Jetpack VaultPress

VaultPress plugin is no longer supported for new customers and recommends using Jetpack Security for real-time backups, malware scanning, anti-spam comment protection, and a new Web Application Firewall (WAF) for WordPress site security.

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Input validation vulnerability in Jetpack VaultPress 1.9

    Fixed

    The VaultPress plugin for WordPress is not secure in versions up to and including 1.9. Unauthenticated attackers can use a feature called openssl_verify to run code on the server, which could cause h...

    Read More
  • Input validation vulnerability in Jetpack VaultPress 1.8.6

    Fixed

    The VaultPress plugin for WordPress has a security flaw that lets attackers run code on the server. This can be done by unauthenticated attackers, meaning anyone can do it. To make it work, attackers...

    Read More