#cve-2026-48172

[ follow ]
Information security
fromSecurityWeek
2 days ago

CISA Urges Immediate Patching of Exploited LiteSpeed cPanel Plugin Zero-Day

CVE-2026-48172 in LiteSpeed cPanel user-end plugin is actively exploited and enables root-level script execution; patch to 2.4.5+ or remove plugin immediately.
Information security
fromThe Hacker News
6 days ago

LiteSpeed cPanel Plugin CVE-2026-48172 Exploited to Run Scripts as Root

LiteSpeed LiteSpeed User-End cPanel Plugin CVE-2026-48172 enables arbitrary root script execution and is actively exploited; upgrade or uninstall to remediate.
[ Load more ]