Directory Traversal Vulnerability in WP BackItUp Community Edition Plugin
CVE-2026-18386
4.9MEDIUM
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 10 September 2026
What is CVE-2026-18386?
The WP BackItUp Community Edition plugin for WordPress exposes a directory traversal vulnerability through the 'backup_file' parameter. This issue allows authenticated attackers with administrator-level access to read arbitrary files on the server, which may contain sensitive information. The vulnerability arises because the basename() normalization in the handler only triggers when the target path does not exist, failing to protect existing files from unauthorized access. Affected versions include all versions up to and including 2.1.0.
Affected Version(s)
WP BackItUp Community Edition 0 <= 2.1.0