logo

U.S. CISA adds a flaw in WebPros cPanel to its Known Exploited Vulnerabilities catalog

ID: bd841187-7942-5905-aa8a-06e7fa821841

STIX ID: report--bd841187-7942-5905-aa8a-06e7fa821841

Feed Name: Security Affairs

Threat Score
85/100

Date Published: 2026-05-03

Date Updated: 2026-05-05

Author: Pierluigi Paganini

...
...

CISA added CVE-2026-41940 — a CVSS 9.3 authentication-bypass vulnerability in cPanel/WHM — to its Known Exploited Vulnerabilities catalog after researchers and vendors reported in-the-wild exploitation and released detection tools; thousands of instances may be exposed and federal agencies were ordered to remediate by May 3, 2026.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.