← WordPress Vulnerabilities
WordPress security by component

WP Vault

WP Vault is a WordPress component with 1 published CVE record in this archive. The latest tracked vulnerability was published Jun 09, 2026; the highest CVE/CNA score is 6.9.

Plugin slug: wp-vault

CVE-2016-20064: WP Vault: Filesystem traversal

WP Vault is affected by filesystem traversal. The vulnerable path is reachable without authentication. A crafted path can escape the intended directory and reach files or directories elsewhere on the server. The published affected range is 0.8.6.6.

PublishedJun 09, 2026
Safe version guidanceSee mitigation notes
Safe version
Jun 09, 2026 CVE-2016-20064
WP Vault: Filesystem traversal
WP Vault is affected by filesystem traversal. The vulnerable path is reachable without authentication. A crafted path can escape the intended directory and reach files or directories elsewhere on the server. The published affected range is 0.8.6.6.
See mitigation notes
CVE6.9
NVDPending