According to Cyanata, HashiCorp Vault, a wallet and key management tool widely used in the cryptocurrency industry, has recently been revealed to have multiple 0-Day vulnerabilities, covering core processes such as identity verification, identification, and authorization. Some of these vulnerabilities can bypass locking and multi factor authentication protection, and even allow attackers to implement remote code execution (RCE), posing a serious threat to infrastructure security. The Cyanta team has collaborated with HashiCorp to complete the repair. 23pds, Chief Information Security Officer of SlowMist Technology, recommends that relevant agencies upgrade to the latest version as soon as possible to prevent potential risks.