CVE-2026-32992 — SSL verification is disabled in the DNS Cluster system.
SSL verification is disabled in the DNS Cluster system. This could allow for a malicious server to man-in-the-middle the request and capture credentials.
SSL verification is disabled in the DNS Cluster system. This could allow for a malicious server to man-in-the-middle the request and capture credentials.
SSL verification is disabled in the DNS Cluster system. This could allow for a malicious server to man-in-the-middle the request and capture credentials.
CVE-2026-32992CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:NEval injection in cPanel 11.138.0.0 and earlier allows remote authenticated users to execute arbitrary code as root.
HTTP Smuggling in cPanel allows potential leak of credentials.
Improper preservation of SQL mode when renaming databases in cPanel allows execution of SQL in root context.