WTF??? – UPDATE 7/29/25 @12:25 p.m.

I seen this on MSN today so thought you might like to see it too.

https://www.securityweek.com/flaw-allowing-website-takeover-found-in-wordpress-plugin-with-400k-installations/


UPDATE

I had to go out to the doc this morning and after getting there found out my appt. is August 29th not today so I went and got my oil changed, came back and dived into this a little more. This is how I understand it.

FROM WORDPRESS SUPPORT

To check your email service, you can go to your site’s dashboard, then navigate to Upgrades β†’ Emails (or Hosting β†’ Emails if you’re using WP Admin). This page will show you any email services currently set up with your domain – I did this and I am good, yippie!!!

From the WordPress directory- Post SMTP is a free and next-generation WordPress SMTP plugin that has everything you need to improve the email deliverability of your WordPress site.

By default, WordPress sends emails using the PHP mail function, which isn’t ideal because most WordPress hosting servers don’t support PHP email.

On top of that, most email clients, such as Outlook (Office 365 / Microsoft365), Yahoo, Gmail, Brevo, Zoho, Amazon SES, Mailgun, etc., automatically block or mark spam emails that lack proper authentication.

That’s why you need to install the Post SMTP plugin on your WordPress site to configure the SMTP mailer of your choice.

This mail delivery system is a plug-in that you have to install to your theme. So if you haven’t installed it I’m thinking it’s all good.

No images, just a link worth looking at as it affects over 400,000 WordPress accounts.


7/25 Β©www.dawgydaddyresponds.org