Tools AI Risk Radar ai-incident-0066
Incident record
AI vulnerability pipeline finds a SQL-injection flaw in a WordPress plugin
- Severity
- High
- Status
- Research
- Type
- AI-Found Vuln
- Target
- WordPress plugin
- Actor
- researcher
- CVE
- CVE-2026-3985
What happened
Intruder published research on an automated pipeline that pairs the Joern code scanner with large language models, Claude Sonnet triaging findings and Claude Opus writing exploits, with no human in the loop. The system independently found a blind SQL-injection flaw in the Creative Mail plugin, which Intruder describes as having more than 300,000 users, giving an attacker read access to the database including administrator password hashes and secret tokens. Exploitation also requires WooCommerce installed alongside it.
WordPress.org closed the plugin on 14 May 2026 for a security issue; it is still closed, still at version 1.6.9, and no fixed release has appeared. CVE-2026-3985 is credited to Dmitrii Ignatyev of CleanTalk, who reported the flaw to Wordfence first and had it disclosed publicly on 19 May 2026. Intruder's own submission, filed on 27 April 2026, was ruled a duplicate. Wordfence scored it CVSS 3.1 7.5.
Sources
- Intruder: a 0-day vending machine, no Mythos necessary (11 June 2026)www.intruder.io/research/a-0-day-vending-machine-no-mythos-n…
- CleanTalk research: CVE-2026-3985, Creative Mail unauthenticated SQL injectionresearch.cleantalk.org/cve-2026-3985/
- WordPress.org: the Creative Mail plugin page, closed since 14 May 2026wordpress.org/plugins/creative-mail-by-constant-contact/
One record from the AI Risk Radar, maintained by the Security Desk. Data: CSV · JSON ·RSS · CC BY 4.0 with attribution to YFarmX.Tracker updated · 18 September 2026