cPanel flaw exploited in the wild: check what's running on that shared hosting account
ASD's ACSC confirmed this week that CVE-2026-41940, a critical authentication bypass in cPanel and WHM, is being actively exploited against Australian organisations. The advisory carries no sector carve-outs — ACSC's position is that no particular industry is being targeted, which means the attacker...
Read more →