← WordPress Vulnerabilities
WordPress security by component

WPO365 | MICROSOFT 365 GRAPH MAILER

WPO365 | MICROSOFT 365 GRAPH MAILER is a WordPress component with 1 published CVE record in this archive. The latest tracked vulnerability was published Feb 24, 2025; the highest CVE/CNA score is 4.7.

Plugin slug: wpo365-msgraphmailer

CVE-2025-1488: WPO365 | MICROSOFT 365 GRAPH MAILER: An open redirect

WPO365 | MICROSOFT 365 GRAPH MAILER is affected by an open redirect. The vulnerable path is reachable without authentication. A crafted link can redirect visitors from the trusted site to an attacker-controlled destination.

PublishedFeb 24, 2025
Safe version guidanceSee mitigation notes
Safe version
Feb 24, 2025 CVE-2025-1488
WPO365 | MICROSOFT 365 GRAPH MAILER: An open redirect
WPO365 | MICROSOFT 365 GRAPH MAILER is affected by an open redirect. The vulnerable path is reachable without authentication. A crafted link can redirect visitors from the trusted site to an attacker-controlled destination.
See mitigation notes
CVE4.7
NVD6.1