logo

CISA warns of another cPanel plugin flaw exploited in attacks

ID: 565ac417-c09c-5398-8c1b-cf891d0b724f

STIX ID: report--565ac417-c09c-5398-8c1b-cf891d0b724f

Feed Name: Bleeping Computer

Threat Score
80/100

Date Published: 2026-06-16

Date Updated: 2026-06-16

Author: Sergiu Gatlan

...
...

CISA has ordered federal agencies to remediate an actively exploited high-severity LiteSpeed cPanel user-end plugin vulnerability (CVE-2026-48172 / CVE-2026-54420) within three days after vendor reports and proof of active exploitation; the flaw enables attackers with FTP or web-shell access to escalate to root on shared hosting and affects plugin versions prior to 2.4.8, with vendor-provided detection commands and an urgent update released.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.