Wire · regulatory
Critical cPanel Flaw Could Let One Hosting Customer Take Root Control of a Whole Server
◆ Sectors
◆ Source
◆ Verified
Fusion42 · 28 August 2026 · Fusion42 review
A critical security vulnerability in cPanel and WHM allows an authenticated hosting customer with domain parking or addon domain permissions to execute code as root, potentially taking full control of the server. Patches have been released for all supported versions to fix this flaw.
This Wire brief sits within Fusion42's coverage of Cloud Infrastructure and Cybersecurity.
◆ ◆ The Wire takeaway
This flaw warns you that a single compromised hosting customer can takeover entire servers through cPanel. Patch immediately or risk your infrastructure becoming an open door for attackers.
◆ Coverage
1 source · 28 Aug 2026
◆ Related on Wire
◆ Topics