CVE · Medium

CVE-2026-57413 — Instant AI Image Generator – Create & Import Images [ai-image] < 2.1.5

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2026-57413 Instant AI Image Generator – Create & Import Images [ai-image] < 2.1.5 Medium 6.4 < 2.1.5 2.1.5 2026-07-08

CVE-2026-57413

The Instant AI Image Generator plugin for WordPress contains a flaw in versions 2.1.4 and earlier that allows authorized users with Subscriber-level permissions or higher to initiate unauthorized external network connections, potentially allowing them to access sensitive data or manipulate internal systems. This vulnerability arises due to the plugin's failure to properly validate user requests, enabling attackers to craft malicious server-side queries.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.