**Source : The Hacker News | 4 août 2026** cPanel has patched a flaw that let an authenticated hosting customer execute SQL in the database's root context, crossing the privilege boundary between a cPanel account and the server's administrative database identity. It shipped in a targeted security release that closes two other routes past account boundaries. The database bug is tracked as CVE-2026-58048 (CVSS 4.0 score: 9.4) and affects 👉 **Lire l'article complet sur The Hacker News :** [https://thehackernews.com/2026/08/new-cpanel-critical-flaw-could-let.html](https://thehackernews.com/2026/08/new-cpanel-critical-flaw-could-let.html)