logo

cPanel & WHM Patch 5 High-Severity Flaws, Including 8.6 Severity File Read and SQLi

ID: 6f287a1a-fa14-5019-86c2-02393e5e4267

STIX ID: report--6f287a1a-fa14-5019-86c2-02393e5e4267

Feed Name: securityonline.info

Threat Score
75/100

Date Published: 2026-05-15

Date Updated: 2026-05-15

Author: Ddos

...
...

cPanel & WHM and WP Squared issued patches for five critical vulnerabilities (including arbitrary file read, SQL injection impacting all versions, HTTP header injection, credential-theft via DNS cluster, and team-member privilege escalation) with CVSS scores ranging from 7.1 to 8.6; affected version ranges and minimum secure versions are listed and administrators—particularly those on CentOS 6/CloudLinux 6—are urged to apply updates immediately to prevent unauthorized access and data compromise.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.