The YaySMTP plugin for WordPress has a security issue that could allow hackers to access sensitive information. This is because the plugin does not properly protect against SQL attacks, which means that attackers with high-level access can add their own malicious code to the database. If you are using versions 2.6.4 or below, your website may be at risk.