WordPress security by component
CIBELES AI
Plugin description
CIBELES AI is a WordPress component with 1 published CVE record in this archive. The latest tracked vulnerability was published Nov 25, 2025; the highest published CVSS base score is 9.8.
Plugin slug:
cibeles-aiLatest vulnerability
CVE-2025-13595: CIBELES AI: Dangerous file upload
CIBELES AI is affected by dangerous file upload. The vulnerable path is reachable without authentication. Successful exploitation can place attacker-controlled executable content on the server and may lead to full site compromise. The public source does not disclose the vulnerable endpoint, action, parameter or function, so the precise input path remains unknown.
| Safe version |
|
||
|---|---|---|---|
| Nov 25, 2025 |
CVE-2025-13595
CIBELES AI: Dangerous file upload
CIBELES AI is affected by dangerous file upload. The vulnerable path is reachable without authentication. Successful exploitation can place attacker-controlled executable content on the server and may lead to full site compromise. The public source does not disclose the vulnerable endpoint, action, parameter or function, so the precise input path remains unknown.
|
See mitigation notes |
CVE9.8
NVDPending
|