Post SMTP v3.6.1 Security Update: Fix for Authorization Vulnerability

Start Using Post SMTP for Free

Email

The form has been submitted successfully!

Post SMTP Blog

Tutorials and tips to help you grow your business with WordPress

Post SMTP 3.6.1: Security Update Patches Critical Vulnerability

By Saad Durrani

November 10, 2025

Table Of Contents

At Post SMTP, we always strive to provide the best and safest SMTP experience to our users. While we have implemented rigorous security measures and conducted thorough testing of our plugin, it is true that software is never perfect.

In October, security researchers at Wordfence reported a serious authorization vulnerability in Post SMTP, putting our user base at risk.

Our engineers promptly created a security fix addressing this vulnerability. The patch was validated by Wordfence.

The Way Forward 

We strongly recommend that you kindly update to Post SMTP v3.6.1 to keep your sites protected.

All sites that have updated to Post SMTP v3.6.1 are safe.

Post SMTP invests heavily in maintaining the security of our plugin. In addition to our in-house initiatives, we have partnered with leading WordPress security communities, namely Wordfence and Patchstack, to ensure the continued safety and protection of our user base.

However, security is a collective responsibility.

We always recommend that our users use the latest version of Post SMTP. Moreover, we encourage everyone to regularly update their WordPress core, themes, and plugins to maintain the highest level of security.

👋 Having issues sending email
in WordPress? Lets Chat 👇
Scroll to Top