Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Critical cPanel Security Flaws Threaten User Data

Critical cPanel Security Flaws Threaten User Data

Posted on September 23, 2026 By CWS

Recent security updates have addressed several vulnerabilities within the cPanel system, posing significant risks to shared-hosting servers. These flaws, particularly the permissions issue identified as CVE-2026-68490, could potentially allow unauthorized access to user data such as calendars and contacts.

Details of the cPanel Vulnerabilities

On September 22, 2026, cPanel released a security update to patch multiple vulnerabilities including a root privilege-escalation bug and a cross-account database flaw in WP Toolkit. The primary issue, CVE-2026-68490, arises from improper permissions in the CalDAV and CardDAV functionalities, allowing users on the same server to access others’ information.

This vulnerability undermines the tenant isolation expected in multi-user environments. While attackers cannot alter the data, they can still extract details like names and email addresses, potentially facilitating phishing attacks. The flaw was responsibly disclosed by security expert Ali Mustafa, also known as rz1027.

Impact on Shared Hosting Services

The exposure of read-only data is a serious concern for shared hosting services. This security gap means that a legitimate user could gather sensitive information from unrelated accounts without consent. As per cPanel’s advisory, the vulnerability affects versions 120 and above, with fixed builds now available.

Additionally, CVE-2026-87899 presents a more severe threat, where an authenticated user could elevate privileges and execute commands as root. This vulnerability, alongside CVE-2026-87900, which affects WP Toolkit, highlights the critical need for immediate updates to prevent cross-tenant data manipulation.

Recommendations for Administrators

Administrators are urged to update cPanel and WHM through the latest version available in the WHM interface or by executing the appropriate command line scripts. WP Toolkit requires a separate upgrade to version 6.11.3 or beyond. After updates, it is crucial to review system logs for any unusual cross-user activity.

Given the ongoing discovery of cPanel-related security issues, hosting providers should ensure that all systems, especially those in public and multi-user settings, adhere to robust automatic update policies. Previous vulnerabilities, including command injection and SQL injection threats, underscore the importance of vigilance.

In conclusion, maintaining up-to-date security measures is vital to protecting user data and preventing unauthorized access. With the potential for significant data breaches, immediate attention to these updates is necessary to safeguard both server integrity and user privacy.

Cyber Security News Tags:cPanel, CVE-2026-68490, CVE-2026-87899, CVE-2026-87900, Cybersecurity, data breach, phishing risk, root access, Security, server security, shared hosting, Vulnerability, WP Toolkit

Post navigation

Previous Post: Outerlimit Secures $16M to Curb AI Agent Risks
Next Post: MikroTrick Exploit Grants Router Control Without Authentication

Related Posts

Chrome Extensions Exploit User Data for Ad Revenue Chrome Extensions Exploit User Data for Ad Revenue Cyber Security News
DPRK IT Workers Using Code-Sharing Platforms to Secure New Remote Jobs DPRK IT Workers Using Code-Sharing Platforms to Secure New Remote Jobs Cyber Security News
MagicAd Malware Bypasses Android Restrictions with Ads MagicAd Malware Bypasses Android Restrictions with Ads Cyber Security News
Exploiting ECS Protocol on EC2 to Exfiltrate Cross-Task IAM and Execution Role Credentials Exploiting ECS Protocol on EC2 to Exfiltrate Cross-Task IAM and Execution Role Credentials Cyber Security News
LapDogs Hackers Leverages 1,000 SOHO Devices Using a Custom Backdoor to Act Covertly LapDogs Hackers Leverages 1,000 SOHO Devices Using a Custom Backdoor to Act Covertly Cyber Security News
Stolen API Key Causes ,000 Cloud Charges in Two Days Stolen API Key Causes $82,000 Cloud Charges in Two Days Cyber Security News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • GitLab Vulnerability Exposes Private Repositories to Code Injections
  • MikroTrick Exploit Grants Router Control Without Authentication
  • Critical cPanel Security Flaws Threaten User Data
  • Outerlimit Secures $16M to Curb AI Agent Risks
  • AI-Driven Windows Malware Uses Voting System

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • GitLab Vulnerability Exposes Private Repositories to Code Injections
  • MikroTrick Exploit Grants Router Control Without Authentication
  • Critical cPanel Security Flaws Threaten User Data
  • Outerlimit Secures $16M to Curb AI Agent Risks
  • AI-Driven Windows Malware Uses Voting System

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark