Close Menu
    What's Hot

    Rep. Andy Biggs wins GOP primary for Arizona governor

    Mark Lamb wins Arizona House primary despite sex scandals

    Trump-backed Jay Feely wins GOP primary in Arizona’s battleground 1st District

    Facebook X (Twitter) Instagram
    Trending
    • Rep. Andy Biggs wins GOP primary for Arizona governor
    • Mark Lamb wins Arizona House primary despite sex scandals
    • Trump-backed Jay Feely wins GOP primary in Arizona’s battleground 1st District
    • Taylor Farms Spent Big on MAGA and Anti-Regulatory Lobbying Before Diarrhea Outbreak
    • ASP Isotopes Inc. (ASPI) Discusses Noble Africa’s Merger Plans and Strategy to Become a Publicly Traded Helium Platform Transcript
    • Man Utd transfer news: PSG midfielder Warren Zaire-Emery targeted as United consider bid | Football News
    • N-day is Becoming N-Hour. Patching Faster Won’t Save You.
    • Judges Reject Biden’s Effort to Keep Memoir Recordings Private
    interluknewsinterluknews
    • Home
    • Business
      • Corporate News
      • Industry Insights
      • Startups & Entrepreneurship
      • Technology & Innovation
    • Economy
      • Economic Policy
      • Financial Analysis
      • Inflation & Interest Rates
      • Trade & Markets
    • Global
      • Conflicts & Security
      • Diplomacy
      • Global Trends
      • International Affairs
    • Lifestyle
      • Fashion
      • Food & Dining
      • Personal Development
      • Travel
    • Opinion
      • Columns
      • Editorials
      • Expert Opinions
      • Reader Voices
    • More
      • Politics
        • Elections
        • Government & Policy
        • International Relations
        • Political Analysis
      • Sports
        • Cricket
        • Football / Soccer
        • International Sports
        • Local Sports
      • Technology
        • Artificial Intelligence
        • Cybersecurity
        • Gadgets & Reviews
        • Tech News
      • South Africa News
    Facebook X (Twitter) Instagram
    interluknewsinterluknews
    Cybersecurity

    cPanel, WHM Release Fixes for Three New Vulnerabilities — Patch Now

    adminBy adminMay 9, 2026No Comments2 Mins Read
    Share Facebook Twitter Pinterest Copy Link Telegram LinkedIn Tumblr Email
    cPanel, WHM Release Fixes for Three New Vulnerabilities — Patch Now
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Ravie LakshmananMay 09, 2026Vulnerability / Web Hosting

    cPanel, WHM Release Fixes for Three New Vulnerabilities — Patch Now

    cPanel has released updates to address three vulnerabilities in cPanel and Web Host Manager (WHM) that could be exploited to achieve privilege escalation, code execution, and denial-of-service.

    The list of vulnerabilities is as follows –

    • CVE-2026-29201 (CVSS score: 4.3) – An insufficient input validation of the feature file name in the “feature::LOADFEATUREFILE” adminbin call that could result in an arbitrary file read.
    • CVE-2026-29202 (CVSS score: 8.8) – An insufficient input validation of the “plugin” parameter in the “create_user API” call that could result in arbitrary Perl code execution on behalf of the already authenticated account’s system user.
    • CVE-2026-29203 (CVSS score: 8.8) – An unsafe symlink handling vulnerability that allows a user to modify access permissions of an arbitrary file using chmod, resulting in denial-of-service or possible privilege escalation.
    Cybersecurity

    The shortcomings have been patched in the following versions –

    • cPanel and WHM –
      • 11.136.0.9 and higher
      • 11.134.0.25 and higher
      • 11.132.0.31 and higher
      • 11.130.0.22 and higher
      • 11.126.0.58 and higher
      • 11.124.0.37 and higher
      • 11.118.0.66 and higher
      • 11.110.0.116 and higher
      • 11.110.0.117 and higher
      • 11.102.0.41 and higher
      • 11.94.0.30 and higher
      • 11.86.0.43 and higher
    • WP Squared –

    cPanel has released 110.0.114 as a direct update for customers who are still on CentOS 6 or CloudLinux 6. Users are advised to update to the latest versions for optimal protection.

    While there is no evidence that the vulnerabilities have been exploited in the wild, the disclosure comes days after another critical flaw in the product (CVE-2026-41940) has been weaponized by threat actors as a zero-day to deliver Mirai botnet variants and a ransomware strain called Sorry.

    cPanel fixes Patch release Vulnerabilities WHM
    Follow on Google News Follow on Flipboard
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
    Previous Article‘Listed as remote for visibility’: Employer tries to game LinkedIn with false job details, enraging social media
    Next Article Intel Has Reportedly Signed A Preliminary Deal To Produce Chips For Apple
    admin
    • Website

    Related Posts

    N-day is Becoming N-Hour. Patching Faster Won’t Save You.

    July 22, 2026

    LG to Ban Residential Proxies from Smart TV Apps – Krebs on Security

    July 22, 2026

    Zimbra Patches Critical SNMP Command Injection and Four XSS Vulnerabilities

    July 22, 2026
    Leave A Reply Cancel Reply

    Demo
    Latest Posts

    Rep. Andy Biggs wins GOP primary for Arizona governor

    Mark Lamb wins Arizona House primary despite sex scandals

    Trump-backed Jay Feely wins GOP primary in Arizona’s battleground 1st District

    Taylor Farms Spent Big on MAGA and Anti-Regulatory Lobbying Before Diarrhea Outbreak

    Latest Posts

    Subscribe to News

    Get the latest sports news from NewsSite about world, sports and politics.

    Advertisement
    Demo

    We are a digital news platform delivering timely, accurate, and insightful coverage of politics, global affairs, business, economy, sports, and more. Our mission is to keep readers informed with reliable news, clear analysis, and stories that truly matter.
    We're social. Connect with us:

    Facebook X (Twitter) Instagram Pinterest YouTube

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Type above and press Enter to search. Press Esc to cancel.

    Powered by
    ...
    ►
    Necessary cookies enable essential site features like secure log-ins and consent preference adjustments. They do not store personal data.
    None
    ►
    Functional cookies support features like content sharing on social media, collecting feedback, and enabling third-party tools.
    None
    ►
    Analytical cookies track visitor interactions, providing insights on metrics like visitor count, bounce rate, and traffic sources.
    None
    ►
    Advertisement cookies deliver personalized ads based on your previous visits and analyze the effectiveness of ad campaigns.
    None
    ►
    Unclassified cookies are cookies that we are in the process of classifying, together with the providers of individual cookies.
    None
    Powered by