CyberRota Analysis
AI-GeneratedThe Praison AI SEO WordPress plugin prior to version 5.0.7 is vulnerable due to the lack of authorization checks on its REST API routes, enabling unauthenticated users to alter the permalinks of published posts and access sensitive configuration data. This vulnerability poses a significant risk to the integrity and confidentiality of WordPress sites utilizing this plugin. WordPress administrators using the affected versions should prioritize updating to mitigate potential exploitation.
Original NVD Description
The Praison AI SEO WordPress plugin before 5.0.7 does not perform authorization checks on several of its REST API routes, allowing unauthenticated users to modify the permalink of any published post and to read Praison AI SEO WordPress plugin before 5.0.7 configuration data.