#7
The Hacker News
general
June 16, 2026 at 05:41 UTC
CISA Flags LiteSpeed cPanel Plugin Flaw Exploited for Root Privilege Escalation
By [email protected] (The Hacker News)
AI Summary
CISA added CVE-2026-54420 (CVSS 8.5) — a privilege escalation to root flaw in the LiteSpeed cPanel Plugin — to its Known Exploited Vulnerabilities catalog, mandating remediation by June 18, 2026 for all FCEB agencies. The three-day remediation deadline signals confirmed active exploitation against internet-facing cPanel-hosted servers.
Relevance score: 80.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →