Web24 incident

Security Advisory: Immediate cPanel Update Recommended for VPS & Dedicated Servers

Notice Resolved View vendor source →

Web24 experienced a notice incident on August 3, 2026 affecting Cloud VPS and Mission Critical VPS and 1 more component, lasting 42d 3h. The incident has been resolved; the full update timeline is below.

Started
Aug 03, 2026, 10:31 AM UTC
Resolved
Sep 14, 2026, 01:52 PM UTC
Duration
42d 3h
Detected by Pingoru
Aug 03, 2026, 10:31 AM UTC

Affected components

Cloud VPSMission Critical VPSVMWare VPSDedicated Servers

Update timeline

  1. monitoring Aug 03, 2026, 10:31 AM UTC

    Dear Customers, cPanel has released a security update to address CVE-2026-58048, a database privilege escalation vulnerability affecting supported cPanel & WHM versions. We strongly recommend that all customers update their servers to the patched versions available. Please refer to the official advisories below for more details: https://support.cpanel.net/hc/en-us/articles/42285745783703-Security-CVE-2026-58048-Database-Privilege-Escalation Action Required Please log in to your server via SSH as the root user and run the following command: /scripts/upcp This command will download and install the latest available cPanel & WHM updates, including the security fixes released by cPanel. After the update completes, verify your cPanel version: /usr/local/cpanel/cpanel -V Why This Update required This security release addresses a vulnerability that could allow privilege escalation within the database environment. Applying the latest cPanel update is the recommended mitigation from cPanel and helps protect your server from potential exploitation. If you are unable to perform the update or experience any issues during the upgrade process, please contact our support team. We will be happy to assist you.

  2. resolved Sep 14, 2026, 01:52 PM UTC

    This incident has been resolved.