Description
WordPress Plugin YaySMTP-Simple WP SMTP Mail is prone to an information disclosure vulnerability. Attackers can exploit this issue to obtain sensitive information that may help in launching further attacks. WordPress Plugin YaySMTP-Simple WP SMTP Mail version 2.2 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.2.1 or latest
References
Related Vulnerabilities
Magento CVE-2019-8137 Vulnerability (CVE-2019-8137)
WordPress 4.9.x Multiple Vulnerabilities (4.9 - 4.9.13)
Sqlite Permissions, Privileges, and Access Controls Vulnerability (CVE-2015-6607)
WordPress Plugin WordPress File Upload Multiple Vulnerabilities (2.7.6)
CakePHP Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2020-15400)