Unauthenticated sensitive information exposure in AI Engine WordPress plugin <= 3.1.3 exposes bearer tokens via REST API endpoints when No-Auth URL is enabled.
Log in to view the POC file snapshot cached by Shenlong Bot
Log in to view