Access violation vulnerability in Optimize Images ALT Text (alt tag) & names for SEO using AI 3.1.1

A plugin for WordPress called “Optimize Images ALT Text (alt tag) & names for SEO using AI” has a security issue in versions up to 3.1.1. This is because the plugin uses a program called cocur and does not protect a specific file, called generate-default.php, from being accessed directly. This can allow unauthorized individuals to find out the full location of the website, which can be used to help with other attacks. However, this information alone is not harmful and would require another vulnerability for any damage to occur to a website that uses this plugin.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.