SQL Injection Weakness in YaySMTP Plugin by YayCommerce
CVE-2025-53256
7.6HIGH
What is CVE-2025-53256?
An SQL Injection vulnerability in YaySMTP by YayCommerce allows remote attackers to execute arbitrary SQL commands via unsanitized inputs. This flaw affects versions of YaySMTP from n/a to 6.8.1, potentially compromising the integrity of the database. Protect your site against unauthorized access and data breaches by updating vulnerable versions.
Affected Version(s)
YaySMTP <= 6.8.1