Acronis has issued an immediate security patch for a critical vulnerability in its Backup plugin for cPanel & WHM, which has been actively exploited. This plugin, widely used for disk-level backups and recovery in hosting environments, was found to have insecure file permissions that could enable attackers to gain elevated privileges.
Details of the Vulnerability
The flaw is identified as CVE-2026-87886, with a CVSS score of 7.8, indicating a high severity level. Although the vulnerability has been exploited in targeted attacks against the cPanel plugin, there have been no reports of exploitation against the Plesk extension.
Acronis has emphasized that all Linux versions of the Backup plugin for cPanel & WHM prior to build 1.9.3.1021, along with the Plesk extension before build 1.8.11.638, are susceptible to this security issue. The company strongly advises users to update their software immediately to safeguard against potential threats.
Mitigation Steps and Recommendations
The company has refrained from disclosing in-depth technical specifics regarding the vulnerability. However, Acronis stresses the critical nature of applying the updates to prevent exploitation. Users are encouraged to verify their system’s current build and upgrade to the latest version without delay.
This proactive measure from Acronis follows a pattern of recent cybersecurity alerts and patches from major tech companies. Last month, Oracle addressed over 800 vulnerabilities in its security update, while ConnectWise and Cisco also tackled urgent security flaws.
Industry Impact and Future Outlook
This incident underscores the persistent threat of vulnerabilities in software used across various platforms. As cyber threats continue to evolve, regular updates and patches remain essential to maintaining security. Organizations are reminded of the importance of timely software updates as a critical defense measure.
Looking ahead, the tech industry is likely to see continued focus on improving security protocols and rapid response to vulnerabilities as they are discovered. Users are advised to stay informed about updates from software providers to keep their systems secure.
