Input validation vulnerability in SMTP Mail 1.1.14

The WordPress SMTP Mail plugin is vulnerable to a type of security issue known as “Reflected Cross-Site Scripting”. This means that if a user clicks on a link from an untrusted location, malicious web scripts could be executed in pages using the plugin. The vulnerability affects versions of the plugin up to and including version 1.1.14, because the plugin does not properly filter or prevent the input of malicious scripts.

Detected in:

SMTP Mail open vulnerable versions: >= * <= 1.1.14

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.