Rustaurius Ultimate WP Mail Open Redirect Vulnerability

Vulnerability

A URL redirection vulnerability allowing untrusted site redirects (open redirect) has been identified in the Rustaurius Ultimate WP Mail plugin for WordPress, affecting versions through 1.3.6. This vulnerability could be exploited for phishing attacks by redirecting users to malicious sites under the guise of a legitimate one.

Impact

Exploitation of this vulnerability could lead to phishing incidents, with users being redirected to malicious sites.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.8
exploitability
6.4
remediation
0.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.