← WordPress Vulnerabilities
WordPress security by component

CIBELES AI

CIBELES AI is a WordPress component with 1 published CVE record in this archive. The latest tracked vulnerability was published Nov 25, 2025; the highest published CVSS base score is 9.8.

Plugin slug: cibeles-ai

CVE-2025-13595: CIBELES AI: Dangerous file upload

CIBELES AI is affected by dangerous file upload. The vulnerable path is reachable without authentication. Successful exploitation can place attacker-controlled executable content on the server and may lead to full site compromise. The public source does not disclose the vulnerable endpoint, action, parameter or function, so the precise input path remains unknown.

PublishedNov 25, 2025
Safe version guidanceSee mitigation notes
Published vulnerabilities for cibeles-ai
Safe version
Nov 25, 2025 CVE-2025-13595
CIBELES AI: Dangerous file upload
CIBELES AI is affected by dangerous file upload. The vulnerable path is reachable without authentication. Successful exploitation can place attacker-controlled executable content on the server and may lead to full site compromise. The public source does not disclose the vulnerable endpoint, action, parameter or function, so the precise input path remains unknown.
See mitigation notes
CVE9.8
NVDPending