CVE-2025-13374

CRITICAL

Kalrav AI Agent <2.3.3 - File Upload

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2025-13374. PoCs published by d0n601.

AI-analyzed exploit summary This is a functional exploit for CVE-2025-13374, demonstrating unauthenticated arbitrary file upload in the Kalrav AI Agent WordPress plugin (≤2.3.3). The PoC uploads a PHP shell via the vulnerable `kalrav_upload_file` AJAX endpoint and verifies remote code execution.

Description

The Kalrav AI Agent plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the kalrav_upload_file AJAX action in all versions up to, and including, 2.3.3. This makes it possible for unauthenticated attackers to upload arbitrary files on the affected site's server which may make remote code execution possible.

Exploits (1)

nomisec WORKING POC
by d0n601 · poc
https://github.com/d0n601/CVE-2025-13374

This is a functional exploit for CVE-2025-13374, demonstrating unauthenticated arbitrary file upload in the Kalrav AI Agent WordPress plugin (≤2.3.3). The PoC uploads a PHP shell via the vulnerable `kalrav_upload_file` AJAX endpoint and verifies remote code execution.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Kalrav AI Agent WordPress plugin ≤2.3.3
No auth needed
Prerequisites: Target running vulnerable Kalrav AI Agent plugin · Network access to WordPress admin-ajax.php endpoint
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Scores

CVSS v3 9.8
EPSS 0.0106
EPSS Percentile 59.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact total

Details

CWE
CWE-434
Status published
Products (1)
irisideatechsolutions/Kalrav AI Agent < 2.3.3
Published Jan 24, 2026
Tracked Since Feb 18, 2026