Back to Security Advisories
Critical 2026-08-06

Security Advisory: cPanel / CSF Plugin

cPanel CSF AlmaLinux 8 AlmaLinux 9 CentOS 7 CloudLinux 7

Multiple vulnerabilities were found in the ConfigServer Firewall (CSF) plugin. Exploiting the vulnerabilities could allow an attacker to gain root access.

Affected Versions

16.20-1 and earlier

Patched Version

16.30-1

Default Update CMD

yum update -y

Fix Commands

CentOS 7 / CloudLinux 7

yum clean all
/scripts/update-packages

AlmaLinux / CloudLinux 8/9/10

dnf clean metadata
/scripts/update-packages

Multiple vulnerabilities were found in the ConfigServer Firewall (CSF) plugin. Exploiting the vulnerabilities could allow an attacker to gain root access.

More Information

Check your system for vulnerabilities

Select your product and operating system to see the exact fix commands that apply to you.

Check Your System