Gallery

Contacts

405 W. Greenlawn Ave Lansing, Michigan 48910

contact@techjacksolutions.com

+1-616-320-4064

CISA added CVE-2026-54420, a privilege escalation flaw in the LiteSpeed cPanel and WHM plugins, to its Known Exploited Vulnerabilities catalog on June 16, 2026, confirming active exploitation in the wild. Any user with FTP or web shell access on affected CloudLinux or CageFS shared hosting servers can escalate privileges to root, giving attackers full control of the underlying host and every tenant on it. Organizations running the affected plugins must patch immediately; the CISA-mandated deadline for federal agencies is June 18, 2026.

Author

Tech Jacks Solutions