CISA Issues Urgent Warning on Actively Exploited LiteSpeed cPanel Plugin Vulnerability
ID: 7575ce47-a8ba-554e-89b2-3a2408c73029
STIX ID: report--7575ce47-a8ba-554e-89b2-3a2408c73029
Feed Name: ThreatCluster
Threat Score
CISA warns of an actively exploited privilege-escalation vulnerability (CVE-2026-54420) in the LiteSpeed cPanel user-end plugin that allows attackers with FTP or web shell access to obtain root on CloudLinux/CageFS shared hosting; federal agencies were directed to remediate within three days and a patch is available in version 2.4.8.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
