The POST SMTP Mailer plugin for WordPress has a security vulnerability in versions up to 2.0.20. This vulnerability can allow attackers to export a CSV file without authentication. An attacker can do this by getting a site administrator to click on a malicious link. To protect against this vulnerability, make sure your plugin version is up to date.