Products: 6
    Vulnerabilities: 431
    Known Exploited: 0
    21
    Critical Level Threats
    109
    High Level Threats
    244
    Medium Level Threats
    57
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-65643

    Eval injection in cPanel 11.138.0.0 and earlier allows remote authenticated users to execute arbitrary code as root.

    Last Modified: Sep 04, 2026
    Published: Sep 01, 2026

    CVE-2026-29205

    Incorrect privileges management and insufficient path filtering allow to read arbitrary file on the server via the cpdavd attachment download endpoints.

    Last Modified: Aug 12, 2026
    Published: May 13, 2026

    CVE-2026-32992

    SSL verification is disabled in the DNS Cluster system. This could allow for a malicious server to man-in-the-middle the request and capture credentials.

    Last Modified: Aug 12, 2026
    Published: May 13, 2026

    CVE-2026-41940

    WebPros cPanel and WHM Authentication Bypass via Login Flow

    Last Modified: May 04, 2026
    Published: Apr 29, 2026

    CVE-2025-66429

    An issue was discovered in cPanel 110 through 132. A directory traversal vulnerability within the Team Manager API allows for overwrite of an arbitrary file. This can allow for privilege escalation to the root user.

    Last Modified: Dec 15, 2025
    Published: Dec 11, 2025
    Items Per Page