Güvenlik Danışarlıkları
En Yeni Yazılım Sürümleri
Son Danışmanlıklar
cPanel
CloudLinux
Ubuntu
Check Your System
Select your product and operating system to see relevant security advisories and fix commands.
Seçili:
Çoğu düzeltme, en son sürüme güncelleyerek uygulanır. Bunun için komut:
Daha ayrıntılı çözümler için aşağıya bakın.
High EasyApache 4 25.86 — cPanel & WHM Update 2026-10-01
Security and maintenance updates We released updated packages for EasyApache 4. This security release updates ea-php82 to 8.2.34, ea-php83 to 8.3.35, ea-php84 to 8.4.26 and ea-php85 to 8.5.11, which fix eleven vulnerabilities (CVE-2025-1218, CVE-2025-14181, CVE-2026-6103, CVE-2026-17545, CVE-2026-91765, CVE-2026-917…
Etkilendi
25.86
Critical LiteSpeed CVE-2026-93903 2026-09-30 00:00:00
LiteSpeed Web Server (LSWS) before 6.3.7 build 1 mishandles internal redirect URL validation in a certain "corner case."
High ConfigServer Security & Firewall (CSF) 16.32-1 — cPanel & WHM Update 2026-09-30
Harden iptables command For a full list of changes, read the ConfigServer Security & Firewall (CSF) change log.
Etkilendi
16.32-1
High Sitejet Builder 4.13.1-1 — cPanel & WHM Update 2026-09-30
Security update Sitejet Builder ships with an updated build-time library to resolve CVE-2026-40175. For a full list of changes, read the Sitejet Builder change log.
Etkilendi
4.13.1-1
High EasyApache 4 25.83 — cPanel & WHM Update 2026-09-30
Security and maintenance updates We released updated packages for EasyApache 4. This release updates ea-nginx to 1.31.6, which includes the upstream fix for CVE-2026-90439, a buffer overflow in the ngx_http_v3_module module. EasyApache 4 does not build that module, so EasyApache 4 installations are not affected. It …
Etkilendi
25.83
High EasyApache 4 25.82 — cPanel & WHM Update 2026-09-30
Security and maintenance updates We released updated packages for EasyApache 4. This security release updates ea-libxml2 to 2.15.4, which fixes eight vulnerabilities (CVE-2026-86137, CVE-2026-86138, CVE-2026-86139, CVE-2026-86140, CVE-2026-86141, CVE-2026-86142, CVE-2026-86143 and CVE-2026-86144), and patches ea-rub…
Etkilendi
25.82
High EasyApache 4 25.81 — cPanel & WHM Update 2026-09-30
Maintenance and security updates We released updated packages for EasyApache 4. This release patches ea-openssl11 on CentOS 7 for a heap buffer overflow in CMS key unwrapping (CVE-2026-63072) and excessive memory use when buffering DTLS records (CVE-2026-54874). It also updates ea-re2c to v4.6 and fixes three ea-pod…
Etkilendi
25.81
High EasyApache 4 25.80 — cPanel & WHM Update 2026-09-30
Maintenance and security updates We released updated packages for EasyApache 4. This release updates ea-nginx to v1.31.4, which adds PROXY protocol version 2 support to the stream and mail modules, sends the ":authority" pseudo-header on HTTP/2 and gRPC requests to backends, and fixes a worker-process segm…
Etkilendi
25.80
Critical Security: CVE-2026-93698 Vulnerability in Multilang Adminbin – September 29, 2026 2026-09-29
Insufficient validation allows arbitrary commands to be executed via the Multilang adminbin.
Critical Security: CVE-2026-93697 Stored XSS in WHM’s Account Modification Interfaces – September 29, 2026 2026-09-29
There is a stored XSS vulnerability allowing arbitrary code execution in the WHM Mass Modify Accounts interface.
Critical Security: CVE-2026-93029 Stored XSS in WHM’s Manage SSL Hosts Interface – September 29, 2026 2026-09-29
There is a stored XSS vulnerability allowing arbitrary code execution in the WHM Manage SSL Hosts interface.
Critical cPanel CVE-2026-87899: Privilege Escalation 2026-09-23 00:00:00
Execution with unnecessary privileges in cPanel allows remote authenticated users to execute arbitrary code with root privileges.
Etkilendi
11.120.0.0 before 11.134.0.57 | 11.136.0.0 before 11.136.0.41 | 11.138.0.0 before 11.138.0.8
Yamalandı
11.134.0.57 / 11.136.0.41 / 11.138.0.8 / WP Squared 11.138.1.11
AlmaLinux / CloudLinux / RHEL / Rocky Linux
# cPanel updates automatically; run manually to patch now
/usr/local/cpanel/scripts/upcp --force
# The update also repairs calendar and contact permissions for existing accounts
cat /usr/local/cpanel/version
Critical WP Toolkit for cPanel CVE-2026-87900: Argument Injection 2026-09-23 00:00:00
Argument injection in WP Toolkit for cPanel 6.11.2-10794 and earlier allows remote authenticated users to read arbitrary files and execute arbitrary code across customer accounts.
Etkilendi
6.11.2-10794 and earlier
Yamalandı
6.11.3-10850
All supported operating systems
# WP Toolkit (package wp-toolkit-cpanel) updates independently of cPanel & WHM
bash <(curl -SsL https://wp-toolkit.plesk.com/cPanel/installer.sh || wget -qO- https://wp-toolkit.plesk.com/cPanel/installer.sh) --version 6.11.3
Critical Plesk CVE-2026-68492: Untrusted Search Path 2026-09-23 00:00:00
An untrusted search path vulnerability in Plesk from 18.0.34 before 18.0.80.8 and 18.0.81 before 18.0.81.1 allows remote authenticated users to execute arbitrary code as root via the "Plesk RESTful API".
Etkilendi
18.0.34 before 18.0.80.8 | 18.0.81 before 18.0.81.1 | 2.4.2 before 2.4.7
Yamalandı
18.0.80.8 / 18.0.81.1
AlmaLinux / Ubuntu / Debian / CloudLinux / Rocky Linux
plesk installer --select-release-current --reinstall-patch
plesk version
Critical Plesk CVE-2026-87898: OS Command Injection 2026-09-23 00:00:00
OS command injection in Plesk allows remote authenticated users to execute arbitrary code with root privileges.
Etkilendi
1.6.6 – 1.12.1
Yamalandı
1.12.2
All supported operating systems
# Update the Site Import extension to 1.12.2 or later
# Plesk → Extensions → Updates → Site Import → Update
High cPanel CVE-2026-68490: Local Information Disclosure (CalDAV/CardDAV) 2026-09-23
Incorrect permission assignment allows local users to obtain sensitive CalDAV/CardDAV information belonging to other accounts.
Etkilendi
11.120.0.0 before 11.134.0.57 | 11.136.0.0 before 11.136.0.41 | 11.138.0.0 before 11.138.0.8
Yamalandı
11.134.0.57 / 11.136.0.41 / 11.138.0.8
AlmaLinux / CloudLinux / RHEL / Rocky Linux
# cPanel updates automatically; run manually to patch now
/usr/local/cpanel/scripts/upcp --force
# The update also repairs calendar and contact permissions for existing accounts
cat /usr/local/cpanel/version
High cPanel CVE-2026-68490: Information Disclosure 2026-09-23
Incorrect permission assignment allows local users to obtain sensitive CalDAV/CardDAV information belonging to other accounts.
Etkilendi
11.120.0.0 before 11.134.0.57 | 11.136.0.0 before 11.136.0.41 | 11.138.0.0 before 11.138.0.8
Yamalandı
11.134.0.57 / 11.136.0.41 / 11.138.0.8 / WP Squared 11.138.1.11
AlmaLinux / CloudLinux / RHEL / Rocky Linux
# cPanel updates automatically; run manually to patch now
/usr/local/cpanel/scripts/upcp --force
# The update also repairs calendar and contact permissions for existing accounts
cat /usr/local/cpanel/version
Critical Virtualizor CVE-2026-43641: OS Command Injection 2026-09-22 00:00:00
Softaculous Virtualizor before 3.2.9 (Patch 9) and 3.0.0 contains an OS command injection vulnerability in the billing module handler that allows unauthenticated remote attackers to execute arbitrary commands as root.
Etkilendi
before 3.2.9 (Patch 9)
Yamalandı
3.2.9 (Patch 9)
AlmaLinux / CloudLinux / Rocky Linux
yum update virtualizor
# Or in the admin panel: Config → Check for Updates → Update Now
High Virtualizor CVE-2026-43642: Remote Code Execution 2026-09-22 00:00:00
Softaculous Virtualizor before 3.2.9 (Patch 9) and 3.0.0 contains a PHP object injection vulnerability in the billing module handler that allows unauthenticated remote attackers to supply arbitrary serialized PHP objects.
Etkilendi
before 3.2.9 (Patch 9)
Yamalandı
3.2.9 (Patch 9)
AlmaLinux / CloudLinux / Rocky Linux
yum update virtualizor
# Or in the admin panel: Config → Check for Updates → Update Now
High Virtualizor CVE-2026-43643: Missing Authorization Check 2026-09-22 00:00:00
Softaculous Virtualizor before 3.2.9 (Patch 9) and 3.0.0 contains an authorization bypass vulnerability in the billing module handler that allows unauthenticated remote attackers to modify any tenant's account balance by.
Etkilendi
before 3.2.9 (Patch 9)
Yamalandı
3.2.9 (Patch 9)
AlmaLinux / CloudLinux / Rocky Linux
yum update virtualizor
# Or in the admin panel: Config → Check for Updates → Update Now
Critical WordPress 7.1.2 Release 2026-09-22
This security release features a fix for a critical severity security vulnerability. Because this is a security release, it is recommended that you update your sites immediately. You can download WordPress 7.1.2 from WordPress.org, or visit your WordPress Dashboard, click “Updates”, and then click “Update Now”…
Etkilendi
7.1.2
Medium LiteSpeed Cache for WordPress CVE-2026-76579: Reflected Cross-Site Scripting (XSS) 2026-09-19
The LiteSpeed Cache plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'esi' parameter in all versions up to, and including, 7.9 due to insufficient input sanitization and.
Etkilendi
all versions up to and including 7.9
All supported operating systems
wp plugin update litespeed-cache
# or: WordPress → Plugins → LiteSpeed Cache → Update Now
wp plugin get litespeed-cache --field=version
Medium Mojolicious (Mojo::JSON) CVE-2026-14803: Memory Exhaustion via Unbounded Recursion 2026-09-18 00:00:00
The pure-Perl implementation of Mojo::JSON in Mojolicious before 9.47 does not limit JSON nesting depth, allowing a small, deeply nested JSON document to trigger unbounded recursion, memory exhaustion, and a process crash. The path is only used when Cpanel::JSON::XS is not installed or MOJO_NO_JSON_XS is set — the Cpanel::JSON::XS fast path already enforces a nesting limit and is not affected.
Etkilendi
Mojolicious (Mojo::JSON) before 9.47 — pure-Perl decode path only
Yamalandı
9.47
cPanel & WHM (all supported OS)
perl -MCpanel::JSON::XS -e 'print "fast path OKn"'
# cPanel ships the affected fast path by default — if the check above prints "fast path OK", you are not exposed on cPanel's own stack.
# If it errors, or MOJO_NO_JSON_XS is set, update the Perl Mojo stack:
cpanm [email protected]
Generic Perl / Mojolicious hosts
cpanm [email protected]
perl -MMojo::JSON -e 'print Mojo::JSON->VERSION, "n"'
High Exim CVE < 4.100.1 2026-09-18
Dear Exim users, The Exim maintainers are releasing a security fix for four security issues. * GCVE-25-2026-09-50-1 * GCVE-25-2026-09-51-1 * GCVE-25-2026-09-55-1 * GCVE-25-2026-09-56-1 ---- Title: Exim Security Advisory for EXIM-Security-2026-09-12.1 / GCVE-25-2026-09-50-1 Announced: 2026-09-18 Affects: Ex…
Etkilendi
4.100.1
Critical Security Advisory: LiteSpeed Web Server Enterprise 6.3.7 or later is required 2026-09-18
Hello, Got an email today: URGENT — Security AdvisoryA critical privilege-escalation vulnerability has been identified in LiteSpeed Web Server Enterprise. On shared-hosting servers, a malicious low-privilege website user could potentially gain root-level access to the server. This could a…
Etkilendi
6.3.7
High Acronis Backup for cPanel & Plesk CVE-2026-87886: Local Privilege Escalation 2026-09-17 00:00:00
Local privilege escalation due to insecure file permissions. The following products are affected: Acronis Backup plugin for cPanel & WHM (Linux) before build 1.9.3.1021, Acronis Backup extension for Plesk (Linux).
Etkilendi
cPanel plugin before 1.9.3.1021 | Plesk extension before 1.8.11.638 | other builds before 1.2.3.238
Yamalandı
1.9.3.1021 / 1.8.11.638 / 1.2.3.238
All supported operating systems
# WHM → Plugins → Marketplace → Installed → Acronis Backup → Update (≥ 1.9.3.1021)
# Plesk → Extensions → Updates → Acronis Backup → Update (≥ 1.8.11.638)
High Paid Downloads for WordPress CVE-2026-87935: Arbitrary File Upload 2026-09-17
The Paid Downloads plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 3.15 via the admin_request_handler function. This is due to missing authorization.
Etkilendi
all versions up to and including 3.15
All supported operating systems
# Update the Paid Downloads plugin to the latest WordPress.org release
wp plugin update --all
Critical WordPress 7.1.1 Maintenance and Security Release 2026-09-17
This security and maintenance release features 17 bug fixes on Core, 19 bug fixes for the Block Editor, and 11 security fixes. Because this is a security release, it is recommended that you update your sites immediately. You can download WordPress 7.1.1 from WordPress.org, or visit your WordPress Dashboard, cl…
Etkilendi
7.1.1
Critical Plesk CVE-2026-68489: Code Injection 2026-09-14 00:00:00
Static Code Injection in Plesk extensions "Ruby" before 1.6.6 and "Node.js Toolkit" before 2.5.0 allows remote authenticated users to execute arbitrary code as root via custom environment variables.
Etkilendi
before 1.6.6 | before 2.5.0
All supported operating systems
# Update the Ruby extension stack to the patched release
# Plesk → Extensions → Updates → apply pending updates
Critical Security: LiteSpeed Enterprise security advisory – September 14, 2026 2026-09-14
Situation We have received notice that a critical privilege-escalation vulnerability has been identified in LiteSpeed Web Server Enterprise. On shared-hosting servers, a malicious low-privilege website user could potentially gain root-level access to the server. This could allow an attacker to access or alter othe…
Critical Plesk CVE-2026-68487: Path Traversal 2026-09-10 00:00:00
Path traversal in Plesk's Backup Manager causes arbitrary file write as root by an authenticated customer.
Critical Plesk CVE-2026-68488: Privilege Escalation 2026-09-10 00:00:00
A Time-of-check Time-of-use (TOCTOU) race condition leading to insecure symlink following in Plesk causes local privilege escalation to root via arbitrary file/directory ownership takeover.
Critical Security: CVE-2026-65639 CSF Security Release 2026-09-10
SituationA vulnerability was found in the advanced-rule parser in the ConfigServer Security & Firewall (CSF) software which could allow a remote attacker who controls a configured allow/deny feed to execute arbitrary commands as root.Note: By default, no remote allow/deny feed is configured.Affected Product vers…
EL7 (CentOS/CloudLinux 7)
sudo yum update
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
Critical Security: CVE-2026-65638 CSF Security Release 2026-09-10
SituationA vulnerability was found in the MESSENGER service in the ConfigServer Security & Firewall (CSF) software which could allow an unauthenticated remote attacker to execute arbitrary commands as the CSF service account.Note: By default, the MESSENGER service is disabled.Affected Product versions Prod…
EL7 (CentOS/CloudLinux 7)
sudo yum update
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Kernel Root CVE (CVE-2026-72389) 2026-09-10
CloudLinux specific take on it: bridge-stp-uaf (CVE-2026-72389) local root vulnerability: kernel update and mitigation for CloudLinux - CloudLinux 📋 TL;DR — last updated September 10, 2026, 16:20 UTC bridge-stp-uaf (CVE-2026-72389, C…
Critical cPanel CVE-2026-67401: Remote Code Execution 2026-09-09 00:00:00
A vulnerability in cPanel allows a mail-enabled account to achieve remote code execution as root through SQLi in EmailTrack component
Critical WHMCS CVE-2026-16272 2026-09-09 00:00:00
Use of less trusted source vulnerability in PayTR Payment and Electronic Money Institution Inc. PayTR Virtual Pos iFrame API (v9x) WHMCS Module allows Exploitation of Trusted Identifiers. This issue affects
High PayTR Module for WHMCS CVE-2026-16025: Input Data Manipulation 2026-09-08 00:00:00
Improper validation of specified quantity in input vulnerability in PayTR Payment and Electronic Money Institution Inc. PayTR Virtual Pos iFrame API (v9x) WHMCS Module allows Input Data Manipulation. This issue.
Etkilendi
v9.0.0 before v9.0.3
Yamalandı
v9.0.3
All supported operating systems
# Replace the PayTR Virtual POS iFrame module with v9.0.3 from the vendor
# WHMCS → Setup → Payment Gateways → confirm the module version
High PayTR Module for WHMCS CVE-2026-16037: Observable Timing Discrepancy 2026-09-08 00:00:00
Observable timing discrepancy vulnerability in PayTR Payment and Electronic Money Institution Inc. PayTR Virtual Pos iFrame API (v9x) WHMCS Module allows Black Box Reverse Engineering. This issue affects PayTR Virtual.
Etkilendi
v9.0.0 before v9.0.3
Yamalandı
v9.0.3
All supported operating systems
# Replace the PayTR Virtual POS iFrame module with v9.0.3 from the vendor
# WHMCS → Setup → Payment Gateways → confirm the module version
Critical WHMCS 8.13.7 Security Update 2026-09-08
Unauthenticated Remote Code Execution (CVE-2026-67399)
High WHMCS 8.13.6 Security Update 2026-09-08
Improved security around email previews
High WHMCS 8.13.5 Security Update 2026-09-08
Undisclosed Security Fix
High WHMCS 8.13.4 Security Update 2026-09-08
Undisclosed Security Fix
Critical WHMCS 8.13.3 Security Update 2026-09-08
Client Area Authorization Bypass (CVE-2026-29204)
High WHMCS 8.13.2 Security Update 2026-09-08
Undisclosed Security Fix
High WHMCS 8.13.1 Security Update 2026-09-08
Honour parent theme definition for captcha.tpl on Login as Owner link
High WHMCS 8.13.0 Security Update 2026-09-08
Correct bulk removal of IPs on Security tab of General Settings
Critical WHMCS 9.0.8 Security Update 2026-09-08
Unauthenticated Remote Code Execution (CVE-2026-67399)
High WHMCS 9.0.7 Security Update 2026-09-08
Improved security around email previews
High WHMCS 9.0.6 Security Update 2026-09-08
Undisclosed Security Fix
High WHMCS 9.0.5 Security Update 2026-09-08
Undisclosed Security Fix
Critical WHMCS 9.0.4 Security Update 2026-09-08
Client Area Authorization Bypass (CVE-2026-29204)
High WHMCS 9.0.2 Security Update 2026-09-08
Undisclosed Security Fix
High WHMCS 9.0.0 Security Update 2026-09-08
Add clarifying messaging on Integration Links regarding Captcha
Medium LiteSpeed CVE-2026-15345 2026-09-08
The ShortPixel Adaptive Images – WebP, AVIF, CDN, Image Optimization plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 3.11.5. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible for authenticated attackers, with subscriber-level access and above, to modify configuration options of third-party plugins including ShortPixel Image Optimizer, Autoptimize, WP Rocket, Imagify, and LiteSpeed Cache, as well as the plugin's own API key and account binding. Exploitation requires the respective third-party plugins to be installed, as the impact against those plugins' settings is only reachable when those plugins are present.
High LiteSpeed CVE-2026-18978: Cross-Site Scripting (XSS) 2026-09-08
The LiteSpeed Cache plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Comment Content in all versions up to, and including, 7.8.1 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. A comment payload crafted exclusively from decimal numeric character references (e.g. ", <, >) placed inside an allowed element such as <code> bypasses WordPress's wp_kses sanitization, as kses does not treat a data-settings="..." substring within text content as an HTML attribute, allowing the malicious payload to reach the vulnerable function. For this to be exploitable, the site must allow users with previously approved comments to write new comments, and the require_name_email setting must be disabled.
Medium LiteSpeed CVE-2026-3129: Cross-Site Scripting (XSS) 2026-09-08
The LiteSpeed Cache plugin for WordPress is vulnerable to Stored Cross-Site Scripting via crafted `` tag attributes in all versions up to, and including, 7.7. This is due to a
Critical Security: Privilege Escalation via Phusion Passenger’s Watchdog API 2026-09-08
A security vulnerability has been discovered in Phusion Passenger's Watchdog API.
EL7 (CentOS/CloudLinux 7)
sudo yum update
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
Critical Security: GCVE-25-2026-07-45-3 Exim .forward Privilege Escalation 2026-09-08
A local user's .forward file can trigger unsafe string expansion in Exim's redirect router, allowing command injection under certain pipe transport configurations.
Critical Security: CVE-2026-58048 Database Privilege Escalation 2026-09-08
A privilege escalation vulnerability exists in cPanel & WHM's database management functionality.
Critical Security: CVE-2026-58047 HTTP Request Smuggling 2026-09-08
A vulnerability in the cPanel web server allows manipulation of cpsrvd responses under limited conditions.
Critical wp2shell vulnerability CVE-2026-63030 and CVE-2026-60137 2026-09-08
WordPress recently announced a few vulnerabilities that were fixed.
Critical Security: CVE-2026-9256 ea-nginx v1.31.1 Security Release – May 22, 2026 2026-09-08
Security vulnerabilities tied to the ea-nginx ngx_http_rewrite_module (CVE-2026-9256) have been discovered.
Etkilendi
31.1
Critical Security: CVE-2026-32993 – cPanel & WHM / WP2 Security Update – May 13, 2026 2026-09-08
An unauthenticated endpoint in cpsrvd was found that could allow the insertion of arbitrary HTTP headers. This affects cPanel & WHM versions 132 and higher.
Critical Security: CVE-2026-29203 – cPanel & WHM / WP2 Security Update – May 08, 2026 2026-09-08
An unsafe symlink handling error was found that allows a user to chmod an arbitrary file, allowing for denial of service and possible privilege escalation.
Critical Security: CVE-2026-23918 2026-09-08
Apache HTTP Server: http2: Double Free and possible RCE on early reset (CVE-2026-23918). Double Free and possible RCE vulnerability in Apache HTTP Server with the HTTP/2 protocol.
Critical Security: CVE-2026-41940 – cPanel & WHM / WP2 Security Update 04/28/2026 2026-09-08
An authentication bypass security issue has been identified in the cPanel software (including DNSOnly) affecting all versions after 11.40.We would like to thank Sybre Waaijer for helping to identify and responsibly report this vulnerability to us.
EL7 (CentOS/CloudLinux 7)
sudo yum update
Critical Security: CVE-2026-67401 SQL Injection Vulnerability in cPanel’s EmailTrack Functionality – September 8, 2026 2026-09-08
An authenticated cPanel account holder with mail-related privileges can create arbitrary files on the server through cPanel's EmailTrack functionality.
High Security: CSF Security Release – September 3rd, 2026 2026-09-08
A vulnerability was found in the MESSENGER service in the ConfigServer Firewall (CSF) software which could allow for unauthorized code execution.
EL7 (CentOS/CloudLinux 7)
sudo yum update
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Security: CVE-2026-65643 Vulnerability in cPanel’s Domain Parking Functionality – August 27, 2026 2026-09-08
An authenticated cPanel account holder who is able to add parked or addon domains can create arbitrary files on the server.
High Security: CSF Security Release 2026-09-08
Multiple vulnerabilities were found in the ConfigServer Firewall plugin.
EL7 (CentOS/CloudLinux 7)
sudo yum update
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
Critical WP Toolkit CVE-2026-47365 2026-09-08
Argument injection vulnerability in WP Toolkit before version 6.11.0 as used in cPanel & WHM, allows remote authenticated users to bypass cross-tenant authorization and execute arbitrary wp-toolkit CLI commands as another account.
High Security: LiteSpeed cPanel Plugin – May 31, 2026 2026-09-08
A combination of two vulnerabilities in the LiteSpeed cPanel plugin allowed an authenticated cPanel user to escalate privileges to root, including on servers running CloudLinux and CageFS.
High Security: EasyApache4 v25.62 Security Release – May 21, 2026 2026-09-08
Security vulnerabilities tied to ea-nginx-njs(CVE-2026-8711) and ea-memcached16(CVE-2026-47783, CVE-2026-47784) have been discovered.
Critical Security: CVE-2026-33278 cpanel-unbound 1.25.1 Security Release – May 21, 2026 2026-09-08
An upstream vulnerability was recently reported for Unbound that affects supported cPanel & WHM versions 126 and higher.
Etkilendi
1.25.1
High Security: LiteSpeed plugin automatically removed during nightly update – May 19, 2026 2026-09-08
A security vulnerability was found in the plugin provided by LiteSpeed that allowed unauthorized root access to the server.
High Security: SEC-73755 cPanel & WHM / WP2 Security Update – May 19, 2026 2026-09-08
A vulnerability has been reported that currently affects cPanel & WHM versions 132 and higher.
High Security: SEC-73728 cPanel & WHM / WP2 Security Update – May 19, 2026 2026-09-08
This security release addresses vulnerabilities across multiple versions of cPanel & WHM, including fixes for several vulnerabilities rated up to High severity.
High Security: CVE-2026-32992 – cPanel & WHM / WP2 Security Update – May 13, 2026 2026-09-08
It was found that SSL verification was not fully enforced in the DNS Cluster system, which could allow for a malicious server to man-in-the-middle the request and capture credentials. This affects cPanel & WHM versions 126 and higher.
High Security: CVE-2026-32991 – cPanel & WHM / WP2 Security Update – May 13, 2026 2026-09-08
It was found that a low-privilege team user (role=default) can escalate to the owner account's full capabilities through the use of certain UAPI modules. This affects cPanel & WHM versions 110 and higher.
High Security: CVE-2026-29206 – cPanel & WHM / WP2 Security Update – May 13, 2026 2026-09-08
It was found that, as part of the sqloptimizer script, it was possible that a created SQL query could be injected with arbitrary SQL queries. This affects all cPanel & WHM versions.
High Security: CVE-2026-29205 – cPanel & WHM / WP2 Security Update – May 13, 2026 2026-09-08
Through a combination of incorrect dropping of privileges and insufficient path filtering, it was possible to read arbitrary files via certain cpdavd endpoints. This affects cPanel & WHM versions 120 and higher.
Critical Security: CVE-2026-45185 (Dead.Letter) 2026-09-08
The vulnerability, tracked as CVE-2026-45185, aka Dead.Letter, has been described as a use-after-free vulnerability in Exim's binary data transmission (BDAT) message body parsing when a TLS connection is handled by GnuTLS.
High Security: CVE-2026-29202 – cPanel & WHM / WP2 Security Update – May 08, 2026 2026-09-08
A Perl code injection method was found in the create_user API call, relating to the plugin parameter.
High Security: CVE-2026-29201 – cPanel & WHM / WP2 Security Update – May 08, 2026 2026-09-08
An arbitrary file read found was found in the feature::LOADFEATUREFILE adminbin call where it does not adequately validate the feature file name. A relative path may be passed as the argument to this call, causing an arbitrary file to be made world-readable.
High Exim CVE-2026-40684, CVE-2026-40685, CVE-2026-40686, and CVE-2026-40687 2026-09-08
Several security vulnerabilities were reported in Exim, impacting versions prior to 4.99.2:
High Security: CVE-2026-24072: Apache HTTP Server: mod_rewrite elevation of privileges via ap_expr 2026-09-08
An escalation-of-privilege bug in various modules in Apache HTTP Server 2.4.66 and earlier allows local .htaccess authors to read files with the privileges of the httpd user.
Critical Plesk CVE-2026-67397: Path Traversal 2026-09-04 00:00:00
Path traversal in Plesk 18.0.79.9 and earlier and 18.0.80 through 18.0.80.5 allows local users to execute arbitrary code as root.
Etkilendi
before 18.0.79.9 | 18.0.80 before 18.0.80.5
AlmaLinux / Ubuntu / Debian / CloudLinux / Rocky Linux
plesk installer --select-release-current --reinstall-patch
plesk version
High LiteSpeed Cache for WordPress CVE-2026-84761: Server-Side Request Forgery (SSRF) 2026-09-03 00:00:00
Unauthenticated Server Side Request Forgery (SSRF) in LiteSpeed Cache.
Etkilendi
all versions up to and including 7.9
All supported operating systems
wp plugin update litespeed-cache
# or: WordPress → Plugins → LiteSpeed Cache → Update Now
wp plugin get litespeed-cache --field=version
High ConfigServer Security & Firewall (CSF) 16.31-1 — cPanel & WHM Update 2026-09-03
Targeted Security Release For a full list of changes, read the ConfigServer Security & Firewall (CSF) change log.
Etkilendi
16.31-1
High JetBackup for WordPress CVE-2026-19453: Improper Privilege Management 2026-09-02 00:00:00
The JetBackup WordPress plugin before 3.1.23.5 does not verify the role or capabilities of the account it preserves across a restore or migration before granting it administrator privileges, allowing a.
Etkilendi
before 3.1.23.5
Yamalandı
3.1.23.5
All supported operating systems
wp plugin update jetbackup
# or: WordPress → Plugins → JetBackup → Update to 3.1.23.5
Critical Plesk CVE-2026-67394: OS Command Injection 2026-09-01 00:00:00
A critical local privilege escalation via OS command injection vulnerability has been discovered in Plesk for Linux, affecting all versions from 18.0.34 before 18.0.79.9 and 18.0.80.5. The vulnerability allows a.
Etkilendi
18.0.34 before 18.0.79.9 | 18.0.80 before 18.0.80.5
AlmaLinux / Ubuntu / Debian / CloudLinux / Rocky Linux
plesk installer --select-release-current --reinstall-patch
plesk version
High Ruby:4.0 Security Update — AlmaLinux 9 (ALSA-2026:50827) 2026-09-01
Ruby is an extensible, interpreted, object-oriented, scripting language. It has features to process text files and to perform system management tasks. Security Fix(es): * zlib: zlib: Memory corruption via buffer overflow in Zlib::GzipReader (CVE-2026-27820) * net-imap: Net::IMAP: Arbitrary IMAP command inj…
Etkilendi
4.0
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Iperf3 Security Update — AlmaLinux 9 (ALSA-2026:61389) 2026-09-01
Iperf is a tool which can measure maximum TCP bandwidth and tune various parameters and UDP characteristics. Iperf reports bandwidth, delay jitter, and data-gram loss. Security Fix(es): * iperf3: iperf3 server accepts unbounded peer-controlled JSON parameters enabling remote denial of service via resource ex…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
Critical Ubuntu Advantage Tools (Pro Client) Regression — Ubuntu Security Update (USN-8555-2) 2026-09-01
USN-8555-1 fixed vulnerabilities in Ubuntu Advantage Tools. On Ubuntu 14.04 LTS only, it was discovered that some machines were unable to enable esm-infra-legacy due to a preemptive apt-helper check. This update fixes the problem. We apologize for the inconvenience. Original advisory details: Bilal Teke discover…
Critical EasyApache 4 25.79 — cPanel & WHM Update 2026-09-01
Security and maintenance updates We released updated packages for EasyApache 4. This security release hardens the Phusion Passenger agent API authorization boundary so an empty API account database confers no privileges, resolving a local privilege escalation in the Passenger Watchdog API (SEC-75753). The fix is app…
Etkilendi
25.79
Critical OpenCryptoki Vulnerabilities — Ubuntu Security Update (USN-8707-1) 2026-08-31
It was discovered that primitive decoders in openCryptoki produced integer underflows when the encoded length was zero. An attacker could possibly use this issue to trigger out-of-bounds reads. (CVE-2026-40253) It was discovered that openCryptoki incorrectly handled symlinks. An attacker in the token-group could po…
Debian/Ubuntu
sudo apt update && sudo apt upgrade
High Dovecot v2.4.5 released (CVE) 2026-08-28
Dovecot v2.4.5 released ref.: https://github.com/dovecot/core/releases/tag/2.4.5 https://dovecot.org/releases/2.4/
Etkilendi
4.5
Medium JetBackup for WordPress CVE-2026-19454: Incorrect Authorization 2026-08-27 00:00:00
The JetBackup WordPress plugin before 3.1.23.5 does not perform its multisite authorisation check before serving backup archives and job logs, allowing an administrator of the network's main site who is.
Etkilendi
before 3.1.23.5
Yamalandı
3.1.23.5
All supported operating systems
wp plugin update jetbackup
# or: WordPress → Plugins → JetBackup → Update to 3.1.23.5
High Plesk CVE-2026-65642: Insecure Direct Object Reference 2026-08-26 00:00:00
Insecure direct object reference in Plesk 18.0.79.7 and earlier or 18.0.80 through 18.0.80.3, allows remote authenticated users to read and modify other customers' databases.
Etkilendi
0 – 18.0.79.7 | 18.0.80 before 18.0.80.4
AlmaLinux / Ubuntu / Debian / CloudLinux / Rocky Linux
plesk installer --select-release-current --reinstall-patch
plesk version
Critical Plesk CVE-2026-65646: Improper Input Validation 2026-08-26 00:00:00
Improper neutralization of special elements in in Plesk's DNS zone management functionality allows remote authenticated users to disclose arbitrary local files and escalate privileges.
Etkilendi
before 18.0.79.11 | 18.0.80 before 18.0.80.7
AlmaLinux / Ubuntu / Debian / CloudLinux / Rocky Linux
plesk installer --select-release-current --reinstall-patch
plesk version
Critical Plesk CVE-2026-65647: Link Following 2026-08-26 00:00:00
Improper symlink resolution before file access in Plesk allows remote authenticated users to execute arbitrary code as root.
Etkilendi
Migrator before 2.36.0, Site Import before 1.12.1
All supported operating systems
# Update the Migrator extension to 2.36.0 and Site Import to 1.12.1
# Plesk → Extensions → Updates → apply pending updates
High Kernel Security Update — AlmaLinux 9 (ALSA-2026:54443) 2026-08-18
The kernel packages contain the Linux kernel, the core of any Linux operating system. Security Fix(es): * kernel: accel/ivpu: Fix signed integer truncation in IPC receive (CVE-2026-53202) * kernel: net/sched: act_api: use RCU with deferred freeing for action lifecycle (CVE-2026-53264) Bug Fix(es) and Enh…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
Critical RtabRace (CVE-2026-68138): unprivileged local users can crash the host — mitigation and kernel update for CloudLinux 2026-08-18
RtabRace (CVE-2026-68138) is a Linux kernel race in the traffic-control subsystem that lets an unprivileged local user corrupt kernel memory. On CloudLinux the reliably reachable result is a host crash, and CloudLinux 8 and CloudLinux 7 Hybrid ship exposed. Here is how to check whether a server is exposed and what t…
EL7 (CentOS/CloudLinux 7)
sudo yum update
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
Debian/Ubuntu
sudo apt update && sudo apt upgrade
High CSF security vulnerabilities and DirectAdmin 2026-08-18
https://support.cpanel.net/hc/en-us/articles/42503837957015-Security-CSF-Security-Release Since DirectAdmin maintains its own CSF ‘fork’ and quite a lot of DirectAdmin servers are still running CSF, is DA aware of these vulnerabilities and are there plans to release fixes for the DirectAdmin version?
High BadGarbage (CVE-2026-53361) Local Root and Container Escape: Kernel Update for CloudLinux 10 2026-08-17
BadGarbage (CVE-2026-53361) is a Linux kernel race condition that lets any local user, including a process inside a container, become root on the host. It affects CloudLinux 10 only. CloudLinux 7 through 9 are not affected. There is no runtime mitigation, so the fix is the patched kernel or a KernelCare livepatch. H…
EL7 (CentOS/CloudLinux 7)
sudo yum update
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
Critical EasyApache 4 25.77 — cPanel & WHM Update 2026-08-13
Maintenance and Security Release We released updated packages for EasyApache 4. This release resolves three PHP vulnerabilities across ea-php82, ea-php83, ea-php84, and ea-php85: a libgd vulnerability (CVE-2026-9672), a SQL injection via backslash breakout in PGSQL (CVE-2026-17543), and a crash via recursive symlink…
Etkilendi
25.77
Critical Libgit2 Vulnerabilities — Ubuntu Security Update (USN-8628-1) 2026-08-12
It was discovered that libgit2 incorrectly handled the Git Smart Protocol. A remote attacker could possibly use this issue to cause a denial of service or execute arbitrary code. This issue only affected Ubuntu 14.04 LTS and Ubuntu 16.04 LTS. (CVE-2016-10128) It was discovered that libgit2 incorrectly handled empty…
Debian/Ubuntu
sudo apt update && sudo apt upgrade
Critical WordPress 7.0.4 Release 2026-08-12
WordPress 7.0.4 is now available WordPress 7.0.4 is now available which features a security fix. Because this is a security release, it is recommended that you update your sites immediately. You can update to WordPress 7.0.4 by downloading it from WordPress.org, or visiting your site’s Dashboard → Updates and …
Etkilendi
7.0.4
High RoundCube Webmail – Security updates 1.6.18 and 1.7.3 released 2026-08-09
Security updates 1.6.18 and 1.7.3 released ref.: https://roundcube.net/news/2026/08/09/security-updates-1.6.18-and-1.7.3
Etkilendi
1.6.18
Medium ConfigServer Security & Firewall (CSF) 16.30-1 — cPanel & WHM Update 2026-08-07
Security fixes This security release resolves several vulnerabilities in CSF (CPANEL-54191, CPANEL-55183, CPANEL-54192, CPANEL-55265). It also includes several firewall reliability fixes for AlmaLinux 10, Debian, and Ubuntu. For a full list of changes, read the ConfigServer Security & Firewall (CSF) change log.
Etkilendi
16.30-1
Medium Sitejet Builder 4.12.0-1 — cPanel & WHM Update 2026-08-07
Faster site publishing Sitejet Builder now downloads website files in parallel when you publish a site. This reduces publish time for large sites. For a full list of changes, read the Sitejet Builder change log.
Etkilendi
4.12.0-1
Medium cPanel & WHM version 138 2026-08-07
Introduced the Meridian interface We introduced Meridian, a new goal-based cPanel interface. Meridian organizes common hosting tasks into six purpose-built hubs for Websites, Email, Files, Databases, Security, and Performance. Its Dashboard highlights required actions, suggests relevant next steps, and provides an a…
Critical EasyApache 4 25.74 — cPanel & WHM Update 2026-08-07
Security Hotfix We released an updated ea-nginx package family (nginx 1.31.3) for EasyApache 4. This security release resolves three nginx vulnerabilities, including a critical heap buffer overflow in the map directive with regular expressions (CVE-2026-42533) that could allow remote code execution or a worker proce…
Etkilendi
25.74
Medium EasyApache 4 25.76 — cPanel & WHM Update 2026-08-07
Maintenance updates We released updated packages for EasyApache 4. This maintenance release includes updates to ea-passenger-src (v6.1.8), ea-ruby27-passenger (v6.1.8), ea-redis62 (v6.2.23), ea-valkey72 (v7.2.14), ea-memcached16 (v1.6.45), and ea-podman (v1.0-23), plus companion rebuilds for ea-apache24-mod-passenge…
Etkilendi
25.76
Medium cPanel & WHM Security Update 2026-08-07
Stronger two-factor authentication for API requests We’ve added a Security Policy that closes a gap in API authentication: when it’s enabled alongside two-factor authentication (2FA), API requests can no longer skip 2FA protection. Once you turn on both settings, the system handles inbound API requests a…
Medium EasyApache 4 25.73 — cPanel & WHM Update 2026-08-07
Maintenance updates We released updated ea-tomcat101, ea-memcached16, ea-apache24-mod_security2, ea-modsec2-rules-owasp-crs, ea-ioncube15, ea-nodejs22, and Phusion Passenger 6.1.7 (ea-passenger-src, ea-ruby27-passenger, ea-apache24-mod-passenger, ea-nginx-passenger) packages for EasyApache 4. This maintenance releas…
Etkilendi
25.73
Medium EasyApache 4 25.72 — cPanel & WHM Update 2026-08-07
Maintenance updates We released updated ea-modsec30, ea-modsec30-connector-apache24, and ea-modsec30-rules-owasp-crs packages for EasyApache 4. This maintenance release fixes ModSecurity audit logs silently failing to write across mod_ruid2 user IDs, forces a full Apache restart on package update so the updated libm…
Etkilendi
25.72
Medium Comet Backup 1.5.6 — cPanel & WHM Update 2026-08-07
Bug fixes This release fixes Comet Backup jobs failing en masse with locked-by-device retention errors on busy servers. The plugin now requests the less-often automatic-retention ruleset for dispatched backups and no longer cancels orphaned in-flight jobs, so overlapping retention passes cannot wedge the device.
Etkilendi
1.5.6
Critical EasyApache 4 25.71 — cPanel & WHM Update 2026-08-07
Security hotfix We released updated ea-modsec30 and ea-modsec30-rules-owasp-crs packages for EasyApache 4. This security hotfix updates ea-modsec30 to 3.0.16, addressing two issues: CVE-2026-52747 (the multipart/form-data request body parser invalidly handled r and characters, allowing an unauthenticated WAF rule b…
Etkilendi
25.71
Medium Sitejet Builder 4.11.0-1 — cPanel & WHM Update 2026-08-07
Improved read-only API token enforcement Sitejet Builder UAPI methods are now classified as read-only for cPanel & WHM API token enforcement. For a full list of changes, read the Sitejet Builder change log.
Etkilendi
4.11.0-1
High EasyApache 4 25.70 — cPanel & WHM Update 2026-08-07
Security and maintenance updates We released updated packages for EasyApache 4. This security release updates PHP 8.2, 8.3, 8.4, and 8.5 to address CVE-2026-14355 (a memory corruption issue in openssl_encrypt with AES-WRAP-PAD) and, for PHP 8.3, CVE-2026-12184 (a TLS setup failure leading to remote DoS). It also upd…
Etkilendi
25.70
Medium EasyApache 4 25.69 — cPanel & WHM Update 2026-08-07
Security and maintenance updates We released an updated ea-tomcat101 package for EasyApache 4. This security release updates Apache Tomcat to 10.1.56, addressing six CVEs (CVE-2026-55956, CVE-2026-55955, CVE-2026-55276, CVE-2026-53434, CVE-2026-53404, CVE-2026-50229) with a top severity of Moderate. For a full list …
Etkilendi
25.69
Medium EasyApache 4 25.68 — cPanel & WHM Update 2026-08-07
Maintenance updates We released updated packages for EasyApache 4. This maintenance release updates three nginx scripting and header modules: ea-nginx-echo to v0.65 (OOM safety fix), ea-nginx-headers-more to v0.40 (Content-Type charset parsing fix), and ea-nginx-njs to v1.0.0 (major version; includes security harden…
Etkilendi
25.68
Medium Site Quality Monitoring 3.2.0-1 — cPanel & WHM Update 2026-08-07
Bug fix We released a bug fix update for Site Quality Monitoring. * SQM-227: Fixed an infinite redirect loop and repeated authentication emails when re-opening Site Quality Monitoring from cPanel. For a full list of changes, read the Site Quality Monitoring change log.
Etkilendi
3.2.0-1
Medium Sitejet Builder 4.10.0-1 — cPanel & WHM Update 2026-08-07
Removed Sitejet AI promotional banner We removed the Sitejet AI promotional banner from the cPanel Tools page. This does not change Sitejet Builder functionality. For a full list of changes, read the Sitejet Builder change log.
Etkilendi
4.10.0-1
High EasyApache 4 25.67 — cPanel & WHM Update 2026-08-07
Security updates We released updated packages for EasyApache 4. This security release updates ea-nginx from v1.31.1 to v1.31.2, addressing two CVEs from the nginx 2026-06-17 advisory: CVE-2026-42055 (Medium: buffer overflow in ngx_http_proxy_v2_module and ngx_http_grpc_module) and CVE-2026-48142 (Low: buffer over-re…
Etkilendi
25.67
High EasyApache 4 25.66 — cPanel & WHM Update 2026-08-07
Security and maintenance updates We released updated packages for EasyApache 4. This security and maintenance release patches ea-openssl11 to 1.1.1w-8 (CentOS 7 only) with TuxCare/ELS backports addressing five CVEs including four High-severity issues (CVE-2026-45447, CVE-2026-34180, CVE-2026-7383, CVE-2026-9076). It…
Etkilendi
25.66
Medium Server Monitoring Powered by 360 Monitoring 2.8.0-1 — cPanel & WHM Update 2026-08-07
AWS partner rollout Server Monitoring rollout for the AWS partner. For a full list of changes, read the Server Monitoring change log.
Etkilendi
2.8.0-1
Medium Server Monitoring Powered by 360 Monitoring 2.7.0-1 — cPanel & WHM Update 2026-08-07
DigitalOcean partner rollout Server Monitoring rollout for the DigitalOcean partner. For a full list of changes, read the Server Monitoring change log.
Etkilendi
2.7.0-1
Critical EasyApache 4 25.65 — cPanel & WHM Update 2026-08-07
Security and maintenance updates We released updated packages for EasyApache 4. This security and maintenance release updates ea-apache24 to v2.4.68, which addresses thirteen CVEs in the Apache HTTP Server including two critical mod_http2 issues (CVE-2026-49975, CVE-2026-48913). It also updates the Passenger ecosyst…
Etkilendi
25.65
Medium Server Monitoring Powered by 360 Monitoring 2.6.0-1 — cPanel & WHM Update 2026-08-07
Google Cloud partner rollout Server Monitoring rollout for the Google Cloud partner. For a full list of changes, read the Server Monitoring change log.
Etkilendi
2.6.0-1
Medium Comet Backup 1.5.5 — cPanel & WHM Update 2026-08-07
Bug fixes This release fixes an issue where WebPros remote storage did not update after a Comet Backup license change, and enables cloud storage provisioning from the Destinations tab on storage-tier licenses with re-authentication resume.
Etkilendi
1.5.5
Medium Sitejet Builder 4.9.0-1 — cPanel & WHM Update 2026-08-07
Improved permission and domain-ownership validation Improve permission and domain-ownership validation for Sitejet actions. For a full list of changes, read the Sitejet Builder change log.
Etkilendi
4.9.0-1
Medium Comet Backup 1.5.4 — cPanel & WHM Update 2026-08-07
Bug fixes and improvements This release stops Comet backups from consuming all local disk space during a backup run, fixes restore backup options being hidden in the UI when no backup jobs exist, ensures the outbound User-Agent is not inherited from the parent process, removes the credentials download warning, and …
Etkilendi
1.5.4
Medium EasyApache 4 25.64 — cPanel & WHM Update 2026-08-07
Security and maintenance updates We released updated packages for EasyApache 4. This security release patches CVE-2026-49975 in ea-apache24. Attackers can craft malicious HTTP/2 cookie headers that multiply across streams, consuming excessive memory. The fix makes cookie headers count against LimitRequestFields. Not…
Etkilendi
25.64
Critical EasyApache 4 25.63 — cPanel & WHM Update 2026-08-07
Hotfix security release We released updated packages for EasyApache 4. This release addresses CVE-2026-9256 (nginx-poolslip), a critical remote code execution vulnerability affecting all nginx versions, fixed in ea-nginx 1.31.1. Phusion Passenger was also updated to version 6.1.3. For a full list of changes, read th…
Etkilendi
25.63
Medium Sitejet Builder 4.8.0-1 — cPanel & WHM Update 2026-08-07
Updated publish/polling access controls Improve Sitejet publish/polling access controls. For a full list of changes, read the Sitejet Builder change log.
Etkilendi
4.8.0-1
Medium EasyApache 4 25.62 — cPanel & WHM Update 2026-08-07
Hotfix security release We released updated packages for EasyApache 4. This release addresses CVE-2026-8711 in ea-nginx-njs and CVE-2026-47783, CVE-2026-47784 in ea-memcached16. For a full list of changes, read the EasyApache 4 change log.
Etkilendi
25.62
Medium EasyApache 4 25.61 — cPanel & WHM Update 2026-08-07
Maintenance release We released updated packages for EasyApache 4. For a full list of changes, read the EasyApache 4 change log.
Etkilendi
25.61
Medium ConfigServer Security & Firewall (CSF) 16.20-1 — cPanel & WHM Update 2026-08-07
Bug fixes Fixed regex.custom.pm custom rules silently failing to match log lines (CPANEL-53173). Fixed csf -cf $file no longer retaining newlines in the file (CPANEL-52801). For a full list of changes, read the ConfigServer Security & Firewall (CSF) change log.
Etkilendi
16.20-1
Medium Server Monitoring Powered by 360 Monitoring 2.5.0-1 — cPanel & WHM Update 2026-08-07
SPA modal notification for new activations SPA modal notification after plugin activation. New partner rollout. For a full list of changes, read the Server Monitoring change log.
Etkilendi
2.5.0-1
Medium Server Monitoring Powered by 360 Monitoring 2.4.0-1 — cPanel & WHM Update 2026-08-07
Conditional Server Monitoring registration Server Monitoring now only registers in WHM when it has been set up. For a full list of changes, read the Server Monitoring change log.
Etkilendi
2.4.0-1
Medium Server Monitoring Powered by 360 Monitoring 2.3.0-1 — cPanel & WHM Update 2026-08-07
New "Start Monitoring" onboarding experience We updated the server monitoring setup flow. New servers no longer automatically create anonymous accounts. A new "Start Monitoring" button in the top widget lets users set up monitoring for servers without an anonymous account on demand. For a full li…
Etkilendi
2.3.0-1
Critical EasyApache 4 25.60 — cPanel & WHM Update 2026-08-07
Security update We released updated packages for EasyApache 4. This security release addresses CVE-2026-42945 (Critical: heap buffer overflow in ngx_http_rewrite_module) in ea-nginx (v1.30.0 to v1.31.0), along with rebuilds of ea-nginx-echo, ea-nginx-headers-more, ea-nginx-passenger, and ea-nginx-njs against the pat…
Etkilendi
25.60
High EasyApache 4 25.59 — cPanel & WHM Update 2026-08-07
Security and maintenance updates We released updated packages for EasyApache 4. This security release addresses CVE-2026-43515 and CVE-2026-43512 (Moderate) and five Low-severity CVEs in ea-tomcat101 (v10.1.54 to v10.1.55), and includes a heap buffer overflow fix in ea-apache24-mod_security2 (no CVE assigned) along …
Etkilendi
25.59
Medium EasyApache 4 25.58 — cPanel & WHM Update 2026-08-07
Security and maintenance updates We released updated packages for EasyApache 4. This security release addresses CVE-2026-6735, CVE-2026-7259, CVE-2025-14179, CVE-2026-6722, CVE-2026-7261, CVE-2026-7262, CVE-2026-7568, and CVE-2026-7258 in ea-php82, ea-php83, ea-php84, and ea-php85. For a full list of changes, read t…
Etkilendi
25.58
Critical EasyApache 4 25.57 — cPanel & WHM Update 2026-08-07
Security and maintenance updates We released updated packages for EasyApache 4. This security release updates ea-apache24 to 2.4.67, addressing 11 CVEs including an important remote code execution vulnerability (CVE-2026-23918 in mod_http2). It also patches ea-libcurl (CentOS 7 only) with 6 security fixes backported…
Etkilendi
25.57
Medium ConfigServer Security & Firewall (CSF) 16.18-1 — cPanel & WHM Update 2026-08-07
Managesieve LFD alert fix Added managesieve-login to csf.pignore to prevent excessive LFD resource alerts triggered by the Dovecot managesieve plugin (CPANEL-52448). For a full list of changes, read the ConfigServer Security & Firewall (CSF) change log.
Etkilendi
16.18-1
Medium ConfigServer Security & Firewall (CSF) 16.17-1 — cPanel & WHM Update 2026-08-07
LFD startup and detection fixes Fixed multiple LFD issues: brute-force IMAP/POP3 login failure detection on Dovecot 2.4, LFD not starting after cPanel version upgrades, firewall rules failing to load after package upgrades, and LFD startup crashes when /etc/csf/csf.error is absent. For a full list of changes, read t…
Etkilendi
16.17-1
Medium cPanel Store Annual License Offering 2026-08-07
Annual billing now available for Solo, Admin, and Pro licenses Annual billing is now available for cPanel Solo ($329.49/year), Admin ($395.49/year), and Pro ($593.49/year) licenses in the <a href="https://store.cpanel.net/store/cpanel-licenses" target="_blank">cPanel Store. Annual subscript…
Medium EasyApache 4 25.56 — cPanel & WHM Update 2026-08-07
Maintenance updates We released updated packages for EasyApache 4. This maintenance release updates ea-nginx-njs from v0.9.6 to v0.9.7 and marks ea-scl-php54, ea-scl-php55, ea-scl-php56, ea-scl-php70, ea-scl-php71, ea-scl-php72, ea-scl-php73, ea-php74, ea-php80, ea-php81, ea-nodejs16, ea-nodejs18, ea-scl-ruby24, and…
Etkilendi
25.56
Medium EasyApache 4 25.55 — cPanel & WHM Update 2026-08-07
Maintenance updates We released updated packages for EasyApache 4. This maintenance release includes an ea-nginx update from v1.29.8 to v1.30.0 with five associated module rebuilds, a libxml2 update from v2.15.2 to v2.15.3, and an nghttp2 update from v1.68.1 to v1.69.0. For a full list of changes, read the EasyApach…
Etkilendi
25.55
Medium WP Toolkit 6.10.1 — cPanel & WHM Update 2026-08-07
Fixed enabling Vulnerability Protection with large vulnerability sets Enabling Vulnerability Protection no longer fails with a STDIN data is corrupted error when a WordPress installation contains a large number of vulnerabilities.
Etkilendi
6.10.1
Medium EasyApache 4 25.54 — cPanel & WHM Update 2026-08-07
Security and maintenance updates We released updated packages for EasyApache 4. This security and maintenance release includes a security patch for ea-openssl11 (CVE-2026-28387, CVE-2026-28388, CVE-2026-28389, CVE-2026-28390), version updates for ea-php84 (8.4.19 to 8.4.20) and ea-php85 (8.5.4 to 8.5.5), and an ea-n…
Etkilendi
25.54
Medium WP Toolkit 6.10.0 — cPanel & WHM Update 2026-08-07
Security Risk ratings for WordPress sites and components WP Toolkit now introduces a Security Risk rating for WordPress sites and individual components. This rating helps administrators quickly identify which vulnerable sites or plugins require attention first. As part of this change, the previous Vulnerabilities wi…
Etkilendi
6.10.0
Medium Server Monitoring 2.2.0-1 — cPanel & WHM Update 2026-08-07
Updated monitoring polling interval DUCKS-5510: We updated the monitoring polling interval for signed and anonymous accounts. We also updated the permissions for the agent360.sh script. For a full list of changes, read the Server Monitoring change log.
Etkilendi
2.2.0-1
Medium EasyApache 4 25.53 — cPanel & WHM Update 2026-08-07
Security and maintenance updates We released updated packages for EasyApache 4. This security and maintenance release includes CVE fixes for ea-ruby27-rubygem-rack (CVE-2026-34830, CVE-2026-34785) and ea-modsec2-rules-owasp-crs (CVE-2026-33691), and maintenance updates for ea-tomcat101, ea-re2c, and ea-cpanel-tools.…
Etkilendi
25.53
Medium cPanel & WHM version 136 2026-08-07
cPanel & WHM updates now provide ConfigServer Security & Firewall (CSF) WebPros International, LLC has created a fork of CSF (ConfigServer Security & Firewall) for cPanel & WHM. We distribute this new fork of CSF via our update mirrors. cPanel & WHM will migrate any unsupported or outdated versio…
Medium Sitejet Builder 4.7.1-1 — cPanel & WHM Update 2026-08-07
Updated Sitejet default feature list Sitejet Builder no longer enables itself in standalone Nova’s default feature list. For a full list of changes, read the Sitejet Builder change log.
Etkilendi
4.7.1-1
Medium Sitejet Builder 4.7.0-1 — cPanel & WHM Update 2026-08-07
Maintenance updates Package build maintenance updates for Sitejet Builder. For a full list of changes, read the Sitejet Builder change log.
Etkilendi
4.7.0-1
Medium Site Quality Monitoring 3.1.0-1 — cPanel & WHM Update 2026-08-07
Maintenance updates Package build maintenance updates for Site Quality Monitoring. For a full list of changes, read the Site Quality Monitoring change log.
Etkilendi
3.1.0-1
Medium Server Monitoring 2.1.0-1 — cPanel & WHM Update 2026-08-07
Maintenance updates Package build maintenance updates for Server Monitoring. For a full list of changes, read the Server Monitoring change log.
Etkilendi
2.1.0-1
Medium EasyApache 4 25.52 — cPanel & WHM Update 2026-08-07
Security and maintenance updates We released updated packages for EasyApache 4. This security and maintenance release addresses 6 CVEs in ea-nginx 1.29.7, 7 CVEs in ea-nodejs22 and ea-nodejs20, and 1 CVE in ea-nghttp2 (CVE-2026-27135). It also includes a proxy configuration fix for Apache 2.4.64+ compatibility, ngin…
Etkilendi
25.52
Medium EasyApache 4 25.51 — cPanel & WHM Update 2026-08-07
Maintenance and security updates We released updated packages for EasyApache 4. This maintenance and security release includes security backports for ea-libcurl (4 CVEs from curl 8.19.0), version updates for ea-php84, ea-php85, and ea-nginx, and bug fixes for ea-apache24 and ea-cpanel-tools. For a full list of chang…
Etkilendi
25.51
Medium ConfigServer Security & Firewall (CSF) 16.12-1 — cPanel & WHM Update 2026-08-07
Package removal cleanup fix Fixed an issue where uninstalling cpanel-csf left the CSF plugin entry and LFD service status behind in WHM (CPANEL-51933). Also suppresses harmless errors on missing symlinks during upgrades. For a full list of changes, read the ConfigServer Security & Firewall (CSF) change log.
Etkilendi
16.12-1
Medium EasyApache 4 25.50 — cPanel & WHM Update 2026-08-07
Maintenance updates We released updated packages for EasyApache 4. This maintenance release includes bug fixes for ea-nginx and version updates for ea-nginx-njs, ea-memcached16, ea-ruby27-libuv, ea-nodejs22, and ea-nodejs20. For a full list of changes, read the EasyApache 4 change log.
Etkilendi
25.50
Medium ConfigServer Security & Firewall (CSF) 16.11-1 — cPanel & WHM Update 2026-08-07
Package upgrade behavior fix Fixed an issue where upgrading cpanel-csf would overwrite custom csf-cron entries. For a full list of changes, read the ConfigServer Security & Firewall (CSF) change log.
Etkilendi
16.11-1
Medium Resource-Agents Security Update — AlmaLinux 8 (ALSA-2026:47126) 2026-08-06
The resource-agents packages provide the Pacemaker and RGManager service managers with a set of scripts. These scripts interface with several services to allow operating in a high-availability (HA) environment. Security Fix(es): * urllib3: urllib3: Information disclosure via cross-origin redirects forwarding…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Compat-Libtiff3 Security Update — AlmaLinux 8 (ALSA-2026:47183) 2026-08-06
The libtiff3 package provides libtiff 3, an older version of libtiff library for manipulating TIFF (Tagged Image File Format) image format files. This version should be used only if you are unable to use the current version of libtiff. Security Fix(es): * libtiff: libtiff: Heap-based buffer overflow via craf…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Yelp Security Update — AlmaLinux 8 (ALSA-2026:47177) 2026-08-06
Yelp is the help browser for the GNOME desktop. It is designed to help you browse all the documentation on your system in one central tool, including traditional man pages, info pages and documentation written in DocBook. Security Fix(es): * yelp: yelp-xsl: Overly Permissive Content Security Policy in Yelp A…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
Medium Libgcrypt Security Update — AlmaLinux 8 (ALSA-2026:47117) 2026-08-06
The libgcrypt library provides general-purpose implementations of various cryptographic algorithms. Security Fix(es): * Libgcrypt: Libgcrypt: Denial of Service and buffer overflow via crafted ECDH ciphertext (CVE-2026-41989) For more details about the security issue(s), including the impact, a CVSS score, …
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Kernel-Rt Security Update — AlmaLinux 8 (ALSA-2026:50979) 2026-08-06
The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements. Security Fix(es): * kernel: xen: AMD Zen 2 Processors: Privilege escalation via improper CPU cache isolation (CVE-2025-54518) Bug Fix(es) and Enhancement(s): *…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Kernel Security Update — AlmaLinux 8 (ALSA-2026:50978) 2026-08-06
The kernel packages contain the Linux kernel, the core of any Linux operating system. Security Fix(es): * kernel: xen: AMD Zen 2 Processors: Privilege escalation via improper CPU cache isolation (CVE-2025-54518) Bug Fix(es) and Enhancement(s): * Kernel crash in bpf_for_each_array_elem() due to missing…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
Low Kernel Security Update — AlmaLinux 9 (ALSA-2026:49870) 2026-08-06
The kernel packages contain the Linux kernel, the core of any Linux operating system. Security Fix(es): * kernel: Linux kernel: Denial of Service due to NULL function pointer race in timer shutdown (CVE-2025-68214) Bug Fix(es) and Enhancement(s): * Possible regression with FM350GL [almalinux-9.8.z] (J…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Kernel Security Update — AlmaLinux 9 (ALSA-2026:49212) 2026-08-06
The kernel packages contain the Linux kernel, the core of any Linux operating system. Security Fix(es): * kernel: ipc: limit next_id allocation to the valid ID range (CVE-2026-52923) * kernel: tipc: fix double-free in tipc_buf_append() (CVE-2026-52993) * kernel: net: sched: UAF via missing handler for TC…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Nodejs:22 Security Update — AlmaLinux 9 (ALSA-2026:47058) 2026-08-06
Node.js is a software development platform for building fast and scalable network applications in the JavaScript programming language. Security Fix(es): * brace-expansion: Brace-expansion: Denial of Service due to exponential-time complexity (CVE-2026-13149) * tar: Node-tar: Denial of Service via malforme…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Frr Security Update — AlmaLinux 9 (ALSA-2026:49527) 2026-08-06
FRRouting is free software that manages TCP/IP based routing protocols. It supports BGP4, OSPFv2, OSPFv3, ISIS, RIP, RIPng, PIM, NHRP, PBR, EIGRP and BFD. Security Fix(es): * frr: FRRouting: Denial of Service via crafted BGP UPDATE message (CVE-2026-37460) Bug Fix(es) and Enhancement(s): * Zebra is n…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Sg3_utils Security Update — AlmaLinux 9 (ALSA-2026:50141) 2026-08-06
The sg3_utils packages provide command-line utilities for devices that use the Small Computer System Interface (SCSI) command sets. Security Fix(es): * sg3_utils: sg3_utils: arbitrary command execution via udev property injection in sg_inq --export (CVE-2026-16313) Bug Fix(es) and Enhancement(s): * sg…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Thunderbird Security Update — AlmaLinux 9 (ALSA-2026:49921) 2026-08-06
Mozilla Thunderbird is a standalone mail and newsgroup client. Security Fix(es): * firefox: thunderbird: Site isolation issue in the DOM: Navigation component (CVE-2026-15719) * firefox: thunderbird: Invalid pointer in the JavaScript: WebAssembly component (CVE-2026-15718) * firefox: thunderbird: Mitigat…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Ldns Security Update — AlmaLinux 9 (ALSA-2026:50108) 2026-08-06
The ldns packages contain a library with the aim to simplify DNS programming in C. All low-level DNS/DNSSEC operations are supported. We also define a higher level API which allows a programmer to (for instance) create or sign packets. Security Fix(es): * ldns: ldns: Off-path poisoning attacks due to insuffi…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
Medium P11-Kit Security Update — AlmaLinux 9 (ALSA-2026:49667) 2026-08-06
The p11-kit packages provide a mechanism to manage PKCS#11 modules. The p11-kit-trust subpackage includes a PKCS#11 trust module that provides certificate anchors and black lists based on configuration files. Security Fix(es): * p11-kit: Stack exhaustion via unbounded recursion in RPC attribute parsing (CVE-…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Yelp Security Update — AlmaLinux 9 (ALSA-2026:47178) 2026-08-06
Yelp is the help browser for the GNOME desktop. It is designed to help you browse all the documentation on your system in one central tool, including traditional man pages, info pages and documentation written in DocBook. Security Fix(es): * yelp: yelp-xsl: Overly Permissive Content Security Policy in Yelp A…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Pipewire Security Update — AlmaLinux 9 (ALSA-2026:47082) 2026-08-06
PipeWire is a multimedia server for Linux and other Unix like operating systems. Security Fix(es): * pipewire: PipeWire: Sandbox escape and arbitrary code execution via malicious library loading (CVE-2026-5674) For more details about the security issue(s), including the impact, a CVSS score, acknowledgment…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High LibXfont2 Security Update — AlmaLinux 9 (ALSA-2026:47084) 2026-08-06
X.Org X11 libXfont2 runtime library Security Fix(es): * libXfont2: BitmapScaleBitmaps Integer Overflow Heap Buffer Overflow (CVE-2026-56001) * libXfont2: PCF Font Parsing Heap Buffer Overflow (CVE-2026-56002) For more details about the security issue(s), including the impact, a CVSS score, acknowledgment…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Fence-Agents Security Update — AlmaLinux 9 (ALSA-2026:50317) 2026-08-06
The fence-agents packages provide a collection of scripts for handling remote power management for cluster devices. They allow failed or unreachable nodes to be forcibly restarted and removed from the cluster. Security Fix(es): * httplib2: httplib2: Denial of Service via unbounded decompression of HTTP resp…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Gimp Security Update — AlmaLinux 9 (ALSA-2026:50817) 2026-08-06
The GIMP (GNU Image Manipulation Program) is an image composition and editing program. GIMP provides a large image manipulation toolbox, including channel operations and layers, effects, sub-pixel imaging and anti-aliasing, and conversions, all with multi-level undo. Security Fix(es): * gimp: GIMP APNG loade…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Java-25-Openjdk Security Update — AlmaLinux 9 (ALSA-2026:42899) 2026-08-06
The OpenJDK 25 packages provide the OpenJDK 25 Java Runtime Environment and the OpenJDK 25 Java Software Development Kit. Security Fix(es): * JDK: Enhance TLS certificate handling (CVE-2026-46968) * JDK: Improve DTLS handshaking (CVE-2026-46917) * JDK: Enhance JPEG handling (CVE-2026-47010) * JDK: Enha…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Nodejs:24 Security Update — AlmaLinux 9 (ALSA-2026:47057) 2026-08-06
Node.js is a software development platform for building fast and scalable network applications in the JavaScript programming language. Security Fix(es): * brace-expansion: Brace-expansion: Denial of Service due to exponential-time complexity (CVE-2026-13149) * tar: Node-tar: Denial of Service via malforme…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Gstreamer1-Plugins-Bad-Free Security Update — AlmaLinux 9 (ALSA-2026:47179) 2026-08-06
GStreamer is a streaming media framework based on graphs of filters which operate on media data. The gstreamer1-plugins-bad-free package contains a collection of plug-ins for GStreamer. Security Fix(es): * gstreamer: gstreamer: rfbsrc/librfb Hextile heap out-of-bounds write with 16bpp framebuffer (CVE-2026-5…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
Critical Security Advisory: cPanel / CSF Plugin 2026-08-06
Multiple vulnerabilities were found in the ConfigServer Firewall (CSF) plugin. Exploiting the vulnerabilities could allow an attacker to gain root access.
Etkilendi
16.20-1 and earlier
Yamalandı
16.30-1
CentOS 7 / CloudLinux 7
yum clean all
/scripts/update-packages
AlmaLinux / CloudLinux 8/9/10
dnf clean metadata
/scripts/update-packages
High Security Advisory: cPanel Email Filters RCE 2026-08-06
A remote code execution vulnerability was discovered in the cPanel email filters interface. Attackers with a low-privilege account could execute commands as root.
Etkilendi
TUI 18.0.42 and earlier
Yamalandı
TUI 18.0.48
CentOS 7 / CloudLinux 7
yum clean all
/scripts/upcp --force
AlmaLinux 9 / CloudLinux 9
dnf clean metadata
/scripts/upcp --force
High Security Advisory: CloudLinux $HTTP_HOST Environment Injection 2026-08-06
A vulnerability in CloudLinux LVE Manager allowed environment variable injection via the $HTTP_HOST header, potentially leading to unauthorized access to protected resources.
Etkilendi
7.4 and earlier
Yamalandı
7.5
CloudLinux 7
yum clean all
yum update cl-lve
CloudLinux 9
dnf clean metadata
dnf update cl-lve
Critical Security Advisory: LiteSpeed Web Server Heap Overflow 2026-08-06
A heap buffer overflow was identified in LiteSpeed Web Server HTTP/2 handling. A crafted request could cause a crash or remote code execution.
Etkilendi
6.0.4 and earlier
Yamalandı
6.0.5
CentOS 7
yum clean all
/usr/local/lsws/bin/lshttpd -v
AlmaLinux 9
dnf clean metadata
/usr/local/lsws/bin/lshttpd -v
High Security Advisory: DirectAdmin Privilege Escalation 2026-08-06
A privilege escalation flaw in DirectAdmin allowed a user to escalate privileges and gain access to other accounts on the same server.
Etkilendi
1.660 and earlier
Yamalandı
1.661
CentOS 7 / AlmaLinux 9
da-setup da
/usr/local/directadmin/scripts/update.sh
Ubuntu 22.04 / Debian 12
da-setup da
/usr/local/directadmin/scripts/update.sh
Medium Security Advisory: WHMCS Stored XSS 2026-08-06
A stored cross-site scripting (XSS) vulnerability was found in the WHMCS admin panel, allowing an authenticated user to inject malicious scripts.
Etkilendi
8.7.0 and earlier
Yamalandı
8.7.1
Any supported OS
cd /var/www/html
php composer.phar update whmcs/core
Critical Zapscape (CVE-2026-64561) KVM guest escape and local root: mitigation and kernel update for CloudLinux 2026-08-06
A Linux kernel KVM flaw affecting CloudLinux 7h-10, including servers running no VMs. Checks, mitigation and fix status. The post Zapscape (CVE-2026-64561) KVM guest escape and local root: mitigation and kernel update for CloudLinux appeared first on CloudLinux.
EL7 (CentOS/CloudLinux 7)
sudo yum update
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
Debian/Ubuntu
sudo apt update && sudo apt upgrade
Medium Security Advisory: Imunify360 Kernel Exploit Protection 2026-08-06
A kernel-level exploit bypass was discovered in Imunify360 active protection, reducing effectiveness of exploit detection on newer kernels.
Etkilendi
5.5.0 and earlier
Yamalandı
5.6.0
CentOS 7 / AlmaLinux 9
yum clean all
yum update imunify360-firewall
Ubuntu 22.04
apt update
apt install --only-upgrade imunify360-firewall
Low Security Advisory: JetBackup S3 Credential Disclosure 2026-08-06
A configuration issue in JetBackup could expose S3 storage credentials in server logs, potentially compromising backup destinations.
Etkilendi
5.3.0 and earlier
Yamalandı
5.3.1
CentOS 7 / AlmaLinux 9
yum clean all
yum update jetbackup
Critical Zapscape (CVE-2026-64561): KVM Guest Escape & Local Root — CloudLinux Kernel Update 2026-08-06
Zapscape (CVE-2026-64561) is a Linux kernel KVM vulnerability enabling guest-to-host escape and local root privilege escalation on CloudLinux 7–10, including hosts running no VMs. Fixed in the August 6, 2026 kernel update.
EL7 (CentOS/CloudLinux 7)
sudo yum update
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
Debian/Ubuntu
sudo apt update && sudo apt upgrade
Critical Mitigation for Dirty Frag Linux local privilege escalation vulnerability 2026-08-06
Yes another local privilege escalation vulnerability was recently publicly announced - dirtyfrag.io. Mitigation does not require server reboot, only making sure kernel modules esp4, esp6 and rxrpc are disabled. Code: : > /etc/modprobe.d/dirtyfrag.conf echo 'install esp4 /bin/false' &…
Critical WordPress 7.0.3 release 2026-08-06
WordPress 7.0.3 is now available WordPress 7.0.3 is now available which features several security fixes. Because this is a security release, it is recommended that you update your sites immediately. You can update to WordPress 7.0.3 by downloading it from WordPress.org, or visiting your site’s Dashboard …
Etkilendi
7.0.3
Medium Fence-Agents Security Update — AlmaLinux 8 (ALSA-2026:49927) 2026-08-04
The fence-agents packages provide a collection of scripts for handling remote power management for cluster devices. They allow failed or unreachable nodes to be forcibly restarted and removed from the cluster. Security Fix(es): * urllib3: urllib3: Information disclosure via cross-origin redirects forwarding…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
Medium Kernel-Rt Security Update — AlmaLinux 8 (ALSA-2026:49851) 2026-08-04
The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements. Security Fix(es): * kernel: ipc: limit next_id allocation to the valid ID range (CVE-2026-52923) Bug Fix(es) and Enhancement(s): * AlmaLinux8.10 - KVM: s390: L…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
Medium Kernel Security Update — AlmaLinux 8 (ALSA-2026:49857) 2026-08-04
The kernel packages contain the Linux kernel, the core of any Linux operating system. Security Fix(es): * kernel: ipc: limit next_id allocation to the valid ID range (CVE-2026-52923) Bug Fix(es) and Enhancement(s): * AlmaLinux8.10 - KVM: s390: Limit adapter indicator access to mapped page (JIRA:AlmaLi…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Thunderbird Security Update — AlmaLinux 8 (ALSA-2026:49922) 2026-08-04
Mozilla Thunderbird is a standalone mail and newsgroup client. Security Fix(es): * firefox: thunderbird: Site isolation issue in the DOM: Navigation component (CVE-2026-15719) * firefox: thunderbird: Invalid pointer in the JavaScript: WebAssembly component (CVE-2026-15718) * firefox: thunderbird: Mitigat…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Perl-DBI Security Update — AlmaLinux 9 (ALSA-2026:49612) 2026-08-04
DBI is a database access Application Programming Interface (API) for the Perl Language. The DBI API Specification defines a set of functions, variables and conventions that provide a consistent database interface independent of the actual database being used. Security Fix(es): * DBI: DBI: Arbitrary code exec…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Ldns Security Update — AlmaLinux 8 (ALSA-2026:49520) 2026-08-03
The ldns packages contain a library with the aim to simplify DNS programming in C. All low-level DNS/DNSSEC operations are supported. We also define a higher level API which allows a programmer to (for instance) create or sign packets. Security Fix(es): * ldns: ldns: Off-path poisoning attacks due to insuffi…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Perl-Archive-Tar Security Update — AlmaLinux 8 (ALSA-2026:49524) 2026-08-03
Archive::Tar provides an object oriented mechanism for handling tar files. It provides class methods for quick and easy files handling while also allowing for the creation of tar file objects for custom manipulation. If you have the IO::Zlib module installed, Archive::Tar will also support compressed or gzipped tar …
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Mingw-Glib2 Security Update — AlmaLinux 8 (ALSA-2026:49512) 2026-08-03
GLib provides the core application building blocks for libraries and applications written in C. It provides the core object system used in GNOME, the main loop implementation, and a large set of utility functions for strings and common data structures. Security Fix(es): * glib: GLib: Buffer underflow in GVar…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Frr Security Update — AlmaLinux 8 (ALSA-2026:49511) 2026-08-03
FRRouting is free software that manages TCP/IP based routing protocols. It supports BGP4, OSPFv2, OSPFv3, ISIS, RIP, RIPng, PIM, NHRP, PBR, EIGRP and BFD. Security Fix(es): * frr: FRRouting: Denial of Service via crafted BGP UPDATE message (CVE-2026-37460) For more details about the security issue(s), inc…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Perl-Archive-Tar Security Update — AlmaLinux 9 (ALSA-2026:49525) 2026-08-03
Archive::Tar provides an object oriented mechanism for handling tar files. It provides class methods for quick and easy files handling while also allowing for the creation of tar file objects for custom manipulation. If you have the IO::Zlib module installed, Archive::Tar will also support compressed or gzipped tar …
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Perl:5.32 Security Update — AlmaLinux 8 (ALSA-2026:48225) 2026-08-02
Perl is a high-level programming language that is commonly used for system administration utilities and web programming. Security Fix(es): * perl-Archive-Tar: perl-Archive-Tar: Denial of Service via crafted tar header with large entry size (CVE-2026-9538) For more details about the security issue(s), inclu…
Etkilendi
5.32
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Kernel-Rt Security Update — AlmaLinux 8 (ALSA-2026:49213) 2026-08-02
The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements. Security Fix(es): * kernel: rtnetlink: add missing netlink_ns_capable() check for peer netns (CVE-2026-31692) * kernel: netfilter: ctnetlink: ensure safe access to …
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Kernel Security Update — AlmaLinux 8 (ALSA-2026:49214) 2026-08-02
The kernel packages contain the Linux kernel, the core of any Linux operating system. Security Fix(es): * kernel: rtnetlink: add missing netlink_ns_capable() check for peer netns (CVE-2026-31692) * kernel: netfilter: ctnetlink: ensure safe access to master conntrack (CVE-2026-43116) * kernel: fanotify: f…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Kernel Security Update — AlmaLinux 9 (ALSA-2026:47040) 2026-08-01
The kernel packages contain the Linux kernel, the core of any Linux operating system. Security Fix(es): * kernel: xfrm: Duplicate SPI Handling (CVE-2025-39797) * kernel: lib/buildid: use __kernel_read() for sleepable context (CVE-2026-23002) * kernel: futex: Drop CLONE_THREAD requirement for private defa…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
Critical Linux Kernel (Intel IoTG) Vulnerabilities — Ubuntu Security Update (USN-8620-4) 2026-07-31
Maxim Suhanov discovered that the NTFS file system implementation in the Linux kernel did not properly validate file name length in certain situations, leading to an out-of-bounds read. An attacker could use this to construct a malicious NTFS image that, when mounted and operated on, could expose sensitive informati…
Debian/Ubuntu
sudo apt update && sudo apt upgrade
Critical Linux Kernel (Intel IoTG) Vulnerabilities — Ubuntu Security Update (USN-8620-3) 2026-07-31
Maxim Suhanov discovered that the NTFS file system implementation in the Linux kernel did not properly validate file name length in certain situations, leading to an out-of-bounds read. An attacker could use this to construct a malicious NTFS image that, when mounted and operated on, could expose sensitive informati…
Debian/Ubuntu
sudo apt update && sudo apt upgrade
High Unbound Security Update — AlmaLinux 8 (ALSA-2026:37282) 2026-07-31
The unbound packages provide a validating, recursive, and caching DNS or DNSSEC resolver. Security Fix(es): * unbound: Unbound: Denial of Service via excessive EDNS options (CVE-2026-41292) * unbound: Unbound: Cache manipulation via 'ghost domain names' attack (CVE-2026-40622) * unbound: Unbound: Denial…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High .NET 9.0 Security Update — AlmaLinux 8 (ALSA-2026:41899) 2026-07-31
.NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation. New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 9.0.119 and .NET Runtime 9.0.18. Security Fix(es): …
Etkilendi
9.0
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Fence-Agents Security Update — AlmaLinux 8 (ALSA-2026:47736) 2026-07-31
The fence-agents packages provide a collection of scripts for handling remote power management for cluster devices. They allow failed or unreachable nodes to be forcibly restarted and removed from the cluster. Security Fix(es): * httplib2: httplib2: Denial of Service via unbounded decompression of HTTP resp…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High .NET 10.0 Security Update — AlmaLinux 8 (ALSA-2026:41900) 2026-07-31
.NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation. New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 10.0.110 and .NET Runtime 10.0.10. Security Fix(es)…
Etkilendi
10.0
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High .NET 8.0 Security Update — AlmaLinux 8 (ALSA-2026:41901) 2026-07-31
.NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation. New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 8.0.129 and .NET Runtime 8.0.29. Security Fix(es): …
Etkilendi
8.0
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
Medium [ALBA-2026:47115] None: coreutils bug fix and enhancement update 2026-07-31
The coreutils packages contain the GNU Core Utilities and represent a combination of the previously used GNU fileutils, sh-utils, and textutils packages. Bug Fix(es) and Enhancement(s): * Fix execution of the downstream tests in coreutils-df-direct.patch and coreutils-i18n.patch [almalinux-8.10.z] (JIRA:Alma…
High Python-Pillow Security Update — AlmaLinux 8 (ALSA-2026:48021) 2026-07-31
Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems. Security Fix(es): * Pillow: …
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Osbuild-Composer Security Update — AlmaLinux 8 (ALSA-2026:48790) 2026-07-31
A service for building customized OS artifacts, such as VM images and OSTree commits, that uses osbuild under the hood. Besides building images for local usage, it can also upload images directly to cloud. It is compatible with composer-cli and cockpit-composer clients. Security Fix(es): * google.golang.org/…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Kernel Security Update — AlmaLinux 9 (ALSA-2026:45192) 2026-07-31
The kernel packages contain the Linux kernel, the core of any Linux operating system. Security Fix(es): * kernel: KVM: x86: Don't (re)check L1 intercepts when completing userspace I/O (CVE-2025-40026) * kernel: dm log: fix out-of-bounds write due to region_count overflow (CVE-2026-53059) * kernel: drm/xe…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Unbound Security Update — AlmaLinux 9 (ALSA-2026:36777) 2026-07-31
The unbound packages provide a validating, recursive, and caching DNS or DNSSEC resolver. Security Fix(es): * unbound: Unbound: Denial of Service via excessive EDNS options (CVE-2026-41292) * unbound: Unbound: Cache manipulation via 'ghost domain names' attack (CVE-2026-40622) * unbound: Unbound: Denial…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High .NET 10.0 Security Update — AlmaLinux 9 (ALSA-2026:41898) 2026-07-31
.NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation. New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 10.0.110 and .NET Runtime 10.0.10. Security Fix(es)…
Etkilendi
10.0
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High .NET 9.0 Security Update — AlmaLinux 9 (ALSA-2026:41896) 2026-07-31
.NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation. New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 9.0.119 and .NET Runtime 9.0.18. Security Fix(es): …
Etkilendi
9.0
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
Low Qemu-Kvm Security Update — AlmaLinux 9 (ALSA-2026:39311) 2026-07-31
Kernel-based Virtual Machine (KVM) is a full virtualization solution for Linux on a variety of architectures. The qemu-kvm packages provide the user-space component for running virtual machines that use KVM. Security Fix(es): * qemu-kvm: Heap buffer overflow in virtio-blk SCSI request handling (CVE-2026-4891…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High .NET 8.0 Security Update — AlmaLinux 9 (ALSA-2026:41894) 2026-07-31
.NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation. New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 8.0.129 and .NET Runtime 8.0.29. Security Fix(es): …
Etkilendi
8.0
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Openssh Security Update — AlmaLinux 9 (ALSA-2026:47756) 2026-07-31
OpenSSH is an SSH protocol implementation supported by a number of Linux, UNIX, and similar operating systems. It includes the core files necessary for both the OpenSSH client and server. Security Fix(es): * openssh: Local MITM of X11 forwarding via abstract UNIX socket pre-binding in AlmaLinux OpenSSH clien…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Vim Security Update — AlmaLinux 9 (ALSA-2026:47982) 2026-07-31
Vim (Vi IMproved) is an updated and improved version of the vi editor. Security Fix(es): * vim: Vim: Denial of Service via stack out-of-bounds write in spell_soundfold_sofo() (CVE-2026-57455) * vim: Vim: Arbitrary code execution via malicious docstrings in Python omni-completion (CVE-2026-57456) * vim: V…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High OpenSSL Vulnerability — Ubuntu Security Update (USN-8625-1) 2026-07-30
It was discovered that OpenSSL incorrectly allocated memory buffers in the SSL/TLS state machine when receiving handshake data. A remote attacker could possibly use this issue to cause OpenSSL to consume excessive memory, leading to a denial of service. This issue is known as the "HollowByte" denial of service.
Debian/Ubuntu
sudo apt update && sudo apt upgrade
Medium Openssh Security Update — AlmaLinux 8 (ALSA-2026:47755) 2026-07-30
OpenSSH is an SSH protocol implementation supported by a number of Linux, UNIX, and similar operating systems. It includes the core files necessary for both the OpenSSH client and server. Security Fix(es): * openssh: Local MITM of X11 forwarding via abstract UNIX socket pre-binding in AlmaLinux OpenSSH clien…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Vim Security Update — AlmaLinux 8 (ALSA-2026:48703) 2026-07-30
Vim (Vi IMproved) is an updated and improved version of the vi editor. Security Fix(es): * vim: Vim: Denial of Service via stack out-of-bounds write in spell_soundfold_sofo() (CVE-2026-57455) * vim: Vim: Arbitrary code execution via malicious docstrings in Python omni-completion (CVE-2026-57456) * vim: V…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
Critical OVSwrap (CVE-2026-64531) local root exploit: mitigation for CloudLinux 9, 10, and CloudLinux for Ubuntu 2026-07-30
OVSwrap (CVE-2026-64531): a Linux kernel flaw giving local root on CloudLinux 9, 10 and CloudLinux for Ubuntu. No kernel fix yet; apply the mitigation. The post OVSwrap (CVE-2026-64531) local root exploit: mitigation for CloudLinux 9, 10, and CloudLinux for Ubuntu appeared first on CloudLinux.
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
EL7 (CentOS/CloudLinux 7)
sudo yum update
Debian/Ubuntu
sudo apt update && sudo apt upgrade
High Sinatra Vulnerability — Ubuntu Security Update (USN-8624-1) 2026-07-29
It was discovered that Sinatra did not properly handle header parsing, causing ETag generation to hang when given specific input. A remote attacker could possibly use this issue to cause a denial of service.
Debian/Ubuntu
sudo apt update && sudo apt upgrade
Medium Linux Kernel (NVIDIA) Vulnerabilities — Ubuntu Security Update (USN-8623-1) 2026-07-29
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - ARM64 architecture; - Arm Firmware Framework for ARMv8-A(FFA); (CVE-2026-53354, CVE-2026-64520)
Debian/Ubuntu
sudo apt update && sudo apt upgrade
Medium Linux Kernel (NVIDIA) Vulnerabilities — Ubuntu Security Update (USN-8622-1) 2026-07-29
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - ARM64 architecture; - Arm Firmware Framework for ARMv8-A(FFA); (CVE-2026-53354, CVE-2026-64520)
Debian/Ubuntu
sudo apt update && sudo apt upgrade
Critical Linux Kernel (Azure FIPS) Vulnerabilities — Ubuntu Security Update (USN-8620-2) 2026-07-29
Maxim Suhanov discovered that the NTFS file system implementation in the Linux kernel did not properly validate file name length in certain situations, leading to an out-of-bounds read. An attacker could use this to construct a malicious NTFS image that, when mounted and operated on, could expose sensitive informati…
Debian/Ubuntu
sudo apt update && sudo apt upgrade
Medium Linux Kernel (Raspberry Pi) Vulnerabilities — Ubuntu Security Update (USN-8615-2) 2026-07-29
It was discovered that a logic flaw existed in the XFRM ESP-in-TCP subsystem in the Linux kernel when handling socket buffer fragments. This flaw is known as Fragnesia. A local attacker could use this to escalate privileges, or possibly escape a container. (CVE-2026-43503) Several security issues were discovered in…
Debian/Ubuntu
sudo apt update && sudo apt upgrade
High Nodejs:24 Security Update — AlmaLinux 8 (ALSA-2026:47060) 2026-07-29
Node.js is a software development platform for building fast and scalable network applications in the JavaScript programming language. Security Fix(es): * brace-expansion: Brace-expansion: Denial of Service due to exponential-time complexity (CVE-2026-13149) * tar: Node-tar: Denial of Service via malforme…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Nodejs:22 Security Update — AlmaLinux 8 (ALSA-2026:47059) 2026-07-29
Node.js is a software development platform for building fast and scalable network applications in the JavaScript programming language. Security Fix(es): * brace-expansion: Brace-expansion: Denial of Service due to exponential-time complexity (CVE-2026-13149) * tar: Node-tar: Denial of Service via malforme…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Libtiff Security Update — AlmaLinux 8 (ALSA-2026:47184) 2026-07-29
The libtiff packages contain a library of functions for manipulating Tagged Image File Format (TIFF) files. Security Fix(es): * libtiff: libtiff: Heap-based buffer overflow via crafted PixarLog-compressed TIFF image (CVE-2026-12912) For more details about the security issue(s), including the impact, a CVSS…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Gstreamer1-Plugins-Bad-Free Security Update — AlmaLinux 8 (ALSA-2026:47731) 2026-07-29
GStreamer is a streaming media framework based on graphs of filters which operate on media data. The gstreamer1-plugins-bad-free package contains a collection of plug-ins for GStreamer. Security Fix(es): * gstreamer: gstreamer: rfbsrc/librfb Hextile heap out-of-bounds write with 16bpp framebuffer (CVE-2026-5…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High LibXfont2 Security Update — AlmaLinux 8 (ALSA-2026:47103) 2026-07-29
X.Org X11 libXfont2 runtime library Security Fix(es): * libXfont2: BitmapScaleBitmaps Integer Overflow Heap Buffer Overflow (CVE-2026-56001) * libXfont2: PCF Font Parsing Heap Buffer Overflow (CVE-2026-56002) * libXfont2: computeProps Property Buffer Heap Buffer Overflow (CVE-2026-56003) For more detai…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
Critical FreeRDP Regression — Ubuntu Security Update (USN-8561-2) 2026-07-28
USN-8561-1 fixed vulnerabilities in FreeRDP. Unfortunately, the upgrade to version 3.30.0 introduced a regression in the clipboard functionality. This update fixes the problem. We apologize for the inconvenience. Original advisory details: It was discovered that FreeRDP contained multiple security issues. An at…
Debian/Ubuntu
sudo apt update && sudo apt upgrade
High Samba Vulnerabilities — Ubuntu Security Update (USN-8621-1) 2026-07-28
It was discovered that Samba's pam_winbind incorrectly handled home directory ownership when mkhomedir was enabled. A local attacker could possibly use this issue to cause a denial of service by triggering a change in ownership of the root directory. (CVE-2026-15779) Arjun Basnet, Douglas Bagnall, and Andrew Tridge…
Debian/Ubuntu
sudo apt update && sudo apt upgrade
High Kernel-Rt Security Update — AlmaLinux 8 (ALSA-2026:47010) 2026-07-28
The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements. Security Fix(es): * kernel: ipv6: fix possible UAF in icmpv6_rcv() (CVE-2026-53006) For more details about the security issue(s), including the impact, a CVSS score…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Kernel Security Update — AlmaLinux 8 (ALSA-2026:47011) 2026-07-28
The kernel packages contain the Linux kernel, the core of any Linux operating system. Security Fix(es): * kernel: ipv6: fix possible UAF in icmpv6_rcv() (CVE-2026-53006) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer t…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Sssd Security Update — AlmaLinux 8 (ALSA-2026:46990) 2026-07-28
The System Security Services Daemon (SSSD) service provides a set of daemons to manage access to remote directories and authentication mechanisms. It also provides the Name Service Switch (NSS) and the Pluggable Authentication Modules (PAM) interfaces toward the system, and a pluggable back-end system to connect to …
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Dovecot Security Update — AlmaLinux 8 (ALSA-2026:46532) 2026-07-28
Dovecot is an IMAP server for Linux and other UNIX-like systems, written primarily with security in mind. It also contains a small POP3 server, and supports e-mail in either the maildir or mbox format. The SQL drivers and authentication plug-ins are provided as subpackages. Security Fix(es): * dovecot: Dove…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Grafana Security Update — AlmaLinux 8 (ALSA-2026:46391) 2026-07-27
Grafana is an open source, feature rich metrics dashboard and graph editor for Graphite, InfluxDB & OpenTSDB. Security Fix(es): * github.com/go-git/go-billy: Billy: Denial of Service via crafted input due to insufficient validation (CVE-2026-44740) Bug Fix(es) and Enhancement(s): * [grafana / alm…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Libreswan Security Update — AlmaLinux 8 (ALSA-2026:46396) 2026-07-27
Libreswan is an implementation of IPsec and IKE for Linux. IPsec is the Internet Protocol Security and uses strong cryptography to provide both authentication and encryption services. These services allow you to build secure tunnels through untrusted networks such as virtual private network (VPN). Security Fix(es…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Libreswan Security Update — AlmaLinux 9 (ALSA-2026:46397) 2026-07-27
Libreswan is an implementation of IPsec and IKE for Linux. IPsec is the Internet Protocol Security and uses strong cryptography to provide both authentication and encryption services. These services allow you to build secure tunnels through untrusted networks such as virtual private network (VPN). Security Fix(es…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
Medium [ALBA-2026:39332] None: kernel bug fix and enhancement update 2026-07-25
The kernel packages contain the Linux kernel, the core of any Linux operating system. Bug Fix(es) and Enhancement(s): * XFS data corruption using reflink [almalinux-9.8.z] (JIRA:AlmaLinux-193937)
High Kernel Security Update — AlmaLinux 8 (ALSA-2026:45115) 2026-07-24
The kernel packages contain the Linux kernel, the core of any Linux operating system. Security Fix(es): * kernel: KVM: x86: Don't (re)check L1 intercepts when completing userspace I/O (CVE-2025-40026) * kernel: xfrm single-frag length not properly limited * kernel: dm log: fix out-of-bounds write due to …
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Kernel-Rt Security Update — AlmaLinux 8 (ALSA-2026:45116) 2026-07-24
The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements. Security Fix(es): * kernel: KVM: x86: Don't (re)check L1 intercepts when completing userspace I/O (CVE-2025-40026) * kernel: xfrm single-frag length not properly …
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Java-1.8.0-Openjdk Security Update — AlmaLinux 8 (ALSA-2026:42877) 2026-07-24
The java-1.8.0-openjdk packages provide the OpenJDK 8 Java Runtime Environment and the OpenJDK 8 Java Software Development Kit. Security Fix(es): * JDK: Enhance TLS certificate handling (CVE-2026-46968) * JDK: Enhance JPEG handling (CVE-2026-47010) * JDK: Enhance XBM image support (CVE-2026-47021) * JD…
Etkilendi
1.8.0
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Java-21-Openjdk Security Update — AlmaLinux 8 (ALSA-2026:42895) 2026-07-24
The OpenJDK 21 packages provide the OpenJDK 21 Java Runtime Environment and the OpenJDK 21 Java Software Development Kit. Security Fix(es): * JDK: Enhance TLS certificate handling (CVE-2026-46968) * JDK: Improve DTLS handshaking (CVE-2026-46917) * JDK: Enhance JPEG handling (CVE-2026-47010) * JDK: Enha…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Java-17-Openjdk Security Update — AlmaLinux 8 (ALSA-2026:42887) 2026-07-24
The java-17-openjdk packages provide the OpenJDK 17 Java Runtime Environment and the OpenJDK 17 Java Software Development Kit. Security Fix(es): * JDK: Enhance TLS certificate handling (CVE-2026-46968) * JDK: Improve DTLS handshaking (CVE-2026-46917) * JDK: Enhance JPEG handling (CVE-2026-47010) * JDK:…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Java-1.8.0-Openjdk Security Update — AlmaLinux 9 (ALSA-2026:42877) 2026-07-24
The java-1.8.0-openjdk packages provide the OpenJDK 8 Java Runtime Environment and the OpenJDK 8 Java Software Development Kit. Security Fix(es): * JDK: Enhance TLS certificate handling (CVE-2026-46968) * JDK: Enhance JPEG handling (CVE-2026-47010) * JDK: Enhance XBM image support (CVE-2026-47021) * JD…
Etkilendi
1.8.0
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Kernel Security Update — AlmaLinux 9 (ALSA-2026:43307) 2026-07-24
The kernel packages contain the Linux kernel, the core of any Linux operating system. Security Fix(es): * kernel: crypto: af_alg - zero initialize memory allocated via sock_kmalloc (CVE-2025-71113) * kernel: scsi: core: Wake up the error handler when final completions race against each other (CVE-2026-2311…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Java-17-Openjdk Security Update — AlmaLinux 9 (ALSA-2026:42887) 2026-07-24
The java-17-openjdk packages provide the OpenJDK 17 Java Runtime Environment and the OpenJDK 17 Java Software Development Kit. Security Fix(es): * JDK: Enhance TLS certificate handling (CVE-2026-46968) * JDK: Improve DTLS handshaking (CVE-2026-46917) * JDK: Enhance JPEG handling (CVE-2026-47010) * JDK:…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Sssd Security Update — AlmaLinux 9 (ALSA-2026:42122) 2026-07-24
The System Security Services Daemon (SSSD) service provides a set of daemons to manage access to remote directories and authentication mechanisms. It also provides the Name Service Switch (NSS) and the Pluggable Authentication Modules (PAM) interfaces toward the system, and a pluggable back-end system to connect to …
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Java-21-Openjdk Security Update — AlmaLinux 9 (ALSA-2026:42895) 2026-07-24
The OpenJDK 21 packages provide the OpenJDK 21 Java Runtime Environment and the OpenJDK 21 Java Software Development Kit. Security Fix(es): * JDK: Enhance TLS certificate handling (CVE-2026-46968) * JDK: Improve DTLS handshaking (CVE-2026-46917) * JDK: Enhance JPEG handling (CVE-2026-47010) * JDK: Enha…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Compat-Openssl11 Security Update — AlmaLinux 9 (ALSA-2026:44438) 2026-07-24
The OpenSSL toolkit provides support for secure communications between machines. This version of OpenSSL package contains only the libraries from the 1.1.1 version and is provided for compatibility with previous releases. Security Fix(es): * openssl: Heap Use-After-Free in OpenSSL PKCS7_verify() (CVE-2026-45…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Libpq Security Update — AlmaLinux 9 (ALSA-2026:44308) 2026-07-23
The libpq package provides the PostgreSQL client library, which allows client programs to connect to PostgreSQL servers. Security Fix(es): * postgresql: PostgreSQL libpq: Buffer overflow allows server superuser to overwrite client stack memory (CVE-2026-6477) For more details about the security issue(s), …
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
Medium Glibc Security Update — AlmaLinux 9 (ALSA-2026:42952) 2026-07-23
The glibc packages provide the standard C libraries (libc), POSIX thread libraries (libpthread), standard math libraries (libm), and the name service cache daemon (nscd) used by multiple programs on the system. Without these libraries, the Linux system cannot function correctly. Security Fix(es): * glibc: gl…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
Critical RefluXFS (CVE-2026-64600) Local Root Exploit: Release Status Tracker for CloudLinux 2026-07-23
RefluXFS (CVE-2026-64600) is a Linux kernel Local Privilege Escalation in the XFS filesystem, present in every kernel from v4.11 (April 2017) onward. On an affected host, an unprivileged local user can gain root, with no capabilities, namespaces, or special hardware required. It was discovered by Qualys and publicly…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
Debian/Ubuntu
sudo apt update && sudo apt upgrade
Critical OVH Had to Reboot Its Entire KVM Fleet to Fix Januscape. KernelCare Users Didn’t Have to. 2026-07-23
One of Europe’s largest cloud providers just spent eleven days rebooting the infrastructure behind roughly a million customer VMs to close a single kernel vulnerability. A hard call, executed well, and a preview of the decision every hosting provider will face again. Because there will be a next one. When a cr…
High Exim 4.99.5 security release 2026-07-23
This is a security release. It addresses GCVE-25-2026-07-45-1 and GCVE-25-2026-07-45-3 . ref.: https://exim.org/static/doc/security/EXIM-Security-2026-06-22.1/EXIM-Security-2026-06-22.1.txt https://exim.org/static/doc/security/EXIM-Security-2026-06-22.3/EXIM-Security-2026-06-22.3.txt
Etkilendi
4.99.5
High Pki-Deps:10.6 Security Update — AlmaLinux 8 (ALSA-2026:43218) 2026-07-22
The Public Key Infrastructure (PKI) Core contains fundamental packages required by AlmaLinux Certificate System. Security Fix(es): * jackson-databind: Jackson-databind: Security bypass allows arbitrary code execution (CVE-2026-54513) For more details about the security issue(s), including the impact, a CVS…
Etkilendi
10.6
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Acl Security Update — AlmaLinux 8 (ALSA-2026:43420) 2026-07-22
Access Control Lists (ACLs) are used to define fine-grained discretionary access rights for files and directories. The acl packages contain the getfacl and setfacl utilities needed for manipulating access control lists. Security Fix(es): * acl: Symlink traversal privilege escalation via libacl functions (CVE…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Javapackages-Tools:201801 Security Update — AlmaLinux 8 (ALSA-2026:41948) 2026-07-22
The javapackages-tools packages provide macros and scripts to support Java packaging. Security Fix(es): * org.codehaus.plexus:plexus-utils: Plexus-utils: Directory Traversal in extractFile method (CVE-2025-67030) For more details about the security issue(s), including the impact, a CVSS score, acknowledgme…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
Medium Glibc Security Update — AlmaLinux 8 (ALSA-2026:42733) 2026-07-22
The glibc packages provide the standard C libraries (libc), POSIX thread libraries (libpthread), standard math libraries (libm), and the name service cache daemon (nscd) used by multiple programs on the system. Without these libraries, the Linux system cannot function correctly. Security Fix(es): * glibc: gl…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Go-Toolset:rhel8 Security Update — AlmaLinux 8 (ALSA-2026:10704) 2026-07-22
Go Toolset provides the Go programming language tools and libraries. Go is alternatively known as golang. Security Fix(es): * golang: internal/syscall/unix: Root.Chmod can follow symlinks out of the root (CVE-2026-32282) * crypto/tls: golang: Go crypto/tls: Denial of Service via multiple TLS 1.3 key updat…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Httpd:2.4 Security Update — AlmaLinux 8 (ALSA-2026:42828) 2026-07-22
The httpd packages provide the Apache HTTP Server, a powerful, efficient, and extensible web server. Security Fix(es): * httpd: incomplete fix for CVE-2023-38709 (CVE-2024-42516) * httpd: NULL pointer dereference via specially crafted request (CVE-2026-29169) * httpd: Apache HTTP Server: Heap-based Buffe…
Etkilendi
2.4
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Grafana Security Update — AlmaLinux 8 (ALSA-2026:11507) 2026-07-22
Grafana is an open source, feature rich metrics dashboard and graph editor for Graphite, InfluxDB & OpenTSDB. Security Fix(es): * golang: internal/syscall/unix: Root.Chmod can follow symlinks out of the root (CVE-2026-32282) * crypto/tls: golang: Go crypto/tls: Denial of Service via multiple TLS 1.3 k…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Grafana-Pcp Security Update — AlmaLinux 8 (ALSA-2026:11514) 2026-07-22
The Grafana plugin for Performance Co-Pilot includes datasources for scalable time series from pmseries and Redis, live PCP metrics and bpftrace scripts from pmdabpftrace, as well as several dashboards. Security Fix(es): * golang: internal/syscall/unix: Root.Chmod can follow symlinks out of the root (CVE-202…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Dovecot Security Update — AlmaLinux 9 (ALSA-2026:41905) 2026-07-22
Dovecot is an IMAP server for Linux and other UNIX-like systems, written primarily with security in mind. It also contains a small POP3 server, and supports e-mail in either the maildir or mbox format. The SQL drivers and authentication plug-ins are provided as subpackages. Security Fix(es): * dovecot: Dove…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Acl Security Update — AlmaLinux 9 (ALSA-2026:42736) 2026-07-22
Access Control Lists (ACLs) are used to define fine-grained discretionary access rights for files and directories. The acl packages contain the getfacl and setfacl utilities needed for manipulating access control lists. Security Fix(es): * acl: Symlink traversal privilege escalation via libacl functions (CVE…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Libtiff Security Update — AlmaLinux 9 (ALSA-2026:42668) 2026-07-22
The libtiff packages contain a library of functions for manipulating Tagged Image File Format (TIFF) files. Security Fix(es): * libtiff: libtiff: Heap-based buffer overflow via crafted PixarLog-compressed TIFF image (CVE-2026-12912) For more details about the security issue(s), including the impact, a CVSS…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Security Advisory: Plesk PHP Updater Remote Code Execution 2026-07-22
A vulnerability in the Plesk PHP Updater allows an authenticated admin to write files outside the intended directory, leading to remote code execution as the psaserv service user.
Etkilendi
Plesk Obsidian 18.0.63 and earlier
Yamalandı
Plesk Obsidian 18.0.65
AlmaLinux 9 / CloudLinux 9
plesk installer update --select-product-id plesk
plesk sbin packagemng --update
Ubuntu 22.04 / Debian 12
apt update
plesk installer update --select-product-id plesk
High Nodejs:22 Security Update — AlmaLinux 8 (ALSA-2026:41947) 2026-07-21
Node.js is a software development platform for building fast and scalable network applications in the JavaScript programming language. Security Fix(es): * ip-address: ip-address: Cross-site scripting via improper HTML escaping of untrusted input (CVE-2026-42338) * undici: undici: Denial of Service due to …
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Glib2 Security Update — AlmaLinux 8 (ALSA-2026:42090) 2026-07-21
GLib provides the core application building blocks for libraries and applications written in C. It provides the core object system used in GNOME, the main loop implementation, and a large set of utility functions for strings and common data structures. Security Fix(es): * glib: integer underflow in gio/gdbus…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Webkit2gtk3 Security Update — AlmaLinux 8 (ALSA-2026:42088) 2026-07-21
WebKitGTK is the port of the portable web rendering engine WebKit to the GTK platform. Security Fix(es): * Mozilla: Arbitrary JavaScript execution in PDF.js (CVE-2024-4367) * webkitgtk: webkitgtk: Maliciously crafted web content may cause unexpected process crash (CVE-2026-39872) * webkitgtk: webkitgtk: …
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Kernel-Rt Security Update — AlmaLinux 8 (ALSA-2026:42550) 2026-07-21
The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements. Security Fix(es): * kernel: RDMA/mana: Remove user triggerable WARN_ON() in mana_ib_create_qp_rss() (CVE-2026-46117) * kernel: Bluetooth: l2cap: Add missing chan lo…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Kernel Security Update — AlmaLinux 8 (ALSA-2026:42552) 2026-07-21
The kernel packages contain the Linux kernel, the core of any Linux operating system. Security Fix(es): * kernel: RDMA/mana: Remove user triggerable WARN_ON() in mana_ib_create_qp_rss() (CVE-2026-46117) * kernel: Bluetooth: l2cap: Add missing chan lock in l2cap_ecred_reconf_rsp (CVE-2026-53071) Bug Fix(e…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Webkit2gtk3 Security Update — AlmaLinux 9 (ALSA-2026:42062) 2026-07-21
WebKitGTK is the port of the portable web rendering engine WebKit to the GTK platform. Security Fix(es): * Mozilla: Arbitrary JavaScript execution in PDF.js (CVE-2024-4367) * webkitgtk: webkitgtk: Maliciously crafted web content may cause unexpected process crash (CVE-2026-39872) * webkitgtk: webkitgtk: …
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Glib2 Security Update — AlmaLinux 9 (ALSA-2026:42089) 2026-07-21
GLib provides the core application building blocks for libraries and applications written in C. It provides the core object system used in GNOME, the main loop implementation, and a large set of utility functions for strings and common data structures. Security Fix(es): * glib: integer underflow in gio/gdbus…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Python3.14 Security Update — AlmaLinux 9 (ALSA-2026:41949) 2026-07-21
Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems. Security Fix(es): * python: …
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Httpd Security Update — AlmaLinux 9 (ALSA-2026:41906) 2026-07-21
The httpd packages provide the Apache HTTP Server, a powerful, efficient, and extensible web server. Security Fix(es): * httpd: incomplete fix for CVE-2023-38709 (CVE-2024-42516) * Apache HTTP Server: mod_rewrite: Apache HTTP Server: Privilege Escalation via .htaccess file manipulation (CVE-2026-24072) *…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Pacemaker Security Update — AlmaLinux 9 (ALSA-2026:39323) 2026-07-20
The Pacemaker cluster resource manager is a collection of technologies working together to maintain data integrity and application availability in the event of failures. Security Fix(es): * pacemaker: Pacemaker: Denial of Service via integer overflow in remote message decompression (CVE-2026-10649) For mo…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Nginx 1.31.3, 1.30.4 CVE 2026-07-18
Changes with nginx 1.31.3 15 Jul 2026 *) Security: heap buffer overflow might occur in a worker process when using the map directive with regex matching if the map variable was included in a string expression after a capture affected by this map; a sim…
Etkilendi
1.31.3
High Maven:3.8 Security Update — AlmaLinux 8 (ALSA-2026:40841) 2026-07-17
Maven is a software project management and comprehension tool. Based on the concept of a project object model (POM), Maven can manage a project's build, reporting and documentation from a central piece of information. Security Fix(es): * org.codehaus.plexus:plexus-utils: Plexus-utils: Directory Traversal in …
Etkilendi
3.8
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Hplip Security Update — AlmaLinux 8 (ALSA-2026:40894) 2026-07-17
The hplip packages contain the Hewlett-Packard Linux Imaging and Printing Project (HPLIP), which provides drivers for Hewlett-Packard printers and multi-function peripherals. Security Fix(es): * HPLIP: Incomplete Fix for CVE-2026-8631 (CVE-2026-14544) For more details about the security issue(s), including…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
Low Capstone Security Update — AlmaLinux 9 (ALSA-2026:39309) 2026-07-17
Capstone is a disassembly framework with the target of becoming the ultimate disasm engine for binary analysis and reversing in the security community. Security Fix(es): * capstone: Capstone: Memory corruption via unchecked vsnprintf return (CVE-2025-68114) For more details about the security issue(s), inc…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Jackson-Annotations, Jackson-Core, Jackson-Databind, Jackson-Jaxrs-Providers, And Jackson-Modules-Base Security Update — AlmaLinux 9 (ALSA-2026:40895) 2026-07-17
The general-purpose data-binding functionality and tree-model for Jackson Data Processor. It builds on core streaming parser/generator package, and uses Jackson Annotations for configuration. Security Fix(es): * jackson-databind: Jackson-databind: Security bypass allows arbitrary code execution (CVE-2026-545…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Hplip Security Update — AlmaLinux 9 (ALSA-2026:40831) 2026-07-17
The hplip packages contain the Hewlett-Packard Linux Imaging and Printing Project (HPLIP), which provides drivers for Hewlett-Packard printers and multi-function peripherals. Security Fix(es): * HPLIP: Incomplete Fix for CVE-2026-8631 (CVE-2026-14544) For more details about the security issue(s), including…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Gimp Security Update — AlmaLinux 9 (ALSA-2026:40751) 2026-07-17
The GIMP (GNU Image Manipulation Program) is an image composition and editing program. GIMP provides a large image manipulation toolbox, including channel operations and layers, effects, sub-pixel imaging and anti-aliasing, and conversions, all with multi-level undo. Security Fix(es): * gimp: gimp: Stack buf…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Nodejs:24 Security Update — AlmaLinux 8 (ALSA-2026:39868) 2026-07-16
Node.js is a software development platform for building fast and scalable network applications in the JavaScript programming language. Security Fix(es): * ip-address: ip-address: Cross-site scripting via improper HTML escaping of untrusted input (CVE-2026-42338) * undici: undici: Denial of Service due to …
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Container-Tools:rhel8 Security Update — AlmaLinux 8 (ALSA-2026:38504) 2026-07-16
The container-tools module contains tools for working with containers, notably podman, buildah, skopeo, and runc. Security Fix(es): * net: golang: Go net package: Denial of Service via long CNAME response in LookupCNAME (CVE-2026-33811) * golang.org/x/crypto/ssh: golang: golang.org/x/crypto/ssh: Denial of …
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Libreoffice Security Update — AlmaLinux 9 (ALSA-2026:36832) 2026-07-16
LibreOffice is an open source, community-developed office productivity suite. It includes key desktop applications, such as a word processor, a spreadsheet, a presentation manager, a formula editor, and a drawing program. LibreOffice replaces OpenOffice and provides a similar but enhanced and extended office suite. …
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Perl-XML-LibXML Security Update — AlmaLinux 9 (ALSA-2026:39553) 2026-07-16
This module implements a Perl interface to the GNOME libxml2 library which provides interfaces for parsing and manipulating XML files. This module allows Perl programmers to make use of the highly capable validating XML parser and the high performance DOM implementation. Security Fix(es): * perl-XML-LibXML: …
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Cifs-Utils Security Update — AlmaLinux 9 (ALSA-2026:39576) 2026-07-16
The SMB/CIFS protocol is a standard file sharing protocol widely deployed on Microsoft Windows machines. The cifs-utils packages contain tools for mounting shares on Linux using the SMB/CIFS protocol. The tools in this package work in conjunction with support in the kernel to allow one to mount a SMB/CIFS share onto…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Python3.9 Security Update — AlmaLinux 9 (ALSA-2026:39798) 2026-07-15
Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems. Security Fix(es): * python: …
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Python3.12 Security Update — AlmaLinux 9 (ALSA-2026:39771) 2026-07-15
Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems. Security Fix(es): * python: …
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Git-Lfs Security Update — AlmaLinux 9 (ALSA-2026:39319) 2026-07-15
Git Large File Storage (LFS) replaces large files such as audio samples, videos, datasets, and graphics with text pointers inside Git, while storing the file contents on a remote server. Security Fix(es): * net: golang: Go net package: Denial of Service via long CNAME response in LookupCNAME (CVE-2026-33811)…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
Medium Libsolv Security Update — AlmaLinux 9 (ALSA-2026:39315) 2026-07-15
The libsolv packages provide a library for resolving package dependencies using a satisfiability algorithm. Security Fix(es): * libsolv: Heap buffer overflow in libsolv repopagestore via unchecked decompression of malicious .solv page data (CVE-2026-48864) For more details about the security issue(s), incl…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
Medium Cups Security Update — AlmaLinux 9 (ALSA-2026:39316) 2026-07-15
The Common UNIX Printing System (CUPS) provides a portable printing layer for Linux, UNIX, and similar operating systems. Security Fix(es): * cups: OpenPrinting CUPS: Shared PostScript queue lets anonymous Print-Job requests reach `lp` code execution over the network (CVE-2026-34980) For more details about…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
Low Libxml2 Security Update — AlmaLinux 9 (ALSA-2026:39317) 2026-07-15
The libxml2 library is a development toolbox providing the implementation of various XML standards. Security Fix(es): * libxml2: Stack Buffer Overflow in xmllint Interactive Shell Command Handling (CVE-2025-6170) For more details about the security issue(s), including the impact, a CVSS score, acknowledgme…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Security Advisory: DirectAdmin EXIM4 Configuration Injection 2026-07-15
A crafted virtual domain name injects additional lines into the generated exim configuration, allowing an authenticated user to redirect mail flow for other accounts.
Etkilendi
DirectAdmin 1.678 and earlier
Yamalandı
DirectAdmin 1.679
AlmaLinux 9 / CloudLinux 9
cd /usr/local/directadmin
echo 'action=update&value=current' >> data/task.queue
directadmin --reload
AlmaLinux 8 / CloudLinux 8
cd /usr/local/directadmin
echo 'action=update&value=current' >> data/task.queue
directadmin --reload
CentOS 7 / CloudLinux 7
cd /usr/local/directadmin
echo 'action=update&value=current' >> data/task.queue
directadmin --reload
Ubuntu 22.04 / Debian 12
cd /usr/local/directadmin
echo 'action=update&value=current' >> data/task.queue
directadmin --reload
Ubuntu 20.04 / Debian 11
cd /usr/local/directadmin
echo 'action=update&value=current' >> data/task.queue
directadmin --reload
High Maven:3.9 Security Update — AlmaLinux 9 (ALSA-2026:38500) 2026-07-14
Maven is a software project management and comprehension tool. Based on the concept of a project object model (POM), Maven can manage a project's build, reporting and documentation from a central piece of information. Security Fix(es): * org.codehaus.plexus:plexus-utils: Plexus-utils: Directory Traversal in …
Etkilendi
3.9
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Xorg-X11-Server Security Update — AlmaLinux 9 (ALSA-2026:38486) 2026-07-14
X.Org is an open-source implementation of the X Window System. It provides the basic low-level functionality that full-fledged graphical user interfaces are designed upon. Security Fix(es): * xorg: X11: xserver: X.org: glamor Font Atlas Heap Buffer Overflow (CVE-2026-55999) For more details about the secur…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
High Roundcube 1.7.2 / 1.6.17 CVE 2026-07-13
Security updates 1.6.17 and 1.7.2 released Free and open source webmail software for the masses, written in PHP roundcube.net Security updates 1.6.17 and 1.7.2 releasedPublished: 05 July 2026 Tags: releases updates security We just …
Etkilendi
1.7.2
Critical GhostLock (CVE-2026-43499) Local Root Exploit: Kernel Update for CloudLinux 2026-07-08
GhostLock (CVE-2026-43499) is a use-after-free bug in the Linux kernel's futex priority-inheritance code that lets any unprivileged local user become root. Its vulnerable range covers every kernel CloudLinux ships, so all supported versions are affected. There is no runtime mitigation; the fix is the patched kernel …
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
EL7 (CentOS/CloudLinux 7)
sudo yum update
Debian/Ubuntu
sudo apt update && sudo apt upgrade
Critical Bad epoll (CVE-2026-46242) Local Root Exploit: Kernel Update for CloudLinux 2026-07-08
Bad epoll (CVE-2026-46242) is a use-after-free bug in the Linux kernel's epoll subsystem that lets an unprivileged local user escalate to root. It affects CloudLinux 9 and 10. Patched AlmaLinux kernels are in testing and a KernelCare livepatch is being prepared. Here's how to update. The post Bad epoll (CVE-2026-462…
EL8+ (AlmaLinux/CloudLinux/Rocky)
sudo dnf update
EL7 (CentOS/CloudLinux 7)
sudo yum update
Debian/Ubuntu
sudo apt update && sudo apt upgrade
High Security Advisory: cPanel cpsrvd SSL Downgrade Vulnerability 2026-07-08
cpsrvd accepted TLS handshakes that permit protocol downgrade, exposing the Webmail and WHM login sessions to man-in-the-middle interception on affected builds.
Etkilendi
cPanel & WHM 120.0.8 and earlier
Yamalandı
cPanel & WHM 120.0.12
AlmaLinux 9 / CloudLinux 9
dnf clean metadata
/scripts/upcp --force
AlmaLinux 8 / CloudLinux 8
dnf clean metadata
/scripts/upcp --force
CentOS 7 / CloudLinux 7
yum clean all
/scripts/upcp --force
Medium Security Advisory: Plesk Backup Manager Path Traversal 2026-06-30
The Plesk Backup Manager fails to sanitize archive paths, allowing a local attacker to read arbitrary files on the server via a crafted backup manifest.
Etkilendi
Plesk Obsidian 18.0.58 and earlier
Yamalandı
Plesk Obsidian 18.0.60
AlmaLinux 9 / CloudLinux 9
plesk installer update --select-product-id plesk
plesk sbin packagemng --update
AlmaLinux 8 / CloudLinux 8
plesk installer update --select-product-id plesk
CentOS 7 / CloudLinux 7
plesk installer update --select-product-id plesk
Ubuntu 22.04 / Debian 12
apt update
plesk installer update --select-product-id plesk
Ubuntu 20.04 / Debian 11
apt update
plesk installer update --select-product-id plesk
Low Security Advisory: CSF Firewall Port Rule Race Condition 2026-06-25
Under heavy connection churn, CSF may briefly drop an active port rule before the reload completes, exposing SSH briefly on default configurations.
Etkilendi
CSF 14.20 and earlier
Yamalandı
CSF 14.21
AlmaLinux 9 / CloudLinux 9
cd /etc/csf
csf -u
csf -r
AlmaLinux 8 / CloudLinux 8
cd /etc/csf
csf -u
csf -r
CentOS 7 / CloudLinux 7
cd /etc/csf
csf -u
csf -r
High 🚨 Nginx 1.31.2, 1.30.3 CVE 2026-06-17
Changes with nginx 1.31.2 17 Jun 2026 *) Security: use-after-free might occur when using HTTP/3 and processing a specially crafted QUIC session, allowing an attacker to cause worker process memory corruption or segmentation fault in a worker process (C…
Etkilendi
1.31.2
Critical Security Advisory: CloudLinux CageFS Mount Escape 2026-06-12
A race condition in CageFS mount setup can expose the host root filesystem to jailed users when a large number of concurrent logins trigger overlapping mount operations.
Etkilendi
CageFS 7.4.1 and earlier
Yamalandı
CageFS 7.4.3
CloudLinux 9
yum update cagefs
/usr/sbin/cagefsctl --force-update
CloudLinux 8
yum update cagefs
/usr/sbin/cagefsctl --force-update
CloudLinux 7
yum update cagefs
/usr/sbin/cagefsctl --force-update
High Roundcube 1.7.1 CVE 2026-05-24
Security updates 1.6.16 and 1.7.1 released We just published security updates to the 1.6 LTS and 1.7 versions of Roundcube Webmail. They both contain fixes for recently reported security vulnerabilities. Security fixes Fix stored XSS/HTML/CSS injection in subject field of the draft restore dialog Fix CSS injection…
Etkilendi
1.7.1
High Nginx 1.30.1 (CVE-2026-42945) 2026-05-22
We recommend all DirectAdmin using Nginx to upgrade to the latest version 1.30.1 or 1.31.0. This release fixes the CVE-2026-42945 vulnerability. NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_rewrite_module module. This vulnerability exists when the rewrite directive is foll…
Etkilendi
1.30.1
Medium Security Advisory: cPanel Mail Sending API Server-Side Request Forgery 2026-05-19
The Mail Sending API allowed a reseller account to issue server-side requests to internal network endpoints, enabling internal port scanning and metadata access.
Etkilendi
cPanel & WHM 120.0.3 and earlier
Yamalandı
cPanel & WHM 120.0.6
AlmaLinux 9 / CloudLinux 9
dnf clean metadata
/scripts/upcp --force
AlmaLinux 8 / CloudLinux 8
dnf clean metadata
/scripts/upcp --force
CentOS 7 / CloudLinux 7
yum clean all
/scripts/upcp --force
Critical Dirty Frag vulnerability reported for Linux kernel 2026-05-07
A vulnerability was recently discovered in the Linux Kernel named "Dirty Frag", which allows for Local Privilege Escalation (LPE) to the root user. "Dirty Frag" is a similar exploit to the recent "Copy/Fail" (CVE-2026-31431) vulnerability disclosed recently, and is a continuation of a previous vulnerability…
High Security Advisory: LiteSpeed Web Server HTTP/2 Request Smuggling 2026-05-05
Improper header validation on the HTTP/2 stream permits request smuggling against proxied backends, enabling cache poisoning on shared hosting configurations.
Etkilendi
LiteSpeed Web Server 6.2.5 and earlier
Yamalandı
LiteSpeed Web Server 6.2.6
AlmaLinux 9 / CloudLinux 9
dnf update lsws
/usr/local/lsws/bin/lshttpd -r
AlmaLinux 8 / CloudLinux 8
dnf update lsws
/usr/local/lsws/bin/lshttpd -r
CentOS 7 / CloudLinux 7
yum update lsws
/usr/local/lsws/bin/lshttpd -r
Critical Mitigations for CopyFail linux local privilege escalation vulnerability 2026-05-04
A new local privilege escalation vulnerability named CopyFail CVE-2026-31431 was recently disclosed. It affects almost all of the systems and allows local user to get root access on the system. The Linux distribution maintainers are busy with releasing hot-fixes. We are sharing an immediate mitigation for server ad…
Low Security Advisory: DirectAdmin FTP Brute-Force Rate Limiting Bypass 2026-04-28
Pure-FTPd in DirectAdmin does not enforce login attempt limits when clients reuse the same data connection, allowing accelerated password brute-forcing.
Etkilendi
DirectAdmin 1.671 and earlier
Yamalandı
DirectAdmin 1.672
AlmaLinux 9 / CloudLinux 9
cd /usr/local/directadmin
echo 'action=update&value=current' >> data/task.queue
directadmin --reload
CentOS 7 / CloudLinux 7
cd /usr/local/directadmin
echo 'action=update&value=current' >> data/task.queue
directadmin --reload
Ubuntu 22.04 / Debian 12
cd /usr/local/directadmin
echo 'action=update&value=current' >> data/task.queue
directadmin --reload
Medium Security Advisory: Imunify360 Quarantine Bypass via Symlink 2026-04-09
A symlink placed inside the quarantine directory is followed by the cleanup job, allowing a compromised account to redirect removal operations to arbitrary files.
Etkilendi
Imunify360 6.12 and earlier
Yamalandı
Imunify360 6.13
AlmaLinux 9 / CloudLinux 9
yum update imunify360-antivirus
/usr/share/immuni360/imunify360-update
AlmaLinux 8 / CloudLinux 8
yum update imunify360-antivirus
/usr/share/immuni360/imunify360-update
CentOS 7 / CloudLinux 7
yum update imunify360-antivirus
/usr/share/immuni360/imunify360-update
Ubuntu 22.04
apt update
apt upgrade imunify360-antivirus
Ubuntu 20.04
apt update
apt upgrade imunify360-antivirus
Critical Security Advisor detected processes that are running outdated executables 2026-04-08
SymptomsSecurity Advisor notifications occur frequently during cPanel updates.CONFIG_TEXT: Detected 4 processes that are running outdated executables: 1230540 1230901 1231293 1231304 CauseThe Security Advisor uses the DNF core plugin "needs-restarting" to detect if processes may need a restart. If the system clock s…
High Security Advisory: WHMCS Admin Password Reset Weak Token 2026-03-21
Password reset tokens in WHMCS were generated with insufficient entropy, allowing brute-force recovery of the reset URL for administrator accounts.
Etkilendi
WHMCS 8.9.0 and earlier
Yamalandı
WHMCS 8.10.1
All Systems
Back up /var/www/html/whmcs
Download the patched release
Run the upgrade wizard at /install/upgrade
High WordPress 6.9.2 Release 2026-03-10
WordPress 6.9.2 is now available This is a security release that features several fixes. Because this is a security release, it is recommended that you update your sites immediately. You can download WordPress 6.9.2 from WordPress.org, or visit your WordPress Dashboard, click “Updates”, and then click “Upda…
Etkilendi
6.9.2
Low Security Advisory: JetBackup Offsite Archive Integrity 2026-02-14
JetBackup offsite archives did not verify checksums after upload on interrupted transfers, leaving restore operations with silently corrupted backups.
Etkilendi
JetBackup 5.3.10 and earlier
Yamalandı
JetBackup 5.3.12
AlmaLinux 9 / CloudLinux 9
dnf update jetbackup
jetbackup5 --update
AlmaLinux 8 / CloudLinux 8
dnf update jetbackup
jetbackup5 --update
CentOS 7 / CloudLinux 7
yum update jetbackup
jetbackup5 --update
Ubuntu 22.04
apt update
apt upgrade jetbackup
Ubuntu 20.04
apt update
apt upgrade jetbackup
High Dropping security updates for WordPress versions 4.1 through 4.6 2025-06-19
As of July 2025, the WordPress Security Team will no longer provide security updates for WordPress versions 4.1 through 4.6. These versions were first released nine or more years ago and over 99% of WordPress installations run a more recent version. The chances this will affect your site, or sites, is very small.…
Etkilendi
4.1
Bu seçim için danışarlık bulunamadı.