Description

The WP Mail Gateway plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the wmg_save_provider_config AJAX action in all versions up to, and including, 1.8. This makes it possible for authenticated attackers, with Subscriber-level access and above, to update SMTP settings and redirect mail which can be used for privilege escalation by triggering a password reset email and using that to access and administrator's account.

INFO

Published Date :

2026-05-02T04:27:45.687Z

Last Modified :

2026-05-04T12:46:11.007Z

Source :

Wordfence
AFFECTED PRODUCTS

The following products are affected by CVE-2026-6963 vulnerability.

Vendors Products
Shahariaazam
  • Wp Mail Gateway
Wordpress
  • Wordpress

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact