Güvenlik Danışarlıklarına Dön

Security Advisory: cPanel Mail Sending API Server-Side Request Forgery

This is a security release for cPanel & WHM. Update the product on every affected server to the patched release — `sudo /scripts/upcp --force` — there is no workaround, and unpatched servers remain exposed until updated.

Medium
cPanel AlmaLinux 8 AlmaLinux 9 CentOS 7 CloudLinux 8 CloudLinux 9

Etkilenen Sürümler

cPanel & WHM 120.0.3 and earlier

Yamalanmış Sürüm

cPanel & WHM 120.0.6

Varsayılan Güncelleme Komutu

yum update -y

Düzeltme Komutları

AlmaLinux 9 / CloudLinux 9

dnf clean metadata
/scripts/upcp --force

AlmaLinux 8 / CloudLinux 8

dnf clean metadata
/scripts/upcp --force

CentOS 7 / CloudLinux 7

yum clean all
/scripts/upcp --force

SharedLicense lisansı altında bunun anlamı

Your SharedLicense license itself is not affected — this is a change in cPanel & WHM software, not in licensing. Apply it on every affected server: sudo /scripts/upcp --force. Licenses keep working through updates; nothing needs re-issuing or re-activating.

Sisteminizi güvenlik açıkları açısından kontrol edin

Size uygun tam düzeltme komutlarını görmek için ürününüzü ve işletim sisteminizi seçin.

Sisteminizi Kontrol Edin