An Tran SolutionsSeptember 24, 20264 min read
cPanel Warns of a Root Takeover Flaw: CVSS 9.4, and Something Scarier Than the Score
On September 23, 2026, WebPros shipped a patch for CVE-2026-87899, a flaw that lets a logged-in user escalate to root. CVSS 9.4. The advisory has barely spread beyond HackerOne. Here's why it deserves attention right now.
