CISA Directs Federal Agencies to Patch Actively Exploited LiteSpeed Vulnerability

Published: 2026-05-29
Category: technology
Source: CISA / SecurityAffairs / SC Media
Original source

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical privilege escalation flaw in the LiteSpeed User-End cPanel Plugin (CVE-2026-48172) to its list of known exploited vulnerabilities. Federal agencies are mandated to apply patches or remove affected software by May 29, 2026, as attackers are actively leveraging this flaw to execute arbitrary scripts with root privileges.

Want more?

Open NewsSnap.ai for the full app experience, including audio, personalization, and more news tools.

Open NewsSnap.ai