Input validation vulnerability in POST SMTP Mailer – Email log, Delivery Failure Notifications and Best Mail SMTP for WordPress 2.1.3

The Post SMTP Mailer/Email Log plugin for WordPress is not secure in versions up to and including 2.1.3. This means that people with administrative access and higher can inject malicious code into pages that will run automatically when someone visits the page. This is called Stored Cross-Site Scripting and it is caused by a lack of protection for user input and output.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.