cPanel has announced the release of important updates aimed at resolving three significant security vulnerabilities within its cPanel and Web Host Manager (WHM) platforms. These vulnerabilities pose risks such as privilege escalation, code execution, and denial-of-service attacks. The identified vulnerabilities include: CVE-2026-29201, which has a CVSS score of 4.3. This flaw arises from inadequate input validation in the 'feature::LOADFEATUREFILE' adminbin call, potentially allowing unauthorized actions. Users are strongly encouraged to update their systems to mitigate these risks and ensure the security of their hosting environments. Prompt application of these patches is essential to protect against potential exploits that could compromise system integrity.
cPanel and WHM Update Addresses Three Security Flaws – Immediate Action Required
cPanel has issued critical updates to fix three security vulnerabilities in its cPanel and Web Host Manager (WHM) software. Users are urged to apply these patches promptly.
