CVE-2026-19775 | allterraindeveloper OpenStation Plugin up to 1.1.7 on WordPress AI Feature Settings os-settings ai.enabled authorization
A vulnerability marked as problematic has been reported in allterraindeveloper OpenStation Plugin up to 1.1.7 on WordPress. This impacts an unknown function of the file /desktop-mode/v1/os-settings of the component AI Feature Settings. The manipulation of the argument ai.enabled leads to authorization bypass.
This vulnerability is uniquely identified as CVE-2026-19775. The attack is possible to be carried out remotely. No exploit exists.VulDB Recent EntriesRead More