CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

CVE-2026-15982

criticalCVSS 9.8covered by 1 sourcefirst seen 2026-07-17
The Aimogen Pro - All-in-One AI Content Writer, Editor, ChatBot & Automation Toolkit plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 2.8.4. This is due to due to a missing capability check on the 'aiomatic_call_google_ai_function' function. This makes it possible for unauthenticated attackers to leverage the 'aimogen_wp_god_mode' tool to clear function blacklists and execute arbitrary PHP functions, such as creating administrator accounts.

⚡ Watch CVE-2026-15982

Get an email if CVE-2026-15982 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.

Exploitation outlook

Advisory coverage (1)

External references

NVD record for CVE-2026-15982

CVE.org record

Embed the live status

CVE-2026-15982 live status badge — this badge updates automatically when the KEV or exploit status changes. How to embed it →

[![CVE-2026-15982 status](https://www.csirts.com/badge/CVE-2026-15982)](https://www.csirts.com/cve/CVE-2026-15982)