
Critical vulnerability in Post SMTP plugin risks full site takeover, over 400k sites use it, and nearly half remain unpatched. A critical vulnerability, tracked as CVE-2025-24000 (CVSS of 8.8) in the Post SMTP WordPress... https://f.mtr.cool/wsfjdhhwir
Post summary
The post announces the discovery of CVE‑2025‑24000, a critical vulnerability (CVSS 8.8) in the Post SMTP WordPress plugin, warning that it could allow full site takeover and noting that many sites remain unpatched.
