High 7.6
2025-07-16< 1.9.1
CVE-2025-54043
Minimum safe version
1.9.1
Update to 1.9.1 or later to address 3 fixable vulnerabilities
CVE-2025-54043
SMTP for Amazon SES – YaySMTP <= 1.8 - Unauthenticated Stored Cross-Site Scripting via Email Logs
WordPress SMTP for Amazon SES Plugin <= 1.7.1 is vulnerable to Cross Site Scripting (XSS)