Critical Site Takeover Flaw Affects 400K WordPress Sites
1. Executive Summary A newly discovered and actively exploited vulnerability in the widely used Post SMTP plugin for WordPress has put an estimated 400,000+ websites at risk of full site takeover. The vulnerability is tracked as CVE‑2025‑11833 and carries a CVSS score of 9.8 (Critical). Affected plugin versions: up to and including Version 3.6.0. The
Read More