Product
An unauthenticated SSRF vulnerability in the Mailgun for WordPress plugin (<= 2.2.0) allows attackers to perform unauthorized API requests and potentially intercept password reset emails, leading to account takeover.