The AI Engine plugin for WordPress has a security issue that allows hackers to inject malicious code through a specific parameter. This affects all versions up to and including 2.4.7. The problem is caused by inadequate protection and preparation of the user input and existing database queries. This could lead to unauthorized access and extraction of sensitive data by attackers who have Administrator-level access or higher.