Back to Security Advisories

EasyApache 4 25.57 — cPanel & WHM Update

Critical
cPanel CentOS 7

Affected Versions

25.57

What this means under a SharedLicense license

Your SharedLicense license itself is not affected — this is a change in cPanel & WHM software, not in licensing. Apply it on every affected server: sudo /scripts/upcp --force. Licenses keep working through updates; nothing needs re-issuing or re-activating.

Security and maintenance updates We released updated packages for EasyApache 4. This security release updates ea-apache24 to 2.4.67, addressing 11 CVEs including an important remote code execution vulnerability (CVE-2026-23918 in mod_http2). It also patches ea-libcurl (CentOS 7 only) with 6 security fixes backported…

EasyApache 4 25.57

2026 May 05

Security and maintenance updates

We released updated packages for EasyApache 4.

This security release updates ea-apache24 to 2.4.67, addressing 11 CVEs including an important remote code execution vulnerability (CVE-2026-23918 in mod_http2). It also patches ea-libcurl (CentOS 7 only) with 6 security fixes backported from curl 8.20.0.

For a full list of changes, read the EasyApache 4 change log.

Check your system for vulnerabilities

Select your product and operating system to see the exact fix commands that apply to you.

Check Your System