Exploitation of Information Disclosure Flaw in Gravity SMTP Plugin

Hackers are taking advantage of a vulnerability in the Gravity SMTP plugin for WordPress, affecting over 100,000 websites.

3 min readCybersecurity

Cybercriminals are currently targeting a significant security flaw in the Gravity SMTP plugin for WordPress, which is installed on more than 100,000 sites. This vulnerability allows unauthorized users to access sensitive information without needing to authenticate. The issue has raised alarms among security experts, as it could lead to further attacks if not addressed promptly. Users of the plugin are urged to update to the latest version to mitigate risks. The plugin is widely used for managing email delivery, making its exploitation particularly concerning. Website owners are advised to monitor their systems closely and implement additional security measures to protect against potential breaches. The ongoing exploitation of this flaw highlights the importance of regular updates and vigilance in maintaining website security.

Cybersecurity