cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2024-0699,https://securityvulnerability.io/vulnerability/CVE-2024-0699,Arbitrary File Upload Vulnerability in AI Engine: Chatbots Plugin for WordPress,"The AI Engine: Chatbots, Generators, Assistants, GPT 4 plugin for WordPress suffers from a vulnerability due to inadequate file type validation in the 'add_image_from_url' function. This affects all versions up to and including 2.1.4, allowing authenticated users with Editor access or higher to upload arbitrary files to the server. This unauthorized file upload could lead to significant security risks, including the possibility of remote code execution, compromising the integrity and availability of the affected website.",Wordpress,"AI Engine: Chatbots, Generators, Assistants, GPT 4 and more!",7.2,HIGH,0.0012600000482052565,false,,false,false,false,,false,false,2024-02-05T21:21:32.230Z,0