cPanel has patched CVE-2026-67401, a flaw that could allow an authenticated hosting account with mail-related privileges to take control of an entire server. The vulnerability involves cPanel’s EmailTrack functionality and is described as an SQL injection issue. An attacker could reportedly create arbitrary files and then execute code as the root user, potentially gaining full administrative control over the server. cPanel fixed the issue in builds 11.110.0.143, 11.134.0.55, 11.136.0.39, 11.138.0.4, and WP Squared 11.138.1.9. Administrators can update through WHM’s “Upgrade to Latest Version” option or run `/usr/local/cpanel/scripts/upcp --force` as root. However, cPanel has not provided a temporary workaround for servers that cannot immediately update. It also has not explained exactly how the SQL injection results in root-level code execution or how administrators can check whether a server was compromised before patching. There were no public exploit reports or confirmed exploitation of CVE-2026-67401 as of September 9, and the vulnerability was not listed in CISA’s Known Exploited Vulnerabilities catalog. Nevertheless, this does not rule out attacks. Recent cPanel flaws have also allowed ordinary hosting accounts to escalate privileges to root, with exploit repositories reportedly available for two earlier vulnerabilities. Because successful exploitation could expose every hosting account, database, credential, and file on a server, administrators should apply the appropriate security update as soon as possible and review affected systems for signs of compromise.
Healthcare technology provider Veradigm disclosed a data breach involving a third-party vendor after attackers obtained vendor credentials that provided access to a limited Veradig...
A sophisticated, multi-stage malware campaign has been observed combining fake Google CAPTCHA verification pages, WebDAV infrastructure, malicious Cloudflare Workers and BNB Smart ...
Cisco has confirmed active exploitation of CVE-2026-20079, a critical authentication-bypass vulnerability in Cisco Secure Firewall Management Center (FMC) Software with CVSS score ...