CVE-2026-4020: Gravity SMTP WordPress Plugin - Sensitive Information Exposure
HoneyLabs honeypots recorded 41 probes matching CVE-2026-4020 from 8 distinct source IP addresses in the last 7 days. Severity is rated HIGH.
Request paths that identify it
- /wp-json/gravitysmtp/v1/tests/mock-data?page=gravitysmtp-settings
- /wp-json/gravitysmtp/v1/tests/mock-data
Addresses probing it
| Source IP | Probes | Network | Country |
|---|---|---|---|
| 195.128.248.33 | 18 | Virtual Systems LLC | Ukraine |
| 45.148.10.123 | 6 | Techoff Srv Limited | The Netherlands |
| 103.153.183.69 | 6 | SnTHostings | United States |
| 103.168.67.159 | 3 | DIGI VPS | United States |
| 195.178.110.105 | 3 | Techoff Srv Limited | Bulgaria |
| 195.178.110.102 | 3 | Techoff Srv Limited | Bulgaria |
| 185.177.72.100 | 1 | Bucklog SARL | France |
| 185.177.72.38 | 1 | Bucklog SARL | France |
Networks it comes from
| ASN | Organisation | Probes | Source IPs |
|---|---|---|---|
| AS6698 | Virtual Systems LLC | 18 | 1 |
| AS48090 | Techoff Srv Limited | 12 | 3 |
| AS140947 | SnTHostings | 6 | 1 |
| AS142430 | DIGI VPS | 3 | 1 |
| AS211590 | Bucklog SARL | 2 | 2 |
Captured requests
- /wp-json/gravitysmtp/v1/tests/mock-data?page=gravitysmtp-connections
- /wp-json/gravitysmtp/v1/tests/mock-data?page=gravitysmtp-settings
- /wp-json/gravitysmtp/v1/tests/mock-data
HTTP client fingerprints (JA4H)
- ge11nn0400_88d30a62b7ad
- ge11nn05en_504771be86ae
- ge11nn14en_068ebe3632ec
- ge11nn0400_cf1edba2959c
CVE report
CVE report
Open a specific CVE from the CVE tracker.