logo

CISA Issues Urgent Warning on Actively Exploited LiteSpeed cPanel Plugin Vulnerability

ID: 7575ce47-a8ba-554e-89b2-3a2408c73029

STIX ID: report--7575ce47-a8ba-554e-89b2-3a2408c73029

Feed Name: ThreatCluster

Threat Score
86/100

Date Published: 2026-06-16

Date Updated: 2026-06-19

...
...

CISA warns of an actively exploited privilege-escalation vulnerability (CVE-2026-54420) in the LiteSpeed cPanel user-end plugin that allows attackers with FTP or web shell access to obtain root on CloudLinux/CageFS shared hosting; federal agencies were directed to remediate within three days and a patch is available in version 2.4.8.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.