CVE-2025-22800: Wpexperts Post Smtp

High severity, CVSS 8.8. EPSS: 0.4% chance of exploitation in the next 30 days.

Missing Authorization vulnerability in Saad Iqbal Post SMTP post-smtp allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Post SMTP: from n/a through <= 2.9.11.

Affected products

  • Wpexperts Post Smtp: before 2.9.12 (fixed in 2.9.12)

Published 2025-01-13. Last modified 2026-06-17.