New cPanel Critical Flaw Could Let Hosting Customers Run SQL as Database Root

cPanel has patched a flaw that let an authenticated hosting customer execute SQL in the database’s root context, crossing the privilege boundary between a cPanel account and the server’s administrative database identity. It shipped in a targeted security release that closes two other routes past account boundaries.

The database bug is tracked as CVE-2026-58048 (CVSS 4.0 score: 9.4) and affects

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

AI fake news complaining about how AI fake news is the death of real news

AI fake news complaining about how AI fake news is the death of real news Source: Hacker News

OpenAI’s GPT-Red Automates Prompt Injection Testing to Harden GPT-5.6 Sol

OpenAI’s GPT-Red Automates Prompt Injection Testing to Harden GPT-5.6 Sol OpenAI has disclosed details of GPT-Red, an internal automated red-teaming model that scales prompt injection vulnerability discovery with an aim

OpenAI loses trademark dispute at EU court

OpenAI loses trademark dispute at EU court Source: Hacker News