CVE-2026-57719: WordPress Aimogen Pro plugin <= 2.8.3 - Arbitrary File Upload vulnerability
Unrestricted Upload of File with Dangerous Type vulnerability in CodeRevolution Aimogen Pro aimogen-pro allows Using Malicious Files.This issue affects Aimogen Pro: from n/a through <= 2.8.3.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Compensating control
For WordPress Aimogen Pro plugin versions up to and including 2.8.3, prevent exploitability by restricting or removing any access to the plugin's file upload functionality (e.g., limit access to authenticated/admin users only) until the plugin is upgraded.
Event History
Frequently Asked Questions
What is the severity of CVE-2026-57719?
CVE-2026-57719 has a critical severity rating of 10.
What does CVE-2026-57719 affect?
CVE-2026-57719 affects the Aimogen Pro plugin for WordPress version 2.8.3 and earlier.
What type of vulnerability is identified in CVE-2026-57719?
CVE-2026-57719 is classified as an Arbitrary File Upload vulnerability.
How can I mitigate CVE-2026-57719?
To mitigate CVE-2026-57719, update the Aimogen Pro plugin to a version later than 2.8.3.
What consequences can arise from CVE-2026-57719?
Exploitation of CVE-2026-57719 can allow attackers to upload malicious files, compromising the security of the WordPress site.