Critical cPanel Authentication Bypass – Patch Now (CVE-2026-41940)
Critical severity – Authentication bypass in cPanel & WHM (CVE-2026-41940). All versions after 11.40 are vulnerable unless patched. UnderHost provides patched version numbers, firewall mitigations, a detection script, and immediate update instructions. Update before May 5, 2026, to avoid potential compromise.