The dangerous complement to WordPress puts more than 160,000 sites at risk: this is what we know




  • Post SMTP’s previous versions allowed computer pirates to read all emails
  • They could also restore the administrator password and read the notification email, obtaining access to the account
  • More than 160,000 WordPress sites are running the vulnerable version

A popular WordPress complement with hundreds of thousands of active facilities entailed a vulnerability that allowed threat actors to assume compromised websites, experts warned.

The complement is called Post SMTP, a tool that replaces WordPress’s default email function with an authenticated SMTP method, and currently has more than 400,000 active facilities.

Leave a Comment

Your email address will not be published. Required fields are marked *