Description
WordPress Plugin YaySMTP-Simple WP SMTP Mail is prone to an information disclosure vulnerability. Attackers can exploit this issue to obtain sensitive information that may help in launching further attacks. WordPress Plugin YaySMTP-Simple WP SMTP Mail version 2.2 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.2.1 or latest
References
Related Vulnerabilities
WebLogic CVE-2020-14557 Vulnerability (CVE-2020-14557)
Atlassian Jira Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2019-8447)
SugarCRM Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2011-3803)
WordPress Plugin WordPress Popular Posts Multiple Vulnerabilities (5.3.2)