Fiche vulnérabilité
CVE-2024-7713 : faille élevée ays-pro chatgpt assistant (CVSS 7.5)
Description
The AI ChatBot with ChatGPT and Content Generator by AYS WordPress plugin before 2.1.0 discloses the Open AI API Key, allowing unauthenticated users to obtain it
En bref
- Sévérité
- Élevée (CVSS 7.5)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
- Exploitation active
- Non signalée par la CISA
- Publication
- 27 sept. 2024
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- ays-pro chatgpt assistant