EasyApache 4 25.79 — cPanel & WHM Update
Security and maintenance updates We released updated packages for EasyApache 4. This security release hardens the Phusion Passenger agent API authorization boundary so an empty API account database confers no privileges, resolving a local privilege escalation in the Passenger Watchdog API (SEC-75753). The fix is app…
Affected Versions
25.79
What this means under a SharedLicense license
Your SharedLicense license itself is not affected — this is a change in cPanel & WHM software, not in licensing. Apply it on every affected server: sudo /scripts/upcp --force. Licenses keep working through updates; nothing needs re-issuing or re-activating.
2026 August 13
Security and maintenance updates
We released updated packages for EasyApache 4.
This security release hardens the Phusion Passenger agent API authorization boundary so an empty API account database confers no privileges, resolving a local privilege escalation in the Passenger Watchdog API (SEC-75753). The fix is applied to ea-passenger-src, ea-ruby27-passenger, ea-apache24-mod-passenger, and ea-nginx-passenger.
For a full list of changes, read the EasyApache 4 change log.
References
Check your system for vulnerabilities
Select your product and operating system to see the exact fix commands that apply to you.
Check Your System