Imperva Customers Protected Against CVE-2026-41940 in cPanel & WHM
ID: 360cf84c-2326-533b-89eb-ba0bb6d5f68a
STIX ID: report--360cf84c-2326-533b-89eb-ba0bb6d5f68a
Feed Name: Security Boulevard
Threat Score
The report describes CVE-2026-41940, a critical authentication bypass in cPanel & WHM (CVSS 9.8) that can give unauthenticated attackers administrative access; Imperva observed ~4,000 attack requests across 15 industries and 17 countries (predominantly US) and recommends immediate patching, session purging, log review, and temporary network mitigations while noting Imperva WAF protections.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
