TechnologyUnited StatesHighScore 7.0

CISA adds critical WebPros cPanel and WHM authentication vulnerability CVE-2026-41940 to its Known Exploited Vulnerabilities Catalog. The agency urges users to review the catalog for mitigation details.

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical authentication vulnerability in WebPros cPanel, WHM, and WP2 software, tracked as CVE-2026-41940, to its Known Exploited Vulnerabilities Catalog.

What happened

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical authentication vulnerability in WebPros cPanel, WHM, and WP2 software, tracked as CVE-2026-41940, to its Known Exploited Vulnerabilities Catalog.

Quick reaction

One tap helps tune what we surface next.

Reader discussion

Public comments
0/1000

No comments yet. Start the discussion around this signal.

Follow this signal

Get updates on this story

We will email you if this changes materially. No spam. Daily brief optional.

Map context

Open map near United States

Keep the story in context with nearby live signals, countries, and category movement.

Open live map

Related coverage

More live signals

Continue with the live feed.

The fastest nearby updates load from the public feed, not the enriched story endpoint.

Continue with live feed

Monitor

Track follow-ups in Monitor

Turn this public story into a watchlist seed for matching future signals, team alerts, and operational routing.

Signals API

Use these signals via API

Evaluate structured event payloads, canonical URLs, categories, geo fields, and confidence metadata for your own workflows.