📦 Post Smtp

by Wpexperts

🔍 What is Post Smtp?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-6875

CRITICAL CVSS 9.8 Jan 11, 2024

This vulnerability allows unauthenticated attackers to bypass authentication on the POST SMTP Mailer WordPress plugin's REST API endpoint due to a type juggling issue. Attackers can reset the API key ...

CVE-2025-0521

HIGH CVSS 7.2 Feb 18, 2025

The Post SMTP WordPress plugin has a stored cross-site scripting vulnerability that allows unauthenticated attackers to inject malicious scripts into email from/subject fields. These scripts execute w...

CVE-2023-52233

HIGH CVSS 8.6 Jun 11, 2024

This CVE describes a Missing Authorization vulnerability in the Post SMTP Mailer/Email Log WordPress plugin that allows unauthorized access to API endpoints. Attackers can exploit this to access sensi...

CVE-2023-6620

HIGH CVSS 7.2 Jan 15, 2024

This SQL injection vulnerability in the POST SMTP Mailer WordPress plugin allows authenticated administrators to execute arbitrary SQL commands on the database. It affects WordPress sites using vulner...

CVE-2023-7027

HIGH CVSS 7.2 Jan 3, 2024

This vulnerability allows unauthenticated attackers to inject malicious scripts into WordPress sites using the POST SMTP Mailer plugin. When users visit pages containing the injected scripts, arbitrar...

CVE-2023-3179

HIGH CVSS 8.8 Jul 17, 2023

This CSRF vulnerability in the POST SMTP Mailer WordPress plugin allows attackers to trick authenticated administrators into resending emails to attacker-controlled addresses. Attackers could exploit ...

CVE-2024-13844

MEDIUM CVSS 4.9 Mar 8, 2025

The Post SMTP WordPress plugin contains a SQL injection vulnerability in the 'columns' parameter that allows authenticated administrators to execute arbitrary SQL queries. This can lead to sensitive d...