CVE-2026-84779: WordPress Agentimus – AI SEO, llms.txt & MCP for AI Agents plugin <= 1.51.0 - Broken Access Control vulnerability
Published Sep 3, 2026
·Updated
Subscriber Broken Access Control in Agentimus – AI SEO, llms.txt & MCP for AI Agents <= 1.51.0 versions.
Affected Software
1 affected component
WordPress Agentimus – AI SEO, llms.txt & MCP for AI Agents<=1.51.0
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
WordPress Agentimus – AI SEO, llms.txt & MCP for AI Agents Pluginto a version that resolves this vulnerability.Fixed in 1.51.1
Event History
Sep 3, 2026
CVE Published
via MITRE·04:31 PM
Data Sourced
via MITRE·04:31 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What level of access does an attacker need to exploit this issue?
An attacker needs Subscriber-level access to a WordPress site using an affected version of the plugin. No user interaction is required.
2
Which security impacts are indicated?
The vulnerability is rated high severity with a CVSS score of 8.1. It may allow impacts to confidentiality and integrity, while availability impact is not indicated.