Cybersecurity
Gravity SMTP vulnerability exposes API keys on 100k WordPress sites
A medium‑severity CVE‑2026‑4020 in the Gravity SMTP WordPress plugin lets attackers steal API keys and system details, with over 17 million exploit attempts blocked.


