PulseAugur
EN
LIVE 07:19:30

Hackers actively exploit critical cPanel vulnerability, exposing millions of sites

A critical vulnerability in cPanel and WebHost Manager (WHM), tracked as CVE-2026-41940, is being actively exploited by hackers. This flaw allows attackers to bypass authentication and gain root access to servers, potentially affecting millions of websites. Security agencies have added the bug to their known-exploited lists, and reports indicate ransomware demands have already been made by attackers. AI

IMPACT This critical cPanel vulnerability could lead to widespread website compromises and ransomware attacks, impacting millions of online services.

RANK_REASON Critical vulnerability in widely-used hosting software actively exploited, leading to security agency advisories and reported ransomware attacks.

Read on The Register — AI →

AI-generated summary · Google Gemini · from 4 sources. How we write summaries →

Hackers actively exploit critical cPanel vulnerability, exposing millions of sites

How we ranked this

Signal score
0 / 100
Composite score across the factors below. Higher = stronger signal that this story matters right now.
Newsworthiness bucket
Significant
Critical vulnerability in widely-used hosting software actively exploited, leading to security agency advisories and reported ransomware attacks.
Source corroboration
4 independent sources
Strong cross-source corroboration — multiple independent publishers covered this within the clustering window.
Topics
product, safety
Editorial topic classification. Feeds into how the story surfaces on /topic/<slug> hub pages and into the per-entity coverage mix.
AI-industry relevance
Standard
On-topic for AI-industry coverage; kept in the public index.
Story freshness
151 days old
Aged out of breaking-news scoring windows; ranking reflects the durable signal from the full source set.

Full methodology in our editorial standards.

COVERAGE [4]

  1. The Register — AI TIER_1 English(EN) · Carly Page ·

    First reports come in of victims of critical cPanel vuln as 'millions' of sites potentially exposed

    <h4>Exploitation was underway before patches landed, at least one victim reports ransomware demand</h4> <p>CISA has added a critical cPanel bug to its known-exploited list, confirming that attackers are already poking holes in one of the internet's most widely used hosting stacks…

  2. The Register — AI TIER_1 English(EN) · Connor Jones ·

    Bug of the year (so far): Nasty cPanel vulnerability probably exploited as a 0-day

    <h4>Emergency patches out now for those managing the millions of domains assumed to be affected</h4> <p>Emergency patches are available for a critical vulnerability in cPanel and WHM that allows attackers to bypass authentication and gain root access to servers managed using it.……

  3. Mastodon — fosstodon.org TIER_1 English(EN) · [email protected] ·

    📰 Hackers Are Actively Exploiting a Bug In cPanel, Used By Millions of Websites Hackers are actively exploiting a critical cPanel and WHM vulnerability, tracked

    📰 Hackers Are Actively Exploiting a Bug In cPanel, Used By Millions of Websites Hackers are actively exploiting a critical cPanel and WHM vulnerability, tracked as CVE-2026-41940, that allows remote attackers to bypass the login screen and gain full administrative access to af...…

  4. Mastodon — fosstodon.org TIER_1 English(EN) · [email protected] ·

    🎮 Paste Media Puts The Final Nail In The Coffin Of A Storied Gaming Legacy The A.V. Club is pulling away from full-time gaming coverage to focus on its 'core st

    🎮 Paste Media Puts The Final Nail In The Coffin Of A Storied Gaming Legacy The A.V. Club is pulling away from full-time gaming coverage to focus on its 'core strengths' 📰 Source: Kotaku 🔗 Link: https://kotaku.com/paste-media-puts-the-final-nail-in-the-coffin-of-a-storied-gaming-l…