Plesk is a technology platform tracked across 2 threat clusters and 3 intelligence report mentions on ThreatCluster. First observed December 15, 2025; most recent activity June 1, 2026.
A critical vulnerability in Plesk, tracked as CVE-2026-44962, was disclosed on May 29, 2026. This flaw enables authenticated low-privileged users to execute arbitrary operating system commands on affected servers. The…
A critical vulnerability in Plesk for Linux, tracked as CVE-2025-66430, allows users to gain root access on affected servers. This flaw, found in the Password-Protected Directories feature, results from improper…