Unrated severityNVD Advisory· Published Jan 21, 2026· Updated Apr 7, 2026
GetSimple CMS My SMTP Contact Plugin 1.1.1 - CSRF
CVE-2021-47830
Description
GetSimple CMS My SMTP Contact Plugin 1.1.1 contains a cross-site request forgery (CSRF) vulnerability. Attackers can craft a malicious webpage that, when visited by an authenticated administrator, can change SMTP configuration settings in the plugin. This may allow unauthorized changes but does not directly enable remote code execution.
Affected products
2- Range: = 1.1.1
- Range: =1.1.1
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- www.exploit-db.com/exploits/49774mitreexploit
- www.exploit-db.com/exploits/49798mitreexploit
- www.vulncheck.com/advisories/getsimple-cms-my-smtp-contact-plugin-csrfmitrethird-party-advisory
- get-simple.infomitreproduct
News mentions
0No linked articles in our index yet.