The weMail plugin for WordPress has a security weakness that allows data to be changed without permission. This is because the connect_notice() function does not have a check in place for the proper capabilities. This means that people who are not logged in can dismiss important notices.