Operator note

Critical AI Engine flaw lets subscribers upload malware - is your WordPress site safe?

A new 8.8 CVSS AI Engine bug allows subscriber-level uploads that could lead to RCE on 100,000 WordPress sites. Patch to 2.9.5 now.

Cracked AI lock with upload arrow and bug warning site admin

Security researchers at Wordfence have disclosed a high-severity flaw in the AI Engine WordPress plugin that lets subscriber-level users upload arbitrary files when the REST API is enabled. The vulnerability affects more than 100,000 websites and was patched on 17 July 2025.

Key details

  • CVSS 3.1 base score: 8.8 (high)
  • Affected versions: 2.9.3 and 2.9.4
  • Exploit requirements: authenticated subscriber account and an active REST API endpoint
  • Root cause: missing file-type validation, enabling remote code execution
  • Fix: version 2.9.5 adds proper validation and server-side request forgery checks
  • Fifth disclosed AI Engine vulnerability in 2025; four others surfaced in June and July

Why it matters

AI Engine integrates generative text, image creation, and audio transcription into WordPress by exposing multiple REST API endpoints. Each endpoint widens the attack surface, and insufficient validation can allow attackers to seize site control or pivot further into the hosting environment.

Plugin security record

Wordfence cataloged nine AI Engine vulnerabilities in 2024, two scoring above 9.0 CVSS. With five issues already disclosed in 2025, the plugin continues to require close security attention.

  • Update to AI Engine 2.9.5 or later via the WordPress dashboard or CLI.
  • Restrict subscriber capabilities where feasible.
  • Audit custom roles and disable unused REST API endpoints.
  • When developing custom code, validate uploads with the wp_check_filetype_and_ext() function.

Sources

Keep reading

Related articles

AI powered shopping cart protocol illustration with funnel price tag alert loyalty user tapping toggleInside Google's Universal Commerce Protocol that lets AI agents tap carts, catalogs and loyalty pricing2 min readMinimalist illustration of AI checkout hub with Cart Catalog Identity cards and user tapping settingsGoogle quietly upgrades AI shopping protocol: what Cart, Catalog and Identity Linking change next2 min readMinimalist tablet health UI privacy risk toggle character adjusting shield and prescription funnelGoogle and DocMorris Launch AI Health Companion for Europe - What Changes Next2 min readMinimalist site health dashboard illustration with 404 410 toggle funnel filtering errors into green checksWorried About Endless 404 Reports In Search Console? John Mueller Reveals What They Really Mean3 min read