LiteSpeed cPanel Plugin Vulnerability
LiteSpeed cPanel Plugin contains privilege escalation vulnerability that is exposed via the user-end cPanel plugin, which can be abused by any cPanel user account to execute arbitrary scripts with root privileges.
CVSS Score
9.8
CRITICAL
Published
26 May 2026 00:00
Modified
N/A
Vendor
LiteSpeed
Product
cPanel Plugin
Source
CIRCL
Affected Versions
Fix
Vendor Patch / Mitigation Available
Weaknesses (CWE)
CWE-266
Affected Systems
LiteSpeed
cPanel Plugin
LiteSpeed
CPanel Plugin
External Links
KEV Status
Known Exploited Vulnerability