cPanel CVE-2026-67401: EmailTrack SQL Injection to Root
cPanel's EmailTrack module has an SQL injection flaw (CVE-2026-67401, CVSS 9.9) that turns a low-privilege mail account into root-level code execution. Every supported cPanel/WHM version was affected;
404-founders.com5 min read