Known exploited
CISA KEV
Disputed
No
Stale source
No
Conflicts
1

Preserved source conflicts

No provider value was silently selected as the winner.

affected · 2 assertions

{"defaultStatus":"unaffected","packageName":"WHM Plugin/cPanel Plugin","platforms":["Linux"],"product":"WHM Plugin","vendor":"LiteSpeed Technologies","versions":[{"lessThan":"5.3.1.0","status":"affected","version":"0","versionType":"custom"}]}

  • cve_program_cvelist_v5affected
    urn:baitaphish:normalized-source-record:v2:e9335cd45c5ebf4401f2effc890cb1aa8ce5c883913a85c3223616f8a7d85348 · sha256:6e43077d0464dc49… · /containers/cna/affected/1

{"collectionURL":"https://www.litespeedtech.com/products/litespeed-web-server/control-panel-support/download/","defaultStatus":"unaffected","packageName":"WHM Plugin/cPanel Plugin","platforms":["Linux"],"product":"cPanel Plugin","vendor":"LiteSpeed Technologies","versions":[{"lessThan":"2.4.7","status":"affected","version":"2.3","versionType":"custom"}]}

  • cve_program_cvelist_v5affected
    urn:baitaphish:normalized-source-record:v2:e9335cd45c5ebf4401f2effc890cb1aa8ce5c883913a85c3223616f8a7d85348 · sha256:6e43077d0464dc49… · /containers/cna/affected/0

Affected products and versions

2 source assertions
{"defaultStatus":"unaffected","packageName":"WHM Plugin/cPanel Plugin","platforms":["Linux"],"product":"WHM Plugin","vendor":"LiteSpeed Technologies","versions":[{"lessThan":"5.3.1.0","status":"affected","version":"0","versionType":"custom"}]}
  • cve_program_cvelist_v5affected
    urn:baitaphish:normalized-source-record:v2:e9335cd45c5ebf4401f2effc890cb1aa8ce5c883913a85c3223616f8a7d85348 · sha256:6e43077d0464dc49… · /containers/cna/affected/1
{"collectionURL":"https://www.litespeedtech.com/products/litespeed-web-server/control-panel-support/download/","defaultStatus":"unaffected","packageName":"WHM Plugin/cPanel Plugin","platforms":["Linux"],"product":"cPanel Plugin","vendor":"LiteSpeed Technologies","versions":[{"lessThan":"2.4.7","status":"affected","version":"2.3","versionType":"custom"}]}
  • cve_program_cvelist_v5affected
    urn:baitaphish:normalized-source-record:v2:e9335cd45c5ebf4401f2effc890cb1aa8ce5c883913a85c3223616f8a7d85348 · sha256:6e43077d0464dc49… · /containers/cna/affected/0

Provider-owned CVSS observations

1 source assertion
{"metric":{"Automatable":"NOT_DEFINED","Recovery":"NOT_DEFINED","Safety":"NOT_DEFINED","attackComplexity":"LOW","attackRequirements":"NONE","attackVector":"NETWORK","baseScore":10,"baseSeverity":"CRITICAL","privilegesRequired":"NONE","providerUrgency":"NOT_DEFINED","subAvailabilityImpact":"HIGH","subConfidentialityImpact":"HIGH","subIntegrityImpact":"HIGH","userInteraction":"NONE","valueDensity":"NOT_DEFINED","vectorString":"CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H","version":"4.0","vulnAvailabilityImpact":"HIGH","vulnConfidentialityImpact":"HIGH","vulnIntegrityImpact":"…
  • cve_program_cvelist_v5cvss
    urn:baitaphish:normalized-source-record:v2:e9335cd45c5ebf4401f2effc890cb1aa8ce5c883913a85c3223616f8a7d85348 · sha256:6e43077d0464dc49… · /containers/cna/metrics/0/cvssV4_0

CWE assertions

1 source assertion
{"cweId":"CWE-266","description":"CWE-266 Incorrect Privilege Assignment","lang":"en","type":"CWE"}
  • cve_program_cvelist_v5cwe
    urn:baitaphish:normalized-source-record:v2:e9335cd45c5ebf4401f2effc890cb1aa8ce5c883913a85c3223616f8a7d85348 · sha256:6e43077d0464dc49… · /containers/cna/problemTypes/0/descriptions/0

Known exploitation assertions

2 source assertions
{"cwes":["CWE-266"],"dateAdded":"2026-05-26","dueDate":"2026-05-29","knownRansomwareCampaignUse":"Unknown","notes":"https://blog.litespeedtech.com/2026/05/21/security-update-for-litespeed-cpanel-plugin/ ; https://nvd.nist.gov/vuln/detail/CVE-2026-48172","product":"cPanel Plugin","requiredAction":"Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.","shortDescription":"LiteSpeed cPanel Plugin contains privilege escalation vulnerability that is exposed via the user-end cPanel plugin,…
  • cisa_kev_jsonknown_exploited
    urn:baitaphish:normalized-source-record:v2:9c08f9cc07209119dd5aa79c2fe5a2ea28c33d453a7326a2b9629fc2e629cfe9 · sha256:16acee8334e59e44… · /vulnerabilities/54
    Open source location →
{"cwes":["CWE-266"],"dateAdded":"2026-05-26","dueDate":"2026-05-29","knownRansomwareCampaignUse":"Unknown","notes":"https://blog.litespeedtech.com/2026/05/21/security-update-for-litespeed-cpanel-plugin/ ; https://nvd.nist.gov/vuln/detail/CVE-2026-48172","product":"cPanel Plugin","requiredAction":"Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.","shortDescription":"LiteSpeed cPanel Plugin contains privilege escalation vulnerability that is exposed via the user-end cPanel plugin,…
  • cisa_kev_jsonknown_exploited
    urn:baitaphish:normalized-source-record:v2:e616df9929cf0b9670b373b600275d3fdf53482142e0eff6dfa2129b7d948ea2 · sha256:635dff916c4092c0… · /vulnerabilities/57
    Open source location →

Source references

4 source assertions
{"url":"https://blog.litespeedtech.com/2026/05/21/security-update-for-litespeed-cpanel-plugin/"}
  • cve_program_cvelist_v5reference
    urn:baitaphish:normalized-source-record:v2:e9335cd45c5ebf4401f2effc890cb1aa8ce5c883913a85c3223616f8a7d85348 · sha256:6e43077d0464dc49… · /containers/cna/references/2
{"tags":["government-resource"],"url":"https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-48172"}
  • cve_program_cvelist_v5reference
    urn:baitaphish:normalized-source-record:v2:e9335cd45c5ebf4401f2effc890cb1aa8ce5c883913a85c3223616f8a7d85348 · sha256:6e43077d0464dc49… · /containers/adp/0/references/0
{"url":"https://www.litespeedtech.com/products/litespeed-web-server/control-panel-support/cpanel"}
  • cve_program_cvelist_v5reference
    urn:baitaphish:normalized-source-record:v2:e9335cd45c5ebf4401f2effc890cb1aa8ce5c883913a85c3223616f8a7d85348 · sha256:6e43077d0464dc49… · /containers/cna/references/0
{"url":"https://www.litespeedtech.com/products/litespeed-web-server/control-panel-support/release-log"}
  • cve_program_cvelist_v5reference
    urn:baitaphish:normalized-source-record:v2:e9335cd45c5ebf4401f2effc890cb1aa8ce5c883913a85c3223616f8a7d85348 · sha256:6e43077d0464dc49… · /containers/cna/references/1

Attribution and limitations

  • CISA Known Exploited Vulnerabilities JSON: CISA named for provenance; do not use CISA/DHS marks or imply endorsement Source →
  • CVE Program CVEList V5: Reproduce the MITRE copyright designation and CVE license in copies. Source →

Provider severity values are preserved separately. Baitaphish does not convert them into a risk rating, infer affected products, or treat EPSS as observed exploitation.