitoring, detection, and logs for exposed assets that need extra review
  • Track exceptions, retest remediated assets, and close the item only after evidence is documented
  • Confirm whether affected product deployments exist in managed environments and assign an owner for follow-up

Evidence notes

The vulnerability is caused by a missing authorization check in the AI Puffer plugin, which allows authenticated attackers with subscriber-level access to modify global site-wide semantic search settings.

Sources and references

Verified primary and authoritative sources

  • CVE-2026-104742 CVE Program record

    Publisher, destination, and source semantics verified

    URL: https://www.cve.org/CVERecord?id=CVE-2026-104742

    CVE Program - Official CVE Program record with source-provided CVE metadata.

  • CVE-2026-104742 NVD vulnerability detail

    Publisher, destination, and source semantics verified

    URL: https://nvd.nist.gov/vuln/detail/CVE-2026-104742

    NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.

Supplemental references

  • AI Puffer <= 2.4.89 - Missing Authorization to Authenticated (Subscriber+) Semantic Search Setti

    Unverified legacy reference

    URL: https://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2026/104xxx/CVE-2026-104742.json

    cve_program_cvelist_v5

  • Source reference

    Unverified legacy reference

    URL: https://plugins.trac.wordpress.org/browser/gpt3-ai-content-generator/tags/2.4.88/classes/dashboard/ajax/class-aipkit-settings-ajax-handler.php

    Supplemental source

  • Source reference

    Unverified legacy reference

    URL: https://plugins.trac.wordpress.org/browser/gpt3-ai-content-generator/tags/2.4.88/classes/dashboard/ajax/class-aipkit-base-dashboard-ajax-handler.php

    Supplemental source

  • Source reference

    Unverified legacy reference

    URL: https://plugins.trac.wordpress.org/browser/gpt3-ai-content-generator/tags/2.4.88/classes/dashboard/class-aipkit_role_manager.php

    Supplemental source

Methodology and review provenance

AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.