CVE · Critical

CVE-2025-48133 — Uncanny Automator – AI + Automation for WordPress | AI Agent, AI Page Builder, Free AI Usage Included [uncanny-automator] < 6.5.0

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2025-48133 Uncanny Automator – AI + Automation for WordPress | AI Agent, AI Page Builder, Free AI Usage Included [uncanny-automator] < 6.5.0 Missing Authorization Critical 9.8 < 6.5.0 6.5.0 2025-06-02

CVE-2025-48133

The Uncanny Automator plugin for WordPress contains a security flaw that allows unauthorized users to execute certain actions without proper authentication due to a lack of capability checks on a specific function in versions prior to 6.4.0.2, potentially leading to unintended consequences. This vulnerability enables unverified individuals to take unauthorized steps within the system.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.