Skip to main content
See every side of every news story
Published loading...Updated

Critical vulnerability in cPanel leads to widespread exploitation

  • On Thursday, CISA added the critical CVE-2026-41940 flaw to its Known Exploited Vulnerabilities catalog, as more than 550,000 servers running cPanel and WHM remain potentially vulnerable as of Monday.
  • Webpros develops cPanel and WebHost Manager, software that powers 60 million domains, and the authentication bypass flaw allows remote attackers to gain full control of vulnerable systems.
  • The Shadowserver Foundation reported more than 572,000 exposed instances globally as of Sunday, with more than 391,000 servers located in North America.
  • Exploitation activity continues with around 2,000 cPanel instances currently compromised, down from around 44,000 on Thursday, while researchers at Defused identified more than 1,000 exploitation attempts since disclosure.
  • KnownHost CEO Daniel Pearson reported attacks detected as far back as February 23, and the company has begun blocking cPanel and WHM login ports across its network as a precautionary measure.
Insights by Ground AI

17 Articles

TechCrunchTechCrunch
Reposted by
IT Security News - cybersecurity, infosecurity newsIT Security News - cybersecurity, infosecurity news
Center

Hackers are still exploiting the cPanel bug to gain control of thousands of websites

Days after the disclosure of a critical vulnerability in popular web hosting software cPanel and WHM, hackers keep targeting and hacking websites.

·United States
Read Full Article

If you have a web site hosted by a traditional provider, there is a good chance that cPanel will run somewhere in the background. It's the dashboard that millions of site owners use to manage their files, emails, databases, domain names. The tool and its companion [...]

A recently discovered zero-day security vulnerability in the widespread server management software cPanel is currently causing serious problems. Over 40,000 servers are said to have been hacked over it. (Continue reading)

Just a week ago, the developers of the popular software cPanel and WebHost Manager (WHM) issued an urgent warning about a critical hole in the system, and today the effects of a real digital tsunami are already being observed.

·Ukraine
Read Full Article
Think freely.Subscribe and get full access to Ground NewsSubscriptions start at $9.99/yearSubscribe

Bias Distribution

  • 100% of the sources are Center
100% Center

Factuality Info Icon

To view factuality data please Upgrade to Premium

Ownership

Info Icon

To view ownership data please Upgrade to Vantage

Clubic.com broke the news on Monday, May 4, 2026.
Too Big Arrow Icon
Sources are mostly out of (0)

Similar News Topics

News
Feed Dots Icon
For You
Search Icon
Search
Blindspot LogoBlindspotLocal