Skip to content

Known CVE

Mail Mint < 1.19.5 - Unauthenticated Email Disclosure

Mail Mint WordPress plugin < 1.19.5 contains an information disclosure vulnerability caused by lack of authorization in a REST API endpoint, letting unauthenticated users retrieve email addresses of blog users, exploit requires no authentication.

CVE-2026-2025

High2026CVSS 7.5CWE-200

cve2026 · wordpress · wp-plugin · mail-mint · exposure · unauth · vuln · vkev

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website