The POST SMTP Mailer plugin for WordPress is vulnerable to a security issue in versions up to 2.5.6. This means that if someone can trick an user with certain privileges into clicking on a link, they can delete logs without being authorized to do so. This is because the plugin doesn’t properly verify the user’s identity.