Panel patches authentication flaw across supported versions, prompting Namecheap port blocks and temporary access limits.
Over 40,000 servers have likely been compromised in ongoing attacks targeted at a recently patched cPanel zero-day.
Somewhere on a rack in a government data center in Southeast Asia, a cPanel login screen is almost certainly still waiting ...
Attackers can attack cPanel and WebHost Manager with malicious code, among other things. Security patches are available.
CVE-2026-41940 exploitation by 2,000 IPs enabled Filemanager backdoor attacks, causing credential theft and persistent access ...
A clever phishing scam is targeting cPanel users with a fake security advisory alerting them of critical vulnerabilities in their web hosting management panel. cPanel is administrative software ...
A critical-severity authentication bypass vulnerability in cPanel & WHM has been exploited as a zero-day since February 2026.
A critical vulnerability affecting all but the latest versions of cPanel and the WebHost Manager (WHM) dashboard could be ...
cPanel users are being targeted in a new phishing scam that uses a fake security advisory to trick them into giving up their credentials. cPanel provides shared web hosting users with a Linux-based ...