News
CVE-2026-41940 - cPanel & WHM / WP2 Security Update
Posted by Technical Manager on 03 May 2026 12:36 PM

Dear Valued Customer,

We would like to inform you of a recently disclosed security vulnerability affecting cPanel servers, identified as CVE-2026-41940.

What Happened?

This vulnerability may allow unauthorized access or exploitation under certain conditions, potentially impacting the confidentiality and integrity of hosted accounts.

⚠️ Who Is Affected?

Servers running specific versions of cPanel & WHM that have not yet been updated with the latest security patches may be vulnerable.

What We Are Doing

Our technical team is actively monitoring the situation and has taken the following actions:

  • Reviewing all affected systems

  • Applying necessary patches and updates where applicable

  • Implementing additional security controls to mitigate potential risks

✅ What You Should Do

We recommend customers take the following precautions:

  • Ensure your cPanel account passwords are strong and updated

  • Avoid using outdated scripts or plugins

  • Monitor your account for any unusual activity

  • Enable two-factor authentication (2FA) where possible

Our Commitment

We take security very seriously and are working continuously to ensure all systems remain protected. If your account is found to be directly affected, we will contact you individually with further instructions.

If you have any questions or require assistance, please do not hesitate to contact our support team.

Thank you for your continued trust.

Best regards,
Technical Team


iWHOST Support System