logo

Imperva Customers Protected Against CVE-2026-41940 in cPanel & WHM

ID: 360cf84c-2326-533b-89eb-ba0bb6d5f68a

STIX ID: report--360cf84c-2326-533b-89eb-ba0bb6d5f68a

Feed Name: Security Boulevard

Threat Score
80/100

Date Published: 2026-04-30

Date Updated: 2026-04-30

Author: Gabi Sharadin

...
...

The report describes CVE-2026-41940, a critical authentication bypass in cPanel & WHM (CVSS 9.8) that can give unauthenticated attackers administrative access; Imperva observed ~4,000 attack requests across 15 industries and 17 countries (predominantly US) and recommends immediate patching, session purging, log review, and temporary network mitigations while noting Imperva WAF protections.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.