CISA warns of another cPanel plugin flaw exploited in attacks
ID: 565ac417-c09c-5398-8c1b-cf891d0b724f
STIX ID: report--565ac417-c09c-5398-8c1b-cf891d0b724f
Feed Name: Bleeping Computer
Threat Score
CISA has ordered federal agencies to remediate an actively exploited high-severity LiteSpeed cPanel user-end plugin vulnerability (CVE-2026-48172 / CVE-2026-54420) within three days after vendor reports and proof of active exploitation; the flaw enables attackers with FTP or web-shell access to escalate to root on shared hosting and affects plugin versions prior to 2.4.8, with vendor-provided detection commands and an urgent update released.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
