cvedb.io
CVE-2023-0405
MEDIUM · CVSS 4.3
EPSS exploitation probability: 0%
Published 2023-02-13T15:15:22.303 · Last modified 2026-06-17T05:25:29.047

Summary

The GPT AI Power: Content Writer & ChatGPT & Image Generator & WooCommerce Product Writer & AI Training WordPress plugin before 1.4.38 does not perform any kind of nonce or privilege checks before letting logged-in users modify arbitrary posts.

Affected products

gptaipower — gpt_ai_power

Does this affect you?

Add your gear to cvedb and we'll alert you only when gptaipower ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.