StyleAI
StyleAI has one disclosed vulnerability in the WordSec catalog, all reported in 2025; it remains unpatched as of September 2026. Their average CVSS score is 5.3, and the most serious one scores 5.3 out of 10.
The most common weakness is Missing Authorization, behind 1 of the records (100%).
The one issue recorded for StyleAI has no published fix yet, which makes virtual patching the only reliable mitigation. The oldest unresolved one dates back to 2025.
All of these findings were reported by ch4r0n. StyleAI is installed on roughly 400 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 6.6.7.
CVE-2025-48139StyleAI <= 1.0.4 - Missing Authorization
Read the full analysisVulnerability Records

StyleAI
Author
relentlo
With StyleAI, you can boost your performance in organic search results without lifting a finger. StyleAI automatically analyzes and optimizes your website based on Google’s PageSpeed Insights report, pushing you ahead of the competition each week. Increasing the relevance of your website in organic search results, StyleAI will also write new blog posts each week tailored to your business and the services you offer by cleverly inserting optimal keywords. Based on your preferences, StyleAI can automatically post blog posts to your website without any manual intervention. StyleAI is a premium service and more information can be found on the website, including our terms of service and privacy policy. Before you can use StyleAI, you must sign up for an account and subscribe to the service. This plugin makes calls to our data provider usestyle.ai, which helps store our plugin technology that delivers code optimizations to your webpage. More details can be found at usestyle’s terms of service and privacy policy.
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C