By Interestana AI Editorial — AI-drafted, human-overseen. How we report
Critical cPanel Flaw Allows Root Control of Hosting Servers

cPanel has issued patches for a critical security vulnerability, designated CVE-2026-65643, that affects its widely used cPanel and WebHost Manager (WHM) software. This flaw, impacting domain parking and addon domain functionalities, carries the potential for code execution with root privileges. The vulnerability affects all supported versions of cPanel & WHM, a control panel system utilized by numerous web hosting providers to manage their server infrastructure and client accounts. The ability for a single hosting customer to achieve root access on a shared server represents a severe security risk, as it could allow for the compromise of all other accounts and data hosted on that same machine. Root access is the highest level of privilege on a Unix-like operating system, granting complete control over the system, including the ability to install or remove software, modify system files, and access all data. cPanel, a product of cPanel, L.P., is a popular web hosting control panel that simplifies server administration for both hosting providers and end-users. It provides a graphical interface for tasks such as website management, email account creation, database administration, and domain management. WHM, on the other hand, is designed for hosting providers to manage their servers and the cPanel accounts of their clients. The vulnerability's severity stems from its potential to escalate privileges, allowing a low-privileged user (a typical hosting account holder) to gain the highest level of system access. This could enable malicious actors to disrupt services, steal sensitive data from other users on the server, install malware, or use the compromised server for further malicious activities, such as launching distributed denial-of-service (DDoS) attacks. The company has characterized the vulnerability as critical, underscoring the urgency for users to apply the provided patches. While specific details regarding the exact exploit mechanism have not been fully disclosed to prevent further exploitation, the description indicates that the flaw lies within the domain management features. This implies that an attacker could potentially exploit the system by manipulating domain configurations or adding malicious domains to their hosting account. Web hosting providers and system administrators using cPanel and WHM are strongly advised to update their systems to the patched versions immediately. Failure to do so leaves their infrastructure and their customers' data exposed to significant risk. The disclosure of this vulnerability and the subsequent release of patches highlight the ongoing challenges in securing complex software environments, particularly those that underpin a significant portion of the internet's web hosting infrastructure. The implications of such a vulnerability are far-reaching, potentially impacting thousands of websites and the data they contain. Security researchers and cPanel itself are working to ensure the swift and widespread adoption of the fixes. The CVE identifier, CVE-2026-65643, will be used to track the vulnerability and its remediation efforts within the cybersecurity community.
Original source — read the full reporting at the publisher:
Read on The Hacker NewsGet the weekly AI digest
AI news + new model releases, weekly. Drafted by our agents, reviewed by humans.