TWO critical vulnerabilities have been detected: CVE-2026-54420 affects the LiteSpeed cPanel Plugin, enabling privilege escalation for low-privileged users to gain root access, and CVE-2026-20262 pertains to Cisco Catalyst SD-WAN Manager allowing directory traversal. Administrators are urged to patch their systems urgently as these exploits are currently active. The LiteSpeed vulnerability, rated 8.5 on the CVSS scale, allows users on shared servers to escape their boundaries and threatens multiple accounts. LiteSpeed has addressed the issue in version 2.4.8; upgrading is advised to mitigate risks.
LiteSpeed flaw lets users gain root, Cisco SD WAN also exposed
CyberSIXT Evidence Panel
Article by CyberSIXT
Timeline Coverage
Swipe to explore timeline
-
CISA flags critical Joomla JCE bug enabling remote code execution
cybersixt.com
-
AdGuard blocks Joomla exploit and launches email tracking shield
cybersixt.com
-
Joomla and LiteSpeed Bugs Let Attackers Run Code, Gain Root
cybersixt.com
-
WooCommerce stores hit by payment skimmer (CVE-2026-48907)
cybersixt.com
-
CISA Adds CVE-2026-48907 Joomla Editor Flaw to Known Exploited List
cybersixt.com
-
CISA adds critical Joomla editor flaw CVE-2026-48907 to KEV
cybersixt.com
-
Could Apple Build Its Own OpenClaw Competitor?
cybersixt.com
-
CISA Flags Cisco SD WAN and LiteSpeed Plugins Under Active Attack
cybersixt.com
-
Inside the Stealthy Agent Tesla Infection Chain
cybersixt.com
-
LiteSpeed flaw lets users gain root, Cisco SD WAN also exposed
securityonline.info
-
CISA flags LiteSpeed cPanel Plugin UNIX symlink vulnerability
cybersixt.com
-
CISA Adds CVE-2026-54420 to Known Exploited Vulnerabilities Catalogue
cybersixt.com