天下漏洞,尽知其名
MEDIUM

CVE-2026-91108 WordPress Alt Text AI 插件授权绕过漏洞

影响订阅者及以上用户可篡改任意文章内容并消耗 API 额度

AI 研判

WordPress 插件 Alt Text AI(用于自动生成图片 alt 文本)存在授权绕过漏洞。插件未正确校验用户是否有权执行相关操作,导致已认证的低权限用户可越权调用功能。

影响范围

Alt Text AI

影响 Alt Text AI 插件所有版本,包括 1.10.41 及之前版本。

漏洞详情

漏洞属于授权绕过(缺失授权校验)。插件执行操作时未验证用户权限,且所需 nonce 会输出在所有后台页面(包括订阅者可访问的 /wp-admin/profile.php),使任意已认证用户都能轻易获取 nonce 并调用该操作。攻击者可借此覆盖站点上任意文章或页面的 post_content,注入由攻击者关键词影响的 LLM 生成文本。

利用条件与风险

利用前提是攻击者拥有订阅者及以上级别的已认证账户,实战中可造成黑帽 SEO 内容篡改,并消耗站点所有者的付费 AltText.ai API 额度。

修复建议

暂无公开信息,建议关注厂商更新并升级至修复版本;临时缓解可限制低权限用户注册、审查后台账户权限,或暂时停用该插件。

原始情报

The Alt Text AI – Automatically generate image alt text for SEO and accessibility plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 1.10.41. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible for authenticated attackers, with subscriber-level access and above, to overwrite the post_content of any post or page on the site — including content they do not own — with LLM-generated text influenced by attacker-controlled keywords, enabling black-hat SEO manipulation and unauthorized consumption of the site owner’s paid AltText.ai API credits. The nonce required to invoke the action is emitted on every admin page including /wp-admin/profile.php, which is accessible to Subscribers, making the nonce trivially obtainable by any authenticated user.