Skip to main content
Loading…
    CVE-2026-4020 — The Gravity SMTP plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.1.4. This is due to a REST API endpoint registered at /wp-json/gravitysmtp — CVE Database · The Intelligence Room