CISA urges federal agencies to immediately patch CVE-2026-48172, a critical LiteSpeed cPanel plugin vulnerability exploited ...
A clever phishing scam is targeting cPanel users with a fake security advisory alerting them of critical vulnerabilities in their web hosting management panel. cPanel is administrative software ...
Web hosts are scrambling to fix the bug under active attack by hackers. One company said hackers have been abusing the bug for months.
A critical vulnerability in cPanel, the web-hosting control panel used to manage an estimated millions of servers worldwide, ...
A single missing authentication check in cPanel, the control panel that underpins millions of shared hosting accounts worldwide, has given ransomware operators a direct path to encrypt entire servers ...
CVE-2026-48172 lets cPanel users run scripts as root, affecting LiteSpeed plugin 2.3–2.4.4 and exposing servers.
LiteSpeed develops plugins for various CMS. The one for cPanel has a security vulnerability that attackers are already ...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has given U.S. federal agencies four days to secure their ...
cPanel users are being targeted in a new phishing scam that uses a fake security advisory to trick them into giving up their credentials. cPanel provides shared web hosting users with a Linux-based ...
InMotion Hosting announced the successful fleet-wide resolution of CVE-2026-41940, a critical pre-authentication ...