support.cpanel.net Critical LiteSpeed Flaw Allows Root Access via Shared Hosting Accounts
Article Content
- •A critical vulnerability in LiteSpeed Web Server Enterprise allows root access to shared hosting accounts.
- •Affected versions include those prior to 6.3.7; administrators are urged to update immediately.
- •This is the third instance of privilege escalation vulnerabilities in LiteSpeed software since May 2026.
A critical vulnerability in LiteSpeed Web Server Enterprise allows low-privilege users on shared-hosting servers to gain root access. This flaw can bypass account isolation controls like CageFS, enabling attackers to access or alter other hosted websites. Affected versions are those prior to 6.3.7, with the patch released on September 11, 2026. cPanel issued an advisory on September 14, urging administrators to update immediately. The advisory does not provide a CVE identifier or indicate whether the flaw has been exploited. This vulnerability marks the third instance since May where LiteSpeed software has allowed root access through cPanel servers. Previous vulnerabilities, CVE-2026-48172 and CVE-2026-54420, were also linked to privilege escalation and confirmed to be actively exploited. As of September 15, 2026, LiteSpeed's download page still lists the previous stable version, 6.3.6.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (4)
Following this threat?
Track CloudLinux and CVE-2026-48172 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Cisco FMC Vulnerabilities Under Active Exploitation Cisco's Secure Firewall Management Center (FMC) Software has two critical vulnerabilities, CVE-2026-20079 and CVE-2026-20316, that are currently being exploited by state-sponsored and ransomware actors. CVE-2026-20079, rated 10.0 on the CVSS scale, allows unauthenticated remote attackers to bypass authentication and…
Critical GitLab CVE-2026-85706 Exploited; Microsoft Issues Record 974 Patches A critical CVE-2026-85706 path-traversal vulnerability in GitLab (CVSS 10.0) was exploited in the wild just hours after its disclosure on September 12, 2026. Microsoft released its largest-ever patch batch, addressing 974 vulnerabilities, including several actively exploited Windows flaws. The GitLab flaw allows…