Input validation vulnerability in AIKCT Engine Chatbot, ChatGPT, Gemini, GPT-4o Best AI Chatbot 1.6.2

The AIKCT Engine Chatbot, ChatGPT, Gemini, and GPT-40 are WordPress plugins that allow websites to have AI chatbots. However, versions up to 1.6.2 are at risk of being hacked by attackers who are not logged in. This is because the plugin does not check for a special code called a nonce, which helps protect the settings of the plugin. If an attacker can trick a website administrator into clicking on a link, they can change the chatbot’s settings without permission.

Detected in:

AIKCT Engine Chatbot fixed vulnerable versions:
AIKCT Engine Chatbot, ChatGPT, Gemini, GPT-4o Best AI Chatbot fixed vulnerable versions: >= * <= 1.6.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.