Executive brief
A vulnerability in the OpenAI Chatbot for WordPress – Helper plugin allows unauthorized individuals to delete website content. This plugin is used to integrate AI-driven chat features into WordPress sites. An attacker could exploit this to remove critical business data, including posts, pages, or media files, leading to significant service disruption and loss of information.
Technical details
The OpenAI Chatbot for WordPress – Helper plugin suffers from a missing authorization vulnerability (CWE-862) in its handling of content management requests. Because the affected component fails to verify the identity or permissions of the requester, an unauthenticated remote attacker can send specially crafted requests to delete arbitrary content from the WordPress site, such as posts, pages, or media. The attack is performed over the network without requiring user interaction. As of the advisory date, no official patch has been released, and users are advised to seek mitigation through security rules or by disabling the plugin.
Affected products
- Merkulove OpenAI Chatbot for WordPress – Helper <= 1.1.4
Timeline
- 2025-10-22: other: Reported by Denver Jackson
- 2026-06-29: advisory: Patchstack advisory published
- 2026-07-02: disclosed: CVE published to NVD