CYBER CODE RED

Get real-time updates on Telegram

P4Verified

CVE-2026-85118: AI Content Generator Marketing 0 through 1.0.0

CVE-2026-85118. CVSS 3.1 base score 9.8 (CRITICAL, Source advisory).

Affected technology

AI Content Generator Marketing · 0 through 1.0.0
Vendor not specified by the source

Description’s affected range: through 1.0.0 does not enforce a nonce or capability check on some of its AJAX actions

Component: Not specified by the source

Attack conditions (Source advisory, CVSS 3.1): Network (remote) · No privileges required · No user interaction required

What an attacker can do

Unauthenticated users can update and delete arbitrary WordPress options, which can be used to gain administrator access to the site. Source advisory’s CVSS 3.1 assessment (base score 9.8/10) rates confidentiality, integrity and availability impact as high.

Published

CWE
CWE-269
CCR priority
39.2 /100 (P4)
CVSS 3.1
9.8 /10 · CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H · Source advisory
KEV
no

Provenance

Stable permalink: https://cybercodered.org/item/cve-cve-2026-85118.html