This weekend we discovered a possible security issue in all versions of the VaultWiki 3 series, in which under certain conditions, a malicious user might be able to execute arbitrary code against the web server.
VaultWiki 3.0.20 fixes this issue as well as a number of other minor issues.
ALL versions of VaultWiki Premium prior to 3.0.20 are vulnerable, including VaultWiki Lite. If you currently have VaultWiki installed we urge you to upgrade IMMEDIATELY to protect your site.
For users who have expired licenses, Patch Level releases are available for versions released in the past year:
- 3.0.19 Patch Level 1
- 3.0.18 Patch Level 1
- 3.0.17 Patch Level 1
For Patch Level variations of this release, simply upload the files over your current installation to apply the fix.
Customers with a valid license can download the patch through our Members Area: https://www.vaultwiki.org/members/