#gravity


Hackers Exploit Gravity SMTP WordPress Plugin Bug to Expose API Keys

Jun 20, 2026 // 13:21

Threat actors are exploiting a recently patched security flaw impacting Gravity SMTP, a WordPress plugin that’s installed on about 100,000 sites. The vulnerability, tracked as […]

Hackers exploit info disclosure bug in Gravity SMTP WordPress plugin

Jun 19, 2026 // 23:57

Threat actors are exploiting an unauthenticated information disclosure vulnerability in the WordPress plugin Gravity SMTP, active on 100,000 sites. The flaw is tracked as CVE-2026-4020 […]