ScamLens
Technical bleeping computer · 6/19/2026

Hackers exploit info disclosure bug in Gravity SMTP WordPress plugin

This is a standalone intelligence detail page built for indexing and citation, with the summary, linked domains, and next verification paths in one place.

Quick Answer

Threat actors actively exploit an unauthenticated information disclosure vulnerability in the Gravity SMTP WordPress plugin, affecting approximately 100,000 websites. The vulnerability allows attackers to access sensitive information without authentication.

No public linked domains listed
No public scam tags listed
Intelligence grade actionable

bleeping computer

Source

MEDIUM

Importance

0

Linked Domains

0

Linked Addresses

AI Summary

Threat actors actively exploit an unauthenticated information disclosure vulnerability in the Gravity SMTP WordPress plugin, affecting approximately 100,000 websites. The vulnerability allows attackers to access sensitive information without authentication.