Security Notice: cPanel Security CVE-2026-32992

  • Thursday, 14th May, 2026
  • 05:16am

This notice is to inform you of a critical security vulnerability recently identified in all cPanel servers:  

Vulnerability Overview

CVE-2026-32992

It was found that SSL verification was not fully enforced in the DNS Cluster system, which could allow for a malicious server to man-in-the-middle the request and capture credentials.

Action Taken

Our security team acted immediately upon the disclosure. We are pleased to confirm that remediation is complete:

  • Shared Hosting: All shared environments have been patched.

  • Client Virtual Servers (VPS): All managed virtual servers have been secured.

No action is required on your part. Your hosting environment and data remain secure.


Further Details

The security of your data is our highest priority. If you have any questions regarding this update, please contact our support team.

« Back