Güvenlik Danışarlıklarına Dön

EasyApache 4 25.67 — cPanel & WHM Update

High
cPanel

Etkilenen Sürümler

25.67

SharedLicense lisansı altında bunun anlamı

Your SharedLicense license itself is not affected — this is a change in cPanel & WHM software, not in licensing. Apply it on every affected server: sudo /scripts/upcp --force. Licenses keep working through updates; nothing needs re-issuing or re-activating.

Security updates We released updated packages for EasyApache 4. This security release updates ea-nginx from v1.31.1 to v1.31.2, addressing two CVEs from the nginx 2026-06-17 advisory: CVE-2026-42055 (Medium: buffer overflow in ngx_http_proxy_v2_module and ngx_http_grpc_module) and CVE-2026-48142 (Low: buffer over-re…

EasyApache 4 25.67

2026 June 18

Security updates

We released updated packages for EasyApache 4.

This security release updates ea-nginx from v1.31.1 to v1.31.2, addressing two CVEs from the nginx 2026-06-17 advisory: CVE-2026-42055 (Medium: buffer overflow in ngx_http_proxy_v2_module and ngx_http_grpc_module) and CVE-2026-48142 (Low: buffer over-read in ngx_http_charset_module). The associated nginx module packages (ea-nginx-echo, ea-nginx-headers-more, ea-nginx-njs, ea-nginx-passenger, ea-modsec30-connector-nginx) were also rebuilt against the patched version. It also updates ea-nodejs22 from v22.22.3 to v22.23.0, the Node.js June 2026 security release addressing 11 CVEs including two High-severity issues (CVE-2026-48618: TLS wildcard auth bypass; CVE-2026-48933: WebCrypto AES integer overflow crash).

For a full list of changes, read the EasyApache 4 change log.

Sisteminizi güvenlik açıkları açısından kontrol edin

Size uygun tam düzeltme komutlarını görmek için ürününüzü ve işletim sisteminizi seçin.

Sisteminizi Kontrol Edin