Known vulnerabilities in SMTP for Amazon SES – YaySMTP
Send WordPress emails through Amazon SES server using YaySMTP
3Reported vulnerabilities
7.2Highest CVSS score
1.9.1Latest version
3,000+Active installs
What to do now
Update SMTP for Amazon SES – YaySMTP to 1.9.1 or later.
3 of these have a fixed version available. Updating resolves them.
Reported vulnerabilities
| CVE | Severity | Exploit probability |
Affected versions | Fixed in | Published |
|---|---|---|---|---|---|
| CVE-2025-3434 | High | 0.5% | 0 to 1.8 (inclusive) | 1.9 |
April 11, 2025 |
| CVE-2025-0957 | High | 0.5% | 0 to 1.8 (inclusive) | 1.9 |
February 22, 2025 |
| CVE-2025-54043 | Medium | 0.3% | 1.9 and earlier | 1.9.1 |
July 16, 2025 |