CVE-2026-15015
cascadiawebservices · MountDev AI MCP Connector for WordPress
The MountDev AI MCP Connector plugin for WordPress contains an authorization bypass flaw that allows unauthenticated attackers to obtain administrative OAuth tokens.
Executive summary
An authorization bypass vulnerability in the MountDev AI MCP Connector plugin permits unauthenticated attackers to gain administrative privileges by manipulating the OAuth flow.
Vulnerability
This vulnerability stems from a failure to verify user authorization during the OAuth process. Unauthenticated attackers can exploit the dynamic client registration endpoint to register malicious clients and subsequently obtain administrator-bound tokens.
Business impact
This vulnerability grants an attacker full administrative-equivalent access to the WordPress site, including control over user accounts, site configuration, and sensitive content. Given the CVSS score of 9.8, the business impact is extreme, as it effectively nullifies existing authentication controls and allows for total site takeover and data breach.
Remediation
Immediate Action: Update the MountDev AI MCP Connector plugin to version 1.6.2 or later immediately.
Proactive Monitoring: Audit administrative user accounts for suspicious activity or unauthorized account creation that may have occurred during the period the plugin was vulnerable.
Compensating Controls: Ensure that sensitive administrative endpoints are restricted by IP address or secondary authentication mechanisms if they are accessible via the plugin's tool surface.
Exploitation status
Public Exploit Available: Unknown
Analyst recommendation
The risk of unauthorized administrative access is critical. Organizations using the MountDev AI MCP Connector must apply the security update immediately. If patching is delayed, it is highly recommended to disable the plugin to prevent potential exploitation of the vulnerable OAuth endpoints.