Post SMTP plug-in is a technology platform tracked across 2 threat clusters and 1 intelligence report mention on ThreatCluster. First observed November 5, 2025; most recent activity November 5, 2025.
Post SMTP is a WordPress plug-in used to handle SMTP email delivery for WordPress sites. A critical flaw in this plug-in has been disclosed, potentially allowing an attacker to take over affected sites and compromising up to 400,000 WordPress installations, underscoring the risk posed by vulnerable third-party plugins in the WordPress ecosystem.
A security vulnerability in the Post SMTP plugin, used in over 400,000 WordPress installations, has been discovered that enables unauthenticated attackers to take control of administrator accounts and entire WordPress…
A critical vulnerability in the Post SMTP plugin, used by over 400,000 WordPress sites, has been discovered, allowing unauthenticated attackers to hijack administrator accounts. The flaw enables attackers to access…