Find notable cyber news and cases, enriched with sources, timelines, and signals.

CPanel & WHM security patch release for CVE-2026-65643

Security Patch Release
First reported
Last updated
Happening score
H score 46
1 unique sources, 1 articles

Summary

Hide ▲

cPanel released patched builds for CVE-2026-65643 in cPanel & WHM, closing a flaw that could let an authenticated domain user reach root code execution on supported servers.

Related Happenings

Adobe security patch release for CVE-2026-48362

Security Patch Release
H score43 First: 11.08.2026 19:50 Last: 11.08.2026 19:50 Sources 1

About this happening: Adobe shipped a priority 1 update for ColdFusion that fixes 15 security defects, including flaws that could enable arbitrary code execution and application D...

RabbitMQ maintainers security patch release for CVE-2026-57219

Security Patch Release
H score29 First: 14.07.2026 16:48 Last: 14.07.2026 16:48 Sources 1

About this happening: RabbitMQ maintainers released fixed versions for multiple supported release lines, closing two access-control flaws that could expose OAuth client secrets and cross-te...

CISA KEV order for FCEB agencies on LiteSpeed cPanel flaw

Public Sector Action
H score36 First: 16.06.2026 13:47 Last: 16.06.2026 13:47 Sources 1

About this happening: CISA added the LiteSpeed cPanel user-end plugin flaw to KEV and ordered Federal Civilian Executive Branch agencies to secure systems within three days under ...

CISA KEV mitigation for LiteSpeed cPanel Plugin (CVE-2026-54420)

Advisory/Mitigation
H score38 First: 16.06.2026 08:41 Last: 16.06.2026 08:41 Sources 1

About this happening: CISA put CVE-2026-54420 in LiteSpeed cPanel Plugin on the KEV catalog, ordering FCEB agencies to apply fixes by June 18, 2026. The flaw is a CVSS 8.5 privile...

LiteSpeed cPanel user-end plugin urgent security update (CVE-2026-48172)

Security Patch Release
H score42 First: 27.05.2026 13:06 Last: 27.05.2026 13:06 Sources 1

About this happening: LiteSpeed released urgent security updates for the cPanel user-end plugin after CVE-2026-48172 was found to be actively exploited, reducing exposure for systems ru...

Latest development: 16.06.2026 13:47

CISA added CVE-2026-48172/CVE-2026-54420 in the LiteSpeed cPanel user-end plugin to the Known Exploited Vulnerabilities Catalog and ordered Federal Civilian Executive Branch agencies to secure affected servers within three days under BOD 26-04. The affected plugin versions before 2.4.8 are described as actively exploited, with FTP or web shell access enabling root escalation on shared hosting servers running CloudLinux/CageFS.

Timeline

  1. 28.08.2026 12:45 2 articles · 2h ago

    cPanel patches a root code execution flaw in cPanel & WHM

    Mitigation Patch Update

    cPanel released fixed builds for CVE-2026-65643 in cPanel & WHM and WP Squared, addressing a flaw in domain parking and addon domain handling that could let an authenticated account holder create arbitrary files on the server and reach code execution as the root user. The patched versions include 11.110.0.141, 11.134.0.53, 11.136.0.37, 11.138.0.2, and 11.138.1.7.

    Show sources
  2. 28.08.2026 12:45 1 articles · 2h ago

    CVE-2026-65643 has no published CVE record and is missing from CISA KEV

    Technical Analysis Update

    On August 28, 2026, the CVE Program's record store still showed no published record for CVE-2026-65643, the customer notification carried no CVSS score, and CISA's Known Exploited Vulnerabilities catalog version released on August 27, 2026 did not list the flaw.

    Show sources