PT-2025-46569 · WordPress · Alt Text Generator Ai

Abhirup Konwar

·

Published

2025-11-12

·

Updated

2025-11-12

·

CVE-2025-12113

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions Alt Text Generator AI – Auto Generate & Bulk Update Alt Texts For Images plugin for WordPress versions through 1.8.3
Description The Alt Text Generator AI plugin for WordPress is susceptible to unauthorized data loss. A missing capability check within the atgai delete api key() function allows authenticated attackers with Subscriber-level access or higher to delete the API key associated with the site.
Recommendations Update the Alt Text Generator AI plugin to a version newer than 1.8.3.

Fix

Missing Authorization

Weakness Enumeration

Related Identifiers

CVE-2025-12113

Affected Products

Alt Text Generator Ai