News

Actively exploited cPanel bug exposes millions of websites to takeover

  • Pieter Arntz--Malwarebytes.com
  • published date: 2026-05-01 10:48:19 UTC

A vulnerability in the cPanel/WHM admin interface lets attackers access websites without a username and password.

Security researchers are warning about a newly discovered vulnerability in the widely used web server management software cPanel and WebHost Manager (WHM).  This is a critical, actively exploited au… [+3591 chars]